Jump to content
Sign in to follow this  
Bear

This is seremina log

Recommended Posts

Logfile of HijackThis v1.99.1

Scan saved at 11:12:51 PM, on 6/8/05

Platform: Windows 98 SE (Win9x 4.10.2222A)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

 

Running processes:

C:\WINDOWS\SYSTEM\KERNEL32.DLL

C:\WINDOWS\SYSTEM\MSGSRV32.EXE

C:\WINDOWS\SYSTEM\MPREXE.EXE

C:\WINDOWS\SYSTEM\mmtask.tsk

C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE

C:\WINDOWS\EXPLORER.EXE

C:\WINDOWS\SYSTEM\CMMPU.EXE

C:\WINDOWS\TASKMON.EXE

C:\WINDOWS\SYSTEM\SYSTRAY.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE

C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE

C:\PROGRAM FILES\ANALOGX\MAXMEM\MAXMEM.EXE

C:\WINDOWS\SYSTEM\WMIEXE.EXE

C:\WINDOWS\SYSTEM\INTERNAT.EXE

C:\WINDOWS\SYSTEM\DDHELP.EXE

C:\PROGRAM FILES\AVANT BROWSER\AVANT.EXE

C:\WINDOWS\SYSTEM\WINOA386.MOD

C:\WINDOWS\SYSTEM\PSTORES.EXE

C:\WINDOWS\DESKTOP\HIJACKTHIS\HIJACKTHIS.EXE

 

F1 - win.ini: load=c:\afterdrk\adw30.exe

F1 - win.ini: run=C:\WINDOWS\SYSTEM\cmmpu.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX

O4 - HKLM\..\Run: [scanRegistry] C:\WINDOWS\scanregw.exe /autorun

O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe

O4 - HKLM\..\Run: [systemTray] SysTray.Exe

O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP

O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE

O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service

O4 - Startup: MaxMem.lnk = C:\Program Files\AnalogX\MaxMem\maxmem.exe

O4 - Startup: AntiCrash.lnk = C:\Program Files\AntiCrash\AntiCrash.exe

O8 - Extra context menu item: Add to AD Black List - C:\PROGRAM FILES\AVANT BROWSER\AddToADBlackList.htm

O8 - Extra context menu item: Block All Images from the Same Server - C:\PROGRAM FILES\AVANT BROWSER\AddAllToADBlackList.htm

O8 - Extra context menu item: Search - C:\PROGRAM FILES\AVANT BROWSER\Search.htm

O8 - Extra context menu item: Highlight - C:\PROGRAM FILES\AVANT BROWSER\Highlight.htm

O8 - Extra context menu item: Open All Links in This Page... - C:\PROGRAM FILES\AVANT BROWSER\OpenAllLinks.htm

O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll

O16 - DPF: {9B03C5F1-F5AB-47EE-937D-A8EDA626F876} (Anonymizer Anti-Spyware Scanner) - http://download.zonelabs.com/bin/promotion...ctor/WebAAS.cab

O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab

O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab

O16 - DPF: {31DDC1FD-CEA3-4837-A6DC-87E67015ADC9} - http://akamai.downloadv3.com/binaries/IA/svcsysnet32_EN.cab

O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/cha...v45/yacscom.cab

O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/cha...t/c381/chat.cab

O16 - DPF: {511F9316-771B-4953-A268-1C36DA667FE9} - http://ip.sponsoradulto.com/cab/2/en/SysWebTelecomInt.cab

O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - http://www.pcpitstop.com/antivirus/PitPav.cab

O16 - DPF: Yahoo! Hearts - http://download.games.yahoo.com/games/clients/y/ht1_x.cab

O16 - DPF: Yahoo! Blackjack - http://download.games.yahoo.com/games/clients/y/jt0_x.cab

O16 - DPF: Yahoo! Go - http://download.games.yahoo.com/games/clients/y/gt2_x.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...506/mcfscan.cab

O16 - DPF: PCPitstop-Tracks-Checker - http://www.pcpitstop.com/privacy/PCPTracks.cab

Share this post


Link to post
Share on other sites

Hi seremina :mrgreen:

 

Rescan with HJT, check this item, close all windows except for HJT:

 

O16 - DPF: {511F9316-771B-4953-A268-1C36DA667FE9} - http://ip.sponsoradulto.com/cab/2/en/SysWebTelecomInt.cab

 

Now click on "fix checked".

 

Reboot/restart your computer.

 

Download and update both Spybot s&d, and Ad-aware SE. Deep scan according to the tutorials:

 

Spybot S&D download and tutorial:

http://www.bleepingcomputer.com/forums/ind...showtutorial=43

http://www.safer-networking.org/

 

Ad-Aware SE download and Tutorial:

http://www.bleepingcomputer.com/forums/Usi...uter-tut48.html

http://www.lavasoftusa.com/software/adaware/

 

Restart your computer once again and post a new HJT log. Let me know if you are having any further problems.

Share this post


Link to post
Share on other sites

All right, I was scanning with S&D and I ran into a snag. I'm pasting it below. However, I will rescan directly afterward once I get rid of the one problem that I CAN tell it to get rid of.

 

Error during check!: DownloadWare.SED (Zugriffsverletzung bei Adresse 005FD5D2 in Modul 'SPYBOTSD.EXE'. Lesen von Adresse 03BDBFFF) ()

 

 

MediaMotor: Type library (Registry key, nothing done)

HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}

 

 

--- Spybot - Search && Destroy version: 1.3 ---

2005-04-26 Includes\Cookies.sbi

2005-06-09 Includes\Dialer.sbi

2005-06-09 Includes\Hijackers.sbi

2005-06-09 Includes\Keyloggers.sbi

2005-06-09 Includes\Malware.sbi

2005-04-27 Includes\Revision.sbi

2005-06-09 Includes\Security.sbi

2005-06-09 Includes\Spybots.sbi

2005-06-09 Includes\Trojans.sbi

2005-02-17 Includes\Tracks.uti

2004-11-29 Includes\LSP.sbi

2005-06-09 Includes\PUPS.sbi

Share this post


Link to post
Share on other sites

Uninstall the old version by following these instructions:1. Undo immunization

2. If SDHelper and TeaTimer are enabled, deactivate them first.

3. If Opera Browser is installed, de-select "Opera Immunity" protection.

4. Uninstall old version of Spybot S&D

5. Reboot

 

5a. Optional step: If you want to completely remove the all and old registry entries of the old version of Spybot S&D, get the registry file from the forum or get it directly from the website. Save it to your desktop where you can find it easily. Simply merge the reg file to the registry.

 

6. Install Spybot S&D 1.4

Original Link

 

I recommend completely uninstalling your old version.

Share this post


Link to post
Share on other sites
A new version...? They do? I'm the last to know these things! Argh! [giggles] All right. Just let me finish my Ad Aware scan. I'll handle getting the new S&D. I have a question, though. How do I "merge" the reg file into the registry? I don't like leaving a paper trail of old stuff in the registry.

Share this post


Link to post
Share on other sites

A new version...? They do? I'm the last to know these things! Argh! [giggles] All right. Just let me finish my Ad Aware scan. I'll handle getting the new S&D. I have a question, though. How do I "merge" the reg file into the registry? I don't like leaving a paper trail of old stuff in the registry.

PM me your email, and I can send that in a registry file if you would like :)

 

Other wise, create a new text file, and copy/paste this into the text file:

 

No need for your reg file Brandon. Jacee :blank:

Edited by Jacee

Share this post


Link to post
Share on other sites

Double click on the reg file and then answer yes when prompted if you want to merge it with the registry

Share this post


Link to post
Share on other sites

All right. I finally did all the S&D instructions. It found nothing. Here's my new HijackThis post. The Windows explorer and desktop are a bit faster, but still too slow and balky. So I don't think the problem is entirely taken care of. >_<

 

Logfile of HijackThis v1.99.1

Scan saved at 2:44:51 PM, on 6/10/05

Platform: Windows 98 SE (Win9x 4.10.2222A)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

 

Running processes:

C:\WINDOWS\SYSTEM\KERNEL32.DLL

C:\WINDOWS\SYSTEM\MSGSRV32.EXE

C:\WINDOWS\SYSTEM\MPREXE.EXE

C:\WINDOWS\SYSTEM\mmtask.tsk

C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE

C:\WINDOWS\EXPLORER.EXE

C:\WINDOWS\SYSTEM\CMMPU.EXE

C:\WINDOWS\TASKMON.EXE

C:\WINDOWS\SYSTEM\SYSTRAY.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE

C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE

C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE

C:\PROGRAM FILES\ANALOGX\MAXMEM\MAXMEM.EXE

C:\WINDOWS\SYSTEM\WMIEXE.EXE

C:\PROGRAM FILES\SPYBOT\TEATIMER.EXE

C:\WINDOWS\SYSTEM\INTERNAT.EXE

C:\PROGRAM FILES\AVANT BROWSER\AVANT.EXE

C:\WINDOWS\DESKTOP\HIJACKTHIS\HIJACKTHIS.EXE

 

F1 - win.ini: load=c:\afterdrk\adw30.exe

F1 - win.ini: run=C:\WINDOWS\SYSTEM\cmmpu.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT\SDHELPER.DLL

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX

O4 - HKLM\..\Run: [scanRegistry] C:\WINDOWS\scanregw.exe /autorun

O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe

O4 - HKLM\..\Run: [systemTray] SysTray.Exe

O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP

O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE

O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot\TeaTimer.exe

O4 - Startup: MaxMem.lnk = C:\Program Files\AnalogX\MaxMem\maxmem.exe

O4 - Startup: AntiCrash.lnk = C:\Program Files\AntiCrash\AntiCrash.exe

O8 - Extra context menu item: Add to AD Black List - C:\PROGRAM FILES\AVANT BROWSER\AddToADBlackList.htm

O8 - Extra context menu item: Block All Images from the Same Server - C:\PROGRAM FILES\AVANT BROWSER\AddAllToADBlackList.htm

O8 - Extra context menu item: Search - C:\PROGRAM FILES\AVANT BROWSER\Search.htm

O8 - Extra context menu item: Highlight - C:\PROGRAM FILES\AVANT BROWSER\Highlight.htm

O8 - Extra context menu item: Open All Links in This Page... - C:\PROGRAM FILES\AVANT BROWSER\OpenAllLinks.htm

O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll

O16 - DPF: {9B03C5F1-F5AB-47EE-937D-A8EDA626F876} (Anonymizer Anti-Spyware Scanner) - http://download.zonelabs.com/bin/promotion...ctor/WebAAS.cab

O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab

O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab

O16 - DPF: {31DDC1FD-CEA3-4837-A6DC-87E67015ADC9} - http://akamai.downloadv3.com/binaries/IA/svcsysnet32_EN.cab

O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/cha...v45/yacscom.cab

O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/cha...t/c381/chat.cab

O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - http://www.pcpitstop.com/antivirus/PitPav.cab

O16 - DPF: Yahoo! Hearts - http://download.games.yahoo.com/games/clients/y/ht1_x.cab

O16 - DPF: Yahoo! Blackjack - http://download.games.yahoo.com/games/clients/y/jt0_x.cab

O16 - DPF: Yahoo! Go - http://download.games.yahoo.com/games/clients/y/gt2_x.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...506/mcfscan.cab

O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab

O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/:f...red:/asinst.cab

O16 - DPF: {556DDE35-E955-11D0-A707-000000521957} - http://www.xblock.com/download/xclean_micro.exe

O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) - http://www.windowsecurity.com/trojanscan/axscan.cab

O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - http://ppupdates.ca.com/downloads/scanner/axscanner.cab

Share this post


Link to post
Share on other sites

Okay, let's stop some things that aren't necessary from running at start up.

 

Rescan with HJT, check these items, close all windows except for HJT, then click "fix checked":

 

F1 - win.ini: load=c:\afterdrk\adw30.exe

 

F1 - win.ini: run=C:\WINDOWS\SYSTEM\cmmpu.exe

 

O16 - DPF: {31DDC1FD-CEA3-4837-A6DC-87E67015ADC9} - http://akamai.downloadv3.com/binaries/IA/svcsysnet32_EN.cab

 

Restart your computer.

 

Next,

clean out your Temp files and your Temporary Internet Files. Please do both steps:

 

Step 1:Delete Temp Files

To clean out your temp files, click on Start, then run, and type %temp%, press the OK button.

 

This should open up the temp directory that your machine uses. Please delete all files that are found there. If you get an error when deleting a file, skip that file and delete all the others. If you had trouble deleting a file, reboot into safe mode

and follow this step again. You should now be able to delete all the files.

 

Step 2: Delete Temporary Internet Files

Now, open up Internet Explorer, and click on the Tools menu and then Internet Options. At the General tab, which should be the first tab you are currently on, click on the Delete Files button and put a checkmark in Delete offline content. Then press the OK button. This may take quite a while, so do not be alarmed with how long it takes. When it is done, your Temporary Internet Files will now be deleted.

Share this post


Link to post
Share on other sites
All right. All done, except for defragging. It took so long to ge the reboot done. I'm gonna start working on things on the desktop to test it out. HOPEFULLY... the problem has ended. I'll let you know if it has or has not.

Share this post


Link to post
Share on other sites
From what I'm seeing so far, in my test, it's all taken care of. I'll let the other forum know this too. Thank you very much! You've helped restore the comp the way it was before this junk started happening. :) Again, thank you.

Share this post


Link to post
Share on other sites

Hi seremina!

 

I saw something in your log that suggests you may still have an infection. Would you please do the following so we can check?

 

Please copy the contents of the quote box below to a blank notepad. Make sure the formatting stays the same. Close it, saving to your desktop as;

 

Filename : Getlog.bat

Save as type : All Files

 

regedit.exe /e C:\GetLog1.txt "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run"

regedit.exe /e C:\GetLog2.txt "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall"

cd C:

copy C:\GetLog1.txt + C:\GetLog2.txt = C:\GetLog.txt

start notepad C:\GetLog.txt

del C:\GetLog1.txt

del C:\GetLog2.txt

del C:\GetLog.txt

cls

Double click the file to run it. A log will open in notepad. Please post the contents of that log. It may be quite large, so if necessary, split into two posts.

Share this post


Link to post
Share on other sites

REGEDIT4

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"ScanRegistry"="C:\\WINDOWS\\scanregw.exe /autorun"

"TaskMonitor"="C:\\WINDOWS\\taskmon.exe"

"SystemTray"="SysTray.Exe"

"LoadPowerProfile"="Rundll32.exe powrprof.dll,LoadCurrentPwrScheme"

"AVG7_CC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGCC.EXE /STARTUP"

"AVG7_EMC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGEMC.EXE"

"AVG7_AMSVR"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGAMSVR.EXE"

"Zone Labs Client"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe"

 

Okay. I pasted it above. I hope everything's okay?

Share this post


Link to post
Share on other sites

Hmmm........only a portion of the log showed up. Please run it again. No need to repost if it's the same.

 

Do a file search for svcsysnet32.dll and svcsysnet32.inf and delete them if found. Do another search for EGDACCESS*.* and delete any found.

Share this post


Link to post
Share on other sites
Searching for those files using Find now. No matter what I do with the getlog, it won't make a longer entry. What could be going wrong?

Share this post


Link to post
Share on other sites

Right click the batch and choose edit. Delete the following line, then close saving changes and run again.

 

del C:\GetLog.txt

Share this post


Link to post
Share on other sites

REGEDIT4

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"ScanRegistry"="C:\\WINDOWS\\scanregw.exe /autorun"

"TaskMonitor"="C:\\WINDOWS\\taskmon.exe"

"SystemTray"="SysTray.Exe"

"LoadPowerProfile"="Rundll32.exe powrprof.dll,LoadCurrentPwrScheme"

"AVG7_CC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGCC.EXE /STARTUP"

"AVG7_EMC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGEMC.EXE"

"AVG7_AMSVR"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGAMSVR.EXE"

"Zone Labs Client"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe"

 

Finished. This is what it gave.

Share this post


Link to post
Share on other sites

Very odd. 1 more attempt here. :rolleyes:

 

Please copy the command below, click Start>run and pste it in, then hit enter.

 

regedit.exe /e C:\GetLog2.txt "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall"

 

Open C:\GetLog2.txt and post it's contents.

Share this post


Link to post
Share on other sites

Here's part one.

 

REGEDIT4

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"ScanRegistry"="C:\\WINDOWS\\scanregw.exe /autorun"

"TaskMonitor"="C:\\WINDOWS\\taskmon.exe"

"SystemTray"="SysTray.Exe"

"LoadPowerProfile"="Rundll32.exe powrprof.dll,LoadCurrentPwrScheme"

"AVG7_CC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGCC.EXE /STARTUP"

"AVG7_EMC"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGEMC.EXE"

"AVG7_AMSVR"="C:\\PROGRA~1\\GRISOFT\\AVGFRE~1\\AVGAMSVR.EXE"

"Zone Labs Client"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe"

 

REGEDIT4

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ICW]

@=""

"QuietDisplayName"="Internet Connection wizard"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\icw.inf,,,256"

"RequiresIESysFile"="5.00"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IE40]

@=""

"DisplayName"="Microsoft Internet Explorer 6 SP1 and Internet Tools"

"UninstallString"="rundll32 setupwbv.dll,IE6Maintenance \"C:\\Program Files\\Internet Explorer\\Setup\\SETUP.EXE\" /g \"C:\\WINDOWS\\IE Uninstall Log.Txt\""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX]

@=""

"QuietDisplayName"="AOL Support Files"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\unie5bak.inf,,,256"

"RequiresIESysFile"="5.00"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent]

@=""

"QuietDisplayName"="Task Scheduler"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\mstask.inf,,,256"

"RequiresIESysFile"="5.00"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack]

@=""

"QuietDisplayName"="Offline Browsing Pack"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\mobilepk.inf,,,256"

"RequiresIESysFile"="6.0.2800.1100"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MSJavaVM]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MSTASK]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting]

"DisplayName"="NetMeeting 3.0"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress]

@=""

"RequiresWABFile"="5.0"

"RequiresIESysFile"="6.0"

"DisplayName"="Microsoft Outlook Express 6"

"UninstallString"="\"C:\\PROGRA~1\\OUTLOO~1\\setup50.exe\" /APP:OE /UNINSTALL /PROMPT"

"QuietUninstallString"="\"C:\\PROGRA~1\\OUTLOO~1\\setup50.exe\" /APP:OE /UNINSTALL"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook]

@=""

"UninstallString"="\"C:\\PROGRA~1\\OUTLOO~1\\setup50.exe\" /APP:WAB /CALLER:IE50 /UNINSTALL /PROMPT"

"QuietUninstallString"="\"C:\\PROGRA~1\\OUTLOO~1\\setup50.exe\" /APP:WAB /CALLER:IE50 /UNINSTALL"

"RequiresIESysFile"="6.0"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Branding]

"QuietUninstallString"="Rundll32 IedkCS32.dll,BrandCleanInstallStubs"

"RequiresIESysFile"="100.0"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft NetShow Player 2.0]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\QuickTime]

"DisplayName"="QuickTime"

"UninstallString"="C:\\WINDOWS\\unvise32qt.exe C:\\WINDOWS\\SYSTEM\\QuickTime\\Uninstall.log"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Trillian]

"DisplayName"="Trillian"

"UninstallString"="C:\\Program Files\\Trillian\\trillian.exe /uninstall"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\S3_REF]

"DisplayName"="S3 Refresh"

"UninstallString"="S3uninst.exe S3Ref_remove 5 S3lc2x.inf"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash]

"QuietDisplayName"="Shockwave Flash"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\swflash.inf,DefaultUninstall,5"

"RequiresIESysFile"="4.70.0.1155"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall]

"ProductType"="AvgFree"

"DisplayName"="AVG Free Edition"

"UninstallString"="C:\\Program Files\\Grisoft\\AVG Free\\setup.exe /UNINSTALL"

"Language"=dword:00000409

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall\Features]

"fea_AVG_Remove"=dword:00000000

"fea_AVGWin"=dword:00000001

"fea_AVG_Data_Dir"=dword:00000001

"fea_AVG_ResidentShield"=dword:00000001

"fea_AVG_CC_Startup"=dword:00000001

"fea_AVG_Cl"=dword:00000000

"fea_AVG_Bootup"=dword:00000001

"fea_AVG_EmailPlugins"=dword:00000001

"fea_AVG_Bat_plugin"=dword:00000000

"fea_AVG_Exchange_plugin"=dword:00000000

"fea_AVG_Eudora_plugin"=dword:00000000

"fea_AVG_EMC"=dword:00000001

"fea_AVG_Office_2000_plugin"=dword:00000001

"fea_AVGDOS"=dword:00000000

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall\Directories]

"dir_AvgDir"="C:\\Program Files\\Grisoft\\AVG Free"

"dir_AvgData"="C:\\WINDOWS\\All Users\\Application Data\\Grisoft\\Avg7Data"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall\TextCache]

"@Avg6ProgramFolder_CZ"="Antivirový systém AVG 6.0"

"@Avg6ProgramFolder_CZ2"="Antivirovy system AVG 6.0"

"@Avg6ProgramFolder_FR"="Système Anti-Virus AVG 6.0"

"@AvgDir"="AVG Free"

"@GrisoftDir"="Grisoft"

"@LinkAVGCC"="AVG Free Control Center.lnk"

"@LinkAVGHelp_CZ"="Nápovìda pro AVG Free Edition for Windows.lnk"

"@LinkAVGHelp_FR"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGHelp_GE"="Hilfe zu AVG Free Edition for Windows.lnk"

"@LinkAVGHelp_PB"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGHelp_PL"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGHelp_SC"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGHelp_SK"="Pomoc pre AVG Free Edition for Windows.lnk"

"@LinkAVGHelp_SP"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGHelp_US"="AVG Free Edition for Windows Help.lnk"

"@LinkAVGUninstall"="Uninstall AVG Free Edition for Windows.lnk"

"@LinkAVGVV"="AVG Free Virus Vault.lnk"

"@LinkAVGW"="AVG Free Edition for Windows.lnk"

"@LinkAVGW_Desk"="AVG Free.lnk"

"@ProgramsFolder"="AVG Free Edition"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AvantBrowser]

"DisplayName"="Avant Browser (remove only)"

"UninstallString"="\"C:\\Program Files\\Avant Browser\\uninst.exe\""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Ares]

"DisplayName"="Ares 1.8.1"

"DisplayVersion"="1.8.1-Build#2941"

"UninstallString"="\"C:\\Program Files\\Ares\\uninstall.exe\""

"Publisher"="Ares Development Group"

"URLInfoAbout"="http://www.aresgalaxy.org"

"URLUpdateInfo"="http://www.aresgalaxy.org"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7FF95D80-7FEA-11D3-BDE9-0050DA1AB3B9}]

"UninstallString"="C:\\Program Files\\UltraPlayer\\UPUnInst.exe RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\ENGINE\\6\\INTEL3~1\\ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{7FF95D80-7FEA-11D3-BDE9-0050DA1AB3B9}\\setup.exe\" -uninst "

"DisplayName"="UltraPlayer"

"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{7FF95D80-7FEA-11D3-BDE9-0050DA1AB3B9}\\setup.ilg"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WMP7]

"RequiresIESysFile"="4.70.0.1155"

"UninstallString"="C:\\PROGRA~1\\WINDOW~1\\setup_wm.exe /Uninstall"

"DisplayName"="Windows Media Player system update (9 Series)"

"DisplayIcon"="C:\\PROGRA~1\\WINDOW~1\\wmplayer.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AnalogX MaxMem]

"DisplayName"="AnalogX MaxMem"

"UninstallString"="C:\\Program Files\\AnalogX\\MaxMem\\maxmemu.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\BSPlayer1]

"DisplayName"="BSPlayer"

"UninstallString"="\"C:\\Program Files\\Webteh\\BSplayer\\uninstall.exe\""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Macromedia Shockwave Player]

"DisplayName"="Macromedia Shockwave Player"

"UninstallString"="C:\\WINDOWS\\SYSTEM\\MACROMED\\SHOCKW~2\\UNWISE.EXE C:\\WINDOWS\\SYSTEM\\MACROMED\\SHOCKW~2\\Install.log"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Shockwave]

"QuietDisplayName"="Shockwave Director 10.1"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\\\INF\\\\swdir.inf,DefaultUninstall,5"

"RequiresIESysFile"="4.70.0.1155"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ASTRA32_is1]

"Inno Setup: Setup Version"="4.1.8"

"Inno Setup: App Path"="C:\\Program Files\\ASTRA32"

"Inno Setup: Icon Group"="ASTRA32"

"Inno Setup: User"="ian"

"Inno Setup: Selected Tasks"="desktopicon"

"Inno Setup: Deselected Tasks"=""

"DisplayName"="ASTRA32 - Advanced System Information Tool 1.01"

"DisplayIcon"="C:\\Program Files\\ASTRA32\\astra32.exe"

"UninstallString"="\"C:\\Program Files\\ASTRA32\\unins000.exe\""

"DisplayVersion"="1.01"

"Publisher"="Sysinfo Lab"

"URLInfoAbout"="http://www.astra32.com/"

"HelpLink"="http://www.astra32.com/support.htm"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\JAAIME]

"DisplayName"="Microsoft Global IME for Japanese"

"UninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\1041aime.inf, Uninstall"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\1041aime.inf, QuietUninstall,1"

"RequiresIESysFile"="4.71"

Share this post


Link to post
Share on other sites

Part 2.

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\JAIELangPack]

"DisplayName"="Japanese Language Support"

"UninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\ja.inf, Uninstall"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Diablo]

"DisplayName"="Diablo"

"UninstallString"="C:\\WINDOWS\\DiabUnin.exe C:\\WINDOWS\\DiabUnin.dat"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Hellfire]

"UninstallString"="C:\\WINDOWS\\IsUninst.exe -fC:\\SIERRA\\HELLFIRE\\Uninst.isu"

"DisplayName"="Hellfire"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Sierra Utilities]

"DisplayName"="Sierra Utilities"

"UninstallString"="C:\\Program Files\\Sierra On-Line\\sutil32.exe uninstall"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\128PATCH]

"QuietUninstallString"="Rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\iedom.inf,,,256"

"RequiresIESysFile"="5.00"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\expinst]

"QuietDisplayName"="Internet Explorer Exception pack"

"QuietUninstallString"="\"C:\\PROGRA~1\\INTERN~1\\W2K\\expinst.exe\" /EU ieexinst.inf"

"RequiresIESysFile"="5.50"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HTMLHelp]

"QuietDisplayName"="Internet Explorer Help"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\hhupdcab.inf,,,256"

"RequiresIESysFile"="4.70.0.1155"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\fontcore]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IEData]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data]

@=""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IE_EXTRA]

"QuietDisplayName"="Internet Explorer Browsing Enhancements"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\ie_extra.inf,,,256"

"RequiresIESysFile"="6.0.2800.1100"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\VGX]

"QuietDisplayName"="Vector Graphics Rendering (VML)"

"QuietUninstallString"="RunDll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\vgx.inf,,,256"

"RequiresIESysFile"="5.50"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ADIELangPack]

"UninstallString"="RunDll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\AD.inf, Uninstall"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSection C:\\WINDOWS\\INF\\AD.inf,Uninstall"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\IEREADME]

"QuietDisplayName"="Internet Explorer ReadMe"

"QuietUninstallString"="rundll32 advpack.dll,LaunchINFSectionEx C:\\WINDOWS\\INF\\iereadme.inf,,,256"

"RequiresIESysFile"="6.0.2800.1106"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ST5UNST #1]

"ApplicationName"="Patchelp.exe"

"DisplayName"="Patchelp"

"UninstallString"="C:\\WINDOWS\\ST5UNST.EXE -n \"C:\\Program Files\\Patchelp\\ST5UNST.LOG\" "

"AppToUninstall"="Patchelp.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\QTjapeng v5]

"DisplayName"="QTjapeng v5"

"UninstallString"="C:\\Program Files\\QTjapeng v5\\uninstall.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\KanjiBrowze 2.1b]

"DisplayName"="KanjiBrowze 2.1b"

"UninstallString"="C:\\PROGRA~1\\MINDDA~1\\KANJIB~1.1B\\SETUP.EXE /remove"

"InstallDate"="2005-04-17 18:59:41"

"InstallLocation"="C:\\Program Files\\MindDate Software\\KanjiBrowze 2.1b"

"InstallSource"="C:\\WINDOWS\\DESKTOP\\MY BRIEFCASE\\KANJI LESSON"

"DisplayIcon"="C:\\Program Files\\MindDate Software\\KanjiBrowze 2.1b\\KanjiBrowze.exe"

"DisplayVersion"="2.1b"

"VersionMajor"=dword:00000002

"VersionMinor"=dword:00000001

"Publisher"="MindDate Software"

"HelpLink"="http://www.stackz.com"

"URLInfoAbout"="http://www.stackz.com"

"URLUpdateInfo"="http://www.stackz.com"

"Contact"="[email protected]"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SLanT 1.06d.na]

"DisplayName"="SLanT 1.06d.na"

"UninstallString"="C:\\PROGRA~1\\SLANT\\UNWISE.EXE C:\\PROGRA~1\\SLANT\\INSTALL.LOG"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ST5UNST #2]

"ApplicationName"="TTutor.exe"

"DisplayName"="Typing Tutor"

"UninstallString"="C:\\WINDOWS\\ST5UNST.EXE -n \"C:\\Program Files\\Typing Tutor\\ST5UNST.LOG\" "

"AppToUninstall"="TTutor.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yu-Gi-Oh! Power Of Chaos Trial]

"UninstallString"="C:\\WINDOWS\\IsUninst.exe -f\"C:\\Program Files\\KONAMI\\YuGiOh Power Of Chaos Trial\\Uninst.isu\""

"DisplayName"="Yu-Gi-Oh! Power Of Chaos Trial"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{821DABD6-26F2-49E5-AE55-40A589ADBE6D}]

"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\ENGINE\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{821DABD6-26F2-49E5-AE55-40A589ADBE6D}\\SETUP.EXE\" -l0x9 "

"DisplayName"="Emperor: Rise of the Middle Kingdom"

"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{821DABD6-26F2-49E5-AE55-40A589ADBE6D}\\setup.ilg"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Acrobat 5.0]

"UninstallString"="C:\\WINDOWS\\ISUNINST.EXE -f\"C:\\Program Files\\Common Files\\Adobe\\Acrobat 5.0\\98\\Uninst.isu\" -c\"C:\\Program Files\\Common Files\\Adobe\\Acrobat 5.0\\98\\Uninst.dll\""

"DisplayName"="Adobe Acrobat 5.0"

"InstallSource"="C:\\WINDOWS\\TEMP\\pft51B1~TMP\\"

"VersionMinor"=dword:00000000

"DisplayVersion"="5.0"

"InstallLocation"="C:\\Program Files\\Adobe\\Acrobat 5.0"

"URLInfoAbout"="http://www.adobe.com/prodindex/acrobat/main.html"

"HelpTelephone"=""

"VersionMajor"=dword:00000005

"ModifyPath"="\"C:\\WINDOWS\\TEMP\\pft51B1~TMP\\Setup.exe\""

"Publisher"="Adobe Systems, Inc."

"DisplayIcon"="C:\\Program Files\\Adobe\\Acrobat 5.0\\Reader\\AcroRd32.exe,0"

"HelpLink"="http://www.adobe.com/prodindex/acrobat/main.html"

"URLUpdateInfo"="http://www.adobe.com/prodindex/acrobat/main.html"

"UninstallPath"="C:\\WINDOWS\\ISUNINST.EXE -f\"C:\\Program Files\\Common Files\\Adobe\\Acrobat 5.0\\98\\Uninst.isu\" -c\"C:\\Program Files\\Common Files\\Adobe\\Acrobat 5.0\\98\\Uninst.dll\""

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\a-squared Free_is1]

"Inno Setup: Setup Version"="5.0.8"

"Inno Setup: App Path"="C:\\Program Files\\a2 Free"

"InstallLocation"="C:\\Program Files\\a2 Free\\"

"Inno Setup: Icon Group"="Accessories\\a-squared"

"Inno Setup: User"="ian"

"Inno Setup: Selected Tasks"=""

"Inno Setup: Deselected Tasks"="Desktop_Icon,QuickLaunch_Icon,Context_Menu"

"DisplayName"="a-squared Free 1.6"

"DisplayIcon"="C:\\Program Files\\a2 Free\\a2start.exe"

"UninstallString"="\"C:\\Program Files\\a2 Free\\unins000.exe\""

"QuietUninstallString"="\"C:\\Program Files\\a2 Free\\unins000.exe\" /SILENT"

"DisplayVersion"="1.6"

"Publisher"="Emsi Software GmbH"

"URLInfoAbout"="http://www.emsisoft.com"

"HelpLink"="http://forum.emsisoft.com"

"URLUpdateInfo"="http://www.emsisoft.com"

"NoModify"=dword:00000001

"NoRepair"=dword:00000001

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{336DD6B4-B100-4048-B2B7-FBA7059FD959}]

"RegOwner"="Ian DesLauriers"

"RegCompany"="Home"

"ProductID"="none"

"LocalPackage"="C:\\WINDOWS\\Installer\\2db5a39.msi"

"AuthorizedCDFPrefix"=""

"Comments"=""

"Contact"="Customer Support Department"

"DisplayVersion"="1.00.0000"

"HelpLink"=hex(2):68,74,74,70,3a,2f,2f,73,75,70,70,6f,72,74,2e,76,75,67,61,6d,\

65,73,2e,63,6f,6d,2f,6b,6f,6e,61,6d,69,2f,73,65,61,72,63,68,2e,61,73,70,78,\

00

"HelpTelephone"="1-310-649-8028"

"InstallDate"="20050317"

"InstallLocation"=""

"InstallSource"="E:\\"

"ModifyPath"=hex(2):4d,73,69,45,78,65,63,2e,65,78,65,20,2f,49,7b,33,33,36,44,\

44,36,42,34,2d,42,31,30,30,2d,34,30,34,38,2d,42,32,42,37,2d,46,42,41,37,30,\

35,39,46,44,39,35,39,7d,00

"Publisher"="KONAMI"

"Readme"=""

"Size"=""

"EstimatedSize"=dword:001bf082

"UninstallString"=hex(2):4d,73,69,45,78,65,63,2e,65,78,65,20,2f,49,7b,33,33,36,\

44,44,36,42,34,2d,42,31,30,30,2d,34,30,34,38,2d,42,32,42,37,2d,46,42,41,37,\

30,35,39,46,44,39,35,39,7d,00

"URLInfoAbout"="http://www.konami.com/usa/"

"URLUpdateInfo"=""

"VersionMajor"=dword:00000001

"VersionMinor"=dword:00000000

"WindowsInstaller"=dword:00000001

"Version"=dword:01000000

"Language"=dword:00000409

"DisplayName"="Yu-Gi-Oh! Power of Chaos JOEY THE PASSION"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\VBMahjongg]

"UninstallString"="C:\\WINDOWS\\uninst.exe -f\"C:\\Program Files\\VBMahjongg\\DeIsL1.isu\" -c\"C:\\Program Files\\VBMahjongg\\_ISREG32.DLL\""

"DisplayName"="VBMahjongg"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ST5UNST #3]

"ApplicationName"="BOS.exe"

"DisplayName"="BOS"

"UninstallString"="C:\\WINDOWS\\ST5UNST.EXE -n \"C:\\Program Files\\BOS\\ST5UNST.LOG\" "

"AppToUninstall"="BOS.exe"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2E76CE06-3B5C-4E1B-88A4-D3FA0F95AFDE}]

"LocalPackage"="C:\\WINDOWS\\Installer\\245228a.msi"

"AuthorizedCDFPrefix"=""

"Comments"=""

"Contact"=""

"DisplayVersion"="2.00.0000"

"HelpLink"=""

"HelpTelephone"=""

"InstallDate"="20050322"

"InstallLocation"="C:\\Program Files\\MidTen Media\\KERClink\\"

"InstallSource"="C:\\WINDOWS\\Downloaded Installations\\{0591998F-CBF9-4845-8C02-31B96F522281}\\"

"ModifyPath"=hex(2):4d,73,69,45,78,65,63,2e,65,78,65,20,2f,58,7b,32,45,37,36,\

43,45,30,36,2d,33,42,35,43,2d,34,45,31,42,2d,38,38,41,34,2d,44,33,46,41,30,\

46,39,35,41,46,44,45,7d,00

"NoModify"=dword:00000001

"NoRepair"=dword:00000001

"Publisher"="MidTen Media"

"Readme"=""

"Size"=""

"EstimatedSize"=dword:00006694

"UninstallString"=hex(2):4d,73,69,45,78,65,63,2e,65,78,65,20,2f,58,7b,32,45,37,\

36,43,45,30,36,2d,33,42,35,43,2d,34,45,31,42,2d,38,38,41,34,2d,44,33,46,41,\

30,46,39,35,41,46,44,45,7d,00

"URLInfoAbout"="http://www.kerclink.com/"

"URLUpdateInfo"=""

"VersionMajor"=dword:00000002

"VersionMinor"=dword:00000000

"WindowsInstaller"=dword:00000001

"Version"=dword:02000000

"Language"=dword:00000409

"DisplayName"="KERclink"

Share this post


Link to post
Share on other sites
Sign in to follow this  

×
×
  • Create New...