Jump to content


  • Content Count

  • Joined

  • Last visited

About Tillpott

  • Rank
  • Birthday 10/06/1954

Contact Methods

  • Website URL
  • ICQ

Profile Information

  • Gender
  • Location
    Tweed Heads, NSW Australia

Previous Fields

  • System Specifications:
    ASUS P5KPL-CM G31 Motherboard Intel Celeron 266hz 128 ATC cache DDR DIMM 266Ghz 2GB 500GB HD
  • Teams:
    Nothing Selected
  1. I understand you are very busy guys, while waiting I did a goggle search and found that this has been a very common attack and I was able to contact another Forum who were able to assist me over the last 2 days and everything is now fixed and better than normal. I wanted to let you know, I'm all good - so you can concentrate on others who need your help. Thanks again, your assistance is always amazing and the end results for me have always been positive. Kind Regards Lynne ====================================================== Hello I am runnning XP and Microsoft Office from 2003 but had my motherboard, Graphics card, guts of my tower replaced 2010/2011 - Whilst trying to remove SMART HDD took my desktop picture and all my folder icons away and I was left with a black blank screen - I could not right click and when I went to Start > All Programs everything had gone. I have since run Malawarbytes - had 10 Back Door and Trojans to get rid of - SuperSpyware = 0 - Avira = 0 As instructed attached are the dds logs for your perusal. Thank you for your time and wise instructions Kind Regards Lynne
  2. Hi My son just bought a MacBook Pro 15.4" 2.66GHz, 4GB Ram, 320GB for work in the Music Industry. As a Dj he uses his computer for all his gigs and the 2yr old Toshiba PC just isn't coping with work load it has been put under. Seems the Mac cruises thru a gig without even blinking while the PC is getting very hot under the collar and stuggles to keep up . . . As the "PC techie" in the family, I am doing some research for what programs I may need to download for what I am used to regularly running with the PC's in the house.... Seems I won't be needing anything like CleanUp, Malawarebytes, Spywareblaster, Ccleaner etc. It looks like Mac have taken care of all those extra bits & bobs. Should be a bit of fun to get my head around . . . Looking forward to it. Regards
  3. Have done Revo ~ I don't have any AVG on my system - but when I go to install I get the error message. Thanks for the advice tho.
  4. Thank you I did as you suggested and then reinstalled AVG but it still comes up with the dam error message !! I guess I am not meant ot use it on this computer. As long as the error message is not causing a problem on my computer. I really take pride in making sure I look after all the cleanups, dowloads, updates, defrags and serviceing of my machine and it bugs me that there is something not working correctly on it. Thanks again
  5. Thanks but that is the same info I got and have done it all with no success ~ that was when the AVG guy said it was not an agv problem but my computer. so I am still perplexed !!!!
  6. Thanks - I use CCleaner and Cleanup everytime I uninstall programs to clean my registry. I have gone through AVG free forum and they tell me it is "NOT" a problem with AVG but with my computer, which I thought perhaps it was as the updates went through fine on my other desktop and laptop.... However, when I googled the error I found heaps of other people around the world with a similar issue with AVG..... So I'm thinking I stay with Avira for a while on thic pc, unless someone else has any solutions for me. Thanks this is a tricky one.
  7. Hi I had a new processor & mother board installed and had to update several programs one of which was AVG. Windows XP SP3 Did have AVG 8 and clicked on update and this error came up. Local machine: installation failed Installation: Error: Action failed for registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows: creating registry key.... Error 0x80070005 It would not allow me to uninstall - I got the error message - would not allow me to repair - I got the error messge. So had my computer tech completely uninstall and remove all the .dll files so I could start a fresh. Still cannot install - I get the error message. I am now using Avira to cover my :filtered: till I can get AVG back as it is my preferred antivirus. I regularly run Malawarebytes, SuperAntiSpyware, CCleaner & CleanUp. I can see that it is a registry error but don't know how to fix it. I am the Administrator and there are no other "Users" on this computer. In regedit HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows: I have NAME : Default TYPE: REG_SZ DATA: (value not set) Hope someone can help. Please give me step by step as I am good at following instructions. Thanks in advance PS I have AVG on a laptop and another desktop with no issues. . . . .
  8. Thanks but I did download FREE AVG 8 and it would not repair, - it still gave me the same error message. However, problem solved - I deleted all that I could and then had a tech remove the leftover .dll files so I could start from a fresh install. Thanks again for your suggestion & help.
  9. Have just had a new motherboard & processor installed and had to update a few programs. Had AVG8 FREE installed and checked for updates as my computer was away for 3 days, and it would not complete the update. I got an error message. Local machine: installation failed Installation: Error: Action failed for registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows: creating registry key.... Error 0x80070005 So I thought I would uninstall and reinstall now it wont do either and I get the same message. I have downloaded Avast to cover me for the time being, but I really don't like it and would like to get AVG sorted out. I tried uninstall through add/remove programs and the same error comes up. Downloded Revo uninstaller but it does not show up on there, so it seems to have partly uninstalled but when I downloaded Avast it tells me I have AVG on my system. I tried deleting all folders however, 12 .dll files will not delete. So I am stuck with a white elephant and a programs I don't feel secure with ~ Hope someone can help. Thanks for your time
  10. Thanks for this info..... It took several attempts to get it to work ~ as there are a few steps missing in the "step by step" instructions, (not your fault) however, perseverance paid off and all is well. All the downloads have come thru without a problem. Thanks again. I ALWAYS get SUPER advice and direction from this forum. You provide a great service to the 'non' technical community. With much appreciation .
  11. Yep I am sure your right however, I reformatted that drive so it is useless to me now. Do you have any suggestions as to how to fix this problem ~ even my IE7 will not work.?????? Any thing Microsoft is showing error 1327 . . .
  12. Hi I have just had a new motherboard & processor put in and am running XP. I had 2003 Office and was using 2007 MSOutlook quite successfully. When I got home with the computer last night and started it up, I had a lot of updates to download. Not a problem. However 5 updates failed to load 4 times: All to do with Office 2003. KB 957832 KB 958436 KB 956357 KB 959140 KB 951535 I opened a word doc and found I needed to get a new set of registration keys which I did over the phone. NPS works fine. Then I opened MS Outlook 2007 and it refused to load gave me a message Error 1327 Invalid Drvie D:\ So I decided to use Outlook 2003 and got the same message ~ Now I cannot use either email program and updates refuse to install ~ my backup email is Incredimail. I have googled and read some fixes but you have to buy them, also read about the LISTools and tried to follow that but when I follow the instructions on that it fails to extract says not enough disk space - I have also just upgraded from 2 x 80GB HDD to 500GB HDD so that is confusing me also. Do I need to uninstall MS Office and reinstall or will that not solve the problem but only create another? Would really appreciate someone helping out here. Thanks in advance
  13. All done ... removed the folders did a CCleaner & CleanUp and defragged then ran a Full PC test and had NO changes to make. I have not had anymore of those emails so perhaps the filter from the ISP has done the trick. The computer is running fine and is now clean as a whistle thanks to you Juliet. Have a SAFE, HAPPY and PROSPEROUS 2009. Warm regards Lynne (Tillpott)
  14. Hey Juliet, I tried the 'run - combofix' thingy but it said it could not locate any files, so i moved on to the next step and ran the DrWeb scan, WOW that sure goes deep !!! Took hours so hence the delay in response ~ but found stuff I did not even know I still had. Here is the log: psexec.cfexe;C:\ComboFix;Program.PsExec.171;Moved.; MSGTAG145.exe\data002;C:\Documents and Settings\Test\My Documents\Downloads\Desktop Tools\MSGTAG145.exe;BackDoor.Nels.9;; MSGTAG145.exe;C:\Documents and Settings\Test\My Documents\Downloads\Desktop Tools;Archive contains infected objects;Moved.; nero7082.exe\Windows/Profiles/Start Menu/Programs/Nero 7 Ultra Edition/Tools/Keygen.exe;C:\Documents and Settings\Test\My Documents\Downloads\DVD tools\Nero7.0.82\nero7082.exe;Trojan.PWS.Banker.25285;; nero7082.exe;C:\Documents and Settings\Test\My Documents\Downloads\DVD tools\Nero7.0.82;Archive contains infected objects;Moved.; Keygen.exe;C:\Documents and Settings\Test\Start Menu\Programs\Nero 7 Ultra Edition\Tools;Trojan.PWS.Banker.25285;Deleted.; Process.exe;C:\SDFix\apps;Tool.Prockill;Incurable.Moved.; A0137628.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP850;Trojan.PWS.Banker.25285;Deleted.; data002\32788R22FWJFW\psexec.cfexe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP856\A0139108.exe\data002;Program.PsExec.171;; data002;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP856\A0139108.exe;Archive contains infected objects;; A0139108.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP856;Archive contains infected objects;Moved.; A0139144.exe\SDFix\apps\Process.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857\A0139144.exe;Tool.Prockill;; A0139144.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857;Archive contains infected objects;Moved.; A0139145.exe\SDFix\apps\Process.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857\A0139145.exe;Tool.Prockill;; A0139145.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857;Archive contains infected objects;Moved.; data002\32788R22FWJFW\psexec.cfexe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857\A0139146.exe\data002;Program.PsExec.171;; data002;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857\A0139146.exe;Archive contains infected objects;; A0139146.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP857;Archive contains infected objects;Moved.; A0139205.EXE;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP859;Program.PsExec.170;Moved.; data002\32788R22FWJFW\psexec.cfexe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP859\A0139251.exe\data002;Program.PsExec.171;; data002;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP859\A0139251.exe;Archive contains infected objects;; A0139251.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP859;Archive contains infected objects;Moved.; data002\32788R22FWJFW\psexec.cfexe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP861\A0140300.exe\data002;Program.PsExec.171;; data002;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP861\A0140300.exe;Archive contains infected objects;; A0140300.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP861;Archive contains infected objects;Moved.; A0140306.exe;C:\System Volume Information\_restore{E6E56918-9394-474E-ACD3-23EED6B22D43}\RP861;Trojan.PWS.Banker.25285;Deleted.; Your great to work with Juliet and amazingly thorough, thank you soooo much. HAPPY NEW YEAR BTW it is only 1.5hrs away from me here in Australia. Yes I know it's sad that I am sitting at home on my computer on New Years Eve but @ 54yrs I am generally sound asleep by midnight waking only to respond to family & friends who " thoughtfully " send me an SMS @ midnight. Hope you have a safe and blessed 2009. Hope my computer is ok ~ let me know if you require any further tests done. Lynne (Tillpott)
  15. Are the emails coming to you only, as in something you did actually send ....something like a duplicate or are other people getting these same mysterious emails on your address list? * As far as I am aware ~ they are only coming to me from me using 2 of my 9 email addresses. My ISP has put a SPAM BLOCK on those 2 email addresses as of 2 mins ago, so I will have to wait and see if that works. Here is the log file on GMER: GMER - http://www.gmer.net Rootkit scan 2008-12-30 11:00:20 Windows 5.1.2600 Service Pack 2 ---- Devices - GMER 1.0.14 ---- AttachedDevice \FileSystem\Ntfs \Ntfs sisidex.sys (SISIDEX Driver/Windows ® 2000 DDK provider) AttachedDevice \FileSystem\Fastfat \Fat sisidex.sys (SISIDEX Driver/Windows ® 2000 DDK provider) AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation) ---- Registry - GMER 1.0.14 ---- Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\AuxUserType\2 Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\AuxUserType\2@ Picture Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\Conversion\Readable Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\Conversion\Readable\Main Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\Conversion\Readable\Main@ 8,PBrush Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\DataFormats\DefaultFile Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\DataFormats\DefaultFile@ 8 Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\DataFormats\GetSet Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\DataFormats\GetSet\0 Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\DataFormats\GetSet\0@ 8,1,1,3 Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\InprocServer32@ ole32.dll Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\MiscStatus@ 536 Reg HKLM\SOFTWARE\Classes\CLSID\{0089744B-49A5-5120-96CE-D99B0182D156}\ProgID@ StaticDib Reg HKLM\SOFTWARE\Classes\CLSID\{188C7B14-02ED-BE63-7A31-CE75523FF1FB}\InprocServer32@ C:\PROGRA~1\COMMON~1\SYSTEM\OLEDB~1\MSDMENG.DLL Reg HKLM\SOFTWARE\Classes\CLSID\{188C7B14-02ED-BE63-7A31-CE75523FF1FB}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{188C7B14-02ED-BE63-7A31-CE75523FF1FB}\ProgID@ DMM.Classifier.1 Reg HKLM\SOFTWARE\Classes\CLSID\{188C7B14-02ED-BE63-7A31-CE75523FF1FB}\TypeLib@ {C1CD5353-28E5-11D3-8C76-00600832DCED} Reg HKLM\SOFTWARE\Classes\CLSID\{188C7B14-02ED-BE63-7A31-CE75523FF1FB}\VersionIndependentProgID@ DMM.Classifier Reg HKLM\SOFTWARE\Classes\CLSID\{1A67FD06-7264-0181-C3D4-FF11B7F305AB}\InprocServer32@ C:\WINDOWS\System32\wbem\wmipcima.dll Reg HKLM\SOFTWARE\Classes\CLSID\{1A67FD06-7264-0181-C3D4-FF11B7F305AB}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{250B3828-22E4-062D-4A9A-C74D29C65AE7}\InprocServer32@ OLE32.DLL Reg HKLM\SOFTWARE\Classes\CLSID\{250B3828-22E4-062D-4A9A-C74D29C65AE7}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{250B3828-22E4-062D-4A9A-C74D29C65AE7}\InprocServer32@InprocServer32 x+v)9LXlXASR%S7{bQZ2LabelMaker>67k)4s6tf(JR`qF-Q9q.?LzCFuS`]1?W$QD1i+2RBCompressedFeature1>67k)4s6tf(JR`qF-Q9q.?B422&{$J?9=`x*in+%+r>67k)4s6tf(JR`qF-Q9q.?2PVnSdQ.`@_TTdbo$XXq>67k)4s6tf(JR`qF-Q9q.?)(vflm,pb=J4}Y_zeys%Systemfiles>67k)4s6tf(JR`qF-Q9q.?M}ftHr@!g8mQVI4p*'0`IntegrationManager>67k)4s6tf(JR`qF-Q9q.?kZdbbF$$P=Q{25Wnzm0L>67k)4s6tf(JR`qF-Q9q.?a5oO[f6Q3@2H~eZHmIGccuPvc1>67k)4s6tf(JR`qF-Q9q.?@*D(RV)Q^=e@y0eELtMbalbumprinting10>67k)4s6tf(JR`qF-Q9q.?-=O*?ReBNAxE%dkUX!TIMSRedist>67k)4s6tf(JR`qF-Q9q.? Reg HKLM\SOFTWARE\Classes\CLSID\{2F268E5C-3634-763F-1461-6C7872B3FDD6}\DllVersion@ 3.0.3790 Reg HKLM\SOFTWARE\Classes\CLSID\{2F268E5C-3634-763F-1461-6C7872B3FDD6}\ProgId@ WindowsInstaller.Message Reg HKLM\SOFTWARE\Classes\CLSID\{3B6C15BE-F9FD-7E15-F865-ABA8E2A09915}\Implemented Categories\{AEF21081-CD22-11D2-A8E8-00C04F9FC436} Reg HKLM\SOFTWARE\Classes\CLSID\{3B6C15BE-F9FD-7E15-F865-ABA8E2A09915}\Implemented Categories\{AEF21081-CD22-11D2-A8E8-00C04F9FC436}@ Reg HKLM\SOFTWARE\Classes\CLSID\{3B6C15BE-F9FD-7E15-F865-ABA8E2A09915}\InprocServer32@ blank Reg HKLM\SOFTWARE\Classes\CLSID\{3B6C15BE-F9FD-7E15-F865-ABA8E2A09915}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\Implemented Categories\{0DE86A54-2BAA-11CF-A229-00AA003D7352} Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\InprocServer32@ C:\WINDOWS\system32\msvidctl.dll Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\ProgID@ BDATuner.ChannelTuneRequest.1 Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\TypeLib@ {9B085638-018E-11D3-9D8E-00C04F72D980} Reg HKLM\SOFTWARE\Classes\CLSID\{4FED9F79-0914-E7E8-84AD-657FD665572A}\VersionIndependentProgID@ BDATuner.ChannelTuneRequest Reg HKLM\SOFTWARE\Classes\CLSID\{53AB9BF4-C30F-6F31-2556-37CF53EAEF23}\Implemented Categories\{AEF21081-CD22-11D2-A8E8-00C04F9FC436} Reg HKLM\SOFTWARE\Classes\CLSID\{53AB9BF4-C30F-6F31-2556-37CF53EAEF23}\Implemented Categories\{AEF21081-CD22-11D2-A8E8-00C04F9FC436}@ Reg HKLM\SOFTWARE\Classes\CLSID\{53AB9BF4-C30F-6F31-2556-37CF53EAEF23}\InprocServer32@ blank Reg HKLM\SOFTWARE\Classes\CLSID\{53AB9BF4-C30F-6F31-2556-37CF53EAEF23}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{61F0DD5B-DC1D-9978-E828-2833974E4727}\InprocServer32@ infosoft.dll Reg HKLM\SOFTWARE\Classes\CLSID\{61F0DD5B-DC1D-9978-E828-2833974E4727}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{62F5EB3E-6361-16A1-49B4-F2A1FD11284D}\InprocServer32@InprocServer32 x+v)9LXlXASR%S7{bQZ2LabelMaker>=3&5,B^pf(V%eqFgkW_B? Reg HKLM\SOFTWARE\Classes\CLSID\{6802E635-CB18-F544-790D-700BAC51E508}\InProcServer32@ %SystemRoot%\system32\SHELL32.dll Reg HKLM\SOFTWARE\Classes\CLSID\{6802E635-CB18-F544-790D-700BAC51E508}\InProcServer32@ThreadingModel Apartment Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{0DE86A52-2BAA-11CF-A229-00AA003D7352} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{0DE86A53-2BAA-11CF-A229-00AA003D7352} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{40FC6ED4-2438-11CF-A3DB-080036F12502} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\InprocServer32@ C:\WINDOWS\System32\comct232.ocx Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\InprocServer32@ThreadingModel Apartment Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\InprocServer32@InprocServer32 x+v)9LXlXASR%S7{bQZ2LabelMaker>5!4sf`Ctf(JR`qF-Q9q.? Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\MiscStatus@ 0 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\MiscStatus\1 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\MiscStatus\1@ 131473 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\ProgID@ ComCtl2.UpDown.1 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\ToolboxBitmap32@ C:\WINDOWS\System32\comct232.ocx, 1 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\TypeLib@ {FE0065C0-1B7B-11CF-9D53-00AA003C9CB6} Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\Version@ 1.1 Reg HKLM\SOFTWARE\Classes\CLSID\{78F5FE27-AD69-F027-960D-AA7C52C19458}\VersionIndependentProgID@ ComCtl2.UpDown Reg HKLM\SOFTWARE\Classes\CLSID\{9101C6E7-4017-E4B8-6F14-C2ED48829DC4}\Verb@ Reg HKLM\SOFTWARE\Classes\CLSID\{9101C6E7-4017-E4B8-6F14-C2ED48829DC4}\Verb\0 Reg HKLM\SOFTWARE\Classes\CLSID\{9101C6E7-4017-E4B8-6F14-C2ED48829DC4}\Verb\0@ &Edit,0,2 Reg HKLM\SOFTWARE\Classes\CLSID\{9101C6E7-4017-E4B8-6F14-C2ED48829DC4}\Verb\1 Reg HKLM\SOFTWARE\Classes\CLSID\{9101C6E7-4017-E4B8-6F14-C2ED48829DC4}\Verb\1@ &Open,0,2 Reg HKLM\SOFTWARE\Classes\CLSID\{97BFF69F-6B37-B21D-271B-1C691B57AAE7}\InprocServer32@ C:\WINDOWS\system32\msvidctl.dll Reg HKLM\SOFTWARE\Classes\CLSID\{97BFF69F-6B37-B21D-271B-1C691B57AAE7}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{97BFF69F-6B37-B21D-271B-1C691B57AAE7}\TypeLib@ {9B085638-018E-11D3-9D8E-00C04F72D980} Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\AutoConvertTo@ {00020907-0000-0000-C000-000000000046} Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\DefaultIcon@ C:\PROGRA~1\MI31D0~1\OFFICE11\WINWORD.EXE,1 Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\Insertable@ Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\NotInsertable@ Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\ProgId@ Word.Picture.6 Reg HKLM\SOFTWARE\Classes\CLSID\{A40F8BBE-77CD-78A3-DF6D-3C14B7105899}\TreatAs@ {00020906-0000-0000-C000-000000000046} Reg HKLM\SOFTWARE\Classes\CLSID\{AA799B29-DFC3-E9DF-61A7-ECBC754CA6D8}\InprocServer32@ C:\WINDOWS\system32\capicom.dll Reg HKLM\SOFTWARE\Classes\CLSID\{AA799B29-DFC3-E9DF-61A7-ECBC754CA6D8}\InprocServer32@ThreadingModel Both Reg HKLM\SOFTWARE\Classes\CLSID\{AA799B29-DFC3-E9DF-61A7-ECBC754CA6D8}\ProgID@ CAPICOM.PrivateKey.1 Reg HKLM\SOFTWARE\Classes\CLSID\{AA799B29-DFC3-E9DF-61A7-ECBC754CA6D8}\TypeLib@ {BD26B198-EE42-4725-9B23-AFA912434229} Reg HKLM\SOFTWARE\Classes\CLSID\{AA799B29-DFC3-E9DF-61A7-ECBC754CA6D8}\VersionIndependentProgID@ CAPICOM.PrivateKey Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\Control@ Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\InprocServer32@ C:\PROGRA~1\SONYER~1\Mobile\SYNCST~1\DbConf.ocx Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\InprocServer32@ThreadingModel Apartment Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\MiscStatus@ 0 Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\MiscStatus\1 Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\MiscStatus\1@ 131473 Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\ProgID@ Teleca.TSS.SyncStation.DbConfCtrl.SEMC2.1 Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\ToolboxBitmap32@ C:\PROGRA~1\SONYER~1\Mobile\SYNCST~1\DbConf.ocx, 1 Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\TypeLib@ {F1495886-15DA-43C7-8E35-A9C74BEE07BD} Reg HKLM\SOFTWARE\Classes\CLSID\{ABA0BEC4-E1F7-E764-860F-0BEAB91E5688}\Version@ 1.0 Reg HKLM\SOFTWARE\Classes\CLSID\{DE5F3516-867C-6BA5-24D5-68E543369D6B}\InProcServer32@ blank Reg HKLM\SOFTWARE\Classes\CLSID\{DE5F3516-867C-6BA5-24D5-68E543369D6B}\InProcServer32@ThreadingModel Apartment Reg HKLM\SOFTWARE\Classes\CLSID\{DE5F3516-867C-6BA5-24D5-68E543369D6B}\MiscStatus@IconBits 1 ---- EOF - GMER 1.0.14 ----
  • Create New...