I ran Spybot S&D advanced mode and got rid of some but not all, here is the report from spybot.
thanks for your help
--- Search result list ---
Win32.BHO.je: [SBI $90A69837] Interface (Registry key, fixed)
HKEY_CLASSES_ROOT\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}
Win32.BHO.je: [SBI $8AA4E23B] Type library (Registry key, fixed)
HKEY_CLASSES_ROOT\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}
Win32.Renos: [SBI $CEFE2943] Library (File, fixed)
C:\WINDOWS\system32\psqnuvo.dll
Smitfraud-C.: [SBI $8F732AAF] Autorun settings (Registry value, fixed)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run\start
Smitfraud-C.gp: [SBI $3CA356D5] Settings (Registry key, fixed)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9034A523-D068-4BE8-A284-9DF278BE776E}
Win32.Renos: [SBI $C1EB2B7D] Executable (File, fixed)
C:\Documents and Settings\Administrator\Local Settings\Temp\zfe2.exe
DoubleClick: Tracking cookie (Internet Explorer: Administrator) (Cookie, fixed)
DoubleClick: Tracking cookie (Firefox: default) (Cookie, fixed)
BurstMedia: Tracking cookie (Firefox: default) (Cookie, fixed)
--- Spybot - Search & Destroy version: 1.5.2 (build: 20080128) ---
2008-01-28 blindman.exe (1.0.0.7)
2008-01-28 SDDelFile.exe (1.0.2.4)
2008-01-28 SDMain.exe (1.0.0.5)
2007-10-07 SDShred.exe (1.0.1.2)
2008-01-28 SDUpdate.exe (1.0.8.8)
2008-01-28 SDWinSec.exe (1.0.0.11)
2008-01-28 SpybotSD.exe (1.5.2.20)
2008-01-28 TeaTimer.exe (1.5.2.16)
2008-06-15 unins000.exe (51.49.0.0)
2008-01-28 Update.exe (1.4.0.6)
2008-01-28 advcheck.dll (1.5.4.5)
2007-04-02 aports.dll (2.1.0.0)
2007-11-17 DelZip179.dll (1.79.7.4)
2008-01-28 SDFiles.dll (1.5.1.19)
2008-01-28 SDHelper.dll (1.5.0.11)
2008-01-28 Tools.dll (2.1.3.3)
2008-06-03 Includes\Adware.sbi (*)
2008-06-10 Includes\AdwareC.sbi (*)
2008-06-03 Includes\Cookies.sbi (*)
2008-06-03 Includes\Dialer.sbi (*)
2008-06-10 Includes\DialerC.sbi (*)
2008-06-03 Includes\HeavyDuty.sbi (*)
2008-06-04 Includes\Hijackers.sbi (*)
2008-06-03 Includes\HijackersC.sbi (*)
2008-06-03 Includes\Keyloggers.sbi (*)
2008-06-10 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2008-06-03 Includes\Malware.sbi (*)
2008-06-11 Includes\MalwareC.sbi (*)
2008-06-03 Includes\PUPS.sbi (*)
2008-06-10 Includes\PUPSC.sbi (*)
2007-11-07 Includes\Revision.sbi (*)
2008-06-10 Includes\Security.sbi (*)
2008-06-10 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2008-06-03 Includes\Spyware.sbi (*)
2008-06-03 Includes\SpywareC.sbi (*)
2008-06-03 Includes\Tracks.uti
2008-06-11 Includes\Trojans.sbi (*)
2008-06-11 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll
--- System information ---
Windows XP (Build: 2600) Service Pack 2 (5.1.2600)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
--- Startup entries list ---
Located: HK_LM:Run, Acronis Scheduler2 Service
command: "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
file: C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
size: 118784
MD5: 866DC930FB1F4307D37665A86AC58F76
Located: HK_LM:Run, Adobe Reader Speed Launcher
command: "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
file: C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
size: 39792
MD5: 8B9145D229D4E89D15ACB820D4A3A90F
Located: HK_LM:Run, AntiSpyCheck 2.1.0
command: "C:\Program Files\AntiSpyCheck\AntiSpyCheck.exe"
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: HK_LM:Run, HostManager
command: C:\Program Files\Common Files\AOL\1178675955\ee\AOLSoftware.exe
file: C:\Program Files\Common Files\AOL\1178675955\ee\AOLSoftware.exe
size: 41824
MD5: C32C2FE355CC3A94183DB50179664A04
Located: HK_LM:Run, igfxhkcmd
command: C:\WINDOWS\system32\hkcmd.exe
file: C:\WINDOWS\system32\hkcmd.exe
size: 77824
MD5: 01018F75F3F18CE629FAC9689954A2AE
Located: HK_LM:Run, igfxpers
command: C:\WINDOWS\system32\igfxpers.exe
file: C:\WINDOWS\system32\igfxpers.exe
size: 114688
MD5: 996ABAC2332DE28F3B6A179C6DA20205
Located: HK_LM:Run, igfxtray
command: C:\WINDOWS\system32\igfxtray.exe
file: C:\WINDOWS\system32\igfxtray.exe
size: 94208
MD5: 3F2C8DD08549BB3419CDA372F5999FFA
Located: HK_LM:Run, iTunesHelper
command: "C:\Program Files\iTunes\iTunesHelper.exe"
file: C:\Program Files\iTunes\iTunesHelper.exe
size: 267048
MD5: 04A9F0C58B170F30445BCC0683EF9FFC
Located: HK_LM:Run, mcagent_exe
command: C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
file: C:\Program Files\McAfee.com\Agent\mcagent.exe
size: 582992
MD5: 9405B452064BFA6A0F78E2F177A988A4
Located: HK_LM:Run, NBKeyScan
command: "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
file: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
size: 1836328
MD5: 60E91D2BCC467842B478E8F3A5BF7C16
Located: HK_LM:Run, NeroFilterCheck
command: C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
file: C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
size: 153136
MD5: 8112D0DACAE746290FC87B3A980FA719
Located: HK_LM:Run, Omnipage
command: C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
file: C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
size: 49152
MD5: 1D0F6AEACEDDDA839EEB6AF0E9DB9F9B
Located: HK_LM:Run, Pure Networks Port Magic
command: "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
file: C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe
size: 99480
MD5: BA99C608A075C44026720D5383F3D75B
Located: HK_LM:Run, QuickTime Task
command: "C:\Program Files\QuickTime\QTTask.exe" -atboottime
file: C:\Program Files\QuickTime\QTTask.exe
size: 413696
MD5: 6DF76965A0FB8237E9C3B3CAB9815EC2
Located: HK_LM:Run, RealTray
command: C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
file: C:\Program Files\Real\RealPlayer\RealPlay.exe
size: 26112
MD5: 849D97FE4CC09CFC2772D10F641E1BAF
Located: HK_LM:Run, SiteAdvisor
command: "C:\Program Files\SiteAdvisor\6261\SiteAdv.exe"
file: C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
size: 36904
MD5: D8BF7C96FED3177EDAF5136CB7B5460C
Located: HK_LM:Run, SunJavaUpdateSched
command: C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
file: C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
size: 36975
MD5: 70DE314A16E5A486A0EF2425014685B2
Located: HK_LM:Run, TPP Auto Loader
command: C:\WINDOWS\TPPALDR.EXE
file: C:\WINDOWS\TPPALDR.EXE
size: 118784
MD5: A90E85B4367DFF9AFDBF2ED109119D44
Located: HK_LM:Run, TrueImageMonitor.exe
command: C:\Program Files\Acronis\TrueImage\TrueImageMonitor.exe
file: C:\Program Files\Acronis\TrueImage\TrueImageMonitor.exe
size: 984243
MD5: F6DDAE7FD3223C7FD65F05F53AD36720
Located: HK_LM:Run, VMware hqtray
command: "C:\Program Files\VMware\VMware Player\hqtray.exe"
file: C:\Program Files\VMware\VMware Player\hqtray.exe
size: 55856
MD5: 614AC721121216745E19071E702B9B81
Located: HK_LM:Run, WinFaxAppPortStarter
command: wfxsnt40.exe
file: C:\WINDOWS\system32\wfxsnt40.exe
size: 43008
MD5: 7A9DB3D93C96B678548E8FCF2ACD3799
Located: HK_LM:Run, ZoneAlarm Client
command: "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
file: C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 919016
MD5: 02555A653450DE053FFF03C31E0B5986
Located: HK_CU:Run, BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}
where: S-1-5-21-94265825-982960712-586011108-500...
command: "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
file: C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
size: 202024
MD5: 7BF2D3A10DA0149A5B95261BD000C68F
Located: HK_CU:Run, PhotoShow Deluxe Media Manager
where: S-1-5-21-94265825-982960712-586011108-500...
command: C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
file: C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
size: 212992
MD5: 917BAFA5FC295611A401692F56DA7829
Located: HK_CU:Run, SpybotSD TeaTimer
where: S-1-5-21-94265825-982960712-586011108-500...
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 2097488
MD5: A9A5DB6AC3721BE698B996913693D73F
Located: HK_CU:Run, swg
where: S-1-5-21-94265825-982960712-586011108-500...
command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, Weather
where: S-1-5-21-94265825-982960712-586011108-500...
command: C:\Program Files\AWS\WeatherBug\Weather.exe 1
file: C:\Program Files\AWS\WeatherBug\Weather.exe
size: 1347584
MD5: 84D68C45074DDA46181382DCE9C35F4E
Located: HK_CU:RunOnce, SpybotDeletingB179
where: S-1-5-21-94265825-982960712-586011108-500...
command: command /c del "C:\WINDOWS\system32\psqnuvo.dll_old"
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: HK_CU:RunOnce, SpybotDeletingB8198
where: S-1-5-21-94265825-982960712-586011108-500...
command: command /c del "C:\Documents and Settings\Administrator\Local Settings\Temp\zfe2.exe_old"
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: HK_CU:RunOnce, SpybotDeletingD2538
where: S-1-5-21-94265825-982960712-586011108-500...
command: cmd /c del "C:\WINDOWS\system32\psqnuvo.dll_old"
file: C:\WINDOWS\system32\cmd.exe
size: 388608
MD5: EEB024F2C81F0D55936FB825D21A91D6
Located: HK_CU:RunOnce, SpybotDeletingD4811
where: S-1-5-21-94265825-982960712-586011108-500...
command: cmd /c del "C:\Documents and Settings\Administrator\Local Settings\Temp\zfe2.exe_old"
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: Startup (common), America Online 9.0 Tray Icon.lnk
where: C:\Documents and Settings\All Users\Start Menu\Programs\Startup...
command: C:\Program Files\America Online 9.0\aoltray.exe
file: C:\Program Files\America Online 9.0\aoltray.exe
size: 156784
MD5: D3E103E5B79A6E8BA5B58E0A7C21523B
Located: Startup (common), APC UPS Status.lnk
where: C:\Documents and Settings\All Users\Start Menu\Programs\Startup...
command: C:\Program Files\APC\APC PowerChute Personal Edition\Display.exe
file: C:\Program Files\APC\APC PowerChute Personal Edition\Display.exe
size: 209016
MD5: 7D82E85364C18C7435FF3714A5D663E3
Located: Startup (common), WinZip Quick Pick.lnk
where: C:\Documents and Settings\All Users\Start Menu\Programs\Startup...
command: C:\Program Files\WinZip\WZQKPICK.EXE
file: C:\Program Files\WinZip\WZQKPICK.EXE
size: 415072
MD5: 235E9060FE95FF3E1D32AAD5AF892E71
Located: Startup (common), ZDWlan.lnk
where: C:\Documents and Settings\All Users\Start Menu\Programs\Startup...
command: C:\Program Files\ZyDAS\ZD1211 802.11g Utility\ZDWlan.exe
file: C:\Program Files\ZyDAS\ZD1211 802.11g Utility\ZDWlan.exe
size: 438272
MD5: B1F640D6D04CAF10C6CFEAC984AC8B33
Located: WinLogon, crypt32chain
command: crypt32.dll
file: crypt32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cryptnet
command: cryptnet.dll
file: cryptnet.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cscdll
command: cscdll.dll
file: cscdll.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, igfxcui
command: igfxdev.dll
file: igfxdev.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, Schedule
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, SensLogn
command: WlNotify.dll
file: WlNotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, termsrv
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, wlballoon
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
--- Browser helper object list ---
{089FD14D-132B-48FC-8861-0048AE113215} ()
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name:
Path: C:\Program Files\SiteAdvisor\6261\
Long name: SiteAdv.dll
Short name:
Date (created): 5/22/2008 4:14:36 AM
Date (last access): 6/15/2008 1:46:54 AM
Date (last write): 5/16/2008 12:49:40 PM
Filesize: 927008
Attributes: archive
MD5: 6286EC908C5E3F829B96A8CA024BB957
CRC32: EA971888
Version: 2.6.0.6261
{145B29F4-A56B-4b90-BBAC-45784EBEBBB7} (StumbleUpon Launcher)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: StumbleUpon Launcher
Path: C:\Program Files\StumbleUpon\
Long name: StumbleUponIEBar.dll
Short name: STUMBL~1.DLL
Date (created): 10/24/2007 2:57:00 PM
Date (last access): 6/15/2008 1:49:46 AM
Date (last write): 10/24/2007 2:57:00 PM
Filesize: 987832
Attributes: archive
MD5: 086223EBBF52794016F6292DFDDFD19C
CRC32: 84043130
Version: 1.0.0.1
{7DB2D5A0-7241-4E79-B68D-6309F01C5231} (scriptproxy)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: scriptproxy
CLSID name: scriptproxy
Path: C:\Program Files\McAfee\VirusScan\
Long name: scriptsn.dll
Short name:
Date (created): 11/7/2007 6:19:20 AM
Date (last access): 6/15/2008 1:49:46 AM
Date (last write): 10/24/2007 6:51:28 AM
Filesize: 58688
Attributes: archive
MD5: 5B9FCB73F5A4A000C55AFF08B639A07C
CRC32: C78C7E89
Version: 14.0.0.366
{95667A7A-03B3-4EE0-91AE-A4DE74D25729} (162123 helper)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: 162123 helper
CLSID name: 162123 Class
Path: C:\WINDOWS\system32\162123\
Long name: 162123.dll
Short name:
Date (created): 6/14/2008 12:22:30 PM
Date (last access): 6/15/2008 1:49:48 AM
Date (last write): 6/14/2008 12:22:30 PM
Filesize: 15360
Attributes: archive
MD5: 861F78514BC9F1046B5D4F1B002BA433
CRC32: 3B5E1D68
Version: 1.0.0.1
{99BA268B-4021-4739-9945-3C774217FE75} ()
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name:
Path: C:\Program Files\NetProject\
Long name: sbmdl.dll
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
info link:
http://toolbar.google.com/ info source: TonyKlein
Path: c:\program files\google\
Long name: GoogleToolbar1.dll
Short name: GOOGLE~1.DLL
Date (created): 10/24/2007 1:39:52 AM
Date (last access): 6/15/2008 1:49:46 AM
Date (last write): 10/24/2007 1:39:52 AM
Filesize: 2403392
Attributes: readonly archive
MD5: 6319F2D4708DBCAE37CFA03DA10782C0
CRC32: D51D8296
Version: 4.0.1601.4978
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Notifier BHO
Path: C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\
Long name: swg.dll
Short name:
Date (created): 4/5/2008 8:22:38 AM
Date (last access): 6/15/2008 1:49:52 AM
Date (last write): 4/5/2008 8:22:38 AM
Filesize: 734704
Attributes: archive
MD5: F1D0608833F726C8FF84E11A46843CDE
CRC32: 0AF4F0EF
Version: 3.0.1225.9868
{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} (ZoneAlarm Spy Blocker BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: ZoneAlarm Spy Blocker BHO
CLSID name: ZoneAlarm Spy Blocker BHO
Path: C:\Program Files\ZoneAlarmSB\bar\1.bin\
Long name: SPYBLOCK.DLL
Short name:
Date (created): 1/4/2006 9:38:32 PM
Date (last access): 6/15/2008 1:49:48 AM
Date (last write): 1/4/2006 9:38:32 PM
Filesize: 262144
Attributes: archive
MD5: 022D7161713F894BB7ADCA751D606F3F
CRC32: 8D236622
Version: 2.3.0.11
--- ActiveX list ---
{01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class)
DPF name:
CLSID name: SysProWmi Class
Installer: C:\WINDOWS\Downloaded Program Files\SysPro.inf
Codebase:
https://support.dell...iler/SysPro.CAB description:
classification: Legitimate
known filename: SysPro.ocx
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\system32\Dell\SystemProfiler\
Long name: SysPro.ocx
Short name:
Date (created): 1/23/2003 2:23:18 PM
Date (last access): 6/15/2008 2:40:00 AM
Date (last write): 1/23/2003 2:23:18 PM
Filesize: 86016
Attributes: archive
MD5: 2EE3E0AE6AA35F135CAE24DF2DA9B172
CRC32: A76A5BDA
Version: 2.0.0.1
{8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_01
Installer:
Codebase:
http://java.sun.com/...indows-i586.cab description: Sun Java
classification: Legitimate
known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
info link:
info source: Patrick M. Kolla
Path: C:\Program Files\Java\jre1.5.0_01\bin\
Long name: NPJPI150_01.dll
Short name: NPJPI1~1.DLL
Date (created): 12/6/2068 10:31:52 PM
Date (last access): 6/15/2008 2:40:00 AM
Date (last write): 12/6/2004 10:49:16 PM
Filesize: 69746
Attributes: archive
MD5: 7B8F5AAF633987C6F1B88146357D04E5
CRC32: AD99524A
Version: 1.5.0.10
{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_01
Installer:
Codebase:
http://java.sun.com/...indows-i586.cab description:
classification: Legitimate
known filename: NPJPI150_01.dll
info link:
info source: Safer Networking Ltd.
Path: C:\Program Files\Java\jre1.5.0_01\bin\
Long name: NPJPI150_01.dll
Short name: NPJPI1~1.DLL
Date (created): 12/6/2068 10:31:52 PM
Date (last access): 6/15/2008 2:40:00 AM
Date (last write): 12/6/2004 10:49:16 PM
Filesize: 69746
Attributes: archive
MD5: 7B8F5AAF633987C6F1B88146357D04E5
CRC32: AD99524A
Version: 1.5.0.10
{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase:
http://download.macr...ash/swflash.cab description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\system32\Macromed\Flash\
Long name: Flash9e.ocx
Short name:
Date (created): 11/20/2007 8:04:14 PM
Date (last access): 6/15/2008 2:40:00 AM
Date (last write): 11/20/2007 8:04:14 PM
Filesize: 2987392
Attributes: readonly archive
MD5: D3C50535C26190FEAD7785A03499C0AC
CRC32: A77C3E92
Version: 9.0.115.0
--- Process list ---
PID: 0 ( 0) [System]
PID: 1012 ( 4) \SystemRoot\System32\smss.exe
size: 50688
PID: 1072 (1012) \??\C:\WINDOWS\system32\csrss.exe
size: 6144
PID: 1096 (1012) \??\C:\WINDOWS\system32\winlogon.exe
size: 502272
PID: 1140 (1096) C:\WINDOWS\system32\services.exe
size: 108032
MD5: C6CE6EEC82F187615D1002BB3BB50ED4
PID: 1152 (1096) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 84885F9B82F4D55C6146EBF6065D75D2
PID: 1312 (1140) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1360 (1140) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2008 (1140) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 680 (1140) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 860 (1140) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1404 (1140) C:\WINDOWS\system32\ZoneLabs\vsmon.exe
size: 75304
MD5: E95EA35BE5D16FD3E33B903439AF00FF
PID: 1496 (1268) C:\WINDOWS\Explorer.EXE
size: 1032192
MD5: A0732187050030AE399B241436565E64
PID: 640 (1140) C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
size: 607576
MD5: 07AE10139D7713D69F57209FDF0425CC
PID: 944 (1140) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: 7435B108B935E42EA92CA94F59C8E717
PID: 320 (1140) C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
size: 172032
MD5: 5C52B3C8602929A19136840117843D4B
PID: 348 (1140) C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
size: 46640
MD5: 85180CF88C5EBAD73B452A43A004CA51
PID: 380 (1140) C:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
size: 155770
MD5: EDE236AED2002D20AA81A0F1E0276B63
PID: 396 (1140) C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
size: 110592
MD5: 1961CB10BB48EB4D97E37DB6373E9E63
PID: 472 (1140) C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
size: 767976
MD5: CB3A8976DE2F65349322DA7627CEA223
PID: 568 (1140) c:\program files\common files\mcafee\mna\mcnasvc.exe
size: 2458128
MD5: C69E71E00B30B60556D3E096699BD423
PID: 656 (1140) c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
size: 359248
MD5: 8CF3DA0BE6094C34D7C4A85493E60547
PID: 788 (1140) C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
size: 144704
MD5: 33734ABFA52EC8D096A1254D645E9B4F
PID: 908 (1140) C:\Program Files\McAfee\MPF\MPFSrv.exe
size: 856864
MD5: 346F30F1FF73553AA466F4AE7948DA00
PID: 1432 (1140) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
size: 853288
MD5: 6D4028D458EAAA1782099750790DC8C9
PID: 2340 (1140) C:\Program Files\SiteAdvisor\6261\SAService.exe
size: 345376
MD5: 0C90F038A8CED65D78A7DC791A0E6011
PID: 2408 (1140) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2532 (1140) C:\WINDOWS\system32\wdfmgr.exe
size: 38912
MD5: C81B8635DEE0D3EF5F64B3DD643023A5
PID: 2624 (1140) C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe
size: 269104
MD5: 7BECF16932ABBCD71627C500E31A8BE6
PID: 2748 (1140) C:\WINDOWS\system32\vmnat.exe
size: 150064
MD5: 079600816E8263CEB623E2EA57D115FF
PID: 2812 (1140) C:\WINDOWS\wanmpsvc.exe
size: 65536
MD5: 909F2DC0DA7F57D229A05EE90647B2C3
PID: 2900 (1140) C:\WINDOWS\system32\vmnetdhcp.exe
size: 121392
MD5: CF131B0B60D61E07825E54829557C805
PID: 2952 (1140) C:\Program Files\VMware\VMware Player\vmware-authd.exe
size: 109104
MD5: D6EF36EE5F872EEB478485FAFE0390C6
PID: 3188 (1312) C:\Program Files\McAfee.com\Agent\mcagent.exe
size: 582992
MD5: 9405B452064BFA6A0F78E2F177A988A4
PID: 2040 (1496) C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 919016
MD5: 02555A653450DE053FFF03C31E0B5986
PID: 588 (1496) C:\Program Files\VMware\VMware Player\hqtray.exe
size: 55856
MD5: 614AC721121216745E19071E702B9B81
PID: 1060 (1496) C:\Program Files\Acronis\TrueImage\TrueImageMonitor.exe
size: 984243
MD5: F6DDAE7FD3223C7FD65F05F53AD36720
PID: 1944 (1496) C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
size: 36975
MD5: 70DE314A16E5A486A0EF2425014685B2
PID: 2068 (1496) C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
size: 36904
MD5: D8BF7C96FED3177EDAF5136CB7B5460C
PID: 2248 (1496) C:\Program Files\Real\RealPlayer\RealPlay.exe
size: 26112
MD5: 849D97FE4CC09CFC2772D10F641E1BAF
PID: 2416 (1496) C:\Program Files\QuickTime\QTTask.exe
size: 413696
MD5: 6DF76965A0FB8237E9C3B3CAB9815EC2
PID: 2808 (1496) C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
size: 49152
MD5: 1D0F6AEACEDDDA839EEB6AF0E9DB9F9B
PID: 3124 (1060) C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
size: 118784
MD5: 866DC930FB1F4307D37665A86AC58F76
PID: 3304 (1496) C:\Program Files\iTunes\iTunesHelper.exe
size: 267048
MD5: 04A9F0C58B170F30445BCC0683EF9FFC
PID: 3344 (1496) C:\WINDOWS\system32\igfxpers.exe
size: 114688
MD5: 996ABAC2332DE28F3B6A179C6DA20205
PID: 3352 (1496) C:\WINDOWS\system32\hkcmd.exe
size: 77824
MD5: 01018F75F3F18CE629FAC9689954A2AE
PID: 3360 (1496) C:\Program Files\Common Files\AOL\1178675955\ee\AOLSoftware.exe
size: 41824
MD5: C32C2FE355CC3A94183DB50179664A04
PID: 3512 (1496) C:\WINDOWS\TPPALDR.EXE
size: 118784
MD5: A90E85B4367DFF9AFDBF2ED109119D44
PID: 3788 (1496) C:\Program Files\AWS\WeatherBug\Weather.exe
size: 1347584
MD5: 84D68C45074DDA46181382DCE9C35F4E
PID: 3816 (1496) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
PID: 3860 (1496) C:\Program Files\Nero\data\Xtras\mssysmgr.exe
size: 212992
MD5: 917BAFA5FC295611A401692F56DA7829
PID: 3892 (1496) C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
size: 202024
MD5: 7BF2D3A10DA0149A5B95261BD000C68F
PID: 3976 (1496) C:\Program Files\America Online 9.0\aoltray.exe
size: 156784
MD5: D3E103E5B79A6E8BA5B58E0A7C21523B
PID: 3996 (1496) C:\Program Files\WinZip\WZQKPICK.EXE
size: 415072
MD5: 235E9060FE95FF3E1D32AAD5AF892E71
PID: 4008 (1496) C:\Program Files\ZyDAS\ZD1211 802.11g Utility\ZDWlan.exe
size: 438272
MD5: B1F640D6D04CAF10C6CFEAC984AC8B33
PID: 2384 (1140) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: F1958FBF86D5C004CF19A5951A9514B7
PID: 3864 (1140) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
size: 382248
MD5: FF4D73B16EA3A32D34CEB3A7BC3C3773
PID: 3888 (3988) C:\Program Files\APC\APC PowerChute Personal Edition\apcsystray.exe
size: 413816
MD5: FD99A3837ED7EAA96DF493B628795DDC
PID: 3412 (1312) C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
size: 1410344
MD5: CF45E5F12EBA630BA563950B1A64D241
PID: 3116 (1140) C:\Program Files\iPod\bin\iPodService.exe
size: 504104
MD5: 1CB96E83FD76EB5580451CEF29E24303
PID: 3288 (3360) c:\program files\common files\aol\1178675955\ee\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe
size: 1536
MD5: 87A2CD3AD5BF4F57C0DF046CC3A8C5A7
PID: 4080 (3360) C:\Program Files\Common Files\aol\1178675955\ee\aolsoftware.exe
size: 41824
MD5: C32C2FE355CC3A94183DB50179664A04
PID: 2144 (1140) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2476 (1140) C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
size: 695624
MD5: FD47DF2BCC3544DF65B01AD6B6062430
PID: 2228 (1496) C:\Program Files\Mozilla Firefox\firefox.exe
size: 7660656
MD5: B366BB8334CDCFB5C2A58DCF5121B6BC
PID: 2528 (2288) C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
size: 396288
MD5: C4CA7416A6DF6D95075F81D9E3B41AD1
PID: 2728 (1312) c:\PROGRA~1\mcafee\msc\mcupdmgr.exe
size: 752448
MD5: 59252440C56F4706C5CD64304D56DAD7
PID: 1824 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 5146448
MD5: 2ECA8CDEED7C82F879E766DA92A3561A
PID: 4044 (1312) c:\PROGRA~1\mcafee\msc\mcuimgr.exe
size: 265040
MD5: 02800372FA7F33E4042DA92D362D6573
PID: 39644 (2008) C:\WINDOWS\system32\wuauclt.exe
size: 53080
MD5: F3E9065EB617A7E3A832A7976BFA021B
PID: 39976 (1140) G:\hpzstub.exe
size: 385024
MD5: DC70BA9C3560FD8F6712BAA86A40B098
PID: 4 ( 0) System
PID: 37272 (39976) G:\hpzsetup.exe
size: 800344
MD5: 29F3E29B6F04E1CFC112E6182DB9A5A2
PID: 39592 (37272) G:\setup\hpzrein01.exe
size: 783968
MD5: C5DCA3AD75044F33DD6B6AB3B3C5082E
--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 6/15/2008 2:41:45 AM
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL
http://internetsearchservice.comHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.google.comHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
http://www.google.com/ieHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft...p...&ar=msnhomeHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://internetsearchservice.comHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/ieHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
http://www.google.com/search?q=%sHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchURL
http://internetsearchservice.comHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://internetsearchservice.comHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
http://internetsearc...ce.com/ie6.htmlHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft...p...ER}&ar=homeHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft...p...&ar=msnhomeHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.google.com/ieHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/ieHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn...st/srchcust.htm--- Winsock Layered Service Provider list ---
--- Uninstall list ---
(AddressBook)
Adobe Flash Player ActiveX 9.0.115.0 (Adobe Flash Player ActiveX)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
publisher: Adobe Systems Incorporated
help link:
http://www.adobe.com...player_support/ 5.0.7 (AnswerWorks 5.0 English Runtime)
publisher: Vantage Software Technologies
comments: Please see the readme file before removing the AnswerWorks natural language search solution.
readme: C:\Program Files\Common Files\AnswerWorks 5.0\awreadme.htm
AOL Toolbar (AOL Toolbar)
uninstall cmd: "C:\Program Files\AOL Toolbar\UNWISE.EXE" /u "C:\Program Files\AOL Toolbar\INSTALL.LOG"
AOL Uninstaller (AOL Uninstaller)
uninstall cmd: C:\Program Files\Common Files\AOL\uninstaller.exe
AOL You've Got Pictures Screensaver (AOL YGP Screensaver)
uninstall cmd: C:\Program Files\Common Files\AOL\Screensaver\uninst_ygpss.exe
AOL Coach Version 1.0(Build:20040229.1 en) (AOLCoach)
uninstall cmd: C:\Program Files\Common Files\aolshare\Coach\AolCInUn.exe
(AOLOCP_N)
(Branding)
(Connection Manager)
Cakewalk Audio Finder Tool (CWAFV3)
uninstall cmd: C:\WINDOWS\uninst.exe -f"C:\Program Files\Cakewalk\CWAF\DeIsL1.isu"
(DirectAnimation)
(DirectDrawEx)
DreamStation DXi2 (DreamStation DXi2)
uninstall cmd: C:\WINDOWS\DSDXIRMV.EXE C:\PROGRAM FILES\CAKEWALK\SHARED DXI\AUDIO SIMULATION\DREAMSTATION DXI2
(DXM_Runtime)
(Fontcore)
HijackThis 2.0.2 2.0.2 (HijackThis)
uninstall cmd: "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
publisher: TrendMicro
(ICW)
(IE40)
(IE4Data)
(IE5BAKEX)
(IEData)
(KB884016)
(KB893803)
Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link:
http://go.microsoft....k/?LinkId=42467LiveAdvisor (Symantec Corporation) 1.0.0.706 (LiveAdvisor)
install location: C:\Program Files\Common Files\Symantec Shared\LiveAdvisor
uninstall cmd: C:\Program Files\Common Files\Symantec Shared\LiveAdvisor\VcSetup.exe /REMOVE
publisher: Symantec Corporation
LiveUpdate (LiveUpdate)
uninstall cmd: C:\Program Files\Symantec\LiveUpdate\Uninst.exe -u
(MobileOptionPack)
Mozilla Firefox (2.0.0.14) 2.0.0.14 (en-US) (Mozilla Firefox (2.0.0.14))
install location: C:\Program Files\Mozilla Firefox
uninstall cmd: C:\Program Files\Mozilla Firefox\uninstall\helper.exe
publisher: Mozilla
comments: Mozilla Firefox
(MPlayer2)
McAfee SecurityCenter (MSC)
install location: C:\Program Files\McAfee
uninstall cmd: C:\Program Files\McAfee\MSC\mcuninst.exe
publisher: McAfee, Inc.
(MSI30-Beta1)
(MSI30-Beta2)
(MSI30-KB884016)
(MSI30-RC1)
(MSI30-RC2)
(MSI30a-KB884016)
(MSI31-Beta)
(MSI31-RC1)
Music Creator 2 (Music Creator 2)
uninstall cmd: C:\PROGRA~1\Cakewalk\MUSICC~1\UNWISE.EXE C:\PROGRA~1\Cakewalk\MUSICC~1\INSTALL.LOG
MySpeed PC Lite Edition (MySpeed PC Lite Edition)
uninstall cmd: "C:\Program Files\MySpeed PC Lite Edition\Uninstall.exe" "C:\Program Files\MySpeed PC Lite Edition"
(Nero - Burning Rom!UninstallKey)
uninstall cmd: C:\Program Files\Nero\Nero8\\nero\uninstall\UNNERO.exe /UNINSTALL
Nero PhotoShow Express 3.0 (Nero PhotoShow Express)
version (major): 3
install location: C:\Program Files\Nero\Nero PhotoShow Express.exe
uninstall cmd: "C:\Program Files\Nero\data\Xtras\Uninstall.exe"
publisher: Simple Star, Inc.
help link:
http://www.simplestar.com/support (NeroBackItUp!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
(NeroMediaHome!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
(NeroRecode!UninstallKey)
uninstall cmd: C:\WINDOWS\UNRecode.exe /UNINSTALL
(NeroShowTime!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
(NeroVision!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroVision.exe /UNINSTALL
(NetMeeting)
(OutlookExpress)
(PCHealth)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Pure Networks Port Magic 1.2.1393.0 (Port Magic)
install location: C:\PROGRA~1\PURENE~1\PORTMA~1
uninstall cmd: C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe -Uninstall -ShowUI
publisher: Pure Networks
help link:
http://aol-support.purenetworks.comIntel® PRO Network Adapters and Drivers (PROSet)
uninstall cmd: Prounstl.exe
RealPlayer Basic (RealPlayer 6.0)
uninstall cmd: C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
(SchedulingAgent)
Adobe Flash Player 9 ActiveX 9.0.115.0 (ShockwaveFlash)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q
publisher: Adobe Systems
help link:
http://www.adobe.com...player_support/Steinberg Cubase LE (Steinberg Cubase LE)
uninstall cmd: "C:\Program Files\Steinberg\Cubase LE\Uninstall.exe" "C:\Program Files\Steinberg\Cubase LE\Install.log"
Learn2 Player (Uninstall Only) (StreetPlugin)
uninstall cmd: C:\Program Files\Learn2.com\StRunner\stuninst.exe
StumbleUpon IE Toolbar (StumbleUponIEToolbar)
uninstall cmd: C:\Program Files\StumbleUpon\uninstall.exe
USB Storage Adapter V2 (TPP) (TPP200)
uninstall cmd: tppun.exe TPP200
USB Storage Adapter V3 (TPP) (TPP300)
uninstall cmd: tppun.exe TPP300
USB Storage Adapter (TPP) (TPP725)
uninstall cmd: tppun.exe TPP725
Viewpoint Media Player (ViewpointMediaPlayer)
uninstall cmd: C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Media Format Runtime (Windows Media Format Runtime)
uninstall cmd: "C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Symantec WinFax PRO 10.0 (WinFax)
uninstall cmd: C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Symantec\WinFax\WFXUNIST.ISU" -c"C:\Program Files\Symantec\WinFax\UNINSTUB.DLL"
WinSCP 4.1.2 beta 4.1.2 beta (winscp3_is1)
install date: 20080520
install location: C:\Program Files\WinSCP\
uninstall cmd: "C:\Program Files\WinSCP\unins000.exe"
publisher: Martin Prikryl
help link:
http://winscp.net/forum/ 2.5.2.10.30.06 (X-Image 2.5.2)
publisher: Dell Inc.
contact: Don Cannon
help link:
http://support.dell.com help telephone: 512-723-7504
ZoneAlarm 7.0.473.000 (ZoneAlarm)
uninstall cmd: C:\Program Files\Zone Labs\ZoneAlarm\zauninst.exe
publisher: Check Point, Inc
help link: C:\Program Files\Zone Labs\ZoneAlarm\Help\zaclients.chm
ZoneAlarm Spy Blocker (ZoneAlarmSB Uninstall)
uninstall cmd: rundll32 C:\PROGRA~1\ZONEAL~1\bar\1.bin\SpyBlock.dll,O
publisher: ZoneAlarm
help link:
http://www.zonealarm...m...3&c=P100014Apple Software Update 2.1.0.110 ({02DFF6B1-1654-411C-8D7B-FD6052EF016F})
version: 33619968
version (major): 2
version (minor): 1
estimated size: 2196
install date: 20080425
install location: C:\Program Files\Apple Software Update\
install source: C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple\Apple Software Update\
uninstall cmd: MsiExec.exe /I{02DFF6B1-1654-411C-8D7B-FD6052EF016F}
publisher: Apple Inc.
contact: AppleCare Support
help link:
http://www.apple.com/support/ help telephone: 1-800-275-2273
Macromedia Dreamweaver MX 2004 7.0 ({05BB2EC5-6BEF-4DDC-9E75-BEE7B161157A})
version (major): 7
install location: C:\Program Files\Macromedia\Dreamweaver MX 2004
install source: C:\Program Files\Macromedia
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{05BB2EC5-6BEF-4DDC-9E75-BEE7B161157A}\Setup.exe" -l0x9 mmUninstall
publisher: Macromedia
help link:
http://www.macromedi...weaver_support/QuickTime 7.4.5.67 ({1838C5A2-AB32-4145-85C1-BB9B8DFA24CD})
version: 117702661
version (major): 7
version (minor): 4
estimated size: 80580
install date: 20080425
install location: C:\Program Files\QuickTime\
install source: C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple\Apple Software Update\
uninstall cmd: MsiExec.exe /I{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD}
publisher: Apple Inc.
contact: AppleCare Support
help link:
http://www.apple.com/support/ help telephone: 1-800-275-2273
Google Earth 4.2.198.2451 ({1E04F83B-2AB9-4301-9EF7-E86307F79C72})
version: 67240134
version (major): 4
version (minor): 2
estimated size: 34084
install date: 20071024
install location: C:\Program Files\Google\Google Earth\
install source: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\{145C096A-C390-4C03-896E-80D80B953600}\
uninstall cmd: MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
publisher: Google
Rhapsody Player Engine 1.1.0 ({22DE1881-9D24-4981-B5CC-EC7E9F2F4D52})
version: 16842752
version (major): 1
version (minor): 1
estimated size: 1240
install date: 20080614
install source: C:\Documents and Settings\Administrator\Desktop\
uninstall cmd: MsiExec.exe /I{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}
publisher: RealNetworks
comments: The Rhapsody Player Engine is a web browser plugin used for Rhapsody on the web.
contact: RealNetworks
help link:
http://www.rhapsody.com/Google Toolbar for Internet Explorer ({2318C2B1-4965-11d4-9B18-009027A5CD4F})
uninstall cmd: regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
CloneMaster 4.0.0.0 ({24B4EFCF-6220-4AAF-ACD8-8750D662BCE9})
version: 67108864
install date: 20071110
install location: C:\Program Files\SoftByte Labs\CloneMaster
install source: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\bye1B.tmp\Disk1\
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{24B4EFCF-6220-4AAF-ACD8-8750D662BCE9}\setup.exe" -l0x9 -removeonly
publisher: SoftByte Labs
Data Lifeguard Tools ({2C0A655C-61E7-428A-8ED2-23A3D20E7DD2})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2C0A655C-61E7-428A-8ED2-23A3D20E7DD2}\Setup.exe"
Macromedia Flash MX 2004 7 ({2F353D44-73BB-4971-B31D-F7642E9E9531})
install location: C:\Program Files\Macromedia\Flash MX 2004
install source: C:\Program Files\Macromedia
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2F353D44-73BB-4971-B31D-F7642E9E9531}\Setup.exe" -l0x9 UNINSTALL
publisher: Macromedia
help link:
http://www.macromedi...o/flash_supportJ2SE Runtime Environment 5.0 Update 1 1.5.0.10 ({3248F0A8-6813-11D6-A77B-00B0D0150010})
version: 17104896
version (major): 1
version (minor): 5
estimated size: 120317
install date: 19981231
install source:
http://java.sun.com/...8/windows-i586/ uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150010}
publisher: Sun Microsystems, Inc.
contact:
http://java.com help link:
http://java.com readme: C:\Program Files\Java\jre1.5.0_01\README.txt
WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
version: 154279267
version (major): 9
version (minor): 50
estimated size: 2456
install date: 20060728
install source: C:\WINDOWS\system32\
publisher: Microsoft Corporation
help link:
http://www.microsoft.com/windowsVCRedistSetup 1.0.0 ({3921A67A-5AB1-4E48-9444-C71814CF3027})
version: 16777216
version (major): 1
estimated size: 4721
install date: 20071119
install source: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\NERO13899\Data\Redist\
uninstall cmd: MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
publisher: Nero AG
contact: Nero AG
Quicken 2008 17.1.2.2 ({3B0F52AC-EF5C-4831-B221-06C782E41280})
version: 285278210
version (major): 17
version (minor): 1
estimated size: 87477
install date: 20071022
install source: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\pft44C.tmp\DISK1\
uninstall cmd: MsiExec.exe /X{3B0F52AC-EF5C-4831-B221-06C782E41280}
publisher: Intuit
comments: All URLs valid as of July 2006
contact: Customer Support Department
help link:
http://www.intuit.com/support/quickenApple Mobile Device Support 1.1.4.7 ({44734179-8A79-4DEE-BB08-73037F065543})
version: 16842756
version (major): 1
version (minor): 1
estimated size: 34842
install date: 20080425
install location: C:\Program Files\Common Files\Apple\Mobile Device Support\
install source: C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple\Apple Software Update\
uninstall cmd: MsiExec.exe /I{44734179-8A79-4DEE-BB08-73037F065543}
publisher: Apple Inc.
contact: AppleCare Support
help link:
http://www.apple.com/support/ help telephone: 1-800-275-2273
Virtual Sound Canvas DXi ({4E10E7FC-36CD-4C22-AC20-9E15692E8C2F})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4E10E7FC-36CD-4C22-AC20-9E15692E8C2F}\setup.exe" UNINSTALL_XXX
neroxml 1.0.0 ({56C049BE-79E9-4502-BEA7-9754A3E60F9B})
version: 16777216
version (major): 1
estimated size: 3795
install date: 20071119
install source: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\NERO13899\Data\Redist\
uninstall cmd: MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
publisher: Nero AG
contact: Nero AG
ZD1211 802.11g Wireless LAN - USB ({581CE7EA-A30D-11D6-8496-000000120101})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{581CE7EA-A30D-11D6-8496-000000120101}\setup.exe" -l0x9
iTunes 7.6.2.9 ({585776BC-4BD6-4BD2-A19A-1D6CB44A403B})
version: 117833730
version (major): 7
version (minor): 6
estimated size: 75104
install date: 20080425
install location: C:\Program Files\iTunes\
install source: C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple\Apple Software Update\
uninstall cmd: MsiExec.exe /I{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}
publisher: Apple Inc.
contact: AppleCare Support
help link:
http://www.apple.com/support/ help telephone: 1-800-275-2273
APC PowerChute Personal Edition 1.4 ({5A0C892E-FD1C-4203-941E-0956AED20A6A})
version (major): 1
version (minor): 4
install location: C:\Program Files\APC\APC PowerChute Personal Edition
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5A0C892E-FD1C-4203-941E-0956AED20A6A}\Setup.exe" -l0x9
publisher: American Power Conversion Corporation
help link:
http://www.apc.com/s...m?Localize=trueOmniPage SE 11.00.0001 ({6249C22D-E6A8-407B-BA8B-40298848ED94})
version: 184549377
version (major): 11
estimated size: 53609
install date: 20071017
install source: E:\Omnipage\
uninstall cmd: MsiExec.exe /I{6249C22D-E6A8-407B-BA8B-40298848ED94}
publisher: ScanSoft, Inc.
help link:
http://www.scansoft.com/supportWeatherBug 6.8.1.1 ({70DECFBF-9119-4434-B2D3-A3C283D15E45})
version: 101187585
version (major): 6
version (minor): 8
estimated size: 4231
install date: 20071121
install location: C:\Program Files\AWS\
install source: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\AVANMPYF\
uninstall cmd: MsiExec.exe /X