##########################Runnning Processes DATA########################### processName = SMSS.EXE File Size = 50688 File Path = \SystemRoot\System32\smss.exe ModuleMD5 = bd7fb0957c716f1a60333aee04de2178 processName = CSRSS.EXE File Size = 6144 File Path = \??\C:\WINDOWS\system32\csrss.exe ModuleMD5 = f12b178b1678d778cfd3ff1fc38c71fb processName = WINLOGON.EXE File Size = 502272 File Path = \??\C:\WINDOWS\system32\winlogon.exe ModuleMD5 = 01c3346c241652f43aed8e2149881bfe processName = SERVICES.EXE File Size = 108032 File Path = C:\WINDOWS\system32\services.exe ModuleMD5 = c6ce6eec82f187615d1002bb3bb50ed4 processName = LSASS.EXE File Size = 13312 File Path = C:\WINDOWS\system32\lsass.exe ModuleMD5 = 84885f9b82f4d55c6146ebf6065d75d2 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = CCSVCHST.EXE File Size = 108648 File Path = C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe ModuleMD5 = fe69c498b922ce835e2e2123fbd0a272 processName = EXPLORER.EXE File Size = 1032192 File Path = C:\WINDOWS\Explorer.EXE ModuleMD5 = a0732187050030ae399b241436565e64 processName = APPSVC32.EXE File Size = 46736 File Path = C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe ModuleMD5 = ce045b180d34404ff3017c18d308e9c1 processName = WINHOSTS32.EXE File Size = 86016 File Path = C:\WINDOWS\system32\winhosts32.exe ModuleMD5 = b099ab01c30edcb0688a0459667ced4b processName = SPOOLSV.EXE File Size = 57856 File Path = C:\WINDOWS\system32\spoolsv.exe ModuleMD5 = da81ec57acd4cdc3d4c51cf3d409af9f processName = MDM.EXE File Size = 322120 File Path = C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE ModuleMD5 = 11f714f85530a2bd134074dc30e99fca processName = SQLSERVR.EXE File Size = 9150464 File Path = C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe ModuleMD5 = 751961e128dbcc7a32304339c4bdeff0 processName = ALUSCHEDULERSVC.EXE File Size = 198336 File Path = C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe ModuleMD5 = 0fcfbd0edaa188b3d652ddce6d16d866 processName = WDFMGR.EXE File Size = 38912 File Path = C:\WINDOWS\system32\wdfmgr.exe ModuleMD5 = ab0a7ca90d9e3d6a193905dc1715ded0 processName = BPMON.EXE File Size = 24576 File Path = C:\Program Files\Video AX Object\bpmon.exe ModuleMD5 = 9e5554348b51276b4f2c762c961e1c2d processName = SOUNDMAN.EXE File Size = 46592 File Path = C:\WINDOWS\SOUNDMAN.EXE ModuleMD5 = 190ee06f2c9d4e0101bceb363614b6f5 processName = CCAPP.EXE File Size = 115816 File Path = C:\Program Files\Common Files\Symantec Shared\ccApp.exe ModuleMD5 = 25be770865658cb79100117112819a7c processName = TRANS.EXE File Size = 4494336 File Path = C:\PROGRA~1\Trans\trans.exe ModuleMD5 = cae0ec145e838ed69a0d23ea9f5964cd processName = JUSCHED.EXE File Size = 83608 File Path = C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe ModuleMD5 = 9c1c80bbf8e6044980890e2d2d91091c processName = CTFMON.EXE File Size = 15360 File Path = C:\WINDOWS\system32\ctfmon.exe ModuleMD5 = 24232996a38c0b0cf151c2140ae29fc8 processName = GG.EXE File Size = 1716224 File Path = C:\Program Files\Gadu-Gadu\gg.exe ModuleMD5 = b78c765f23150097daa3571d1e4dbfef processName = BPMINI.EXE File Size = 5120 File Path = C:\Program Files\Video AX Object\bpmini.exe ModuleMD5 = 4acb7d8d56a38c8a2b859a6f05416be9 processName = TCCARGO.EXE File Size = 968704 File Path = C:\tccargo\tccargo.exe ModuleMD5 = d033fc2ea616facec3f8b6ca5352aecc processName = ALG.EXE File Size = 44544 File Path = C:\WINDOWS\System32\alg.exe ModuleMD5 = f1958fbf86d5c004cf19a5951a9514b7 processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716 processName = SYMLCSVC.EXE File Size = 1087680 File Path = C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe ModuleMD5 = 6fda95007c483c378824f86fe351aa9c processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\iexplore.exe ModuleMD5 = e7484514c0464642be7b4dc2689354c8 processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\IEXPLORE.EXE ModuleMD5 = e7484514c0464642be7b4dc2689354c8 processName = SKYPE.EXE File Size = 25388584 File Path = C:\Program Files\Skype\Phone\Skype.exe ModuleMD5 = bb87ee3bf7039793dff2ee045a4317e0 processName = SKYPEPM.EXE File Size = 1864136 File Path = C:\Program Files\Skype\Plugin Manager\SkypePM.exe ModuleMD5 = 5c0d50d59951487b4a4936e3cd713d8c processName = OPERA.EXE File Size = 79360 File Path = C:\Program Files\Opera\Opera.exe ModuleMD5 = a8d68bc6e1dae1f1530cea3a3588d9d7 processName = MSIMN.EXE File Size = 60416 File Path = C:\Program Files\Outlook Express\msimn.exe ModuleMD5 = 091c14f4c71328d4316248a2421190de processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\iexplore.exe ModuleMD5 = e7484514c0464642be7b4dc2689354c8 processName = SPYHUNTER.EXE File Size = 2693248 File Path = C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe ModuleMD5 = 106556f40e0366b98ff715462aa3c3e5 processName = SWDSVC.EXE File Size = 1301584 File Path = C:\Program Files\Spyware Doctor\swdsvc.exe ModuleMD5 = ad2cc933523df61edd184ac81e2847c0 processName = SVCNTAUX.EXE File Size = 707664 File Path = C:\Program Files\Spyware Doctor\svcntaux.exe ModuleMD5 = 4be77320d381b1f34584f6afdd1976ea processName = SWDOCTOR.EXE File Size = 2391120 File Path = C:\Program Files\Spyware Doctor\swdoctor.exe ModuleMD5 = 30a5400a4affc0e0d46bfd251064959f processName = SDTRAYAPP.EXE File Size = 809040 File Path = C:\Program Files\Spyware Doctor\sdtrayapp.exe ModuleMD5 = d1082fa9c3caaaa21659b8c65222a71b ###########################REGISTRY MD5 DATA########################### Name=SoundMan Data=SOUNDMAN.EXE FileSize = 46592 MD5=190ee06f2c9d4e0101bceb363614b6f5 Name=ccApp Data="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" FileSize = 115816 MD5=25be770865658cb79100117112819a7c Name=osCheck Data="C:\Program Files\Norton AntiVirus\osCheck.exe" FileSize = 26248 MD5=3602c14e8b2bf31e7b4f14c162178945 Name=Trans Data=C:\PROGRA~1\Trans\trans.exe FileSize = 4494336 MD5=cae0ec145e838ed69a0d23ea9f5964cd Name=SmcService Data=C:\PROGRA~1\Sygate\SPF\smc.exe -startgui FileSize = 2577632 MD5=8eca9578bfc7da42d6d24c862224c5db Name=SunJavaUpdateSched Data="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" FileSize = 83608 MD5=9c1c80bbf8e6044980890e2d2d91091c Name=WinampAgent Data=C:\Program Files\Winamp\winampa.exe FileSize = 35328 MD5=2b3c1b8b9e42c1f4715387598eff3544 Name=SpyLocked 3.6 Data="C:\Program Files\SpyLocked 3.6\SpyLocked 3.6.exe" /h FileSize = MD5=******************************** Name=MalwareWiped 6.1 Data="C:\Program Files\MW\MalwareWiped 6.1\MalwareWiped 6.1.exe" /h FileSize = MD5=******************************** Name=SNM Data=C:\Program Files\SpyNoMore\SNM.exe /startup FileSize = 1212632 MD5=d5acf8a087b006d0339cb8fc3b774e41 Name=SpyHunter Data=C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe FileSize = 2693248 MD5=106556f40e0366b98ff715462aa3c3e5 Name=SDTray Data="C:\Program Files\Spyware Doctor\SDTrayApp.exe" FileSize = 809040 MD5=d1082fa9c3caaaa21659b8c65222a71b Name=Java Virtual Machine Data=wingfct.exe FileSize = 86016 MD5=b099ab01c30edcb0688a0459667ced4b Name=ctfmon.exe Data=C:\WINDOWS\system32\ctfmon.exe FileSize = 15360 MD5=24232996a38c0b0cf151c2140ae29fc8 Name=MSMSGS Data="C:\Program Files\Messenger\msmsgs.exe" /background FileSize = 1694208 MD5=74e6e96c6f0e2eca4edbb7f7a468f259 Name=Gadu-Gadu Data="C:\Program Files\Gadu-Gadu\gg.exe" /tray FileSize = 1716224 MD5=b78c765f23150097daa3571d1e4dbfef Name=Skype Data="C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized FileSize = 25388584 MD5=bb87ee3bf7039793dff2ee045a4317e0 Name=TRUCK & CARGO Online Data=c:\tccargo\tccargo.exe --autostart FileSize = 968704 MD5=d033fc2ea616facec3f8b6ca5352aecc Name=user32.dll Data=C:\Program Files\Video AX Object\bpmon.exe FileSize = 24576 MD5=9e5554348b51276b4f2c762c961e1c2d Name=Explorer Options Data= FileSize = MD5= Explorer.exe FileSize = 1032192 MD5=a0732187050030ae399b241436565e64 C:\WINDOWS\system32\userinit.exe, FileSize = 24576 MD5=39b1ffb03c2296323832acbae50d2aff #############################FILE MD5 DATA############################# File Path = C:\Documents and Settings\User\Start Menu\Programs\Startup\desktop.ini File Size = 4096 md5=d6a6856702e3f0953e7246a9b4a9fe35 #############################SERVICES DATA############################# Service Name = ALG Service Display Name = Application Layer Gateway Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\alg.exe Binary Size = 44544 Binary MD5 = f1958fbf86d5c004cf19a5951a9514b7 Service Name = AudioSrv Service Display Name = Windows Audio Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = BITS Service Display Name = Background Intelligent Transfer Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Browser Service Display Name = Computer Browser Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = ccEvtMgr Service Display Name = Symantec Event Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon Binary Size = 0 Binary MD5 = Service Name = ccSetMgr Service Display Name = Symantec Settings Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon Binary Size = 0 Binary MD5 = Service Name = CLTNetCnService Service Display Name = Symantec Lic NetConnect service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon Binary Size = 0 Binary MD5 = Service Name = CryptSvc Service Display Name = Cryptographic Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = DcomLaunch Service Display Name = DCOM Server Process Launcher Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k DcomLaunch Binary Size = 0 Binary MD5 = Service Name = Dhcp Service Display Name = DHCP Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = dmserver Service Display Name = Logical Disk Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Dnscache Service Display Name = DNS Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k NetworkService Binary Size = 0 Binary MD5 = Service Name = ERSvc Service Display Name = Error Reporting Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Eventlog Service Display Name = Event Log Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4 Service Name = EventSystem Service Display Name = COM+ Event System Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = FastUserSwitchingCompatibility Service Display Name = Fast User Switching Compatibility Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = helpsvc Service Display Name = Help and Support Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = HTTPFilter Service Display Name = HTTP SSL Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k HTTPFilter Binary Size = 0 Binary MD5 = Service Name = lanmanserver Service Display Name = Server Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = lanmanworkstation Service Display Name = Workstation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = LmHosts Service Display Name = TCP/IP NetBIOS Helper Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 = Service Name = MDM Service Display Name = Machine Debug Manager Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE" Binary Size = 0 Binary MD5 = Service Name = MSSQL$MICROSOFTSMLBIZ Service Display Name = MSSQL$MICROSOFTSMLBIZ Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe" -sMICROSOFTSMLBIZ Binary Size = 0 Binary MD5 = Service Name = Netman Service Display Name = Network Connections Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Nla Service Display Name = Network Location Awareness (NLA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Planner voor Automatische LiveUpdate Service Display Name = Planner voor Automatische LiveUpdate Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" Binary Size = 0 Binary MD5 = Service Name = PlugPlay Service Display Name = Plug and Play Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4 Service Name = PolicyAgent Service Display Name = IPSEC Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2 Service Name = ProtectedStorage Service Display Name = Protected Storage Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2 Service Name = RasMan Service Display Name = Remote Access Connection Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = RemoteRegistry Service Display Name = Remote Registry Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 = Service Name = RpcSs Service Display Name = Remote Procedure Call (RPC) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k rpcss Binary Size = 0 Binary MD5 = Service Name = SamSs Service Display Name = Security Accounts Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2 Service Name = Schedule Service Display Name = Task Scheduler Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = seclogon Service Display Name = Secondary Logon Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = SENS Service Display Name = System Event Notification Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = SharedAccess Service Display Name = Windows Firewall/Internet Connection Sharing (ICS) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = ShellHWDetection Service Display Name = Shell Hardware Detection Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = Spooler Service Display Name = Print Spooler Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\spoolsv.exe Binary Size = 57856 Binary MD5 = da81ec57acd4cdc3d4c51cf3d409af9f Service Name = srservice Service Display Name = System Restore Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = SSDPSRV Service Display Name = SSDP Discovery Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 = Service Name = Symantec Core LC Service Display Name = Symantec Core LC Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 3 Service Error Control = 1 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe" Binary Size = 0 Binary MD5 = Service Name = SymAppCore Service Display Name = Symantec AppCore Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe" Binary Size = 0 Binary MD5 = Service Name = TapiSrv Service Display Name = Telephony Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = TermService Service Display Name = Terminal Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost -k DComLaunch Binary Size = 0 Binary MD5 = Service Name = Themes Service Display Name = Themes Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = TrkWks Service Display Name = Distributed Link Tracking Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = UMWdf Service Display Name = Windows User Mode Driver Framework Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\wdfmgr.exe Binary Size = 38912 Binary MD5 = ab0a7ca90d9e3d6a193905dc1715ded0 Service Name = W32Time Service Display Name = Windows Time Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = WebClient Service Display Name = WebClient Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 = Service Name = winmgmt Service Display Name = Windows Management Instrumentation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = wuauserv Service Display Name = Automatic Updates Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = WZCSVC Service Display Name = Wireless Zero Configuration Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 = Service Name = sdCoreService Service Display Name = Spyware Doctor Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\Program Files\Spyware Doctor\swdsvc.exe Binary Size = 1301584 Binary MD5 = ad2cc933523df61edd184ac81e2847c0 Service Name = sdAuxService Service Display Name = Spyware Doctor Auxiliary Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\Program Files\Spyware Doctor\svcntaux.exe Binary Size = 707664 Binary MD5 = 4be77320d381b1f34584f6afdd1976ea #############################WINLOGON DATA############################# Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain Filepath = C:\WINDOWS\system32\crypt32.dll File Size = 597504 File MD5 = efc958396a7a7ef7e6d4a52b97512e18 Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet Filepath = C:\WINDOWS\system32\cryptnet.dll File Size = 63488 File MD5 = cad4aa32e7eca00c23cc39c0eb833f9d Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll Filepath = C:\WINDOWS\system32\cscdll.dll File Size = 101888 File MD5 = 587729679b4fe04ce06a5c61d6c56dcd Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy Filepath = C:\WINDOWS\system32\sclgntfy.dll File Size = 20992 File MD5 = d636fa41e50671160d838ea2dace3330 Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn Filepath = C:\WINDOWS\system32\WlNotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e ##########################BROWSER ADD-ON DATA########################## CLSID = {F0993251-2512-4710-AF6E-0A13EA199D02} FilePath = C:\Program Files\Video AX Object\splug.dll File Size = 25088 File MD5 = 06c8f831e4f428170f5843d85ab56322 Description = 0 CLSID = {4D5C8C25-D075-11d0-B416-00C04FB90376} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1498112 File MD5 = 2039074b74116904fd2d46110c1dfe8b CLSID = {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} FilePath = C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll File Size = 63136 File MD5 = b61d5d651ecc6055c29bf826ca7b1141 CLSID = {1FC80E00-41B0-4F74-BC16-2C83ED49CAC9} FilePath = C:\Program Files\Video AX Object\bpvol.dll File Size = 10240 File MD5 = 45153160b275227e1bed12097e9e3eab CLSID = {562513FB-113F-4105-BDC3-468FC92175B8} FilePath = File Size = 0 File MD5 = CLSID = {5F191128-1427-41DF-8B17-45F8FF10A811} FilePath = File Size = 0 File MD5 = CLSID = {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} FilePath = C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll File Size = 501400 File MD5 = 70fd57d6edbed8d80c1995257c99d27e CLSID = {7FB39839-665D-4D47-873C-D3FC9889FC3E} FilePath = C:\WINDOWS\system32\specdata32.dll File Size = 53248 File MD5 = f0c4e15f38672055e0586ae3fd16d8f3 CLSID = {CE9FB6EA-F2E7-4142-9B58-18FB2D5AA211} FilePath = File Size = 0 File MD5 = CLSID = {08B0E5C0-4FCB-11CF-AAA5-00401C608501} FilePath = File Size = 0 File MD5 = CLSID = {92780B25-18CC-41C8-B9BE-3C9C571A8263} FilePath = File Size = 0 File MD5 = CLSID = {e2e2dd38-d088-4134-82b7-f2ba38496583} FilePath = File Size = 0 File MD5 = CLSID = {FB5F1910-F110-11d2-BB9E-00C04F795683} FilePath = File Size = 0 File MD5 = CLSID = CmdMapping FilePath = File Size = 0 File MD5 = CLSID = {CFBFAE00-17A6-11D0-99CB-00C04FD64497} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1498112 File MD5 = 2039074b74116904fd2d46110c1dfe8b Description = CLSID = {438755C2-A8BA-11D1-B96B-00A0C90312E1} FilePath = C:\WINDOWS\system32\browseui.dll File Size = 1022976 File MD5 = 765faaf3eead18a47811ab23dbe4c095 Description = Browseui preloader CLSID = {8C7461EF-2B13-11d2-BE35-3078302C2030} FilePath = C:\WINDOWS\system32\browseui.dll File Size = 1022976 File MD5 = 765faaf3eead18a47811ab23dbe4c095 Description = Component Categories cache daemon CLSID = {da3b49f6-8c54-4429-a275-21a86dcca413} FilePath = C:\WINDOWS\system32\xuoce.dll File Size = 7168 File MD5 = 48ac2afb0ff0f7dec1f1098f8e3af5c0 Description = admissibility ##########################LSP CHAIN DATA########################## Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184 ##########################UNINSTALL DATA########################## Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\@BIOS DisplayName = @BIOS Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Branding Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Browser Protection Volume DisplayName = Browser Protection Volume Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Connection Manager Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectAnimation Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\eMule DisplayName = eMule Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\eMusic Promotion DisplayName = eMusic - 50 Free MP3 offer Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Gadu-Gadu DisplayName = Gadu-Gadu 7.6 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis DisplayName = HijackThis 1.99.1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ICW Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE40 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IEData Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Plug-in DisplayName = Internet Explorer Secure Plug-in Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873339 DisplayName = Windows XP Hotfix - KB873339 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884016 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885835 DisplayName = Windows XP Hotfix - KB885835 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885836 DisplayName = Windows XP Hotfix - KB885836 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB886185 DisplayName = Windows XP Hotfix - KB886185 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887472 DisplayName = Windows XP Hotfix - KB887472 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888302 DisplayName = Windows XP Hotfix - KB888302 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890046 DisplayName = Security Update for Windows XP (KB890046) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890859 DisplayName = Windows XP Hotfix - KB890859 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891122 DisplayName = Windows Media Format SDK Hotfix - KB891122 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891781 DisplayName = Windows XP Hotfix - KB891781 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893756 DisplayName = Security Update for Windows XP (KB893756) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2 DisplayName = Windows Installer 3.1 (KB893803) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB894391 DisplayName = Update for Windows XP (KB894391) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896344 DisplayName = Hotfix for Windows XP (KB896344) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896358 DisplayName = Security Update for Windows XP (KB896358) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896423 DisplayName = Security Update for Windows XP (KB896423) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896424 DisplayName = Security Update for Windows XP (KB896424) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896428 DisplayName = Security Update for Windows XP (KB896428) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898461 DisplayName = Update for Windows XP (KB898461) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899587 DisplayName = Security Update for Windows XP (KB899587) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899589 DisplayName = Security Update for Windows XP (KB899589) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899591 DisplayName = Security Update for Windows XP (KB899591) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900485 DisplayName = Update for Windows XP (KB900485) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900725 DisplayName = Security Update for Windows XP (KB900725) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900930 DisplayName = Update for Windows XP (KB900930) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901017 DisplayName = Security Update for Windows XP (KB901017) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901214 DisplayName = Security Update for Windows XP (KB901214) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902344 DisplayName = Hotfix for Windows Media Format SDK (KB902344) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902400 DisplayName = Security Update for Windows XP (KB902400) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904706 DisplayName = Security Update for Windows XP (KB904706) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904942 DisplayName = Update for Windows XP (KB904942) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905414 DisplayName = Security Update for Windows XP (KB905414) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905749 DisplayName = Security Update for Windows XP (KB905749) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908519 DisplayName = Security Update for Windows XP (KB908519) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908531 DisplayName = Update for Windows XP (KB908531) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB909520 DisplayName = Microsoft Base Smart Card Cryptographic Service Provider Package Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB910437 DisplayName = Update for Windows XP (KB910437) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911164 DisplayName = Update for Windows XP (KB911164) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911280 DisplayName = Update for Windows XP (KB911280) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911562 DisplayName = Security Update for Windows XP (KB911562) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911564 DisplayName = Security Update for Windows Media Player (KB911564) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911567 DisplayName = Security Update for Windows XP (KB911567) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911927 DisplayName = Security Update for Windows XP (KB911927) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB912919 DisplayName = Security Update for Windows XP (KB912919) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913433 DisplayName = Security Update for Windows XP (KB913433) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913580 DisplayName = Security Update for Windows XP (KB913580) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914388 DisplayName = Security Update for Windows XP (KB914388) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914389 DisplayName = Security Update for Windows XP (KB914389) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914440 DisplayName = Hotfix for Windows XP (KB914440) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB915865 DisplayName = Hotfix for Windows XP (KB915865) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB916595 DisplayName = Update for Windows XP (KB916595) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917283.T1_1ToU93_1 DisplayName = Security Update for Microsoft .NET Framework 2.0 (KB917283) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917344 DisplayName = Security Update for Windows XP (KB917344) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917422 DisplayName = Security Update for Windows XP (KB917422) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917734_WMP10 DisplayName = Security Update for Windows Media Player 10 (KB917734) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917953 DisplayName = Security Update for Windows XP (KB917953) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918118 DisplayName = Security Update for Windows XP (KB918118) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918439 DisplayName = Security Update for Windows XP (KB918439) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918899 DisplayName = Security Update for Windows XP (KB918899) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB919007 DisplayName = Security Update for Windows XP (KB919007) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920213 DisplayName = Security Update for Windows XP (KB920213) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920214 DisplayName = Security Update for Windows XP (KB920214) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920342 DisplayName = Update for Windows XP (KB920342) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920670 DisplayName = Security Update for Windows XP (KB920670) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920683 DisplayName = Security Update for Windows XP (KB920683) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920685 DisplayName = Security Update for Windows XP (KB920685) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920872 DisplayName = Update for Windows XP (KB920872) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921398 DisplayName = Security Update for Windows XP (KB921398) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921883 DisplayName = Security Update for Windows XP (KB921883) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922582 DisplayName = Update for Windows XP (KB922582) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922616 DisplayName = Security Update for Windows XP (KB922616) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922760 DisplayName = Security Update for Windows XP (KB922760) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922770.T1_1ToU168_1 DisplayName = Security Update for Microsoft .NET Framework 2.0 (KB922770) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922819 DisplayName = Security Update for Windows XP (KB922819) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923191 DisplayName = Security Update for Windows XP (KB923191) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923414 DisplayName = Security Update for Windows XP (KB923414) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923689 DisplayName = Security Update for Windows XP (KB923689) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923694 DisplayName = Security Update for Windows XP (KB923694) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923980 DisplayName = Security Update for Windows XP (KB923980) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924191 DisplayName = Security Update for Windows XP (KB924191) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924270 DisplayName = Security Update for Windows XP (KB924270) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924496 DisplayName = Security Update for Windows XP (KB924496) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924667 DisplayName = Security Update for Windows XP (KB924667) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925398_WMP64 DisplayName = Security Update for Windows Media Player 6.4 (KB925398) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925454 DisplayName = Security Update for Windows XP (KB925454) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925486 DisplayName = Security Update for Windows XP (KB925486) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925902 DisplayName = Security Update for Windows XP (KB925902) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926255 DisplayName = Security Update for Windows XP (KB926255) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926436 DisplayName = Security Update for Windows XP (KB926436) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927779 DisplayName = Security Update for Windows XP (KB927779) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927802 DisplayName = Security Update for Windows XP (KB927802) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928090 DisplayName = Security Update for Windows XP (KB928090) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928255 DisplayName = Security Update for Windows XP (KB928255) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928843 DisplayName = Security Update for Windows XP (KB928843) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929338 DisplayName = Update for Windows XP (KB929338) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929969 DisplayName = Security Update for Windows XP (KB929969) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB930178 DisplayName = Security Update for Windows XP (KB930178) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931261 DisplayName = Security Update for Windows XP (KB931261) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931784 DisplayName = Security Update for Windows XP (KB931784) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931836 DisplayName = Update for Windows XP (KB931836) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB932168 DisplayName = Security Update for Windows XP (KB932168) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate DisplayName = LiveUpdate 3.1 (Symantec Corporation) InstallLocation = "C:\Program Files\Symantec\LiveUpdate" Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\M886903 DisplayName = Microsoft .NET Framework 1.1 Hotfix (KB886903) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MalwareWiped 6.1 DisplayName = MalwareWiped 6.1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework 1.1 (1033) DisplayName = Microsoft .NET Framework 1.1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework 2.0 DisplayName = Microsoft .NET Framework 2.0 InstallLocation = C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox (2.0.0.2) DisplayName = Mozilla Firefox (2.0.0.2) InstallLocation = C:\Program Files\Mozilla Firefox Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox (2.0.0.3) DisplayName = Mozilla Firefox (2.0.0.3) InstallLocation = C:\PROGRA~1\Mozilla Firefox Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PCHealth Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Security Messenger DisplayName = Security Messenger Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Sevinst Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash DisplayName = Adobe Flash Player 9 ActiveX Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SkanerOnline DisplayName = Skaner on-line mks_vir Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Skype_is1 DisplayName = Skype 3.0 InstallLocation = C:\Program Files\Skype\Phone\ Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SpyLocked 3.6 DisplayName = SpyLocked 3.6 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SpyNoMore DisplayName = SpyNoMore 2.66 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Spyware Doctor DisplayName = Spyware Doctor 5.0 InstallLocation = C:\Program Files\Spyware Doctor\ Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SymSetup.{830D8CBD-C668-49e2-A969-C2C2106332E0} DisplayName = Norton AntiVirus (Symantec Corporation) InstallLocation = C:\Program Files\Norton AntiVirus Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Trans DisplayName = Trans Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\TRUCK & CARGO Online DisplayName = TRUCK & CARGO Online Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WGA DisplayName = Windows Genuine Advantage Validation Tool (KB892130) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Winamp DisplayName = Winamp (remove only) Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime DisplayName = Windows Media Format Runtime Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player DisplayName = Windows Media Player 10 Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Safety Alert DisplayName = Windows Safety Alert Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{228F6876-A313-40A3-91C0-C3CBE6997D09} DisplayName = Symantec InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2908F0CB-C1D4-447F-97A2-CFC135C9F8D4} DisplayName = Internet Worm Protection InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2} DisplayName = SymNet InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0150110} DisplayName = J2SE Runtime Environment 5.0 Update 11 InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160010} DisplayName = Java(TM) SE Runtime Environment 6 Update 1 InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{34EEB1F5-E939-40A1-A6BA-957282A4B2C8} DisplayName = Norton AntiVirus Help InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} DisplayName = WebFldrs XP InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3CCAD2EF-CFF2-4637-82AA-AABF370282D3} DisplayName = ccCommon InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3D5E5C0A-5B36-4F98-99A7-287F7DBDCE03} DisplayName = Skype Plugin Manager InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{55F36287-455A-4ECE-9EA9-84F810DA2C5D} DisplayName = Symantec Real Time Storage Protection Component InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7131646D-CD3C-40F4-97B9-CD9E4E6262EF} DisplayName = Microsoft .NET Framework 2.0 InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{750B9AD1-4C63-4143-94C5-6FB304199BAD} DisplayName = Opera 9.10 InstallLocation = C:\Program Files\Opera\ Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{77772678-817F-4401-9301-ED1D01A8DA56} DisplayName = SPBBC 32bit InstallLocation = C:\Program Files\Norton AntiVirus Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{830D8CBD-C668-49e2-A969-C2C2106332E0} DisplayName = Norton AntiVirus InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{91CA0409-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office Small Business Edition 2003 InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8} DisplayName = Norton Protection Center InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1045-7B44-A70500000002} DisplayName = Adobe Reader 7.0.5 - Polish InstallLocation = C:\Program Files\Adobe\Acrobat 7.0\Reader\ Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{BA68600E-96D9-4E92-80F2-26B9681B5A63} DisplayName = Microsoft Office Outlook 2003 with Business Contact Manager Update InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} DisplayName = Microsoft .NET Framework 1.1 InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{D1FF75E7-DD42-4CFD-B052-20B3FFF4EDB8} DisplayName = Norton AntiVirus SYMLT MSI InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E09B48B5-E141-427A-AB0C-D3605127224A} DisplayName = Microsoft SQL Server Desktop Engine (MICROSOFTSMLBIZ) InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5EE9939-259F-4DE2-8023-5C49E16A4F43} DisplayName = Norton AntiVirus Parent MSI InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EE5B8E34-973C-4FBE-AC83-99F064009FC7} DisplayName = SpyHunter InstallLocation = C:\Program Files\Enigma Software Group\SpyHunter Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B} DisplayName = AppCore InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{F34D9A5F-484A-4E31-A9D3-908CB265B289} DisplayName = Sygate Personal Firewall InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{F4DB525F-A986-4249-B98B-42A8066251CA} DisplayName = AV InstallLocation = Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{F5346614-B7C4-4E94-826A-E2363155233D} DisplayName = EasyCleaner InstallLocation = C:\Program Files\ToniArts\EasyCleaner Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{FB08F381-6533-4108-B7DD-039E11FBC27E} DisplayName = Avance AC'97 Audio