Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

complaint [RESOLVED]


  • This topic is locked This topic is locked

#16
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
ok. followed your instructions. it seems as if it was successful but i dont recall seeing any message about a merge. it just said that it was successfully added to my registry.

norton antivirus detects these 3 things:

"SummaryInformation" (hyperbar)

"377D173D-DA79-4112-8C80-D5A755" (NDotNet)

"d0998.msi" (Hyperbar)

i dont know if these are actually viruses or what?
  • 0

Advertisements


#17
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
There more than likely empty keys left in the registry.

I think it would serve you well to clean your registry!
  • Please dowload: RegSeeker.
  • Click on "Clean The Registry" in the left panel.
  • Check all boxes (make sure the backup box in the lower left corner is selected!).
  • After it runs, click "Select All" on the bottom, then right-click on any selected item in the window and select "Delete Selected Items".
  • Click "Quit RegSeeker".
Now, open any of your installed programs, and make sure that everything opens ok. If so, reboot, then go back and run the RegSeeker again, do the same thing again if anything is found. When RegSeeker finds nothing else, then it's clean!
  • 0

#18
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
its the weirdest thing but ive ran the regseeker several times and rebooted and ran it again and it always finds a lot of stuff?? should i just keep running it??? how many times must i run it?

heres a log just to look

Logfile of HijackThis v1.99.1
Scan saved at 1:26:01 AM, on 8/22/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\System32\PRISMSVR.EXE
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Ashley Auerbach\Desktop\anti-virus programs\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sdsu.edu/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sdsu.edu/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\System32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
  • 0

#19
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
On my computer I ran it 7 times...lol. if you get the same number, 2 times in a row, then thats it.

:tazz:

Excal
  • 0

#20
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
its weird because Norton still picks up these:

"SummaryInformation" (hyperbar)

"377D173D-DA79-4112-8C80-D5A755" (NDotNet)

"d0998.msi" (Hyperbar)

but ill run the regseeker somemore to see if that helps. how else could i get rid of those files???
  • 0

#21
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
Download regseek that I have attached to this post. Unzip it to your desktop.

Open the RegSearch folder and double click RegSearch.vbs. Allow it to run.
Note: if your Antivirus or another program prompts about running a script file, allow the script to run.

copy and paste this in: hyperbar then hit "ok" (do the same for NDotNet)

RegSearch will "disappear" but it is actually searching the registry for that entry.

Copy and paste what it finds into a Notepad file.
  • 0

#22
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
ok. reg search found 4 instances of hyperbar and i copied and pasted it into a notepad...but then what?? do i save the notepad? im guessing you want me to post what it found so here it is:

REGEDIT4
; RegSrch.vbs © Bill James

; Registry search results for string "hyperbar" 8/24/2005 12:46:20 AM

; NOTE: This file will be deleted when you close WordPad.
; You must manually save this file to a new location if you want to refer to it again later.
; (If you save the file with a .reg extension, you can use it to restore any Registry changes you make to these values.)


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-2153138734-3196849016-223043387-1006\Components\64CB4F45272D2024F8DA34B689CB2F9E]
"B5890EDE256D37548AE908C32B952774"="C?\\Program Files\\Common Files\\Hyperbar\\Hyperbar.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-2153138734-3196849016-223043387-1006\Components\66AD3E2B0EE14694C85DEEF965A052A9]
"B5890EDE256D37548AE908C32B952774"="C?\\Program Files\\Common Files\\Hyperbar\\HyperbarSS3.dll"

"Hyperbar_Shared_Files"="uouAC]ZE69j7EPJZR54tUa)Rb%vzY?o94J[HB(VY"

[HKEY_USERS\S-1-5-21-2153138734-3196849016-223043387-1006\Software\Microsoft\Installer\Features\B5890EDE256D37548AE908C32B952774]
"Hyperbar_Shared_Files"=""
  • 0

#23
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
Before I right the fix, any from the other one?

:tazz:

Excal
  • 0

#24
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
no instances of NDotNet.
  • 0

#25
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
Launch Notepad, and copy/paste the box below into a new text file. Save it as fixme.reg (make sure that Save as Type is set at "All Files") on your Desktop. Ensure there is no space at or above REGEDIT 4.


REGEDIT4

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-2153138734-3196849016-223043387-1006\Components\64CB4F45272D2024F8DA34B689CB2F9E]
"B5890EDE256D37548AE908C32B952774"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-2153138734-3196849016-223043387-1006\Components\66AD3E2B0EE14694C85DEEF965A052A9]
"B5890EDE256D37548AE908C32B952774"=-

[HKEY_USERS\S-1-5-21-2153138734-3196849016-223043387-1006\Software\Microsoft\Installer\Features\B5890EDE256D37548AE908C32B952774]
"Hyperbar_Shared_Files"=-



Locate fixme.reg on your Desktop and double-click on it. You will receive a prompt similar to: "Do you wish to merge the information into the registry?". Answer "Yes" and wait for a message to appear similar to "Merged Successfully".


Reboot and tell me how things are running :tazz:
  • 0

Advertisements


#26
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
:tazz: thanks for helping me. im learning how to do some of this stuff on my own now. im trying to fix my other computer at the same time. i know how to use the regfix from your directions and i will use it on any problems similar to the ones ive been having. in other words, the first compter is pretty much fixed.

when i try to use regseeker on my other computer, it doesnt work. i try to select all and then delete and when i delete it will not let me quit regseeker. i get this weird error message. can you take a look at this log from my second computer. tell me if theres anything that looks bad. and also tell me how to get the regseeker to work on my second computer. thank you.

Logfile of HijackThis v1.99.1
Scan saved at 5:17:13 PM, on 8/24/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton Internet Security\NISUM.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Dell AIO Printer A920\dlbkbmon.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Norton Internet Security\ccPxySvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Adam\Desktop\antivirus stuff\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPxySvc.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Symantec Corporation - C:\Program Files\Norton Internet Security\NISUM.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
  • 0

#27
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
Log looks good, and I am not really sure why reg seeker is not working on the other computer.

:tazz:

Excal
  • 0

#28
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
Excal youve been a huge help. ive tried to fix some things on the other computer too. i got the regseeker to work. i did a panda scan and found i had some stuff but ive tried hard to get rid of it. one thing i was veryconfused about was when i used regsrch to search for adware/Lop i got 291 instances!! i have no idea why there are so many so it made me think that it might be picking up some harmless things too. so i didnt do the fix on that stuff yet. also i found that regsrch was more effective in safe mode. what should i do about the 288 Lop instances???

also what should i do about all the fixme.reg things??? i cant put them in the same folders because the comp tries to replace them??

REGEDIT4
; RegSrch.vbs © Bill James

; Registry search results for string "Lop" 8/25/2005 2:34:08 AM

; NOTE: This file will be deleted when you close WordPad.
; You must manually save this file to a new location if you want to refer to it again later.
; (If you save the file with a .reg extension, you can use it to restore any Registry changes you make to these values.)


[HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\MultifunctionAdapter\5\DiskController\0\FloppyDiskPeripheral]

[HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\MultifunctionAdapter\5\DiskController\0\FloppyDiskPeripheral\0]

[HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\MultifunctionAdapter\5\DiskController\0\FloppyDiskPeripheral\0]
"Identifier"="FLOPPY1"

[HKEY_LOCAL_MACHINE\SOFTWARE\BroadJump\CFD\ProfileManager\Temp\5__twbapvti\System\systemDrives\0]
"type"="floppy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData]
@="EnvelopedData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData\CurVer]
@="CAPICOM.EnvelopedData.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData.1]
@="EnvelopedData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CAPICOM.EnvelopedData.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A08AF898-C2A3-11d1-BE23-00C04FA31009}]
@="Outlook Express Envelope"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A08AF898-C2A3-11d1-BE23-00C04FA31009}\ProgID]
@="OutlookExpress.Envelope.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A08AF898-C2A3-11d1-BE23-00C04FA31009}\VersionIndependentProgID]
@="OutlookExpress.Envelope"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0E20007-00A6-0000-C0E1-C0E1C0E1C0E1}\InProcServer32]
@="c:\\Program Files\\WordPerfect Office 11\\Programs\\LOPS.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3A12E08-EDE9-4160-8B51-334D982A9AD0}]
@="EnvelopedData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3A12E08-EDE9-4160-8B51-334D982A9AD0}\ProgID]
@="CAPICOM.EnvelopedData.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3A12E08-EDE9-4160-8B51-334D982A9AD0}\VersionIndependentProgID]
@="CAPICOM.EnvelopedData"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\C6BD1954B293F2C40998508A5A1ADE85]
"1033\\envelope.wiz"=hex(7):33,4c,2d,5f,56,6e,2d,7d,66,28,59,52,5d,65,41,52,36,\

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00020918-0000-0000-C000-000000000046}]
@="Envelope"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000209DB-0000-0000-C000-000000000046}]
@="EmailOptions"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000672AC-0000-0000-C000-000000000046}]
@="IMsoEnvelopeVB"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000672AD-0000-0000-C000-000000000046}]
@="IMsoEnvelopeVBEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2C713C3C-77FE-4997-AA30-38519C57FC15}]
@="IWSDLOperation"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F211-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionElement"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F2BC-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionButtonElement"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F2BD-98B5-11CF-BB82-00AA00BDCE0B}]
@="HTMLOptionButtonElementEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F378-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionsHolder"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F38C-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionElementFactory"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F401-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOpsProfile"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F509-98B5-11CF-BB82-00AA00BDCE0B}]
@="DispIHTMLOptionButtonElement"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F52B-98B5-11CF-BB82-00AA00BDCE0B}]
@="DispHTMLOptionElement"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F619-98B5-11CF-BB82-00AA00BDCE0B}]
@="HTMLOptionButtonElementEvents2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F697-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionElement2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3050F820-98B5-11CF-BB82-00AA00BDCE0B}]
@="IHTMLOptionElement3"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5512D119-5CC6-11CF-8D67-00AA00BDCE1D}]
@="IWHTMLOption"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C4618005-691F-41FE-A318-C37CEC14B867}]
@="IEnumWSDLOperations"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F6CB6A20-CC18-4424-AE57-6F2AA3DC2059}]
@="IEnvelopedData"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope]
@="Outlook Express Envelope"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope\CurVer]
@="OutlookExpress.Envelope.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope.1]
@="Outlook Express Envelope"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\OutlookExpress.Envelope.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{0C95F5FC-7ECD-3FAF-BB3F-DC26DD3797A8}\1.0.5000.0]
"Class"="System.EnterpriseServices.ImpersonationLevelOption"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{63A2E7FD-9A9B-3D6B-A827-3C5BF8DB1E6A}\1.0.5000.0]
"Class"="System.Runtime.CompilerServices.MethodImplOptions"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{E6FBF496-6B15-3A23-A4D2-A2F7137C1216}\1.0.5000.0]
"Class"="System.EnterpriseServices.AccessChecksLevelOption"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo1]
aacPlus developed by Coding Technologies. All rights reserved.
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\EnvelopeHost]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\EnvelopeHost\Microsoft Word]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\EnvelopeHost\Microsoft Word\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Outlook Express\Envelope]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Outlook Express\Envelope\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Outlook Express\Envelope\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Outlook Express\Envelope\CurVer]
@="OutlookExpress.Envelope.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\Shockwave 10\uicontrol\remotegeneraloptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBBE92CC2CB71D119A12000A9CE1A22A]
"9040B11900063D11C8EF00054038389C"="C:\\Program Files\\Microsoft Office\\Templates\\1033\\Envelope Wizard.wiz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{750C0D4F-E731-4104-9A51-A5E579CE3867}}_is1]
"Publisher"="MooSoft Development Inc"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Setup/RecoveryConsole/SetCommand]
"DisplayName"="Recovery console: Allow floppy copy and access to all drives and all folders"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/AllocateFloppies]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/AllocateFloppies]
"DisplayName"="Devices: Restrict floppy access to locally logged-on user only"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"allocatefloppies"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration]
"bScanFloppyOnShutdown"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration]
"bDenyFloppyMountIfInfected"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\CommonClient\8GsCb1gdEU8bPEGY4f+vEZSqEexVxdNeVOc6gw==\iGeyfPpJmhXfTQDOZqZdvIZipgWC1QBwluLNFg==\s/6XB1sYQQ1zu8mNjFu1suq3FQUpwmg5IzkY6g==\5eo1m3nNuSOytMlOpXvQnunG2In33OgwtA1I4Onz1a3Y09Od]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\CommonClient\8GsCb1gdEU8bPEGY4f+vEZSqEexVxdNeVOc6gw==\iGeyfPpJmhXfTQDOZqZdvIZipgWC1QBwluLNFg==\s/6XB1sYQQ1zu8mNjFu1suq3FQUpwmg5IzkY6g==\5eo1m3nNuSOytMlOpXvQnunG2In33OgwtA1I4Onz1a3Y09Od\8imcQQIvixP0fSTecqNVPdXiEnRyZgdluIvORX3Ky1P/RxHp]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk controllers"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drives"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"InfSection"="floppy_install"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"MatchingDeviceId"="genfloppydisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]
"DeviceInstance"="FDC\\GENERIC_FLOPPY_DRIVE\\5&c4ae404&0&0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]
"SymbolicLink"="\\\\?\\FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Print\Forms]
"Envelope A2"=hex:94,b2,01,00,82,3a,02,00,00,00,00,00,00,00,00,00,94,b2,01,00,\

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0700\4&11876118&0]
"Mfg"="(Standard floppy disk controllers)"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0700\4&11876118&0]
"DeviceDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Mfg"="(Standard floppy disk drives)"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"DeviceDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\Device Parameters]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\System\sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Fdc]
"DisplayName"="Floppy Disk Controller Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Flpydisk]
"DisplayName"="Floppy Disk Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Flpydisk\Enum]
"0"="FDC\\GENERIC_FLOPPY_DRIVE\\5&c4ae404&0&0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy\Enum]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk controllers"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drives"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"InfSection"="floppy_install"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"MatchingDeviceId"="genfloppydisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]
"DeviceInstance"="FDC\\GENERIC_FLOPPY_DRIVE\\5&c4ae404&0&0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]
"SymbolicLink"="\\\\?\\FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Print\Forms]
"Envelope A2"=hex:94,b2,01,00,82,3a,02,00,00,00,00,00,00,00,00,00,94,b2,01,00,\

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\ACPI\PNP0700\4&11876118&0]
"Mfg"="(Standard floppy disk controllers)"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\ACPI\PNP0700\4&11876118&0]
"DeviceDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Mfg"="(Standard floppy disk drives)"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"DeviceDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\Device Parameters]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\System\sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Fdc]
"DisplayName"="Floppy Disk Controller Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Flpydisk]
"DisplayName"="Floppy Disk Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk controllers"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E969-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drives"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"InfSection"="floppy_install"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"MatchingDeviceId"="genfloppydisk"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E980-E325-11CE-BFC1-08002BE10318}\0000]
"DriverDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}]
"DeviceInstance"="FDC\\GENERIC_FLOPPY_DRIVE\\5&c4ae404&0&0"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#]
"SymbolicLink"="\\\\?\\FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#FDC#GENERIC_FLOPPY_DRIVE#5&c4ae404&0&0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Forms]
"Envelope A2"=hex:94,b2,01,00,82,3a,02,00,00,00,00,00,00,00,00,00,94,b2,01,00,\

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\ACPI\PNP0700\4&11876118&0]
"Mfg"="(Standard floppy disk controllers)"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\ACPI\PNP0700\4&11876118&0]
"DeviceDesc"="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Class"="FloppyDisk"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"Mfg"="(Standard floppy disk drives)"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0]
"DeviceDesc"="Floppy disk drive"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\Device Parameters]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\FDC\GENERIC_FLOPPY_DRIVE\5&c4ae404&0&0\Control]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\System\sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Fdc]
"DisplayName"="Floppy Disk Controller Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Flpydisk]
"DisplayName"="Floppy Disk Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Flpydisk\Enum]
"0"="FDC\\GENERIC_FLOPPY_DRIVE\\5&c4ae404&0&0"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sfloppy]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sfloppy\Enum]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope #10"=hex:87,2c,00,00,57,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope #9"=hex:98,29,00,00,28,12,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope 6 ľ"=hex:77,1e,00,00,ff,10,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope 7 ľ"=hex:28,23,00,00,28,12,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope B5"=hex:23,2e,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope C5"=hex:42,2a,00,00,e5,1d,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Dell AIO Printer A920\Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 690C\Forms]
"Envelope #10"=hex:87,2c,00,00,52,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 690C\Forms]
"Envelope A2"=hex:f1,1a,00,00,85,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 690C\Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 690C\Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 820Cse\Forms]
"Envelope #10"=hex:87,2c,00,00,52,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 820Cse\Forms]
"Envelope A2"=hex:f1,1a,00,00,85,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 820Cse\Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\HP DeskJet 820Cse\Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\hp deskjet 845c\Forms]
"Envelope #10"=hex:87,2c,00,00,52,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\hp deskjet 845c\Forms]
"Envelope A2"=hex:f1,1a,00,00,85,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\hp deskjet 845c\Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\hp deskjet 845c\Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"6 3/4 Envelope"=hex:77,1e,00,00,fa,10,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope"=hex:72,2a,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope #10"=hex:87,2c,00,00,52,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope #11"=hex:a0,30,00,00,17,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope #12"=hex:8f,33,00,00,41,16,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope #14"=hex:e7,35,00,00,6f,17,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope #9"=hex:98,29,00,00,28,12,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope A2"=hex:f1,1a,00,00,85,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope B5"=hex:23,2e,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope B6"=hex:11,17,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope C5"=hex:42,2a,00,00,e5,1d,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope C65"=hex:42,2a,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Envelope Monarch"=hex:28,23,00,00,28,12,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Japan Envelope Chou #4 Ro"=hex:9b,10,00,00,d5,25,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Japan Envelope You #4"=hex:5e,2b,00,00,60,13,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Japanese Envelope Chou #3"=hex:5e,2b,00,00,25,16,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Japanese Envelope Chou #4"=hex:d5,25,00,00,9b,10,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"Japanese Envelope Kaku #3"=hex:1e,33,00,00,dc,27,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #1"=hex:73,1e,00,00,d2,12,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #1 Rotated"=hex:d2,12,00,00,73,1e,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #2"=hex:7a,20,00,00,d2,12,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #2 Rotated"=hex:d2,12,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #3"=hex:7a,20,00,00,11,17,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #3 Rotated"=hex:11,17,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #4"=hex:62,26,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #4 Rotated"=hex:4c,14,00,00,62,26,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #5"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #6"=hex:72,2a,00,00,25,16,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #7"=hex:72,2a,00,00,87,1d,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Microsoft Shared Fax Driver\Forms]
"PRC Envelope #8"=hex:06,39,00,00,25,16,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"6 3/4 Envelope"=hex:78,1e,00,00,fe,10,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope #10"=hex:88,2c,00,00,56,13,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope #11"=hex:a2,30,00,00,18,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope #12"=hex:90,33,00,00,44,16,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope #14"=hex:e8,35,00,00,70,17,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope #9"=hex:9a,29,00,00,2a,12,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope 110 x 230 mm"=hex:72,2a,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope B4"=hex:25,41,00,00,23,2e,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope B5"=hex:23,2e,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope B6"=hex:11,17,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope C3"=hex:85,54,00,00,cb,3b,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope C4"=hex:cb,3b,00,00,42,2a,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope C5"=hex:42,2a,00,00,e5,1d,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope C6"=hex:e5,1d,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope C65"=hex:42,2a,00,00,09,15,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope DL"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope Invite"=hex:99,28,00,00,99,28,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"Envelope Monarch"=hex:28,23,00,00,2a,12,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #1"=hex:73,1e,00,00,d2,12,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #1 Rotated"=hex:d2,12,00,00,73,1e,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #10"=hex:85,54,00,00,cb,3b,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #10 Rotated"=hex:cb,3b,00,00,85,54,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #2"=hex:7a,20,00,00,d2,12,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #2 Rotated"=hex:d2,12,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #3"=hex:7a,20,00,00,11,17,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #3 Rotated"=hex:11,17,00,00,7a,20,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #4"=hex:62,26,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #4 Rotated"=hex:4c,14,00,00,62,26,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #5"=hex:99,28,00,00,4c,14,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #5 Rotated"=hex:4c,14,00,00,99,28,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #6"=hex:72,2a,00,00,25,16,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #6 Rotated"=hex:25,16,00,00,72,2a,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #7"=hex:72,2a,00,00,87,1d,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #7 Rotated"=hex:87,1d,00,00,72,2a,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #8"=hex:06,39,00,00,25,16,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #8 Rotated"=hex:25,16,00,00,06,39,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #9"=hex:cb,3b,00,00,42,2a,00,00,00,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Corel\PrintEngine\11\Standard Forms]
"PRC Envelope #9 Rotated"=hex:42,2a,00,00,cb,3b,00,00,00,00,00,00,00,00,00,00,\

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Macromedia\Shockwave 10\nocontextmenuapps\app16]
@="Encarta Encyclopedia"

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Macromedia\Shockwave 10\uicontrol\remotegeneraloptions]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\.lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\lop.com]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\Microsoft\Works\7.0\Envelope]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner\Options]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner\Options]
"floppychk"="0"

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner\tca]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner\tcm]

[HKEY_USERS\S-1-5-21-1041646835-955367779-2580324987-1007\Software\MooSoft Development\The Cleaner\tcm\watches]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\.lop.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ayb.lop.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\lop.com]
:tazz:
  • 0

#29
Excal

Excal

    Malware Slayer Extraordinaire!

  • Retired Staff
  • 12,739 posts
All of those, except 3, are not lop entries. What they are, are words that have Lop in them. Like fLOPpy, enveLOPe....ect.

There are 3 entries with lop that are just internet history and are of no harm.

:tazz:

Excal


Great job, it appears your computer is clean :)

Ensure you rehide your “hidden files and folders” back to the way they were.

Now that your system is Malware Free, it is important to reset your system Restore. Click Here to learn how to.

I recommend that you Defrag your computer before setting your Restore points:

Go to start>all programs>accessories>system tools>Disk Defragmentor Make sure it set to the proper drive (default should be your main driver) and click on defragment


Might I suggest the following Free Spyware programs, if you don't already have them, for added security, you can download them at the following links. These programs work great for detection:

Ad-aware SE
Spybot S&D
Microsoft Anti-Spyware


If you are unhappy with your current antivirus and want to replace it or if you dont already have one, I suggest one of these free programs:
*Note - do not use more than one anti-virus program as it will more than likely cause conflict.

AVG
Avast
AntiVir


The following free programs are great for prevention:

SpywareBlaster 3.4
Spywareguard
IE/Spyad

A Firewall is a must! Here are 3 good free versions:
(do not have more than one firewall running on your system)

Sygate
Kerio
ZoneLabs

There are other options other than Internet Explorer for a browser, which some say have better security. Two of them are:

Firefox
Opera

If you decide to keep Internet Explorer, This site is a great source for tightening up security on It's settings.

Make sure that you keep your Operating System and IE updated with the latest Critical Security Updates from Microsoft...they usually come out once a month, on the 2nd Tuesday of each month.

Be sure and give the Temp folders a cleaning out now and then as well, Make sure after you clean your Temp files to empty out your Recycle bin as well.
For ease use the following program:

Cleanup
Run "Cleanup" and when it has finished, Reboot

To help prevent future spyware installations/infections, please read the Anti-Spyware Tutorial and use the tools provided. Also read How I got Infected

Edited by Excal, 25 August 2005 - 09:23 AM.

  • 0

#30
bgdkmetzger2003

bgdkmetzger2003

    Member

  • Topic Starter
  • Member
  • PipPip
  • 69 posts
:tazz: before i do that last stuff can you tell me exactly what to do with the fixme.regs?? i dont know how to put them in a folder because it says that they will replace each other.

thank you
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP