Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Help with serious pc infection


  • This topic is locked This topic is locked
5 replies to this topic

#1 MikeSlee

MikeSlee

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:50 PM

Posted 29 November 2008 - 04:57 PM

{Moderator EDIT: As this was the only tool OP was able to run I have moved this to the HJT forum,Thanks for viewing ~~Mod.boopme}

Hi,
Having a major issue with a malware infection.

It started off with the PC running extemely slow, so after checking Taskmanager I found that there were several processes running under the names of: Crssc.exe, and winlogin.exe

Tried to search on the Symantec and other sites but these have now become blocked (hosts file is empty).

Also the "tools" option has disappeared from explorer so I cant get it to display the hidden folders and windows update has been disabled.

Managed to run CCleaner with no issues, but things such as SuperAntiSpyware, Spy Bot S&D and Malwarebytes AntiMalware won't run at all.

Managed to get a log from MGtools though

Any help would be appreciated (Before I give up and reformat)

Edited by boopme, 29 November 2008 - 09:32 PM.


BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,190 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:50 PM

Posted 29 November 2008 - 05:55 PM

Please post the MGTools log.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 MikeSlee

MikeSlee
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:50 PM

Posted 29 November 2008 - 08:59 PM

ooppss knew I forgot some thing


Log Created @ 27/11/2008 19:45:15

services (C:\WINDOWS\system32\services.exe)

C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\SCESRV.dll
C:\WINDOWS\system32\AUTHZ.dll
C:\WINDOWS\system32\umpnpmgr.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcAdProc.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\eventlog.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\wtsapi32.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\Cabinet.dll




svchost (C:\WINDOWS\system32\svchost.exe)

C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
c:\windows\system32\dnsrslvr.dll
c:\windows\system32\DNSAPI.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
c:\windows\system32\iphlpapi.dll




svchost (C:\WINDOWS\system32\svchost.exe)

C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\SAMLIB.dll
c:\windows\system32\rpcss.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\RASAPI32.dll
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\System32\mswsock.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\mswsock32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\rasadhlp.dll
c:\windows\system32\termsrv.dll
c:\windows\system32\ICAAPI.dll
c:\windows\system32\SETUPAPI.dll
C:\WINDOWS\system32\WINTRUST.dll
c:\windows\system32\AUTHZ.dll
c:\windows\system32\mstlsapi.dll
c:\windows\system32\ACTIVEDS.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\ATL.DLL
C:\WINDOWS\system32\REGAPI.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\nvLsp.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\System32\wshtcpip.dll




wmiprvse (C:\WINDOWS\system32\wbem\wmiprvse.exe)

C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\wbem\FastProx.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\wmiutils.dll
C:\WINDOWS\system32\wbem\cimwin32.dll
C:\WINDOWS\system32\wbem\framedyn.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SECURITY.DLL
C:\WINDOWS\system32\schannel.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\CFGMGR32.DLL
C:\WINDOWS\system32\WMI.DLL
C:\WINDOWS\system32\licwmi.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\licdll.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\wbem\ntevt.dll
C:\WINDOWS\system32\wbem\PROVTHRD.dll
C:\WINDOWS\system32\msvcirt.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\dskquota.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\IMAGEHLP.dll




vsmon (C:\WINDOWS\system32\ZoneLabs\vsmon.exe)

C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\VSUTIL.dll
C:\WINDOWS\system32\MSVCRT.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\VSINIT.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\zpeng24.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\dnsapi.dll
C:\WINDOWS\system32\Crypt32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\ZoneLabs\dbghelp.dll
C:\WINDOWS\system32\zonelabs\lib\pyd\signedDll.pyd
C:\WINDOWS\system32\zonelabs\lib\pyd\pyvsinit.pyd
C:\WINDOWS\system32\zonelabs\lib\pyd\pyexpat.pyd
C:\WINDOWS\system32\zonelabs\lib\pyd\_socket.pyd
C:\WINDOWS\system32\ZoneLabs\plugins\vsmon_plugin\vsmon_plugin.dll
C:\WINDOWS\system32\ZoneLabs\plugins\rpc_server\rpc_server.dll
C:\WINDOWS\system32\ZoneLabs\vsmondll.dll
C:\WINDOWS\system32\VSDATA.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\ZoneLabs\ssleay32.dll
C:\WINDOWS\system32\vsxml.dll
C:\WINDOWS\system32\ZoneLabs\fbl.dll
C:\WINDOWS\system32\zlcomm.dll
C:\WINDOWS\system32\ZLCommDB.dll
C:\WINDOWS\system32\ZoneLabs\vsdb.dll
C:\WINDOWS\system32\ZoneLabs\VSRULEDB.DLL
C:\WINDOWS\system32\ZoneLabs\vsvault.dll
C:\WINDOWS\system32\rasapi32.dll
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\psapi.dll
C:\WINDOWS\system32\nvLsp.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\vswmi.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\ZoneLabs\av.dll
C:\WINDOWS\system32\ZoneLabs\imsecure.dll
C:\WINDOWS\system32\ZoneLabs\zlquarantine.dll
C:\WINDOWS\system32\ZoneLabs\qrbase.dll
C:\WINDOWS\system32\ZoneLabs\scheduler.dll
C:\WINDOWS\system32\ZoneLabs\zlsre.dll
C:\WINDOWS\system32\ZoneLabs\srescan.dll
C:\WINDOWS\system32\ZoneLabs\zlupdate.dll
C:\WINDOWS\system32\ZoneLabs\streamapi\httpblocker\httpblocker.dll
C:\WINDOWS\system32\LIBEAY32_0.9.6l.dll
C:\WINDOWS\system32\ZoneLabs\streamapi\imslsp\imslsp.dll
C:\WINDOWS\system32\ZoneLabs\camupd.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\mswsock32.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\fastprox.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\ZoneLabs\vsavpro.dll




ntvdm (C:\WINDOWS\system32\ntvdm.exe)

C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\dnsapi.dll
C:\WINDOWS\system32\WINMM.DLL
C:\WINDOWS\system32\NTVDMD.DLL




MGtools (C:\MGtools.exe)

C:\MGtools.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\apphelp.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\netapi32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\SETUPAPI.dll




ProcessDll (C:\MGTools\ProcessDll.exe)

C:\MGTools\ProcessDll.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\mscoree.dll
C:\WINDOWS\system32\KERNEL32.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\dnsapi.dll
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\MSVCR80.dll
C:\WINDOWS\system32\shell32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll
C:\WINDOWS\system32\MSCTF.dll
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\923bd55258380eae77353d36a5a1b08f\Microsoft.VisualBasic.ni.dll
C:\WINDOWS\system32\shfolder.dll
C:\WINDOWS\system32\psapi.dll




smss (C:\WINDOWS\system32\smss.exe)

C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\ntdll.dll




cmd (C:\WINDOWS\system32\cmd.exe)

C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\dnsapi.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\VERSION.dll




ctfmon (C:\WINDOWS\system32\ctfmon.exe)

C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\MSUTB.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\dnsapi.dll
C:\WINDOWS\system32\msctfime.ime




winlogon (\??\C:\WINDOWS\system32\winlogon.exe)

\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\AUTHZ.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\NDdeApi.dll
C:\WINDOWS\system32\PROFMAP.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\REGAPI.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\MSGINA.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\ODBC32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\odbcint.dll
C:\WINDOWS\system32\SHSVCS.dll
C:\WINDOWS\system32\sfc.dll
C:\WINDOWS\system32\sfc_os.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\WINSCARD.DLL
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\cscdll.dll
C:\WINDOWS\system32\WlNotify.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\winbug32.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\qoMCSIXq.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\cscui.dll
C:\WINDOWS\system32\MPRAPI.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CLBCATQ.DLL




svchost (C:\WINDOWS\system32\svchost.exe)

C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\imagehlp.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\xpsp2res.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\DNSAPI.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\WMI.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
c:\windows\system32\WTSAPI32.dll
c:\windows\system32\WINSTA.dll
C:\WINDOWS\system32\NETAPI32.dll
c:\windows\system32\ESENT.dll
c:\windows\system32\ATL.DLL
c:\windows\system32\cryptsvc.dll
C:\WINDOWS\system32\WINTRUST.dll
c:\windows\system32\certcli.dll
C:\WINDOWS\system32\CRYPTUI.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\System32\rastls.dll
C:\WINDOWS\system32\MPRAPI.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\RASAPI32.dll
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\SCHANNEL.dll
C:\WINDOWS\system32\WinSCard.dll
C:\WINDOWS\System32\raschap.dll
C:\WINDOWS\system32\msv1_0.dll
c:\windows\system32\wkssvc.dll
c:\windows\system32\NTDSAPI.dll
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
c:\windows\system32\srvsvc.dll
c:\windows\system32\netman.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\WZCSAPI.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\POWRPROF.dll
c:\windows\system32\wbem\wmisvc.dll
C:\WINDOWS\system32\VSSAPI.DLL
c:\windows\system32\ipnathlp.dll
c:\windows\system32\MSWSOCK.dll
c:\windows\system32\AUTHZ.dll
C:\WINDOWS\system32\HNETCFG.DLL
C:\WINDOWS\System32\wshtcpip.dll
c:\windows\system32\browser.dll
C:\WINDOWS\System32\Wbem\wbemcore.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\System32\Wbem\esscli.dll
C:\WINDOWS\System32\Wbem\wbemcomn.dll
C:\WINDOWS\System32\Wbem\FastProx.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\wmiutils.dll
C:\WINDOWS\system32\wbem\repdrvfs.dll
C:\WINDOWS\system32\wbem\wmiprvsd.dll
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\system32\wbem\wbemess.dll
C:\WINDOWS\system32\netcfgx.dll
C:\WINDOWS\system32\CLUSAPI.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\nvLsp.dll
C:\WINDOWS\system32\rasmans.dll
C:\WINDOWS\system32\Sens.dll
C:\WINDOWS\system32\WINIPSEC.DLL
C:\WINDOWS\system32\wbem\ncprov.dll




explorer (C:\WINDOWS\Explorer.EXE)

C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\BROWSEUI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\SHDOCVW.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\CRYPTUI.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\dnsapi.dll
C:\WINDOWS\system32\cbXQiHBT.dll
C:\WINDOWS\system32\SHFOLDER.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\apphelp.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\setupapi.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\System32\cscui.dll
C:\WINDOWS\System32\CSCDLL.dll
C:\WINDOWS\system32\themeui.dll
C:\WINDOWS\system32\MSIMG32.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\LINKINFO.dll
C:\WINDOWS\system32\ntshrui.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\ieframe.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\rasapi32.dll
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\System32\mswsock.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\mswsock32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\jsne87fidgf.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\fastprox.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\NETSHELL.dll
C:\WINDOWS\system32\credui.dll
C:\WINDOWS\system32\nvLsp.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\MLANG.dll
C:\WINDOWS\system32\DHCPCSVC.DLL
C:\WINDOWS\system32\netman.dll
C:\WINDOWS\system32\MPRAPI.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\WZCSAPI.DLL
C:\WINDOWS\system32\WZCSvc.DLL
C:\WINDOWS\system32\WMI.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\ESENT.dll
C:\WINDOWS\system32\qoMCSIXq.dll
C:\WINDOWS\system32\browselc.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msutb.dll
C:\WINDOWS\system32\mslbui.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\System32\ntlanman.dll
C:\WINDOWS\System32\NETUI0.dll
C:\WINDOWS\System32\NETUI1.dll
C:\WINDOWS\System32\NETRAP.dll
C:\WINDOWS\System32\davclnt.dll
C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.3352_x-ww_81af8e88\gdiplus.dll
C:\Program Files\OpenOffice.org 2.4\program\MSVCR71.dll
C:\Program Files\OpenOffice.org 2.4\program\stlport_vc7145.dll
C:\Program Files\OpenOffice.org 2.4\program\MSVCP71.dll
C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\MSVCR80.dll
C:\WINDOWS\system32\PortableDeviceApi.dll
C:\WINDOWS\system32\MSGINA.dll
C:\WINDOWS\system32\ODBC32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\odbcint.dll
C:\WINDOWS\system32\shdoclc.dll
C:\Program Files\WinRAR\rarext.dll
C:\WINDOWS\system32\zipfldr.dll
C:\WINDOWS\system32\actxprxy.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\Program Files\Zone Labs\ZoneAlarm\zlavscan.dll
C:\Program Files\ClamWin\bin\ExpShell.dll
C:\WINDOWS\system32\CmdLineExt03.dll
C:\WINDOWS\system32\mydocs.dll




svchost (C:\WINDOWS\system32\svchost.exe)

C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\xpsp2res.dll
c:\windows\system32\lmhsvc.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll




csrss (\??\C:\WINDOWS\system32\csrss.exe)

\??\C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\CSRSRV.dll
C:\WINDOWS\system32\basesrv.dll
C:\WINDOWS\system32\winsrv.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\KERNEL32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\sxs.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\VERSION.dll




svchost (C:\WINDOWS\system32\svchost.exe)

C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\nvLsp.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\mswsock32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll




lsass (C:\WINDOWS\system32\lsass.exe)

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\LSASRV.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\SAMSRV.dll
C:\WINDOWS\system32\cryptdll.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\gyopts.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\msprivs.dll
C:\WINDOWS\system32\kerberos.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\netlogon.dll
C:\WINDOWS\system32\w32time.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\schannel.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\wdigest.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\cbXQiHBT.dll
C:\WINDOWS\system32\SHFOLDER.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\Normaliz.dll
C:\WINDOWS\system32\iertutil.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\setupapi.dll
C:\WINDOWS\system32\scecli.dll
C:\WINDOWS\system32\dssenh.dll




System (ER-0x01)

Unable to list modules




Idle (ER-0x01)

Unable to list modules







*****************************************************************************
* GetRunKeys.Bat - © 01/28/2006 By Chaslang *
* This version supports Win2K, XP and Vista *
* 10/20/2008 Version 2.23 - Add tasklist output *
*****************************************************************************
* Most of the information reported below is not necessarily bad. You must *
* not take any steps on any of these lines without consulting an expert. *
*****************************************************************************

Windows OS is

Microsoft Windows XP [Version 5.1.2600]
It's Thu November 27, 2008 07:41:32 PM

******************************************************************************
GetRunKey installation folder and files

"C:\MGtools\"
analyse.exe 13 Jul 2007 401720 "analyse.exe"
chodefix.bat 7 Jun 2007 6146 "chodefix.bat"
config.reg 12 Dec 2007 1552 "config.reg"
disabl~1.reg 2 Aug 2007 120 "DisableUAC.reg"
enable~1.reg 2 Aug 2007 120 "EnableUAC.reg"
fixbagle.bat 10 Jul 2008 1897 "FixBagle.bat"
fixbagle.reg 10 Jul 2008 831 "fixBagle.reg"
fixcf.bat 11 Oct 2008 353 "FixCF.bat"
fixcf.reg 11 Oct 2008 582 "fixCF.reg"
fixchode.reg 7 Jun 2007 738 "fixChode.reg"
getdet~1.exe 30 Oct 2006 245760 "GetDetails.exe"
getlogs.bat 11 Oct 2008 3563 "GetLogs.Bat"
getrun~1.bat 20 Oct 2008 102680 "GetRunKey.bat"
getunkey.txt 27 Nov 2008 176301 "GetUnKey.txt"
getunk~1.bat 3 Jan 2008 1947 "GetUnKeys.bat"
grep.exe 14 Apr 2003 80412 "grep.exe"
hide.reg 26 Jul 2007 213 "hide.reg"
hijack~1.log 27 Nov 2008 6174 "hijackthis.log"
history.txt 20 Oct 2008 10723 "history.txt"
iefix.reg 2 Apr 2004 1756 "IEFIX.reg"
locate.com 14 Jan 2005 11254 "locate.com"
ltime.exe 28 Oct 1986 13184 "ltime.exe"
process.exe 6 Jun 2003 53248 "Process.exe"
proces~1.exe 1 Aug 2006 6656 "ProcessDll.exe"
regfix.bat 18 Apr 2007 145 "Regfix.bat"
sed.exe 31 Aug 2000 98816 "sed.exe"
shownew.bat 20 Oct 2008 56882 "ShowNew.bat"
swreg.exe 16 Dec 2007 156160 "swreg.exe"
swwhoami.exe 16 Dec 2007 66048 "swwhoami.exe"
unhide.reg 3 Aug 2007 213 "unhide.reg"
userinfo.bat 8 Sep 2008 329 "UserInfo.bat"
vfind.exe 28 Dec 2007 49152 "vfind.exe"
vunfind.bat 28 Dec 2007 861 "VunFind.bat"
zip.exe 14 Jan 2005 126976 "zip.exe"

34 items found: 34 files, 0 directories.
Total of file sizes: 1,683,512 bytes 1.61 M

----------------------------------------------------------------------------
Listing Standard Startup (Run) Registry Keys
----------------------------------------------------------------------------

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"Alcmtr"="ALCMTR.EXE"
"JMB36X IDE Setup"="C:\\WINDOWS\\JM\\JMInsIDE.exe"
"JMB36X Configure"="C:\\WINDOWS\\system32\\JMRaidSetup.exe boot"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"ZoneAlarm Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"ClamWin"="\"C:\\Program Files\\ClamWin\\bin\\ClamTray.exe\" --logon"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_07\\bin\\jusched.exe\""
"Start WingMan Profiler"="C:\\Program Files\\Logitech\\Gaming Software\\LWEMon.exe /noui"
"C-Media Mixer"="Mixer.exe /startup"
"78470314"="rundll32.exe \"C:\\WINDOWS\\system32\\dnnmvbya.dll\",b"
"xsjfn83jkemfofght"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\winlogin.exe"
"SkyTel"="SkyTel.EXE"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\Run\OptionalComponents]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\RunOnce]


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentVersion\RunOnceEx]


[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug]
"Auto"="1"
"Debugger"="drwtsn32 -p %ld -e %ld -g"
"UserDebuggerHotKey"=dword:00000000



HKEY_CURRENT_USER\software\microsoft\windows nt\currentversion\windows
load REG_SZ


HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows
AppInit_DLLs REG_SZ gyopts.dll


HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon
Shell REG_SZ Explorer.exe


HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon
Userinit REG_SZ C:\WINDOWS\system32\userinit.exe,


HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon
System REG_SZ


HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\shell folders
Startup REG_SZ C:\Documents and Settings\Administrator\Start Menu\Programs\Startup


HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\user shell folders
Startup REG_EXPAND_SZ %USERPROFILE%\Start Menu\Programs\Startup


HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\user shell folders
Common Startup REG_EXPAND_SZ %ALLUSERSPROFILE%\Start Menu\Programs\Startup


HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shell folders
Common Startup REG_SZ C:\Documents and Settings\All Users\Start Menu\Programs\Startup



HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager
PendingFileRenameOperations REG_MULTI_SZ \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMPOR~1\Content.IE5\index.dat\0\0\??\C:\DOCUME~1\ADMINI~1\Cookies\index.dat\0\0\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\History\History.IE5\desktop.ini\0\0\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\History\History.IE5\index.dat\0\0\0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
"Asynchronous"=dword:00000000
"Impersonate"=dword:00000000
"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,33,00,32,00,2e,00,64,00,6c,00,\
6c,00,00,00
"Logoff"="ChainWlxLogoffEvent"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
"Asynchronous"=dword:00000000
"Impersonate"=dword:00000000
"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,6e,00,65,00,74,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Logoff"="CryptnetWlxLogoffEvent"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
"DLLName"="cscdll.dll"
"Logon"="WinlogonLogonEvent"
"Logoff"="WinlogonLogoffEvent"
"ScreenSaver"="WinlogonScreenSaverEvent"
"Startup"="WinlogonStartupEvent"
"Shutdown"="WinlogonShutdownEvent"
"StartShell"="WinlogonStartShellEvent"
"Impersonate"=dword:00000000
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\qoMCSIXq]
"Asynchronous"=dword:00000001
"DllName"="qoMCSIXq.dll"
"Impersonate"=dword:00000000
"Logon"="o"
"Logoff"="f"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
"DLLName"="wlnotify.dll"
"Logon"="SCardStartCertProp"
"Logoff"="SCardStopCertProp"
"Lock"="SCardSuspendCertProp"
"Unlock"="SCardResumeCertProp"
"Enabled"=dword:00000001
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
"Asynchronous"=dword:00000000
"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Impersonate"=dword:00000000
"StartShell"="SchedStartShell"
"Logoff"="SchedEventLogOff"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
"Logoff"="WLEventLogoff"
"Impersonate"=dword:00000000
"Asynchronous"=dword:00000001
"DllName"=hex(2):73,00,63,00,6c,00,67,00,6e,00,74,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
"DLLName"="WlNotify.dll"
"Lock"="SensLockEvent"
"Logon"="SensLogonEvent"
"Logoff"="SensLogoffEvent"
"Safe"=dword:00000001
"MaxWait"=dword:00000258
"StartScreenSaver"="SensStartScreenSaverEvent"
"StopScreenSaver"="SensStopScreenSaverEvent"
"Startup"="SensStartupEvent"
"Shutdown"="SensShutdownEvent"
"StartShell"="SensStartShellEvent"
"PostShell"="SensPostShellEvent"
"Disconnect"="SensDisconnectEvent"
"Reconnect"="SensReconnectEvent"
"Unlock"="SensUnlockEvent"
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
"Asynchronous"=dword:00000000
"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Impersonate"=dword:00000000
"Logoff"="TSEventLogoff"
"Logon"="TSEventLogon"
"PostShell"="TSEventPostShell"
"Shutdown"="TSEventShutdown"
"StartShell"="TSEventStartShell"
"Startup"="TSEventStartup"
"MaxWait"=dword:00000258
"Reconnect"="TSEventReconnect"
"Disconnect"="TSEventDisconnect"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winbug32]
"Asynchronous"=dword:00000001
"DllName"="winbug32.dll"
"Impersonate"=dword:00000000
"Startup"="busStartup"
"Shutdown"="busShutdown"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
"DLLName"="wlnotify.dll"
"Logon"="RegisterTicketExpiredNotificationEvent"
"Logoff"="UnregisterTicketExpiredNotificationEvent"
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001

----------------------------------------------------------------------------
Listing AppCert Registry Keys
----------------------------------------------------------------------------
AppCert registry keys not found

----------------------------------------------------------------------------
Listing MSCONFIG Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state]
"system.ini"=dword:00000000
"win.ini"=dword:00000000
"bootini"=dword:00000000
"services"=dword:00000000
"startup"=dword:00000000

----------------------------------------------------------------------------
Listing ModuleUsage Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/sysreqlab3.dll]
".Owner"="{1E54D648-B804-468d-BC78-4AFFED8E262E}"
"{1E54D648-B804-468d-BC78-4AFFED8E262E}"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/danim.dll]
"CMediaAudioRack"="CMediaAudioRack"
".Owner"="CMediaAudioRack"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/ddrawex.dll]
"CMediaAudioRack"="CMediaAudioRack"
".Owner"="CMediaAudioRack"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/quartz.dll]
"CMediaAudioRack"="CMediaAudioRack"
".Owner"="CMediaAudioRack"

----------------------------------------------------------------------------
Listing HKCU Policies Registry Keys
----------------------------------------------------------------------------

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]


[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=dword:00000091

----------------------------------------------------------------------------
Listing HKCU Explorer\Advanced//Hidden and SuperHidden Registry Keys
if Hidden = 0 then Hidden Files and Folders are not shown
if SuperHidden = 1 is the desired default value.
if ShowSuperHidden = 0 then System Files are not shown
if HideFileExt = 1 then File Extension are not shown
We want their values to be (from top to bottom) 1,1,1,0
----------------------------------------------------------------------------

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
"SuperHidden"=dword:00000001
"ShowSuperHidden"=dword:00000001
"HideFileExt"=dword:00000000

----------------------------------------------------------------------------
Listing HKLM Explorer\Advanced\Folder\Hidden\NOHIDDEN Registry Keys
CheckedValue Default is dword:00000002
DefaultValue Default is dword:00000002
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced"
"Text"="@shell32.dll,-30501"
"Type"="radio"
"CheckedValue"=dword:00000002
"ValueName"="Hidden"
"DefaultValue"=dword:00000002
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51104"


----------------------------------------------------------------------------
Listing HKLM Explorer\Advanced\Folder\Hidden\SHOWALL Registry Keys
CheckedValue Default is dword:00000001
DefaultValue Default is dword:00000002
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced"
"Text"="@shell32.dll,-30500"
"Type"="radio"
"CheckedValue"=dword:00000001
"ValueName"="Hidden"
"DefaultValue"=dword:00000002
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51105"


----------------------------------------------------------------------------
Listing HKLM Explorer\Advanced\Folder\HideFileExt Registry Keys
CheckedValue Default is dword:00000001
UnCheckedValue Default is dword:00000000
DefaultValue Default is dword:00000001
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\HideFileExt]
"Type"="checkbox"
"Text"="@shell32.dll,-30503"
"HKeyRoot"=dword:80000001
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced"
"ValueName"="HideFileExt"
"CheckedValue"=dword:00000001
"UncheckedValue"=dword:00000000
"DefaultValue"=dword:00000001
"HelpID"="shell.hlp#51101"


----------------------------------------------------------------------------
Listing HKLM Explorer\Advanced\Folder\SuperHidden Registry Keys
CheckedValue Default is dword:00000000
UnCheckedValue Default is dword:00000001
DefaultValue Default is dword:00000000
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden]
"Type"="checkbox"
"Text"="@shell32.dll,-30508"
"WarningIfNotDefault"="@shell32.dll,-28964"
"HKeyRoot"=dword:80000001
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced"
"ValueName"="ShowSuperHidden"
"CheckedValue"=dword:00000000
"UncheckedValue"=dword:00000001
"DefaultValue"=dword:00000000
"HelpID"="shell.hlp#51103"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""


----------------------------------------------------------------------------
Listing HKLM Policies Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

----------------------------------------------------------------------------
Listing BHO Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5397D853-8F53-4505-86D4-0024A08AA9F9}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c5bf49a2-94f3-42bd-f434-3604812c897d}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E9681C1C-C1DF-4970-97BB-86C3E716AFA3}]

----------------------------------------------------------------------------
Listing SharedTaskScheduler Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\windows\currentversion\Explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
"{C5BF49A2-94F3-42BD-F434-3604812C897D}"="mcb7uehuj3n8weuhejsw"

----------------------------------------------------------------------------
Listing ShellExecuteHooks Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\windows\currentversion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{E9681C1C-C1DF-4970-97BB-86C3E716AFA3}"=""

----------------------------------------------------------------------------
Listing ShellServiceObjectDelayLoad Registry Keys
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"

----------------------------------------------------------------------------
Listing Default URL Prefix Keys - a possible hijack point
----------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix]
@="http://"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL\Prefixes]
"ftp"="ftp://"
"gopher"="gopher://"
"home"="http://"
"mosaic"="http://"
"www"="http://"

----------------------------------------------------------------------------
HKEY_CURRENT_USER ZoneMap ProtocolDefaults
----------------------------------------------------------------------------

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
@=""
"http"=dword:00000003
"https"=dword:00000003
"ftp"=dword:00000003
"file"=dword:00000003
"@ivt"=dword:00000001
"shell"=dword:00000000

----------------------------------------------------------------------------
Miscellaneous Malware Detection Report
----------------------------------------------------------------------------

Checking for DNS Hijacker - aka Wareout
------------------------------------------------------------------------
DNS hijacker not found
------------------------------------------------------------------------

List of Malware found in SharedTaskScheduler
------------------------------------------------------------------------
No Malware found in SharedTaskScheduler
------------------------------------------------------------------------


List of Malware found in C:\WINDOWS\system32
------------------------------------------------------------------------
No Malware found in C:\WINDOWS\system32
------------------------------------------------------------------------


Check for Troj-Torpig-D,E,J Keylogger
------------------------------------------------------------------------
Troj-Torpig-D,E,J Keylogger was not found
------------------------------------------------------------------------


Looking for winlogonhook/conhook trojan
------------------------------------------------------------------------

[HKEY_LOCAL_MACHINE\software\microsoft\mssmgr]
"Data"=dword:0fa70ee6
"LSTV"=hex:d8,07,0b,00,00,00,17,00,16,00,13,00,0a,00,48,01
"Brnd"=dword:00000bba
"MSLIST"=hex:83,98,99,9e,d5,df,de,9b,84,95,9b,82,84,9d,98,88,98,94,d3,90,9a,74,\
2e,6b,6e,63,2a,65,6a,6c,27,7a,63,7c,0d,3e,0f,20,11,22,13,7c,61,62,67,22,36,\
35,6b,73,6f,70,79,41,55,0c,4d,41,51,09,4e,45,4e,05,48,41,49,00,5f,58,41,32,\
03,34,05,36,07,38,51,4e,4f,4c,07,11,10,2f,23,27,31,25,30,20,34,2d,21,2f,39,\
62,23,2b,3b,7f,38,3f,34,7b,36,3b,33,76,29,32,2b,5c,6d,5e,6f,60,51,62
"PID"=dword:00000003
"Rid"=dword:00000266
"BSTV"=hex:d8,07,0b,00,04,00,1b,00,13,00,18,00,02,00,5b,03
"SSTV"=hex:d8,07,0b,00,04,00,1b,00,13,00,28,00,05,00,19,01
"SCLIST"=hex:
"SSLIST"=hex:
"BPTV"=dword:00000001
"PSTV"=hex:d8,07,0b,00,01,00,18,00,12,00,37,00,08,00,77,01

------------------------------------------------------------------------


Looking for Miscellaneous Rootkits
------------------------------------------------------------------------
lzx32, msguard, and pe386 rootkits not found
------------------------------------------------------------------------


Looking for CmdService adware - part of ADSPY/ISearch.d.2
------------------------------------------------------------------------
CmdService adware not found
------------------------------------------------------------------------


Looking for Network_Monitor adware - part of ADSPY/ISearch.d.2
------------------------------------------------------------------------
Network_Monitor adware not found


Looking for Win32/Bagle SROSA Driver
------------------------------------------------------------------------
Win32/Bagle SROSA driver not found
------------------------------------------------------------------------


Looking for DOMAINSERVICE often found with Vundo infections
------------------------------------------------------------------------
DOMAINSERVICE not found
------------------------------------------------------------------------


Looking for Trojan.Peacomm aka Downloader-BAI.sys
------------------------------------------------------------------------
Trojan.Peacomm not found
------------------------------------------------------------------------


Looking for forms of Trojan.Haxdoor - many false indications may show here
------------------------------------------------------------------------
Trojan.Haxdoor not found
------------------------------------------------------------------------


Showing Registry Shell Spawning - Not all entries are bad
----------------------------------------------------------------------------


HKEY_CLASSES_ROOT\avifile\shell\open\command
<NO NAME> REG_SZ "C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L"


HKEY_CLASSES_ROOT\batfile\shell\open\command
<NO NAME> REG_SZ "%1" %*


HKEY_CLASSES_ROOT\cmdfile\shell\open\command
<NO NAME> REG_SZ "%1" %*


HKEY_CLASSES_ROOT\comfile\shell\open\command
<NO NAME> REG_SZ "%1" %*


HKEY_CLASSES_ROOT\cplfile\shell\cplopen\command
<NO NAME> REG_SZ rundll32.exe shell32.dll,Control_RunDLL "%1",%*


HKEY_CLASSES_ROOT\exefile\shell\open\command
<NO NAME> REG_SZ "%1" %*


HKEY_CLASSES_ROOT\giffile\shell\open\command
<NO NAME> REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -nohome


HKEY_CLASSES_ROOT\htafile\shell\open\command
<NO NAME> REG_SZ C:\WINDOWS\system32\mshta.exe "%1" %*


HKEY_CLASSES_ROOT\http\shell\open\command
<NO NAME> REG_SZ "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome


HKEY_CLASSES_ROOT\htmlfile\shell\opennew\command
<NO NAME> REG_SZ "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1


HKEY_CLASSES_ROOT\htmlfile\shell\print\command
<NO NAME> REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1"


HKEY_CLASSES_ROOT\inffile\shell\install\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1


HKEY_CLASSES_ROOT\inifile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1


HKEY_CLASSES_ROOT\internetshortcut\shell\open\command
<NO NAME> REG_SZ rundll32.exe ieframe.dll,OpenURL %l


HKEY_CLASSES_ROOT\jpegfile\shell\open\command
<NO NAME> REG_SZ rundll32.exe C:\WINDOWS\system32\shimgvw.dll,ImageView_Fullscreen %1


HKEY_CLASSES_ROOT\jsefile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*


HKEY_CLASSES_ROOT\jsfile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*


HKEY_CLASSES_ROOT\mpegfile\shell\open\command
<NO NAME> REG_SZ "C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L"


HKEY_CLASSES_ROOT\piffile\shell\open\command
<NO NAME> REG_SZ "%1" %*


HKEY_CLASSES_ROOT\regedit\shell\open\command
<NO NAME> REG_SZ regedit.exe %1


HKEY_CLASSES_ROOT\regfile\shell\open\command
<NO NAME> REG_SZ regedit.exe "%1"


Error: Key: regfile\shell\merge\command does not exist!



HKEY_CLASSES_ROOT\scrfile\shell\open\command
<NO NAME> REG_SZ "%1" /S


HKEY_CLASSES_ROOT\scrfile\shell\config\command
<NO NAME> REG_SZ "%1"


HKEY_CLASSES_ROOT\txtfile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1


HKEY_CLASSES_ROOT\vbefile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*


HKEY_CLASSES_ROOT\vbsfile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*


HKEY_CLASSES_ROOT\vbsfile\shell\open2\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\CScript.exe "%1" %*


HKEY_CLASSES_ROOT\wshfile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*


HKEY_CLASSES_ROOT\wsffile\shell\open\command
<NO NAME> REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe "%1" %*
------------------------------------------------------------------------


Looking for Image File Execution Options Hijacks - Not all entries are bad
----------------------------------------------------------------------------


HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\apitrap.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ASSTE.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\AVSTE.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\Cleanup.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\cqw32.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\divx.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\divxdec.ax

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\DJSMAR00.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\DRMINST.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\enc98.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\EncodeDivXExt.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\EncryptPatchVer.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\front.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\fullsoft.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\GBROWSER.DLL

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\htmlmarq.ocx

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\htmlmm.ocx

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\install.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ishscan.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ISSTE.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\javai.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\jvm.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\jvm_g.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\main123w.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\mngreg32.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\msci_uno.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\mscoree.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\mscorsvr.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\mscorwks.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\msjava.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\mso.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\NAVOPTRF.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\NeVideoFX.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\NPMLIC.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\NSWSTE.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\photohse.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\PMSTE.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ppw32hlp.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\printhse.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\prwin8.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ps80.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\psdmt.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\qfinder.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\qpw.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\salwrap.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\setup.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\setup32.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\sevinst.exe

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\symlcnet.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\tcore_ebook.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\TFDTCTT8.DLL

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ua80.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\udtapi.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\ums.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\vb40032.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\vbe6.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\wpwin8.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\xlmlEN.dll

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\xwsetup.EXE

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\Your Image File Name Here without a path

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\_INSTPGM.EXE
----------------------------------------------------------------------------


Showing TCP and UDP Network Statistics
----------------------------------------------------------------------------

TCP Statistics for IPv4

Active Opens = 7
Passive Opens = 0
Failed Connection Attempts = 7
Reset Connections = 0
Current Connections = 0
Segments Received = 42
Segments Sent = 28
Segments Retransmitted = 14

Active Connections

Proto Local Address Foreign Address State

UDP Statistics for IPv4

Datagrams Received = 3
No Ports = 0
Receive Errors = 0
Datagrams Sent = 3

Active Connections

Proto Local Address Foreign Address State
----------------------------------------------------------------------------


Showing Running Processes and Memory Usage
----------------------------------------------------------------------------


----------------------------------------------------------------------------
Showing Shared Tasks Folder
----------------------------------------------------------------------------

"C:\WINDOWS\Tasks\"
desktop.ini 28 Feb 2006 65 "desktop.ini"
sa.dat 27 Nov 2008 6 "SA.DAT"
wkekocdx.job 24 Nov 2008 294 "wkekocdx.job"

3 items found: 3 files (2 H/S), 0 directories.
Total of file sizes: 365 bytes 0.36 K


----------------------------------------------------------------------------
Getting win.ini contents
----------------------------------------------------------------------------
; for 16-bit app support
[fonts]
[extensions]
[mci extensions]
[files]
[Mail]
MAPI=1
[MCI Extensions.BAK]
aif=MPEGVideo
aifc=MPEGVideo
aiff=MPEGVideo
asf=MPEGVideo
asx=MPEGVideo
au=MPEGVideo
m1v=MPEGVideo
m3u=MPEGVideo
mp2=MPEGVideo
mp2v=MPEGVideo
mp3=MPEGVideo
mpa=MPEGVideo
mpe=MPEGVideo
mpeg=MPEGVideo
mpg=MPEGVideo
mpv2=MPEGVideo
snd=MPEGVideo
wax=MPEGVideo
wm=MPEGVideo
wma=MPEGVideo
wmv=MPEGVideo
wmx=MPEGVideo
wpl=MPEGVideo
wvx=MPEGVideo
m2v=MPEGVideo
mod=MPEGVideo


----------------------------------------------------------------------------
Getting system.ini contents
----------------------------------------------------------------------------
; for 16-bit app support
[drivers]
wave=mmdrv.dll
timer=timer.drv
[mci]
[driver32]
[386enh]
woafont=dosapp.FON
EGA80WOA.FON=EGA80WOA.FON
EGA40WOA.FON=EGA40WOA.FON
CGA80WOA.FON=CGA80WOA.FON
CGA40WOA.FON=CGA40WOA.FON
----------------------------------------------------------------------------




Zipping C:\MGtools\runkeys.txt

#4 MikeSlee

MikeSlee
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:50 PM

Posted 29 November 2008 - 09:02 PM

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:41:29, on 27/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\MGtools.exe
C:\WINDOWS\system32\cmd.exe
C:\MGTools\analyse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {5397D853-8F53-4505-86D4-0024A08AA9F9} - C:\WINDOWS\system32\cbXQiHBT.dll
O2 - BHO: C:\WINDOWS\system32\jsne87fidgf.dll - {c5bf49a2-94f3-42bd-f434-3604812c897d} - C:\WINDOWS\system32\jsne87fidgf.dll
O2 - BHO: (no name) - {E9681C1C-C1DF-4970-97BB-86C3E716AFA3} - C:\WINDOWS\system32\qoMCSIXq.dll
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [78470314] rundll32.exe "C:\WINDOWS\system32\dnnmvbya.dll",b
O4 - HKLM\..\Run: [xsjfn83jkemfofght] C:\DOCUME~1\Owner\LOCALS~1\Temp\winlogin.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: (no name) - {dfb852a3-47f8-48c4-a200-58cab36fd2a2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {dfb852a3-47f8-48c4-a200-58cab36fd2a2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\mswsock32.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownlo.../sysreqlab3.cab
O20 - AppInit_DLLs: gyopts.dll
O20 - Winlogon Notify: qoMCSIXq - C:\WINDOWS\SYSTEM32\qoMCSIXq.dll
O20 - Winlogon Notify: winbug32 - C:\WINDOWS\SYSTEM32\winbug32.dll
O22 - SharedTaskScheduler: mcb7uehuj3n8weuhejsw - {C5BF49A2-94F3-42BD-F434-3604812C897D} - C:\WINDOWS\system32\jsne87fidgf.dll
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 6173 bytes



******************************************************************************
* GetUnKeys.Bat - 08/11/2006 by Chaslang and ShadowPuterDude *
* Supports all Windows OS *
* 01/03/2008 Version 0.17 - don't show finished msg in script mode *
******************************************************************************
* The GetUnKeys.bat program retrieves the installed programs list from the *
* registry and puts it into a file named C:\MGtools\GetUnKey.txt *
******************************************************************************

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe AIR]
"DisplayIcon"="C:\\PROGRA~1\\COMMON~1\\ADOBEA~1\\Versions\\1.0\\ADOBEA~2.EXE"
"DisplayName"="Adobe AIR"
"DisplayVersion"="1.0.4990"
"InstallLocation"="C:\\"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Adobe Systems Inc."
"UninstallString"="C:\\Program Files\\Common Files\\Adobe AIR\\Versions\\1.0\\Adobe AIR Updater.exe -arp:uninstall"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"DisplayName"="Adobe Flash Player ActiveX"
"DisplayVersion"="9.0.124.0"
"Publisher"="Adobe Systems Incorporated"
"URLInfoAbout"="http://www.adobe.com/go/getflashplayer"
"VersionMajor"="9"
"VersionMinor"="0"
"HelpLink"="http://www.adobe.com/go/flashplayer_support/"
"URLUpdateInfo"="http://www.adobe.com/go/flashplayer/"
"DisplayIcon"="C:\\WINDOWS\\system32\\Macromed\\Flash\\uninstall_activeX.exe"
"UninstallString"="C:\\WINDOWS\\system32\\Macromed\\Flash\\uninstall_activeX.exe"
"RequiresIESysFile"="4.70.0.1155"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player Plugin]
"DisplayName"="Adobe Flash Player Plugin"
"DisplayVersion"="9.0.124.0"
"Publisher"="Adobe Systems Incorporated"
"URLInfoAbout"="http://www.adobe.com/go/getflashplayer"
"DisplayIcon"="C:\\WINDOWS\\system32\\Macromed\\Flash\\uninstall_plugin.exe"
"UninstallString"="C:\\WINDOWS\\system32\\Macromed\\Flash\\uninstall_plugin.exe"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AquaMark3]
"DisplayName"="AquaMark3"
"UninstallString"="C:\\PROGRA~1\\AQUAMA~1\\UNWISE.EXE C:\\PROGRA~1\\AQUAMA~1\\INSTALL.LOG"
"DisplayIcon"="C:\\PROGRA~1\\AQUAMA~1\\aquamark.exe,-0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Branding]
"QuietUninstallString"="Rundll32 IedkCS32.dll,BrandCleanInstallStubs"
"RequiresIESysFile"="100.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClamWin Free Antivirus_is1]
"Inno Setup: Setup Version"="5.1.14"
"Inno Setup: App Path"="C:\\Program Files\\ClamWin"
"InstallLocation"="C:\\Program Files\\ClamWin\\"
"Inno Setup: Icon Group"="ClamWin Antivirus"
"Inno Setup: User"="Owner"
"Inno Setup: Setup Type"="custom"
"Inno Setup: Selected Components"="clamav,clamwin,explorershell"
"Inno Setup: Deselected Components"="outlookaddin,internationalhelp,internationalhelp\\dutch,internationalhelp\\french"
"Inno Setup: Selected Tasks"="DownloadDB"
"Inno Setup: Deselected Tasks"="desktopicon"
"DisplayName"="ClamWin Free Antivirus 0.94"
"UninstallString"="\"C:\\Program Files\\ClamWin\\unins000.exe\""
"QuietUninstallString"="\"C:\\Program Files\\ClamWin\\unins000.exe\" /SILENT"
"Publisher"="alch"
"URLInfoAbout"="http://www.clamwin.com/"
"HelpLink"="http://www.clamwin.com/"
"URLUpdateInfo"="http://www.clamwin.com/"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"InstallDate"="20080722"
"Inno Setup CodeFile: AllUsersMode"="anyone"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1]
"DisplayIcon"="C:\\Program Files\\Adobe\\Acrobat.com\\Acrobat.com.exe"
"DisplayName"="Acrobat.com"
"DisplayVersion"="1.1.377"
"InstallLocation"="C:\\Program Files\\Adobe\\Acrobat.com\\"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Adobe Systems Incorporated"
"UninstallString"="C:\\Program Files\\Common Files\\Adobe AIR\\Versions\\1.0\\Adobe AIR Application Installer.exe -uninstall com.adobe.mauby 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Combat Flight Simulator 2.0]
"DisplayName"="Microsoft Combat Flight Simulator 2"
"UninstallString"="\"C:\\Program Files\\Microsoft Games\\Combat Flight Simulator 2\\UNINSTAL.EXE\" /runtemp /addremove"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Combat Flight Simulator 3.0]
"DisplayName"="Microsoft Combat Flight Simulator 3.1"
"UninstallString"="\"C:\\Program Files\\Microsoft Games\\Combat Flight Simulator 3\\UNINSTAL.EXE\" /runtemp /addremove"
"DisplayIcon"="C:\\Program Files\\Microsoft Games\\Combat Flight Simulator 3\\CFS3.Exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Connection Manager]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DirectAnimation]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DXTXTRA]
"DISPLAYNAME"="Microsoft DirectX Transform optional components"
"UNINSTALLSTRING"="RUNDLL32.EXE ADVPACK.DLL,LaunchINFSection C:\\WINDOWS\\INF\\DXTXTRA.INF,UNINSTALL.NT,12"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Flight Simulator 9.0]
"InstallLocation"="C:\\Program Files\\Microsoft Games\\Flight Simulator 9"
"Publisher"="Microsoft"
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000000
"Readme"=hex(2):43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,20,\
00,46,00,69,00,6c,00,65,00,73,00,5c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,\
6f,00,66,00,74,00,20,00,47,00,61,00,6d,00,65,00,73,00,5c,00,46,00,6c,00,69,\
00,67,00,68,00,74,00,20,00,53,00,69,00,6d,00,75,00,6c,00,61,00,74,00,6f,00,\
72,00,20,00,39,00,5c,00,52,00,65,00,61,00,64,00,6d,00,65,00,2e,00,72,00,74,\
00,66,00,00,00
"URLInfoAbout"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,\
00,2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,2e,00,63,00,\
6f,00,6d,00,2f,00,67,00,61,00,6d,00,65,00,73,00,2f,00,66,00,6c,00,69,00,67,\
00,68,00,74,00,73,00,69,00,6d,00,75,00,6c,00,61,00,74,00,6f,00,72,00,00,00
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,2e,00,63,00,6f,\
00,6d,00,2f,00,73,00,75,00,70,00,70,00,6f,00,72,00,74,00,00,00
"DisplayVersion"=hex(2):39,00,2e,00,30,00,00,00
"DisplayName"="Microsoft Flight Simulator 2004 A Century of Flight"
"UninstallString"="\"C:\\Program Files\\Microsoft Games\\Flight Simulator 9\\UNINSTAL.EXE\" /runtemp /addremove"
"DisplayIcon"="C:\\Program Files\\Microsoft Games\\Flight Simulator 9\\FS9.Exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FSFDT FSCopilot]
"DisplayName"="FSFDT FSCopilot"
"UninstallString"="C:\\Program Files\\FSFDT\\uninstallFSCopilot.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FSFDT FSInn]
"DisplayName"="FSFDT FSInn"
"UninstallString"="C:\\Program Files\\FSFDT\\uninstallFSInn.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Halo]
"InstallLocation"=hex(2):43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,00,\
6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,4d,00,69,00,63,00,72,00,6f,\
00,73,00,6f,00,66,00,74,00,20,00,47,00,61,00,6d,00,65,00,73,00,5c,00,48,00,\
61,00,6c,00,6f,00,00,00
"Publisher"="Microsoft"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"DisplayName"="Microsoft Halo"
"UninstallString"="\"C:\\Program Files\\Microsoft Games\\Halo\\UNINSTAL.EXE\" /runtemp /addremove"
"DisplayIcon"="C:\\Program Files\\Microsoft Games\\Halo\\halo.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Hidden & Dangerous 2 Patch]
"DisplayName"="Hidden & Dangerous 2 Patch"
"UninstallString"="\"C:\\Program Files\\Illusion Softworks\\Hidden & Dangerous 2\\\\patch-uninst.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ICW]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IDNMitigationAPIs]
"DisplayName"="Microsoft Internationalized Domain Names Mitigation APIs"
"UninstallString"="\"C:\\WINDOWS\\$NtServicePackUninstallIDNMitigationAPIs$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HiddenByIE7Setup"=dword:00000001
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE40]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ie7]
"DisplayName"="Windows Internet Explorer 7"
"UninstallString"="\"C:\\WINDOWS\\ie7\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://www.microsoft.com/ie"
"URLInfoAbout"="http://www.microsoft.com/ie"
"DisplayVersion"="20070813.185237"
"DisplayIcon"="C:\\Program Files\\Internet Explorer\\iexplore.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IEData]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IncrediMail]
"DisplayVersion"=" 5.8.5.3718"
"Publisher"="IncrediMail Ltd."
"URLInfoAbout"="www.incredimail.com"
"HelpLink"="http://www.incredimail.com/english/help/index.html"
"UninstallString"="C:\\Program Files\\IncrediMail\\bin\\ImSetup.exe /remove /addon:IncrediMail /log:IncMail.log"
"DisplayName"="IncrediMail Xe"
"DisplayIcon"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information\{2157961D-0507-44A8-BCF2-1EE2D439E8DF}]
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{2157961D-0507-44A8-BCF2-1EE2D439E8DF}\\Setup.ilg"
"StatusText"="Civilization III Complete Edition Setup is preparing the InstallShield Wizard, which will guide you through the program setup process. Please wait."
"DoMaintenance"="N"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information\{9527A496-5DF9-412A-ADC7-168BA5379CA6}]
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{9527A496-5DF9-412A-ADC7-168BA5379CA6}\\Setup.ilg"
"StatusText"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information\{C219D284-F161-4731-AC0E-D89814ACEABE}]
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{C219D284-F161-4731-AC0E-D89814ACEABE}\\Setup.ilg"
"StatusText"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information\{F87F471C-66C0-4F70-B493-6E59E4D402E6}]
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{F87F471C-66C0-4F70-B493-6E59E4D402E6}\\Setup.ilg"
"StatusText"="USB_RW Setup is preparing the InstallShield Wizard, which will guide you through the program setup process. Please wait."

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{2157961D-0507-44A8-BCF2-1EE2D439E8DF}]
"UninstallString"="C:\\Program Files\\Common Files\\InstallShield\\Driver\\8\\Intel 32\\IDriver.exe /M{2157961D-0507-44A8-BCF2-1EE2D439E8DF} "
"DisplayName"="Civilization III Complete Edition"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{2157961D-0507-44A8-BCF2-1EE2D439E8DF}\\Setup.ilg"
"Comments"=" "
"Contact"="Customer Support Department"
"DisplayVersion"="1.00.0000"
"HelpTelephone"=" "
"InstallDate"="20081113"
"InstallLocation"="C:\\Program Files\\Firaxis Games\\Civilization III Complete\\"
"InstallSource"="D:\\"
"ProductID"=""
"Publisher"="2K Games"
"Readme"=""
"URLInfoAbout"="http://www.firaxis.com"
"URLUpdateInfo"="http://www.firaxis.com"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,66,00,69,00,72,00,61,00,78,00,69,00,73,00,2e,00,63,00,6f,00,6d,00,00,\
00
"EstimatedSize"=dword:001c79be
"Language"=dword:00000409
"Version"=dword:01000000
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"DisplayIcon"=""
"RegOwner"="Mike Slee"
"RegCompany"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}]
"ModifyPath"="\"C:\\Program Files\\InstallShield Installation Information\\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}\\setup.exe\" -runfromtemp -l0x0409"
"UninstallString"="\"C:\\Program Files\\InstallShield Installation Information\\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}\\setup.exe\" -runfromtemp -l0x0409 -removeonly"
"DisplayName"="NVIDIA ForceWare Network Access Manager"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}\\Setup.ilg"
"Comments"=""
"Contact"=""
"DisplayVersion"="1.00.6781"
"HelpTelephone"=""
"InstallDate"="20080722"
"InstallLocation"="C:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\{A2A22750-8E3A-444D-9101-FB21F02FA882}\\"
"Publisher"="NVIDIA Corporation"
"Readme"=""
"URLInfoAbout"="http://www.NVIDIA.com"
"URLUpdateInfo"=""
"HelpLink"=hex(2):00,00
"EstimatedSize"=dword:00009da6
"Language"=dword:00000000
"Version"=dword:01001a7d
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"DisplayIcon"=hex(2):43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,00,53,\
00,5c,00,49,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,65,00,72,00,5c,00,7b,00,\
37,00,43,00,46,00,41,00,34,00,36,00,45,00,33,00,2d,00,43,00,43,00,32,00,46,\
00,2d,00,34,00,33,00,35,00,35,00,2d,00,38,00,32,00,41,00,45,00,2d,00,36,00,\
30,00,31,00,32,00,44,00,43,00,33,00,36,00,33,00,33,00,46,00,44,00,7d,00,5c,\
00,41,00,52,00,50,00,50,00,52,00,4f,00,44,00,55,00,43,00,54,00,49,00,43,00,\
4f,00,4e,00,2e,00,65,00,78,00,65,00,00,00
"RegOwner"="Mike Slee"
"RegCompany"=""
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}]
"UninstallString"="C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\Driver\\11\\INTEL3~1\\IDriver.exe /M{9527A496-5DF9-412A-ADC7-168BA5379CA6} "
"DisplayName"="Microsoft Flight Simulator X"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{9527A496-5DF9-412A-ADC7-168BA5379CA6}\\Setup.ilg"
"Comments"="Copyright c 2006 Microsoft Corporation"
"Contact"=""
"DisplayVersion"="10.0.61355.0"
"HelpTelephone"=""
"InstallDate"="20080813"
"InstallLocation"="C:\\Program Files\\Microsoft Games\\Microsoft Flight Simulator X\\"
"InstallSource"="E:\\"
"ProductID"=""
"Publisher"="Microsoft Game Studios"
"Readme"=""
"URLInfoAbout"=""
"URLUpdateInfo"=""
"HelpLink"=hex(2):00,00
"EstimatedSize"=dword:00cfceae
"Language"=dword:00000409
"Version"=dword:0a00ede9
"VersionMajor"=dword:0000000a
"VersionMinor"=dword:00000000
"DisplayIcon"=hex(2):43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,00,53,\
00,5c,00,49,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,65,00,72,00,5c,00,7b,00,\
39,00,35,00,32,00,37,00,41,00,34,00,39,00,36,00,2d,00,35,00,44,00,46,00,39,\
00,2d,00,34,00,31,00,32,00,41,00,2d,00,41,00,44,00,43,00,37,00,2d,00,31,00,\
36,00,38,00,42,00,41,00,35,00,33,00,37,00,39,00,43,00,41,00,36,00,7d,00,5c,\
00,41,00,52,00,50,00,50,00,52,00,4f,00,44,00,55,00,43,00,54,00,49,00,43,00,\
4f,00,4e,00,2e,00,65,00,78,00,65,00,00,00
"RegOwner"="Mike Slee"
"RegCompany"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{C219D284-F161-4731-AC0E-D89814ACEABE}]
"UninstallString"="C:\\Program Files\\Common Files\\InstallShield\\Driver\\8\\Intel 32\\IDriver.exe /M{C219D284-F161-4731-AC0E-D89814ACEABE} /l1033 anything"
"DisplayName"="DV Network Software"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{C219D284-F161-4731-AC0E-D89814ACEABE}\\Setup.ilg"
"Comments"=""
"Contact"=""
"DisplayVersion"="2.05.0000"
"HelpTelephone"=""
"InstallDate"="20081118"
"InstallLocation"=""
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\pft25~tmp\\"
"ProductID"=""
"Publisher"="Canon Inc."
"Readme"=""
"URLInfoAbout"=""
"URLUpdateInfo"=""
"HelpLink"=hex(2):00,00
"EstimatedSize"=dword:00002bc2
"Language"=dword:00000000
"Version"=dword:02050000
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000005
"DisplayIcon"=""
"RegOwner"="Mike Slee"
"RegCompany"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{F87F471C-66C0-4F70-B493-6E59E4D402E6}]
"UninstallString"="C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\Driver\\7\\INTEL3~1\\IDriver.exe /M{F87F471C-66C0-4F70-B493-6E59E4D402E6} /l1033 "
"DisplayName"="Fujifilm USB MemoryCard ReaderWriter"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{F87F471C-66C0-4F70-B493-6E59E4D402E6}\\Setup.ilg"
"Comments"="Fuji Photo Film Co.,Ltd."
"Contact"=" "
"DisplayVersion"="1.00"
"HelpTelephone"=" "
"InstallDate"="20081101"
"InstallLocation"=""
"InstallSource"="C:\\Downloads\\DPC-R1_Win\\"
"ProductID"=""
"Publisher"="Fuji Photo Film Co.,Ltd."
"Readme"=" "
"URLInfoAbout"=" "
"URLUpdateInfo"=" "
"HelpLink"=hex(2):20,00,00,00
"EstimatedSize"=dword:00000088
"Language"=dword:00000000
"Version"=dword:01000000
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"DisplayIcon"=""
"RegOwner"="Mike Slee"
"RegCompany"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB873339]
"DisplayName"="Windows XP Hotfix - KB873339"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB873339$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=873339"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041117.092459"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB884016]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB884267]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB885353]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB885835]
"DisplayName"="Windows XP Hotfix - KB885835"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB885835$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=885835"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041027.181713"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB885836]
"DisplayName"="Windows XP Hotfix - KB885836"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB885836$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=885836"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041028.173203"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB886185]
"DisplayName"="Windows XP Hotfix - KB886185"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB886185$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=886185"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041021.090540"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB886612]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB887078]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB887472]
"DisplayName"="Windows XP Hotfix - KB887472"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB887472$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=887472"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041014.162858"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB887626]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB888111WXPSP2]
"DisplayName"="High Definition Audio Driver Package - KB888111"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB888111WXPSP2$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=KB888111"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20040219.000000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB888302]
"DisplayName"="Windows XP Hotfix - KB888302"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB888302$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=888302"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20041207.111426"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB888656]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB889858]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB890046]
"DisplayName"="Security Update for Windows XP (KB890046)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB890046$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=890046"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB890046"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB890859]
"DisplayName"="Windows XP Hotfix - KB890859"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB890859$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=890859"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB890859"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB891122]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB891781]
"DisplayName"="Windows XP Hotfix - KB891781"
"UninstallString"="C:\\WINDOWS\\$NtUninstallKB891781$\\spuninst\\spuninst.exe"
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=891781"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="20050110.165439"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB892130]
"DisplayName"="Windows Genuine Advantage Validation Tool (KB892130)"
"UninstallString"=""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=892130"
"URLInfoAbout"="http://www.microsoft.com/genuine"
"NoRemove"=dword:00000001
"NoRemoveInitialValue"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB892313]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB893240]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB893241]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB893756]
"DisplayName"="Security Update for Windows XP (KB893756)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB893756$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=893756"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB893756"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB893803]
"DisplayVersion"="3.1"
"HelpLink"="http://go.microsoft.com/fwlink/?LinkId=42467"
"ReleaseType"="Software Update"
"DisplayIcon"=hex(2):25,00,77,00,69,00,6e,00,64,00,69,00,72,00,25,00,5c,00,73,\
00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,73,00,69,00,65,00,\
78,00,65,00,63,00,2e,00,65,00,78,00,65,00,00,00
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2]
"DisplayName"="Windows Installer 3.1 (KB893803)"
"UninstallString"="\"C:\\WINDOWS\\$MSI31Uninstall_KB893803v2$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://go.microsoft.com/fwlink/?LinkId=42467"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB894391]
"DisplayName"="Update for Windows XP (KB894391)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB894391$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=894391"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB894391"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB895181]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB895316]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB895572]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB896358]
"DisplayName"="Security Update for Windows XP (KB896358)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB896358$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=896358"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB896358"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB896423]
"DisplayName"="Security Update for Windows XP (KB896423)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB896423$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=896423"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB896423"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB896428]
"DisplayName"="Security Update for Windows XP (KB896428)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB896428$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=896428"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB896428"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB897586]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB898461]
"DisplayName"="Update for Windows XP (KB898461)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB898461$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=898461"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB898461"
"InstallDate"="20080722"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB898549]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB899587]
"DisplayName"="Security Update for Windows XP (KB899587)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB899587$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=899587"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB899587"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB899591]
"DisplayName"="Security Update for Windows XP (KB899591)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB899591$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=899591"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB899591"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB900399]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB900485]
"DisplayName"="Update for Windows XP (KB900485)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB900485$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=900485"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB900485"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB900725]
"DisplayName"="Security Update for Windows XP (KB900725)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB900725$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=900725"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB900725"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB901017]
"DisplayName"="Security Update for Windows XP (KB901017)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB901017$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=901017"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB901017"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB901214]
"DisplayName"="Security Update for Windows XP (KB901214)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB901214$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=901214"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB901214"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB902344]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB902400]
"DisplayName"="Security Update for Windows XP (KB902400)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB902400$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=902400"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB902400"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB904942]
"DisplayName"="Update for Windows XP (KB904942)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB904942$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=904942"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB904942"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB905414]
"DisplayName"="Security Update for Windows XP (KB905414)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB905414$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=905414"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB905414"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB905749]
"DisplayName"="Security Update for Windows XP (KB905749)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB905749$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=905749"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB905749"
"InstallDate"="20080823"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB907658]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB908519]
"DisplayName"="Security Update for Windows XP (KB908519)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB908519$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=908519"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB908519"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB908531]
"DisplayName"="Update for Windows XP (KB908531)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB908531$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=908531"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB908531"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB910437]
"DisplayName"="Update for Windows XP (KB910437)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB910437$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=910437"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB910437"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911164]
"DisplayName"="Update for Windows XP (KB911164)"
"UninstallString"=""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080712"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=911164"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"NoRemove"=dword:00000001
"NoRemoveInitialValue"=dword:00000001
"SystemComponent"=dword:00000001
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB911164"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911280]
"DisplayName"="Update for Windows XP (KB911280)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB911280$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=911280"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB911280"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911562]
"DisplayName"="Security Update for Windows XP (KB911562)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB911562$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=911562"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB911562"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911564]
"DisplayName"="Security Update for Windows Media Player (KB911564)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB911564$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=911564"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911565]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911854]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB911927]
"DisplayName"="Security Update for Windows XP (KB911927)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB911927$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=911927"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB911927"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB913580]
"DisplayName"="Security Update for Windows XP (KB913580)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB913580$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=913580"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB913580"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB914388]
"DisplayName"="Security Update for Windows XP (KB914388)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB914388$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=914388"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB914388"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB914389]
"DisplayName"="Security Update for Windows XP (KB914389)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB914389$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=914389"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB914389"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB914440]
"DisplayName"="Hotfix for Windows XP (KB914440)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB914440$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=914440"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="12"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB914440"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB915865]
"DisplayName"="Hotfix for Windows XP (KB915865)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB915865$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=915865"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="10"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB915865"
"HiddenByIE7Setup"=dword:00000001
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB916595]
"DisplayName"="Update for Windows XP (KB916595)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB916595$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=916595"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB916595"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB918118]
"DisplayName"="Security Update for Windows XP (KB918118)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB918118$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=918118"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB918118"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB918439]
"DisplayName"="Security Update for Windows XP (KB918439)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB918439$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=918439"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB918439"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB920213]
"DisplayName"="Security Update for Windows XP (KB920213)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB920213$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=920213"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB920213"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB920670]
"DisplayName"="Security Update for Windows XP (KB920670)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB920670$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=920670"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB920670"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB920683]
"DisplayName"="Security Update for Windows XP (KB920683)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB920683$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=920683"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB920683"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB920685]
"DisplayName"="Security Update for Windows XP (KB920685)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB920685$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=920685"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB920685"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB920872]
"DisplayName"="Update for Windows XP (KB920872)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB920872$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=920872"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB920872"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB922582]
"DisplayName"="Update for Windows XP (KB922582)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB922582$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=922582"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB922582"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB923191]
"DisplayName"="Security Update for Windows XP (KB923191)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB923191$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=923191"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB923191"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB923414]
"DisplayName"="Security Update for Windows XP (KB923414)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB923414$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=923414"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB923414"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB923689]
"DisplayName"="Security Update for Windows XP (KB923689)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB923689$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080803"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=923689"
"URLInfoAbout"="http://support.microsoft.com"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\KB923689"
"ReleaseType"="Security Update"
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB923980]
"DisplayName"="Security Update for Windows XP (KB923980)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB923980$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=923980"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB923980"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB924270]
"DisplayName"="Security Update for Windows XP (KB924270)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB924270$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=924270"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB924270"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB924667]
"DisplayName"="Security Update for Windows XP (KB924667)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB924667$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=924667"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB924667"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB925398_WMP64]
"DisplayName"="Security Update for Windows Media Player 6.4 (KB925398)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB925398_WMP64$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=925398"
"URLInfoAbout"="http://support.microsoft.com"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows Media Player 6.4\\KB925398_WMP64"
"ReleaseType"="Security Update"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,32,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB925902]
"DisplayName"="Security Update for Windows XP (KB925902)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB925902$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=925902"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB925902"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB926239]
"DisplayName"="Hotfix for Windows XP (KB926239)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB926239$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080807"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=926239"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB926239"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB926255]
"DisplayName"="Security Update for Windows XP (KB926255)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB926255$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=926255"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB926255"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB926436]
"DisplayName"="Security Update for Windows XP (KB926436)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB926436$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=926436"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB926436"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB927779]
"DisplayName"="Security Update for Windows XP (KB927779)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB927779$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=927779"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB927779"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB927802]
"DisplayName"="Security Update for Windows XP (KB927802)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB927802$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=927802"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB927802"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB927891]
"DisplayName"="Update for Windows XP (KB927891)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB927891$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=927891"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="3"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB927891"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB928255]
"DisplayName"="Security Update for Windows XP (KB928255)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB928255$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=928255"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB928255"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB929123]
"DisplayName"="Security Update for Windows XP (KB929123)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB929123$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=929123"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB929123"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB929399]
"DisplayName"="Hotfix for Windows Media Format 11 SDK (KB929399)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB929399$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080811"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=929399"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB930178]
"DisplayName"="Security Update for Windows XP (KB930178)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB930178$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=930178"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB930178"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB930916]
"DisplayName"="Update for Windows XP (KB930916)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB930916$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=930916"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB930916"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB931261]
"DisplayName"="Security Update for Windows XP (KB931261)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB931261$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=931261"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB931261"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB931784]
"DisplayName"="Security Update for Windows XP (KB931784)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB931784$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=931784"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB931784"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB932168]
"DisplayName"="Security Update for Windows XP (KB932168)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB932168$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=932168"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB932168"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB932823-v3]
"DisplayName"="Update for Windows XP (KB932823-v3)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB932823-v3$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080731"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=932823-v3"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="3"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB932823-v3"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB933729]
"DisplayName"="Security Update for Windows XP (KB933729)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB933729$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=933729"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB933729"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB935448]
"DisplayName"="Hotfix for Windows XP (KB935448)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB935448$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=935448"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB935448"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB935839]
"DisplayName"="Security Update for Windows XP (KB935839)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB935839$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=935839"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB935839"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB935840]
"DisplayName"="Security Update for Windows XP (KB935840)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB935840$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=935840"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB935840"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB936021]
"DisplayName"="Security Update for Windows XP (KB936021)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB936021$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=936021"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB936021"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB936357]
"DisplayName"="Update for Windows XP (KB936357)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB936357$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=936357"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB936357"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB936782_WMP10]
"DisplayName"="Security Update for Windows Media Player 10 (KB936782)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB936782_WMP10$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080803"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=936782"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB936782_WMP11]
"DisplayName"="Security Update for Windows Media Player 11 (KB936782)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB936782_WMP11$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080811"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=936782"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB938127-IE7]
"DisplayName"="Security Update for Windows Internet Explorer 7 (KB938127)"
"UninstallString"="\"C:\\WINDOWS\\ie7updates\\KB938127-IE7\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080731"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=938127"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"DisplayIcon"="C:\\Program Files\\internet explorer\\iexplore.exe"
"ParentKeyName"="ie7Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP0\\KB938127-IE7"
"RemoveOnIE7Uninstall"=dword:00000001
"ParentDisplayName"="Windows Internet Explorer 7 - Software Updates"
"ReleaseType"="Security Update"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB938464]
"DisplayName"="Security Update for Windows XP (KB938464)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB938464$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080910"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=938464"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB938464"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB938828]
"DisplayName"="Update for Windows XP (KB938828)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB938828$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=938828"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB938828"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB939683]
"DisplayName"="Hotfix for Windows Media Player 11 (KB939683)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB939683$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080811"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=939683"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB941569]
"DisplayName"="Security Update for Windows XP (KB941569)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB941569$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080803"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=941569"
"URLInfoAbout"="http://support.microsoft.com"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\KB941569"
"ReleaseType"="Security Update"
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB941693]
"DisplayName"="Security Update for Windows XP (KB941693)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB941693$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=941693"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB941693"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB942763]
"DisplayName"="Update for Windows XP (KB942763)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB942763$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=942763"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB942763"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB943055]
"DisplayName"="Security Update for Windows XP (KB943055)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB943055$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=943055"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB943055"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB943460]
"DisplayName"="Security Update for Windows XP (KB943460)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB943460$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=943460"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB943460"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB943485]
"DisplayName"="Security Update for Windows XP (KB943485)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB943485$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=943485"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB943485"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB944653]
"DisplayName"="Security Update for Windows XP (KB944653)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB944653$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=944653"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB944653"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB945553]
"DisplayName"="Security Update for Windows XP (KB945553)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB945553$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=945553"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB945553"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB946026]
"DisplayName"="Security Update for Windows XP (KB946026)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB946026$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=946026"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB946026"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB946648]
"DisplayName"="Security Update for Windows XP (KB946648)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB946648$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=946648"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB946648"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB948590]
"DisplayName"="Security Update for Windows XP (KB948590)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB948590$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080823"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=948590"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB948590"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950749]
"DisplayName"="Security Update for Windows XP (KB950749)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB950749$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950749"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP3\\KB950749"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950759]
"DisplayName"="Security Update for Windows XP (KB950759)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB950759$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950759"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB950759"
"HiddenByIE7Setup"=dword:00000001
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950759-IE7]
"DisplayName"="Security Update for Windows Internet Explorer 7 (KB950759)"
"UninstallString"="\"C:\\WINDOWS\\ie7updates\\KB950759-IE7\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950759"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"DisplayIcon"="C:\\Program Files\\internet explorer\\iexplore.exe"
"ParentKeyName"="ie7Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP0\\KB950759-IE7"
"RemoveOnIE7Uninstall"=dword:00000001
"ParentDisplayName"="Windows Internet Explorer 7 - Software Updates"
"ReleaseType"="Security Update"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950760]
"DisplayName"="Security Update for Windows XP (KB950760)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB950760$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950760"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB950760"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950762]
"DisplayName"="Security Update for Windows XP (KB950762)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB950762$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950762"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB950762"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB950974]
"DisplayName"="Security Update for Windows XP (KB950974)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB950974$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=950974"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB950974"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB951066]
"DisplayName"="Security Update for Windows XP (KB951066)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB951066$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=951066"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB951066"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB951072-v2]
"DisplayName"="Update for Windows XP (KB951072-v2)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB951072-v2$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=951072"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB951072-v2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB951376-v2]
"DisplayName"="Security Update for Windows XP (KB951376-v2)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB951376-v2$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=951376"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="2"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB951376-v2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB951698]
"DisplayName"="Security Update for Windows XP (KB951698)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB951698$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080722"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=951698"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB951698"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB951748]
"DisplayName"="Security Update for Windows XP (KB951748)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB951748$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=951748"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB951748"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB952287]
"DisplayName"="Hotfix for Windows XP (KB952287)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB952287$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=952287"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB952287"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB952954]
"DisplayName"="Security Update for Windows XP (KB952954)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB952954$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=952954"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB952954"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB953838-IE7]
"DisplayName"="Security Update for Windows Internet Explorer 7 (KB953838)"
"UninstallString"="\"C:\\WINDOWS\\ie7updates\\KB953838-IE7\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=953838"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"DisplayIcon"="C:\\Program Files\\internet explorer\\iexplore.exe"
"ParentKeyName"="ie7Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP0\\KB953838-IE7"
"RemoveOnIE7Uninstall"=dword:00000001
"ParentDisplayName"="Windows Internet Explorer 7 - Software Updates"
"ReleaseType"="Security Update"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB953839]
"DisplayName"="Security Update for Windows XP (KB953839)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB953839$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080816"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=953839"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB953839"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB954154_WM11]
"DisplayName"="Security Update for Windows Media Player 11 (KB954154)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB954154_WM11$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080910"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=954154"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,77,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,6d,00,65,00,64,00,69,00,61,00,20,00,70,00,6c,00,61,00,79,00,65,\
00,72,00,5c,00,77,00,6d,00,70,00,6c,00,61,00,79,00,65,00,72,00,2e,00,65,00,\
78,00,65,00,22,00,00,00
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB954156_WM9L]
"DisplayName"="Security Update for Windows Media Encoder (KB954156)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB954156_WM9L$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081004"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com/?kbid=954156"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayIcon"=hex(2):22,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\
00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,57,00,69,00,6e,00,64,00,\
6f,00,77,00,73,00,20,00,4d,00,65,00,64,00,69,00,61,00,20,00,43,00,6f,00,6d,\
00,70,00,6f,00,6e,00,65,00,6e,00,74,00,73,00,5c,00,45,00,6e,00,63,00,6f,00,\
64,00,65,00,72,00,5c,00,5c,00,77,00,6d,00,65,00,6e,00,63,00,2e,00,65,00,78,\
00,65,00,22,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB954211]
"DisplayName"="Security Update for Windows XP (KB954211)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB954211$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=954211"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB954211"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB955069]
"DisplayName"="Security Update for Windows XP (KB955069)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB955069$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081123"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=955069"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB955069"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB956390-IE7]
"DisplayName"="Security Update for Windows Internet Explorer 7 (KB956390)"
"UninstallString"="\"C:\\WINDOWS\\ie7updates\\KB956390-IE7\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=956390"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"DisplayIcon"="C:\\Program Files\\internet explorer\\iexplore.exe"
"ParentKeyName"="ie7Hotfix"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP0\\KB956390-IE7"
"RemoveOnIE7Uninstall"=dword:00000001
"ParentDisplayName"="Windows Internet Explorer 7 - Software Updates"
"ReleaseType"="Security Update"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB956391]
"DisplayName"="Security Update for Windows XP (KB956391)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB956391$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=956391"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB956391"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB956803]
"DisplayName"="Security Update for Windows XP (KB956803)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB956803$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=956803"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB956803"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB956841]
"DisplayName"="Security Update for Windows XP (KB956841)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB956841$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=956841"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB956841"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB957095]
"DisplayName"="Security Update for Windows XP (KB957095)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB957095$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081019"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=957095"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB957095"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB957097]
"DisplayName"="Security Update for Windows XP (KB957097)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB957097$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081123"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=957097"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB957097"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KB958644]
"DisplayName"="Security Update for Windows XP (KB958644)"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallKB958644$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20081024"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://support.microsoft.com?kbid=958644"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"
"ParentKeyName"="OperatingSystem"
"ParentDisplayName"="Windows XP - Software Updates"
"ReleaseType"="Security Update"
"RegistryLocation"="HKLM\\SOFTWARE\\Microsoft\\Updates\\Windows XP\\SP4\\KB958644"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox (3.0.4)]
"Comments"="Mozilla Firefox"
"DisplayIcon"="C:\\Program Files\\Mozilla Firefox\\firefox.exe,0"
"DisplayName"="Mozilla Firefox (3.0.4)"
"DisplayVersion"="3.0.4 (en-GB)"
"InstallLocation"="C:\\Program Files\\Mozilla Firefox"
"Publisher"="Mozilla"
"UninstallString"="C:\\Program Files\\Mozilla Firefox\\uninstall\\helper.exe"
"URLInfoAbout"="http://en-GB.www.mozilla.com/en-GB/"
"URLUpdateInfo"="http://en-GB.www.mozilla.com/en-GB/firefox/"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSCompPackV1]
"DisplayName"="Microsoft Compression Client Pack 1.0 for Windows XP"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallMSCompPackV1$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080807"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http://go.microsoft.com/fwlink/?LinkId=74087"
"URLInfoAbout"="http://support.microsoft.com"
"DisplayVersion"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting]
"RequiresIESysFile"="4.71"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NLSDownlevelMapping]
"DisplayName"="Microsoft National Language Support Downlevel APIs"
"UninstallString"="\"C:\\WINDOWS\\$NtServicePackUninstallNLSDownlevelMapping$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080730"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HiddenByIE7Setup"=dword:00000001
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIA Drivers]
"DisplayName"="NVIDIA Drivers"
"UninstDataVerified"=dword:00000001
"UninstallString"="C:\\WINDOWS\\system32\\nvuninst.exe UninstallGUI"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIA Drivers\SubComponents]
"nvsmb.nvu"="NVIDIA nForce PCI System Management Driver"
"nvnrm.nvu"="NVIDIA Ethernet Driver Components"
"nvide.nvu"="NVIDIA MediaShield"
"nvdisp.nvu"="NVIDIA Display Driver"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCHealth]
"UninstallString"="rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\\WINDOWS\\INF\\PCHealth.inf"
"QuietUninstallString"="rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\\WINDOWS\\INF\\PCHealth.inf"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCI Audio Applications]
"UninstallString"="C:\\Program Files\\PCI Audio Applications\\Bin\\Uninstall.exe"
"DisplayName"="PCI Audio Applications"
"InstallShieldUninstallString"="C:\\WINDOWS\\IsUninst.exe -f\"C:\\Program Files\\PCI Audio Applications\\Uninst.isu\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCI Audio Driver]
"DisplayName"="PCI Audio Driver"
"UninstallString"="cmuninst.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PokerRoom.com]
"DisplayName"="PokerRoom.com (remove only)"
"UninstallString"="\"C:\\Program Files\\PokerRoom.com\\uninstall.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RivaTuner]
"DisplayName"="RivaTuner v2.09"
"UninstallString"="\"C:\\Program Files\\RivaTuner v2.09\\uninstall.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent]
@=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash]
"DisplayVersion"="9.0.124.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6]
"DisplayIcon"="c:\\WINDOWS\\system32\\msiexec.exe"
"DisplayName"="Microsoft Flight Simulator X Service Pack 1"
"DisplayVersion"="10.0.61355.0"
"NoModify"=dword:00000001
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"ParentKeyName"="InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}"
"ParentDisplayName"="Microsoft Flight Simulator X"
"Publisher"="Microsoft Game Studios"
"ReleaseType"="Service Pack"
"UnInstallString"=hex(2):63,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,00,\
53,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,73,\
00,69,00,65,00,78,00,65,00,63,00,2e,00,65,00,78,00,65,00,20,00,2f,00,71,00,\
62,00,20,00,2f,00,6c,00,2a,00,76,00,78,00,20,00,22,00,25,00,54,00,45,00,4d,\
00,50,00,25,00,5c,00,46,00,6c,00,69,00,67,00,68,00,74,00,53,00,69,00,6d,00,\
50,00,61,00,74,00,63,00,68,00,55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,\
00,6c,00,2e,00,6c,00,6f,00,67,00,22,00,20,00,2f,00,75,00,6e,00,69,00,6e,00,\
73,00,74,00,61,00,6c,00,6c,00,20,00,7b,00,39,00,32,00,36,00,33,00,35,00,45,\
00,30,00,32,00,2d,00,34,00,43,00,32,00,39,00,2d,00,34,00,41,00,38,00,46,00,\
2d,00,41,00,41,00,38,00,32,00,2d,00,37,00,42,00,38,00,42,00,39,00,35,00,43,\
00,38,00,32,00,33,00,44,00,33,00,7d,00,20,00,2f,00,70,00,61,00,63,00,6b,00,\
61,00,67,00,65,00,20,00,7b,00,39,00,35,00,32,00,37,00,41,00,34,00,39,00,36,\
00,2d,00,35,00,44,00,46,00,39,00,2d,00,34,00,31,00,32,00,41,00,2d,00,41,00,\
44,00,43,00,37,00,2d,00,31,00,36,00,38,00,42,00,41,00,35,00,33,00,37,00,39,\
00,43,00,41,00,36,00,7d,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SystemRequirementsLab]
"DisplayName"="System Requirements Lab"
"UninstallString"="C:\\Program Files\\SystemRequirementsLab\\Uninstall.exe"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Teamspeak 2 RC2_is1]
"Inno Setup: Setup Version"="3.0.7"
"Inno Setup: App Path"="C:\\Program Files\\Teamspeak2_RC2"
"Inno Setup: Icon Group"="Teamspeak2 RC2"
"Inno Setup: User"="Owner"
"Inno Setup: Selected Tasks"="desktopicon"
"Inno Setup: Deselected Tasks"=""
"DisplayName"="TeamSpeak 2 RC2"
"UninstallString"="\"C:\\Program Files\\Teamspeak2_RC2\\unins000.exe\""
"DisplayVersion"="2.0.32.60"
"Publisher"="Dominating Bytes Design"
"URLInfoAbout"="http://www.teamspeak.org"
"HelpLink"="http://www.teamspeak.org"
"URLUpdateInfo"="http://www.teamspeak.org"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UT2004]
"DisplayName"="Unreal Tournament 2004"
"UninstallString"="C:\\UT2004\\System\\Setup.exe uninstall \"UT2004\""
"DisplayIcon"="C:\\UT2004\\Help\\Unreal.ico"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\vasFMC_is1]
"Inno Setup: Setup Version"="5.1.6"
"Inno Setup: App Path"="C:\\Program Files\\vasfmc"
"InstallLocation"="C:\\Program Files\\vasfmc\\"
"Inno Setup: Icon Group"="vasFMC"
"Inno Setup: User"="Owner"
"Inno Setup: Selected Tasks"=""
"Inno Setup: Deselected Tasks"="desktopicon,quicklaunchicon"
"DisplayName"="vasFMC 1.10"
"UninstallString"="\"C:\\Program Files\\vasfmc\\unins000.exe\""
"QuietUninstallString"="\"C:\\Program Files\\vasfmc\\unins000.exe\" /SILENT"
"Publisher"="Alex Wemmer <alex@wemmer.at>"
"URLInfoAbout"="http://www.vas-project.org"
"HelpLink"="http://www.vas-project.org"
"URLUpdateInfo"="http://www.vas-project.org"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VFR-Generation-X Demo]
"DisplayName"="VFR-Generation-X Demo v1.0"
"UninstallString"="C:\\Program Files\\Horizon VFR-Generation-X Demo\\VFR-Generation-X Demo Uninst.exe"
"DisplayVersion"="v1.0"
"URLInfoAbout"="http://www.horizonsimulation.com"
"Publisher"="Horizon Simulation Ltd."
"NSIS:Language"="1033"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VLC media player]
"DisplayName"="VideoLAN VLC media player 0.8.6f"
"UninstallString"="C:\\Program Files\\VideoLAN\\VLC\\uninstall.exe"
"DisplayIcon"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"
"DisplayVersion"="0.8.6f"
"URLInfoAbout"="http://www.videolan.org"
"Publisher"="VideoLAN Team"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WGA]
"HelpLink"="http://support.microsoft.com?kbid=892130"
"URLInfoAbout"="http://www.microsoft.com/genuine"
"Publisher"="Microsoft Corporation"
"DisplayName"="Windows Genuine Advantage Validation Tool (KB892130)"
"DisplayVersion"="1.7.0069.2"
"VersionMajor"="1"
"VersionMinor"="0"
"ParentKeyName"="OperatingSystem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winamp]
"LangId"="1033"
"SonicRef"="1"
"DisplayName"="Winamp"
"DisplayIcon"="C:\\Program Files\\Winamp\\winamp.exe,0"
"UninstallString"="\"C:\\Program Files\\Winamp\\UninstWA.exe\""
"HelpLink"="http://forums.winamp.com"
"URLInfoAbout"="http://www.winamp.com/"
"URLUpdateInfo"="http://www.winamp.com/"
"Publisher"="Nullsoft, Inc"
"DisplayVersion"="5.541 "
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Encoder 9]
"DisplayName"="Windows Media Encoder 9 Series"
"DisplayIcon"="C:\\Program Files\\Windows Media Components\\Encoder\\WMEnc.exe"
"UninstallString"="msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime]
"DisplayName"="Windows Media Format 11 runtime"
"UninstallString"="\"C:\\Program Files\\Windows Media Player\\wmsetsdk.exe\" /UninstallAll"
"DisplayIcon"="C:\\Program Files\\Windows Media Player\\wmplayer.exe"
"ParentKeyName"=""
"ParentDisplayName"=""
"HelpLink"="http://go.microsoft.com/fwlink/?LinkId=62768"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player]
"DisplayName"="Windows Media Player 11"
"UninstallString"="\"C:\\Program Files\\Windows Media Player\\Setup_wm.exe\" /Uninstall"
"DisplayIcon"="C:\\Program Files\\Windows Media Player\\wmplayer.exe"
"ParentKeyName"=""
"ParentDisplayName"=""
"NoModify"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR archiver]
"DisplayName"="WinRAR archiver"
"UninstallString"="C:\\Program Files\\WinRAR\\uninstall.exe"
"DisplayIcon"="C:\\Program Files\\WinRAR\\WinRAR.exe"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WMCSetup]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WMFDist11]
"DisplayName"="Windows Media Format 11 runtime"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallWMFDist11$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080807"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http:"
"URLInfoAbout"="http:"
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wmp11]
"DisplayName"="Windows Media Player 11"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallwmp11$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080807"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"HelpLink"="http:"
"URLInfoAbout"="http:"
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wudf01000]
"DisplayName"="Microsoft User-Mode Driver Framework Feature Pack 1.0"
"UninstallString"="\"C:\\WINDOWS\\$NtUninstallWudf01000$\\spuninst\\spuninst.exe\""
"TSAware"=dword:00000001
"NoModify"=dword:00000001
"InstallDate"="20080807"
"Publisher"="Microsoft Corporation"
"NoRepair"=dword:00000001
"URLInfoAbout"="http://support.microsoft.com"
"Comments"="Build Number 5716"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Xfire]
"DisplayName"="Xfire (remove only)"
"DisplayIcon"="C:\\Program Files\\Xfire\\Xfire.exe"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"UninstallString"="\"C:\\Program Files\\Xfire\\uninst.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm]
"DisplayName"="ZoneAlarm"
"UninstallString"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zauninst.exe"
"DisplayVersion"="7.0.483.000"
"HelpLink"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\Help\\zaclients.chm"
"Publisher"="Check Point, Inc"
"URLInfoAbout"="http://www.zonelabs.com"
"DisplayIcon"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe,-0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarmSB Uninstall]
"DisplayName"="ZoneAlarm Spy Blocker"
"HelpLink"="http://www.zonealarm.com/store/content/company/spyblocker/help/index.jsp?menu=3&c=P100014"
"Publisher"="ZoneAlarm"
"UninstallString"="rundll32 C:\\PROGRA~1\\ZONEAL~1\\bar\\1.bin\\SpyBlock.dll,O "
"UrlInfoAbout"="http://ccbar.ask.com/help/tos.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{00203668-8170-44A0-BE44-B632FA4D780F}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="1.0.8.4990"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080730"
"InstallLocation"=""
"InstallSource"="C:\\Documents and Settings\\Owner\\Local Settings\\Application Data\\nos\\Adobe AIR Installer\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,30,00,30,00,32,00,30,00,33,00,36,00,36,00,\
38,00,2d,00,38,00,31,00,37,00,30,00,2d,00,34,00,34,00,41,00,30,00,2d,00,42,\
00,45,00,34,00,34,00,2d,00,42,00,36,00,33,00,32,00,46,00,41,00,34,00,44,00,\
37,00,38,00,30,00,46,00,7d,00,00,00
"Publisher"="Adobe Systems Inc."
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0000610f
"SystemComponent"=dword:00000001
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,30,00,30,00,32,00,30,00,33,00,36,00,36,\
00,38,00,2d,00,38,00,31,00,37,00,30,00,2d,00,34,00,34,00,41,00,30,00,2d,00,\
42,00,45,00,34,00,34,00,2d,00,42,00,36,00,33,00,32,00,46,00,41,00,34,00,44,\
00,37,00,38,00,30,00,46,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000008
"Language"=dword:00000409
"DisplayName"="Adobe AIR"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}]
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\\setup.exe\" -l0x9 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\EA GAMES\\Battlefield 2"
"InstallSource"="E:\\"
"ProductGuid"="{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}"
"DisplayName"="Battlefield 2™"
"DisplayIcon"="<BUILD_SOURCE_PATH>\\BF2.exe"
"NoModify"=dword:00000001
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080722"
"Language"=dword:00000009
"Version"=dword:01000000
"MajorVersion"=dword:00000001
"MinorVersion"=dword:00000000
"LogMode"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0F3A1C5A-DA6A-4536-A058-CBB857CAC20C}]
"AuthorizedCDFPrefix"=""
"Comments"="Your Comments"
"Contact"="Customer Support Department"
"DisplayVersion"="3.0.2"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,62,00,65,00,6c,00,6b,00,69,00,6e,00,2e,00,63,00,6f,00,6d,00,00,00
"HelpTelephone"="1-310-898-1100 ext. 2263"
"InstallDate"="20080722"
"InstallLocation"=""
"InstallSource"="D:\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,30,00,46,00,33,00,41,00,31,00,43,00,35,00,\
41,00,2d,00,44,00,41,00,36,00,41,00,2d,00,34,00,35,00,33,00,36,00,2d,00,41,\
00,30,00,35,00,38,00,2d,00,43,00,42,00,42,00,38,00,35,00,37,00,43,00,41,00,\
43,00,32,00,30,00,43,00,7d,00,00,00
"NoModify"=dword:00000001
"Publisher"="Belkin Components"
"Readme"=hex(2):52,00,65,00,61,00,64,00,6d,00,65,00,2e,00,74,00,78,00,74,00,00,\
00
"Size"=""
"EstimatedSize"=dword:000028c8
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,30,00,46,00,33,00,41,00,31,00,43,00,35,\
00,41,00,2d,00,44,00,41,00,36,00,41,00,2d,00,34,00,35,00,33,00,36,00,2d,00,\
41,00,30,00,35,00,38,00,2d,00,43,00,42,00,42,00,38,00,35,00,37,00,43,00,41,\
00,43,00,32,00,30,00,43,00,7d,00,00,00
"URLInfoAbout"="http://www.belkin.com"
"URLUpdateInfo"="http://www.belkin.com"
"VersionMajor"=dword:00000003
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:03000002
"Language"=dword:00000000
"DisplayName"="Nostromo Array Programming Software"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2157961D-0507-44A8-BCF2-1EE2D439E8DF}]
"AuthorizedCDFPrefix"=""
"Comments"=" "
"Contact"="Customer Support Department"
"DisplayVersion"="1.00.0000"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,66,00,69,00,72,00,61,00,78,00,69,00,73,00,2e,00,63,00,6f,00,6d,00,00,\
00
"HelpTelephone"=" "
"InstallDate"="20081113"
"InstallLocation"="C:\\Program Files\\Firaxis Games\\Civilization III Complete\\"
"InstallSource"="D:\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"Publisher"="2K Games"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:001c79be
"SystemComponent"=dword:00000001
"URLInfoAbout"="http://www.firaxis.com"
"URLUpdateInfo"="http://www.firaxis.com"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000409
"DisplayName"="Civilization III Complete Edition"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2447500B-22D7-47BD-9B13-1A927F43A267}]
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{2447500B-22D7-47BD-9B13-1A927F43A267}\\Setup.exe\" "
"DisplayName"="Empire Earth"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{2447500B-22D7-47BD-9B13-1A927F43A267}\\setup.ilg"
"DisplayIcon"=hex(2):43,00,3a,00,5c,00,53,00,69,00,65,00,72,00,72,00,61,00,5c,\
00,45,00,6d,00,70,00,69,00,72,00,65,00,20,00,45,00,61,00,72,00,74,00,68,00,\
5c,00,45,00,6d,00,70,00,69,00,72,00,65,00,20,00,45,00,61,00,72,00,74,00,68,\
00,2e,00,65,00,78,00,65,00,2c,00,30,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{27DC856A-0916-4988-8198-8714DDD3183D}]
"InstallerType"="MSI"
"DisplayIcon"=",0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2CD2C0DB-81C3-416B-9FA6-589B9235359B}]
"AuthorizedCDFPrefix"=""
"Comments"="OpenOffice.org 2.4 (en-US) (OOH680m17(Build:9310))"
"Contact"="Department for technical support"
"DisplayVersion"="2.4.9310"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,6f,00,70,00,65,00,6e,00,6f,00,66,00,66,00,69,00,63,00,65,00,2e,00,6f,\
00,72,00,67,00,00,00
"HelpTelephone"="x-xxx-xxx-xxx"
"InstallDate"="20080805"
"InstallLocation"="C:\\Program Files\\OpenOffice.org 2.4\\"
"InstallSource"="C:\\Downloads\\open office\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,32,00,43,00,44,00,32,00,43,00,30,00,44,00,\
42,00,2d,00,38,00,31,00,43,00,33,00,2d,00,34,00,31,00,36,00,42,00,2d,00,39,\
00,46,00,41,00,36,00,2d,00,35,00,38,00,39,00,42,00,39,00,32,00,33,00,35,00,\
33,00,35,00,39,00,42,00,7d,00,00,00
"Publisher"="OpenOffice.org"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:000543b1
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,32,00,43,00,44,00,32,00,43,00,30,00,44,\
00,42,00,2d,00,38,00,31,00,43,00,33,00,2d,00,34,00,31,00,36,00,42,00,2d,00,\
39,00,46,00,41,00,36,00,2d,00,35,00,38,00,39,00,42,00,39,00,32,00,33,00,35,\
00,33,00,35,00,39,00,42,00,7d,00,00,00
"URLInfoAbout"="http://www.openoffice.org"
"URLUpdateInfo"="http://www.openoffice.org"
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000004
"WindowsInstaller"=dword:00000001
"Version"=dword:0204245e
"Language"=dword:00000409
"DisplayName"="OpenOffice.org 2.4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160040}]
"DisplayIcon"="C:\\Program Files\\Java\\jre1.6.0_04\\\\bin\\javaws.exe"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"="http://java.com"
"DisplayVersion"="1.6.0.40"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,6a,00,61,00,76,00,\
61,00,2e,00,63,00,6f,00,6d,00,00,00
"HelpTelephone"=""
"InstallDate"="20080805"
"InstallLocation"=""
"InstallSource"="C:\\Documents and Settings\\Owner\\Application Data\\Sun\\Java\\jre1.6.0_04\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,33,00,32,00,34,00,38,00,46,00,30,00,41,00,\
38,00,2d,00,36,00,38,00,31,00,33,00,2d,00,31,00,31,00,44,00,36,00,2d,00,41,\
00,37,00,37,00,42,00,2d,00,30,00,30,00,42,00,30,00,44,00,30,00,31,00,36,00,\
30,00,30,00,34,00,30,00,7d,00,00,00
"NoRepair"=dword:00000001
"Publisher"="Sun Microsystems, Inc."
"Readme"=hex(2):43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,20,\
00,46,00,69,00,6c,00,65,00,73,00,5c,00,4a,00,61,00,76,00,61,00,5c,00,6a,00,\
72,00,65,00,31,00,2e,00,36,00,2e,00,30,00,5f,00,30,00,34,00,5c,00,52,00,45,\
00,41,00,44,00,4d,00,45,00,2e,00,74,00,78,00,74,00,00,00
"Size"=""
"EstimatedSize"=dword:000226f2
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,33,00,32,00,34,00,38,00,46,00,30,00,41,\
00,38,00,2d,00,36,00,38,00,31,00,33,00,2d,00,31,00,31,00,44,00,36,00,2d,00,\
41,00,37,00,37,00,42,00,2d,00,30,00,30,00,42,00,30,00,44,00,30,00,31,00,36,\
00,30,00,30,00,34,00,30,00,7d,00,00,00
"URLInfoAbout"="http://java.com"
"URLUpdateInfo"="http://java.sun.com"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000006
"WindowsInstaller"=dword:00000001
"Version"=dword:01060000
"Language"=dword:00000000
"DisplayName"="Java™ 6 Update 4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160070}]
"DisplayIcon"="C:\\Program Files\\Java\\jre1.6.0_07\\\\bin\\javaws.exe"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"="http://java.com"
"DisplayVersion"="1.6.0.70"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,6a,00,61,00,76,00,\
61,00,2e,00,63,00,6f,00,6d,00,00,00
"HelpTelephone"=""
"InstallDate"="20080806"
"InstallLocation"=""
"InstallSource"="http://javadl.sun.com/webapps/download/GetFile/1.6.0_07-b06/windows-i586/"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,33,00,32,00,34,00,38,00,46,00,30,00,41,00,\
38,00,2d,00,36,00,38,00,31,00,33,00,2d,00,31,00,31,00,44,00,36,00,2d,00,41,\
00,37,00,37,00,42,00,2d,00,30,00,30,00,42,00,30,00,44,00,30,00,31,00,36,00,\
30,00,30,00,37,00,30,00,7d,00,00,00
"NoRepair"=dword:00000001
"Publisher"="Sun Microsystems, Inc."
"Readme"=hex(2):43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,20,\
00,46,00,69,00,6c,00,65,00,73,00,5c,00,4a,00,61,00,76,00,61,00,5c,00,6a,00,\
72,00,65,00,31,00,2e,00,36,00,2e,00,30,00,5f,00,30,00,37,00,5c,00,52,00,45,\
00,41,00,44,00,4d,00,45,00,2e,00,74,00,78,00,74,00,00,00
"Size"=""
"EstimatedSize"=dword:0001c93a
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,33,00,32,00,34,00,38,00,46,00,30,00,41,\
00,38,00,2d,00,36,00,38,00,31,00,33,00,2d,00,31,00,31,00,44,00,36,00,2d,00,\
41,00,37,00,37,00,42,00,2d,00,30,00,30,00,42,00,30,00,44,00,30,00,31,00,36,\
00,30,00,30,00,37,00,30,00,7d,00,00,00
"URLInfoAbout"="http://java.com"
"URLUpdateInfo"="http://java.sun.com"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000006
"WindowsInstaller"=dword:00000001
"Version"=dword:01060000
"Language"=dword:00000000
"DisplayName"="Java™ 6 Update 7"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="9.50.7523"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,2e,00,63,00,6f,\
00,6d,00,2f,00,77,00,69,00,6e,00,64,00,6f,00,77,00,73,00,00,00
"HelpTelephone"=""
"InstallDate"="20080712"
"InstallLocation"=""
"InstallSource"="C:\\WINDOWS\\system32\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:000009a8
"SystemComponent"=dword:00000001
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000032
"WindowsInstaller"=dword:00000001
"Version"=dword:09321d63
"Language"=dword:00000409
"DisplayName"="WebFldrs XP"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}]
"ModifyPath"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\\setup.exe\" -l0x9 "
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\\setup.exe\" -l0x9 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\JMICRON Technology Corp.\\JMB36X Raid Configurer"
"InstallSource"="D:\\Drivers\\JMB36X\\"
"ProductGuid"="{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}"
"DisplayName"="JMB36X Raid Configurer"
"Publisher"="JMICRON Technology Corp."
"URLInfoAbout"="http://www.JMICRON.com"
"RegOwner"="Mike Slee"
"NoModify"=dword:00000000
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080712"
"Language"=dword:00000009
"DisplayVersion"="1.00.0000"
"Version"=dword:01000000
"MajorVersion"=dword:00000001
"MinorVersion"=dword:00000000
"LogMode"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3C09A40B-09EC-4EB6-B793-6BBD67CE5BA0}}_is1]
"Inno Setup: Setup Version"="5.2.2"
"Inno Setup: App Path"="C:\\Program Files\\Super Flight Planner\\Release Candidate 4"
"InstallLocation"="C:\\Program Files\\Super Flight Planner\\Release Candidate 4\\"
"Inno Setup: Icon Group"="Super Flight Planner\\Release Candidate 4"
"Inno Setup: User"="Owner"
"Inno Setup: Selected Tasks"=""
"Inno Setup: Deselected Tasks"="desktopicon,quicklaunchicon"
"DisplayName"="Super Flight Planner 4.0 RC 4"
"UninstallString"="\"C:\\Program Files\\Super Flight Planner\\Release Candidate 4\\unins000.exe\""
"QuietUninstallString"="\"C:\\Program Files\\Super Flight Planner\\Release Candidate 4\\unins000.exe\" /SILENT"
"DisplayVersion"="4.0.0.687"
"Publisher"="Central Park Informatica"
"URLInfoAbout"="http://www.cpinf.com/index.php"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"InstallDate"="20080831"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{45235788-142C-44BE-8A4D-DDE9A84492E5}]
"InstallerType"="MSI"
"DisplayIcon"=",0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{582876EC-A178-44D4-9823-C10D6C62EAFF}]
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,20,00,2f,00,\
58,00,7b,00,43,00,44,00,36,00,45,00,39,00,37,00,43,00,36,00,2d,00,33,00,31,\
00,30,00,42,00,2d,00,34,00,38,00,37,00,41,00,2d,00,39,00,34,00,35,00,45,00,\
2d,00,31,00,38,00,39,00,36,00,35,00,46,00,46,00,30,00,45,00,32,00,30,00,45,\
00,7d,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{587178E7-B1DF-494E-9838-FA4DD36E873C}]
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{587178E7-B1DF-494E-9838-FA4DD36E873C}\\setup.exe\" -l0x9 "
"DisplayName"="ASUSUpdate"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{587178E7-B1DF-494E-9838-FA4DD36E873C}\\setup.ilg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5C104E56-A441-429D-A609-D8A46EB92EA1}]
"ModifyPath"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{5C104E56-A441-429D-A609-D8A46EB92EA1}\\setup.exe\" -l0x9 "
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{5C104E56-A441-429D-A609-D8A46EB92EA1}\\setup.exe\" -l0x9 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{5C104E56-A441-429D-A609-D8A46EB92EA1}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\Futuremark\\PCMark05"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\bye6C.tmp\\Disk1\\"
"ProductGuid"="{5C104E56-A441-429D-A609-D8A46EB92EA1}"
"DisplayName"="PCMark05"
"Publisher"="Futuremark"
"URLInfoAbout"="www.futuremark.com"
"HelpLink"="www.futuremark.com"
"URLUpdateInfo"="www.futuremark.com"
"RegOwner"="Mike Slee"
"DisplayIcon"="ARPPRODUCTICON.exe"
"NoModify"=dword:00000000
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080730"
"Language"=dword:00000009
"DisplayVersion"="1.2.0"
"Version"=dword:01020000
"MajorVersion"=dword:00000001
"MinorVersion"=dword:00000002
"LogMode"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{64B20B36-AEE7-4DD4-897C-C5DA5C218F60}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"="Customer Support"
"DisplayVersion"="5.02.116"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,6c,00,6f,00,67,00,69,00,74,00,65,00,63,00,68,00,2e,00,63,00,6f,00,6d,\
00,2f,00,73,00,75,00,70,00,70,00,6f,00,72,00,74,00,00,00
"HelpTelephone"="+1 702-269-3457"
"InstallDate"="20080812"
"InstallLocation"="C:\\Program Files\\Logitech\\Gaming Software\\"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\pft16.tmp\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,36,00,34,00,42,00,32,00,30,00,42,00,33,00,\
36,00,2d,00,41,00,45,00,45,00,37,00,2d,00,34,00,44,00,44,00,34,00,2d,00,38,\
00,39,00,37,00,43,00,2d,00,43,00,35,00,44,00,41,00,35,00,43,00,32,00,31,00,\
38,00,46,00,36,00,30,00,7d,00,00,00
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Logitech"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0000318b
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,36,00,34,00,42,00,32,00,30,00,42,00,33,\
00,36,00,2d,00,41,00,45,00,45,00,37,00,2d,00,34,00,44,00,44,00,34,00,2d,00,\
38,00,39,00,37,00,43,00,2d,00,43,00,35,00,44,00,41,00,35,00,43,00,32,00,31,\
00,38,00,46,00,36,00,30,00,7d,00,00,00
"URLInfoAbout"="http://www.logitech.com"
"URLUpdateInfo"="http://www.logitech.com/support"
"VersionMajor"=dword:00000005
"VersionMinor"=dword:00000002
"WindowsInstaller"=dword:00000001
"Version"=dword:05020074
"Language"=dword:00000000
"DisplayName"="Logitech Gaming Software 5.02"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{69D6FFE7-6F59-11D8-94C5-0003CE117910}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"="Customer Support Department"
"DisplayVersion"="1.00.0000"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,63,00,6f,00,64,00,65,00,6d,00,61,00,73,00,74,00,65,00,72,00,73,00,2e,\
00,63,00,6f,00,6d,00,00,00
"HelpTelephone"=""
"InstallDate"="20081109"
"InstallLocation"="C:\\Program Files\\Codemasters\\World Championship Snooker 2004\\"
"InstallSource"="D:\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,36,00,39,00,44,00,36,00,46,00,46,00,45,00,\
37,00,2d,00,36,00,46,00,35,00,39,00,2d,00,31,00,31,00,44,00,38,00,2d,00,39,\
00,34,00,43,00,35,00,2d,00,30,00,30,00,30,00,33,00,43,00,45,00,31,00,31,00,\
37,00,39,00,31,00,30,00,7d,00,00,00
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Codemasters"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00119fa2
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,36,00,39,00,44,00,36,00,46,00,46,00,45,\
00,37,00,2d,00,36,00,46,00,35,00,39,00,2d,00,31,00,31,00,44,00,38,00,2d,00,\
39,00,34,00,43,00,35,00,2d,00,30,00,30,00,30,00,33,00,43,00,45,00,31,00,31,\
00,37,00,39,00,31,00,30,00,7d,00,00,00
"URLInfoAbout"="http://www.codemasters.com"
"URLUpdateInfo"="http://www.codemasters.com"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000409
"DisplayName"="World Championship Snooker 2004"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{716E0306-8318-4364-8B8F-0CC4E9376BAC}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="4.20.9818.0"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,6d,00,73,00,64,00,6e,00,2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,\
00,66,00,74,00,2e,00,63,00,6f,00,6d,00,2f,00,78,00,6d,00,6c,00,00,00
"HelpTelephone"=""
"InstallDate"="20080813"
"InstallLocation"=""
"InstallSource"="E:\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,37,00,31,00,36,00,45,00,30,00,33,00,30,00,\
36,00,2d,00,38,00,33,00,31,00,38,00,2d,00,34,00,33,00,36,00,34,00,2d,00,38,\
00,42,00,38,00,46,00,2d,00,30,00,43,00,43,00,34,00,45,00,39,00,33,00,37,00,\
36,00,42,00,41,00,43,00,7d,00,00,00
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:000004eb
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,37,00,31,00,36,00,45,00,30,00,33,00,30,\
00,36,00,2d,00,38,00,33,00,31,00,38,00,2d,00,34,00,33,00,36,00,34,00,2d,00,\
38,00,42,00,38,00,46,00,2d,00,30,00,43,00,43,00,34,00,45,00,39,00,33,00,37,\
00,36,00,42,00,41,00,43,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000004
"VersionMinor"=dword:00000014
"WindowsInstaller"=dword:00000001
"Version"=dword:0414265a
"Language"=dword:00000409
"DisplayName"="MSXML 4.0 SP2 Parser and SDK"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{722AED08-B149-423F-8B86-8453643B61E5}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="1.00.0000"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20081028"
"InstallLocation"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 2009 DEMO\\"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\{D214D4AF-F535-415A-AAED-17354E74B3D5}\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,37,00,32,00,32,00,41,00,45,00,44,00,30,00,\
38,00,2d,00,42,00,31,00,34,00,39,00,2d,00,34,00,32,00,33,00,46,00,2d,00,38,\
00,42,00,38,00,36,00,2d,00,38,00,34,00,35,00,33,00,36,00,34,00,33,00,42,00,\
36,00,31,00,45,00,35,00,7d,00,00,00
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Konami Digital Entertainment Co., Ltd."
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0012a404
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,37,00,32,00,32,00,41,00,45,00,44,00,30,\
00,38,00,2d,00,42,00,31,00,34,00,39,00,2d,00,34,00,32,00,33,00,46,00,2d,00,\
38,00,42,00,38,00,36,00,2d,00,38,00,34,00,35,00,33,00,36,00,34,00,33,00,42,\
00,36,00,31,00,45,00,35,00,7d,00,00,00
"URLInfoAbout"="http://www.konami.com"
"URLUpdateInfo"=""
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000000
"DisplayName"="Pro Evolution Soccer 2009 DEMO"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{77DCDCE3-2DED-62F3-8154-05E745472D07}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="0.0.0"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080730"
"InstallLocation"=""
"InstallSource"="C:\\Documents and Settings\\Owner\\Local Settings\\Temp\\fla2B.tmp\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,37,00,37,00,44,00,43,00,44,00,43,00,45,00,\
33,00,2d,00,32,00,44,00,45,00,44,00,2d,00,36,00,32,00,46,00,33,00,2d,00,38,\
00,31,00,35,00,34,00,2d,00,30,00,35,00,45,00,37,00,34,00,35,00,34,00,37,00,\
32,00,44,00,30,00,37,00,7d,00,00,00
"Publisher"="Adobe Systems Incorporated"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00000657
"SystemComponent"=dword:00000001
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,37,00,37,00,44,00,43,00,44,00,43,00,45,\
00,33,00,2d,00,32,00,44,00,45,00,44,00,2d,00,36,00,32,00,46,00,33,00,2d,00,\
38,00,31,00,35,00,34,00,2d,00,30,00,35,00,45,00,37,00,34,00,35,00,34,00,37,\
00,32,00,44,00,30,00,37,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000000
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:00000000
"Language"=dword:00000409
"DisplayName"="Acrobat.com"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="1.00.6781"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080722"
"InstallLocation"="C:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\{A2A22750-8E3A-444D-9101-FB21F02FA882}\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,37,00,43,00,46,00,41,00,34,00,36,00,45,00,\
33,00,2d,00,43,00,43,00,32,00,46,00,2d,00,34,00,33,00,35,00,35,00,2d,00,38,\
00,32,00,41,00,45,00,2d,00,36,00,30,00,31,00,32,00,44,00,43,00,33,00,36,00,\
33,00,33,00,46,00,44,00,7d,00,00,00
"Publisher"="NVIDIA Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00009da6
"SystemComponent"=dword:00000001
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,37,00,43,00,46,00,41,00,34,00,36,00,45,\
00,33,00,2d,00,43,00,43,00,32,00,46,00,2d,00,34,00,33,00,35,00,35,00,2d,00,\
38,00,32,00,41,00,45,00,2d,00,36,00,30,00,31,00,32,00,44,00,43,00,33,00,36,\
00,33,00,33,00,46,00,44,00,7d,00,00,00
"URLInfoAbout"="http://www.NVIDIA.com"
"URLUpdateInfo"=""
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01001a7d
"Language"=dword:00000000
"DisplayName"="NVIDIA ForceWare Network Access Manager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}]
"ModifyPath"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}\\setup.exe\" -l0x9 "
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}\\setup.exe\" -l0x9 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\Futuremark\\3DMark06"
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\bye56.tmp\\Disk1\\"
"ProductGuid"="{7F3AD00A-1819-4B15-BB7D-08B3586336D7}"
"DisplayName"="3DMark06"
"Publisher"="Futuremark"
"URLInfoAbout"="http://www.futuremark.com"
"HelpLink"="http://www.futuremark.com"
"URLUpdateInfo"="http://www.futuremark.com"
"RegOwner"="Mike Slee"
"DisplayIcon"="ARPPRODUCTICON.exe"
"NoModify"=dword:00000000
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080730"
"Language"=dword:00000009
"DisplayVersion"="1.1.0"
"Version"=dword:01010000
"MajorVersion"=dword:00000001
"MinorVersion"=dword:00000001
"LogMode"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{83437081-8186-4F63-BD39-4BE8A691E055}]
"AuthorizedCDFPrefix"=""
"Comments"="##IDPROP_ARPCOMMENTS##"
"Contact"="##IDPROP_ARPCONTACT##"
"DisplayVersion"="1.01.0000"
"HelpLink"=hex(2):23,00,23,00,49,00,44,00,50,00,52,00,4f,00,50,00,5f,00,41,00,\
52,00,50,00,48,00,45,00,4c,00,50,00,4c,00,49,00,4e,00,4b,00,23,00,23,00,00,\
00
"HelpTelephone"="##IDPROP_ARPHELPTELEPHONE##"
"InstallDate"="20080807"
"InstallLocation"=""
"InstallSource"="D:\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"Publisher"="Illusion Softworks"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:001ed3d5
"SystemComponent"=dword:00000001
"URLInfoAbout"="##IDPROP_ARPURLINFOABOUT##"
"URLUpdateInfo"="##IDPROP_ARPURLUPDATEINFO##"
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000001
"WindowsInstaller"=dword:00000001
"Version"=dword:01010000
"Language"=dword:00000409
"DisplayName"="Hidden & Dangerous 2 "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="4.20.9870.0"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,73,00,75,00,70,00,\
70,00,6f,00,72,00,74,00,2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,\
00,74,00,2e,00,63,00,6f,00,6d,00,2f,00,6b,00,62,00,2f,00,39,00,35,00,34,00,\
34,00,33,00,30,00,00,00
"HelpTelephone"=""
"InstallDate"="20081123"
"InstallLocation"=""
"InstallSource"="c:\\42e39c22b262c4dd55ff98\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,38,00,36,00,34,00,39,00,33,00,41,00,44,00,\
44,00,2d,00,38,00,32,00,34,00,44,00,2d,00,34,00,42,00,38,00,45,00,2d,00,42,\
00,44,00,37,00,32,00,2d,00,38,00,43,00,35,00,44,00,43,00,44,00,43,00,35,00,\
32,00,41,00,37,00,31,00,7d,00,00,00
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00000aa9
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,38,00,36,00,34,00,39,00,33,00,41,00,44,\
00,44,00,2d,00,38,00,32,00,34,00,44,00,2d,00,34,00,42,00,38,00,45,00,2d,00,\
42,00,44,00,37,00,32,00,2d,00,38,00,43,00,35,00,44,00,43,00,44,00,43,00,35,\
00,32,00,41,00,37,00,31,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000004
"VersionMinor"=dword:00000014
"WindowsInstaller"=dword:00000001
"Version"=dword:0414268e
"Language"=dword:00000409
"DisplayName"="MSXML 4.0 SP2 (KB954430)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8795CBED-55E2-4693-9F14-84EC446935BE}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"="Epic Games Inc."
"DisplayVersion"="1.0.0"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080722"
"InstallLocation"=""
"InstallSource"="E:\\CD6\\Speech\\Redist\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,38,00,37,00,39,00,35,00,43,00,42,00,45,00,\
44,00,2d,00,35,00,35,00,45,00,32,00,2d,00,34,00,36,00,39,00,33,00,2d,00,39,\
00,46,00,31,00,34,00,2d,00,38,00,34,00,45,00,43,00,34,00,34,00,36,00,39,00,\
33,00,35,00,42,00,45,00,7d,00,00,00
"NoModify"=dword:00000001
"Publisher"="Epic Games Inc."
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0000eb31
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,38,00,37,00,39,00,35,00,43,00,42,00,45,\
00,44,00,2d,00,35,00,35,00,45,00,32,00,2d,00,34,00,36,00,39,00,33,00,2d,00,\
39,00,46,00,31,00,34,00,2d,00,38,00,34,00,45,00,43,00,34,00,34,00,36,00,39,\
00,33,00,35,00,42,00,45,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000409
"DisplayName"="SpeechRedist"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9527A496-5DF9-412A-ADC7-168BA5379CA6}]
"AuthorizedCDFPrefix"=""
"Comments"="Copyright c 2006 Microsoft Corporation"
"Contact"=""
"DisplayVersion"="10.0.61355.0"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080814"
"InstallLocation"=""
"InstallSource"="E:\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"Publisher"="Microsoft Game Studios"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00cfceae
"SystemComponent"=dword:00000001
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:0000000a
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:0a00efab
"Language"=dword:00000409
"DisplayName"="Microsoft Flight Simulator X"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,39,00,35,00,32,00,37,00,41,00,34,00,39,00,\
36,00,2d,00,35,00,44,00,46,00,39,00,2d,00,34,00,31,00,32,00,41,00,2d,00,41,\
00,44,00,43,00,37,00,2d,00,31,00,36,00,38,00,42,00,41,00,35,00,33,00,37,00,\
39,00,43,00,41,00,36,00,7d,00,00,00
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,39,00,35,00,32,00,37,00,41,00,34,00,39,\
00,36,00,2d,00,35,00,44,00,46,00,39,00,2d,00,34,00,31,00,32,00,41,00,2d,00,\
41,00,44,00,43,00,37,00,2d,00,31,00,36,00,38,00,42,00,41,00,35,00,33,00,37,\
00,39,00,43,00,41,00,36,00,7d,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A49F249F-0C91-497F-86DF-B2585E8E76B7}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="8.0.50727.42"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080730"
"InstallLocation"=""
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\IXP000.TMP\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,41,00,34,00,39,00,46,00,32,00,34,00,39,00,\
46,00,2d,00,30,00,43,00,39,00,31,00,2d,00,34,00,39,00,37,00,46,00,2d,00,38,\
00,36,00,44,00,46,00,2d,00,42,00,32,00,35,00,38,00,35,00,45,00,38,00,45,00,\
37,00,36,00,42,00,37,00,7d,00,00,00
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00001448
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,41,00,34,00,39,00,46,00,32,00,34,00,39,\
00,46,00,2d,00,30,00,43,00,39,00,31,00,2d,00,34,00,39,00,37,00,46,00,2d,00,\
38,00,36,00,44,00,46,00,2d,00,42,00,32,00,35,00,38,00,35,00,45,00,38,00,45,\
00,37,00,36,00,42,00,37,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000008
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:0800c627
"Language"=dword:00000000
"DisplayName"="Microsoft Visual C++ 2005 Redistributable"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1033-7B44-A90000000001}]
"AuthorizedCDFPrefix"=""
"Comments"=" "
"Contact"="Customer Support"
"DisplayVersion"="9.0.0"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,77,00,77,00,\
2e,00,61,00,64,00,6f,00,62,00,65,00,2e,00,63,00,6f,00,6d,00,2f,00,73,00,75,\
00,70,00,70,00,6f,00,72,00,74,00,2f,00,6d,00,61,00,69,00,6e,00,2e,00,68,00,\
74,00,6d,00,6c,00,00,00
"HelpTelephone"=""
"InstallDate"="20080730"
"InstallLocation"="C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\"
"InstallSource"="C:\\Documents and Settings\\Owner\\Local Settings\\Application Data\\Adobe\\Reader 9.0\\Setup Files\\READER9\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,41,00,43,00,37,00,36,00,42,00,41,00,38,00,\
36,00,2d,00,37,00,41,00,44,00,37,00,2d,00,31,00,30,00,33,00,33,00,2d,00,37,\
00,42,00,34,00,34,00,2d,00,41,00,39,00,30,00,30,00,30,00,30,00,30,00,30,00,\
30,00,30,00,30,00,31,00,7d,00,00,00
"NoRepair"=dword:00000001
"Publisher"="Adobe Systems Incorporated"
"Readme"=hex(2):43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,20,\
00,46,00,69,00,6c,00,65,00,73,00,5c,00,41,00,64,00,6f,00,62,00,65,00,5c,00,\
52,00,65,00,61,00,64,00,65,00,72,00,20,00,39,00,2e,00,30,00,5c,00,52,00,65,\
00,61,00,64,00,6d,00,65,00,2e,00,68,00,74,00,6d,00,00,00
"Size"=""
"EstimatedSize"=dword:0003316a
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,41,00,43,00,37,00,36,00,42,00,41,00,38,\
00,36,00,2d,00,37,00,41,00,44,00,37,00,2d,00,31,00,30,00,33,00,33,00,2d,00,\
37,00,42,00,34,00,34,00,2d,00,41,00,39,00,30,00,30,00,30,00,30,00,30,00,30,\
00,30,00,30,00,30,00,31,00,7d,00,00,00
"URLInfoAbout"="http://www.adobe.com"
"URLUpdateInfo"="http://www.adobe.com/products/acrobat/readstep.html"
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:09000000
"Language"=dword:00000409
"DisplayName"="Adobe Reader 9"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{b4092c6d-e886-4cb2-ba68-fe5a88d31de6}_is1]
"Inno Setup: Setup Version"="5.2.3"
"Inno Setup: App Path"="C:\\Program Files\\Spybot - Search & Destroy"
"InstallLocation"="C:\\Program Files\\Spybot - Search & Destroy\\"
"Inno Setup: Icon Group"="Spybot - Search & Destroy"
"Inno Setup: User"="Owner"
"Inno Setup: Setup Type"="custom"
"Inno Setup: Selected Components"="main,language,sdshredder,sdfiles"
"Inno Setup: Deselected Components"="blind,skins,updatedl"
"Inno Setup: Selected Tasks"="desktopicon,launchsdhelper"
"Inno Setup: Deselected Tasks"="quicklaunchicon,launchteatimer"
"DisplayName"="Spybot - Search & Destroy"
"DisplayIcon"="C:\\Program Files\\Spybot - Search & Destroy\\SpybotSD.exe"
"UninstallString"="\"C:\\Program Files\\Spybot - Search & Destroy\\unins000.exe\""
"QuietUninstallString"="\"C:\\Program Files\\Spybot - Search & Destroy\\unins000.exe\" /SILENT"
"DisplayVersion"="1.6.0"
"Publisher"="Safer Networking Limited"
"URLInfoAbout"="http://www.safer-networking.org/"
"HelpLink"="http://www.safer-networking.org/index.php?page=support"
"URLUpdateInfo"="http://www.safer-networking.org/index.php?page=download"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"InstallDate"="20081124"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B49C924C-A651-4378-94F6-5D9BF44A959F}]
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{B49C924C-A651-4378-94F6-5D9BF44A959F}\\Setup.exe\" -l0x9 "
"DisplayName"="Empire Earth - The Art of Conquest"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{B49C924C-A651-4378-94F6-5D9BF44A959F}\\setup.ilg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B508B3F1-A24A-32C0-B310-85786919EF28}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2.1.21022"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,67,00,6f,00,2e,00,\
6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,2e,00,63,00,6f,00,6d,\
00,2f,00,66,00,77,00,6c,00,69,00,6e,00,6b,00,2f,00,3f,00,4c,00,69,00,6e,00,\
6b,00,49,00,64,00,3d,00,39,00,38,00,30,00,37,00,33,00,00,00
"HelpTelephone"=""
"InstallDate"="20080906"
"InstallLocation"=""
"InstallSource"="c:\\4faa1cdbf1e9c5efd09c795c533932aa\\wcu\\dotnetframework\\dotnetfx20\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,42,00,35,00,30,00,38,00,42,00,33,00,46,00,\
31,00,2d,00,41,00,32,00,34,00,41,00,2d,00,33,00,32,00,43,00,30,00,2d,00,42,\
00,33,00,31,00,30,00,2d,00,38,00,35,00,37,00,38,00,36,00,39,00,31,00,39,00,\
45,00,46,00,32,00,38,00,7d,00,00,00
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0002e9d6
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,42,00,35,00,30,00,38,00,42,00,33,00,46,\
00,31,00,2d,00,41,00,32,00,34,00,41,00,2d,00,33,00,32,00,43,00,30,00,2d,00,\
42,00,33,00,31,00,30,00,2d,00,38,00,35,00,37,00,38,00,36,00,39,00,31,00,39,\
00,45,00,46,00,32,00,38,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"="http://go.microsoft.com/fwlink/?LinkId=98074"
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000001
"WindowsInstaller"=dword:00000001
"Version"=dword:0201521e
"Language"=dword:00000000
"DisplayName"="Microsoft .NET Framework 2.0 Service Pack 1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BB8B979E-E336-47E7-96BC-1031C1B94561}]
"SystemComponent"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BFA90209-7AFF-4DB6-8E4B-E57305751AD7}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="1.00.0000"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20080722"
"InstallLocation"="C:\\Program Files\\Unreal Tournament 3\\"
"InstallSource"="E:\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,42,00,46,00,41,00,39,00,30,00,32,00,30,00,\
39,00,2d,00,37,00,41,00,46,00,46,00,2d,00,34,00,44,00,42,00,36,00,2d,00,38,\
00,45,00,34,00,42,00,2d,00,45,00,35,00,37,00,33,00,30,00,35,00,37,00,35,00,\
31,00,41,00,44,00,37,00,7d,00,00,00
"NoModify"=dword:00000001
"Publisher"="Epic Games"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:007e15ed
"SystemComponent"=dword:00000001
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,42,00,46,00,41,00,39,00,30,00,32,00,30,\
00,39,00,2d,00,37,00,41,00,46,00,46,00,2d,00,34,00,44,00,42,00,36,00,2d,00,\
38,00,45,00,34,00,42,00,2d,00,45,00,35,00,37,00,33,00,30,00,35,00,37,00,35,\
00,31,00,41,00,44,00,37,00,7d,00,00,00
"URLInfoAbout"="http://www.EpicGames.com"
"URLUpdateInfo"=""
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000000
"DisplayName"="Unreal Tournament 3"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C04E32E0-0416-434D-AFB9-6969D703A9EF}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="4.20.9848.0"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,73,00,75,00,70,00,\
70,00,6f,00,72,00,74,00,2e,00,6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,\
00,74,00,2e,00,63,00,6f,00,6d,00,2f,00,6b,00,62,00,2f,00,39,00,33,00,36,00,\
31,00,38,00,31,00,00,00
"HelpTelephone"=""
"InstallDate"="20080816"
"InstallLocation"=""
"InstallSource"="c:\\e051198e9767a3aa51\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,43,00,30,00,34,00,45,00,33,00,32,00,45,00,\
30,00,2d,00,30,00,34,00,31,00,36,00,2d,00,34,00,33,00,34,00,44,00,2d,00,41,\
00,46,00,42,00,39,00,2d,00,36,00,39,00,36,00,39,00,44,00,37,00,30,00,33,00,\
41,00,39,00,45,00,46,00,7d,00,00,00
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00000a78
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,43,00,30,00,34,00,45,00,33,00,32,00,45,\
00,30,00,2d,00,30,00,34,00,31,00,36,00,2d,00,34,00,33,00,34,00,44,00,2d,00,\
41,00,46,00,42,00,39,00,2d,00,36,00,39,00,36,00,39,00,44,00,37,00,30,00,33,\
00,41,00,39,00,45,00,46,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000004
"VersionMinor"=dword:00000014
"WindowsInstaller"=dword:00000001
"Version"=dword:04142678
"Language"=dword:00000409
"DisplayName"="MSXML 4.0 SP2 (KB936181)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C219D284-F161-4731-AC0E-D89814ACEABE}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2.05.0000"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20081118"
"InstallLocation"=""
"InstallSource"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\pft25~tmp\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"Publisher"="Canon Inc."
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00002bc2
"SystemComponent"=dword:00000001
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000005
"WindowsInstaller"=dword:00000001
"Version"=dword:02050000
"Language"=dword:00000000
"DisplayName"="DV Network Software"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2196}_is1]
"Inno Setup: Setup Version"="5.2.3"
"Inno Setup: App Path"="C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c"
"InstallLocation"="C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\"
"Inno Setup: Icon Group"="SiSoftware"
"Inno Setup: User"="Owner"
"Inno Setup: Setup Type"="full"
"Inno Setup: Selected Components"="main,main\\cmn,main\\cli,main\\cli\\cmn,main\\srv,main\\srv\\cmn,main\\srv\\wrp,main\\srv\\thm,docs,docs\\help,docs\\exmp"
"Inno Setup: Deselected Components"=""
"Inno Setup: Selected Tasks"="desktopicon"
"Inno Setup: Deselected Tasks"="firewall,regdoc"
"Inno Setup: User Info: Name"="Mike Slee"
"Inno Setup: User Info: Organization"=""
"Inno Setup: User Info: Serial"=""
"DisplayName"="SiSoftware Sandra Lite XII.SP2c"
"DisplayIcon"="C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\sandra.exe,0"
"UninstallString"="\"C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\unins000.exe\""
"QuietUninstallString"="\"C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\unins000.exe\" /SILENT"
"DisplayVersion"="14.24.2008.5"
"Publisher"="SiSoftware"
"URLInfoAbout"="http://www.sisoftware.net"
"HelpLink"="http://www.sisoftware.net/?location=contact"
"URLUpdateInfo"="http://www.sisoftware.net/?location=update"
"Contact"="sandra.soft@sisoftware.net"
"Comments"="SiSoftware Sandra Lite XII.SP2c"
"NoModify"=dword:00000001
"NoRepair"=dword:00000001
"InstallDate"="20080730"
"Inno Setup CodeFile: sSelNetPrm"="1"
"Inno Setup CodeFile: sSelPrice"="1"
"Inno Setup CodeFile: sSelTheme"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C7D27207-0F86-4B6F-859C-21800A2C592E}]
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\ctor.dll,LaunchSetup \"C:\\Program Files\\Infogrames\\Grand Prix 4\\setup.exe\" "
"DisplayName"="Grand Prix 4"
"LogFile"="C:\\Program Files\\Infogrames\\Grand Prix 4\\setup.ilg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CD6E97C6-310B-487A-945E-18965FF0E20E}]
"InstallerType"="MSI"
"AuthorizedCDFPrefix"=""
"Comments"="PhysX Driver & Engines: 2.3.1/2/3; 2.4.0/1/4; 2.5.0/1/2/3/4; 2.6.0/1/2/3/4; 2.7.0/1/2/3/4; 2.8.0/1"
"Contact"=""
"DisplayVersion"="8.06.12"
"HelpLink"=hex(2):77,00,77,00,77,00,2e,00,4e,00,56,00,49,00,44,00,49,00,41,00,\
2e,00,63,00,6f,00,6d,00,00,00
"HelpTelephone"=""
"InstallDate"="20080722"
"InstallLocation"="C:\\DOCUME~1\\Owner\\LOCALS~1\\Temp\\"
"InstallSource"="C:\\Program Files\\Common Files\\Wise Installation Wizard\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,58,00,7b,00,43,00,44,00,36,00,45,00,39,00,37,00,43,00,\
36,00,2d,00,33,00,31,00,30,00,42,00,2d,00,34,00,38,00,37,00,41,00,2d,00,39,\
00,34,00,35,00,45,00,2d,00,31,00,38,00,39,00,36,00,35,00,46,00,46,00,30,00,\
45,00,32,00,30,00,45,00,7d,00,00,00
"NoModify"=dword:00000001
"Publisher"="NVIDIA Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:0001be7c
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,58,00,7b,00,43,00,44,00,36,00,45,00,39,00,37,00,43,\
00,36,00,2d,00,33,00,31,00,30,00,42,00,2d,00,34,00,38,00,37,00,41,00,2d,00,\
39,00,34,00,35,00,45,00,2d,00,31,00,38,00,39,00,36,00,35,00,46,00,46,00,30,\
00,45,00,32,00,30,00,45,00,7d,00,00,00
"URLInfoAbout"="www.NVIDIA.com"
"URLUpdateInfo"=""
"VersionMajor"=dword:00000008
"VersionMinor"=dword:00000006
"WindowsInstaller"=dword:00000001
"Version"=dword:0806000c
"Language"=dword:00000409
"DisplayName"="NVIDIA PhysX v8.06.12"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="9.00.2980"
"HelpLink"=hex(2):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,67,00,6f,00,2e,00,\
6d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,2e,00,63,00,6f,00,6d,\
00,2f,00,66,00,77,00,6c,00,69,00,6e,00,6b,00,2f,00,3f,00,4c,00,69,00,6e,00,\
6b,00,49,00,64,00,3d,00,39,00,36,00,34,00,37,00,00,00
"HelpTelephone"=""
"InstallDate"="20080730"
"InstallLocation"=""
"InstallSource"="C:\\WINDOWS\\Installer\\"
"ModifyPath"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,78,\
00,65,00,20,00,2f,00,49,00,7b,00,45,00,33,00,38,00,43,00,30,00,30,00,44,00,\
30,00,2d,00,41,00,36,00,38,00,42,00,2d,00,34,00,33,00,31,00,38,00,2d,00,41,\
00,38,00,41,00,36,00,2d,00,46,00,37,00,44,00,34,00,42,00,35,00,42,00,31,00,\
44,00,46,00,30,00,45,00,7d,00,00,00
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00003656
"SystemComponent"=dword:00000001
"UninstallString"=hex(2):4d,00,73,00,69,00,45,00,78,00,65,00,63,00,2e,00,65,00,\
78,00,65,00,20,00,2f,00,49,00,7b,00,45,00,33,00,38,00,43,00,30,00,30,00,44,\
00,30,00,2d,00,41,00,36,00,38,00,42,00,2d,00,34,00,33,00,31,00,38,00,2d,00,\
41,00,38,00,41,00,36,00,2d,00,46,00,37,00,44,00,34,00,42,00,35,00,42,00,31,\
00,44,00,46,00,30,00,45,00,7d,00,00,00
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:09000ba4
"Language"=dword:00000409
"DisplayName"="Windows Media Encoder 9 Series"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}]
"DisplayName"="Realtek High Definition Audio Driver"
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\\Setup.exe\" -l0x9 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\Realtek\\InstallShield\\"
"ProductGuid"="{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}"
"InstallSource"="D:\\Drivers\\Audio\\Realtek\\32bit\\2K_XP\\"
"Publisher"="Realtek Semiconductor Corp."
"RegOwner"="Mike Slee"
"DisplayIcon"="C:\\WINDOWS\\Rtlupd.exe"
"NoModify"=dword:00000001
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080712"
"Language"=dword:00000009
"DisplayVersion"="5.10.0.5324"
"Version"=dword:02140000
"MajorVersion"=dword:00000002
"MinorVersion"=dword:00000014
"LogMode"=dword:00000001
"BackUnString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\\Setup.exe\" -l0x9 -removeonly"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}]
"DisplayVersion"="1.04.19"
"UninstallString"="RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\\setup.exe\" -l0x9 "
"DisplayName"="PC Probe II"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\\setup.ilg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F78AC3C0-578C-49AB-BD4E-3107A6036A13}]
"ModifyPath"="C:\\Program Files\\InstallShield Installation Information\\{F78AC3C0-578C-49AB-BD4E-3107A6036A13}\\Setup.exe -runfromtemp -l0x0009"
"UninstallString"="\"C:\\Program Files\\InstallShield Installation Information\\{F78AC3C0-578C-49AB-BD4E-3107A6036A13}\\Setup.exe\" -runfromtemp -l0x0009 -removeonly"
"LogFile"="C:\\Program Files\\InstallShield Installation Information\\{F78AC3C0-578C-49AB-BD4E-3107A6036A13}\\setup.ilg"
"InstallLocation"="C:\\Program Files\\UBISOFT\\Ghost Recon Advanced Warfighter 2"
"ProductGuid"="{F78AC3C0-578C-49AB-BD4E-3107A6036A13}"
"InstallSource"="E:\\"
"DisplayName"="Tom Clancy's Ghost Recon Advanced Warfighterr 2"
"Publisher"="UBISOFT"
"URLInfoAbout"="http://www.UBISOFT.com"
"RegOwner"="Mike Slee"
"NoModify"=dword:00000000
"NoRemove"=dword:00000000
"NoRepair"=dword:00000001
"InstallDate"="20080722"
"Language"=dword:00000009
"DisplayVersion"="1.05"
"Version"=dword:01000000
"MajorVersion"=dword:00000001
"MinorVersion"=dword:00000000
"LogMode"=dword:00000001
"DisplayIcon"="C:\\Program Files\\UBISOFT\\Ghost Recon Advanced Warfighter 2\\Graw2.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F87F471C-66C0-4F70-B493-6E59E4D402E6}]
"AuthorizedCDFPrefix"=""
"Comments"="Fuji Photo Film Co.,Ltd."
"Contact"=" "
"DisplayVersion"="1.00"
"HelpLink"=hex(2):20,00,00,00
"HelpTelephone"=" "
"InstallDate"="20081101"
"InstallLocation"=""
"InstallSource"="C:\\Downloads\\DPC-R1_Win\\"
"NoModify"=dword:00000001
"NoRemove"=dword:00000001
"Publisher"="Fuji Photo Film Co.,Ltd."
"Readme"=hex(2):20,00,00,00
"Size"=""
"EstimatedSize"=dword:00000088
"SystemComponent"=dword:00000001
"URLInfoAbout"=" "
"URLUpdateInfo"=" "
"VersionMajor"=dword:00000001
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:01000000
"Language"=dword:00000000
"DisplayName"="USB_RW"


Zipping GetUnKey.txt

#5 MikeSlee

MikeSlee
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:50 PM

Posted 08 December 2008 - 04:51 PM

Hi,

Have resolved this issue through help from another site. Thanks for taking any time looking at this.

#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,190 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:50 PM

Posted 09 December 2008 - 03:43 PM

Thank you for letting us know!!
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users