By Mark Russinovich
-->
Published: November 1, 2006
Note: NewSID has been retired and is no longer available fordownload. Please see Mark Russinovich’s blog post: NewSID Retirementand the Machine SID DuplicationMyth
IMPORTANT:
Regarding SIDs, Microsoft does not support images that are preparedusing NewSID, we only support images that are prepared using SysPrep.Microsoft has not tested NewSID for all deployment cloning options.
For more information on Microsoft's official policy, please see thefollowing Knowledge Base article:
Introduction
Many organizations use disk image cloning to perform mass rollouts ofWindows. This technique involves copying the disks of a fully installedand configured Windows computer onto the disk drives of other computers.These other computers effectively appear to have been through the sameinstall process, and are immediately available for use.
While this method saves hours of work and hassle over other rolloutapproaches, it has the major problem that every cloned system has anidentical Computer Security Identifier (SID). This fact compromisessecurity in Workgroup environments, and removable media security canalso be compromised in networks with multiple identical computer SIDs.
Demand from the Windows community has lead several companies to developprograms that can change a computer's SID after a system has beencloned. However, Symantec's SID Changer andSymantec's Ghost Walker areonly sold as part of each company's high-end product. Further, they bothrun from a DOS command prompt (Altiris' changer is similar toNewSID).
NewSID is a program we developed that changes a computer's SID. It isfree and is a Win32 program, meaning that it can easily be run onsystems that have been previously cloned.
Please read this entire article before you use this program.
Version Information:
Cloning and Alternate Rollout Methods
One of the most popular ways of performing mass Windows rollouts(typically hundreds of computers) in corporate environments is based onthe technique of disk cloning. A system administrator installs the baseoperating system and add-on software used in the company on a templatecomputer. After configuring the machine for operation in the companynetwork, automated disk or system duplication tools (such asSymantec'sGhost,PowerQuest'sImage Drive, andAltiris'RapiDeploy) are used to copy thetemplate computer's drives onto tens or hundreds of computers. Theseclones are then given final tweaks, such as the assignment of uniquenames, and then used by company employees.
Another popular way of rolling out is by using the Microsoft sysdiffutility (part of the Windows Resource Kit). This tool requires that thesystem administrator perform a full install (usually a scriptedunattended installation) on each computer, and then sysdiff automatesthe application of add-on software install images.
Because the installation is skipped, and because disk sector copying ismore efficient than file copying, a cloned-based rollout can save dozensof hours over a comparable sysdiff install. In addition, the systemadministrator does not have to learn how to use unattended install orsysdiff, or create and debug install scripts. This alone saves hoursof work.
The SID Duplication Problem
The problem with cloning is that it is only supported by Microsoft in avery limited sense. Microsoft has stated that cloning systems is onlysupported if it is done before the GUI portion of Windows Setup has beenreached. When the install reaches this point the computer is assigned aname and a unique computer SID. If a system is cloned after this stepthe cloned machines will all have identical computer SIDs. Note thatjust changing the computer name or adding the computer to a differentdomain does not change the computer SID. Changing the name or domainonly changes the domain SID if the computer was previously associatedwith a domain.
To understand the problem that cloning can cause, it is first necessaryto understand how individual local accounts on a computer are assignedSIDs. The SIDs of local accounts consist of the computer's SID and anappended RID (Relative Identifier). The RID starts at a fixed value, andis increased by one for each account created. This means that the secondaccount on one computer, for example, will be given the same RID as thesecond account on a clone. The result is that both accounts have thesame SID.
Duplicate SIDs aren't an issue in a Domain-based environment sincedomain accounts have SID's based on the Domain SID. But, according toMicrosoft Knowledge Base article Q162001, 'Do Not Disk DuplicateInstalled Versions of Windows NT', in a Workgroup environment securityis based on local account SIDs. Thus, if two computers have users withthe same SID, the Workgroup will not be able to distinguish between theusers. All resources, including files and Registry keys, that one userhas access to, the other will as well.
Another instance where duplicate SIDs can cause problems is where thereis removable media formatted with NTFS, and local account securityattributes are applied to files and directories. If such a media ismoved to a different computer that has the same SID, then local accountsthat otherwise would not be able to access the files might be able to iftheir account IDs happened to match those in the security attributes.This is not be possible if computers have different SIDs.
An article Mark has written, entitled 'NT Rollout Options,' waspublished in the June issue of Windows NT Magazine. It discusses theduplicate SID issue in more detail, and presents Microsoft's officialstance on cloning. To see if you have a duplicate SID issue on yournetwork, usePsGetSidto display machine SIDs.
NewSID
NewSID is a program we developed to change a computer's SID. It firstgenerates a random SID for the computer, and proceeds to updateinstances of the existing computer SID it finds in the Registry and infile security descriptors, replacing occurrences with the new SID.NewSID requires administrative privileges to run. It has twofunctions: changing the SID, and changing the computer name.
To use NewSID's auto-run option, specify '/a' on the command line. Youcan also direct it to automatically change the computer's name byincluding the new name after the '/a' switch. For example:
newsid /a [newname] Ichigo final getsuga tenshou bleach brave souls.
Would have NewSID run without prompting, change the computer name to'newname' and have it reboot the computer if everything goes okay.
Note: If the system on which you wish to run NewSID is runningIISAdmin you must stop the IISAdmin service before running NewSID. Usethis command to stop the IISAdmin service: net stop iisadmin /y
NewSID's SID-synchronizing feature that allows you to specify that,instead of randomly generating one, the new SID should be obtained froma different computer. This functionality makes it possible to move aBackup Domain Controller (BDC) to a new Domain, since a BDC'srelationship to a Domain is identified by it having the same computerSID as the other Domain Controllers (DCs). Simply choose the'Synchronize SID' button and enter the target computer's name. You musthave permissions to change the security settings of the targetcomputer's Registry keys, which typically means that you must be loggedin as a domain administrator to use this feature.
Note that when you run NewSID that the size of the Registry will grow,so make sure that the maximum Registry size will accommodate growth. Wehave found that this growth has no perceptible impact on systemperformance. The reason the Registry grows is that it becomes fragmentedas temporary security settings are applied by NewSID. When thesettings are removed the Registry is not compacted.
Important: Note that while we have thoroughly tested NewSID, youmust use it at your own risk. As with any software that changes file andRegistry settings, it is highly recommended that you completely back-upyour computer before running NewSID.
Moving a BDC
Here are the steps you should follow when you want to move a BDC fromone domain to another:
How it Works
NewSID starts by reading the existing computer SID. A computer's SIDis stored in the Registry's SECURITY hive underSECURITYSAMDomainsAccount. This key has a value named F and avalue named V. The V value is a binary value that has the computer SIDembedded within it at the end of its data. NewSID ensures that thisSID is in a standard format (3 32-bit subauthorities preceded by three32-bit authority fields).
Next, NewSID generates a new random SID for the computer. NewSID'sgeneration takes great pains to create a truly random 96-bit value,which replaces the 96-bits of the 3 subauthority values that make up acomputer SID.
Three phases to the computer SID replacement follow. In the first phase,the SECURITY and SAM Registry hives are scanned for occurrencesof the old computer SID in key values, as well as the names of the keys.When the SID is found in a value it is replaced with the new computerSID, and when the SID is found in a name, the key and its subkeys arecopied to a new subkey that has the same name except with the new SIDreplacing the old.
The final two phases involve updating security descriptors. Registrykeys and NTFS files have security associated with them. Securitydescriptors consist of an entry that identifies which account owns theresource, which group is the primary group owner, an optional list ofentries that specify actions permitted by users or groups (known as theDiscretionary Access Control List - DACL), and an optional list ofentries that specify which actions performed by certain users or groupswill generate entries in the system Event Log (System Access ControlList - SACL). A user or a group is identified in these securitydescriptors with their SIDs, and as I stated earlier, local useraccounts (other than the built-in accounts such as Administrator, Guest,and so on) have their SIDs made up of the computer SID plus a RID.
The first part of security descriptor updates occurs on all NTFS filesystem files on the computer. Every security descriptor is scanned foroccurrences of the computer SID. When NewSID finds one, it replaces itwith the new computer SID.
The second part of security descriptor updates is performed on theRegistry. First, NewSID must make sure that it scans all hives, notjust those that are loaded. Every user account has a Registry hive thatis loaded as HKEY_CURRENT_USER when the user is logged in, butremains on disk in the user's profile directory when they are not.NewSID identifies the locations of all user hive locations byenumerating the HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsNTCurrentVersionProfileList key, which points at the directoriesin which they are stored. It then loads them into the Registry usingRegLoadKey under HKEY_LOCAL_MACHINE and scans the entire Registry,examining each security descriptor in search of the old computer SID.Updates are performed the same as for files, and when its done NewSIDunloads the user hives it loaded. As a final step NewSID scans theHKEY_USERS key, which contains the hive of the currently logged-inuser as well as the .Default hive. This is necessary because a hivecan't be loaded twice, so the logged-in user hive won't be loaded intoHKEY_LOCAL_MACHINE when NewSID is loading other user hives.
Jun 06, 2013 Transformers: The Game Free Download Full Version PC Game Cracked in Direct Link and Torrent. Transformers: The Game is a action video game Free Download Transformers: The Game Direct Link File Size:207MB Transformers: The Game System Requirements! Window Xp,7,Vista Cpu: Pentium 4: 2.0GHz Ram: 256 MB Hard: 4 GB Video Memory: 64 MB 3d. Download full version. Oct 05, 2016 Transformers The Game Free Download FULL PC Game. Transformers The Game Free Download Full Version RG Mechanics Repack PC Game In Direct Download Links. This Game Is Cracked And Highly Compressed Game. Specifications Of Transformers PC Game. Genre: Action, Adventure, Third-Person Shooting. Nov 14, 2014 Transformers: The Game - Highly Compressed 158 MB - Full PC Game Free Download By MEHRAJ Friday, November 14, 2014 Transformers: The Game is the name of multiple versions of a video game based on the 2007 live action film Transformers, all of which were released in North America in June 2007. Jan 15, 2016 Download Transformers: Dark of the Moon. Download PC Game. Download Max Payne 3 Reloaded Multiplayer Crack Free Full Version PC Game Max Payne 3. Transformers Dark of The Moon for Pc Download. Download Free Transformers 3 dark of the moon xbox. Jogos Para PC Fraco: Transformers The Game.
Finally, NewSID must update the ProfileList subkeys to refer tothe new account SIDs. This step is necessary to have Windows NTcorrectly associate profiles with the user accounts after the accountSIDs are changed to reflect the new computer SID.
NewSID ensures that it can access and modify every file and Registrykey in the system by giving itself the following privileges: System,Backup, Restore and Take Ownership.
I've run Kaspersky's Online scanner and it came up with 'C:Downloadssetup.exe Infected: Trojan-Dropper.Win32.Joiner.faand C:Program FilesCommon FilesRealToolbarRealBar.dll Infected: not-a-virus:AdWare.Win32.MegaSearch.s I think the first is the one I want to remove so all you good people out there how does one go about this. Deckard's System Scanner v20071014.68 Extra logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft Windows XP Home Edition (build 2600) SP 3.0 Architecture: X86; Language: English CPU 0: AMD Athlon™ 64 X2 Dual Core Processor 4200+ Percentage of Memory in Use: 46% Physical Memory (total/avail): 1023.48 MiB / 543.2 MiB Pagefile Memory (total/avail): 2461.88 MiB / 1427.32 MiB Virtual Memory (total/avail): 2047.88 MiB / 1911.85 MiB C: is Fixed (NTFS) - 229.36 GiB total, 171.42 GiB free. D: is CDROM (No Media) .PHYSICALDRIVE0 - Maxtor 6L250S0 - 233.76 GiB - 2 partitions PARTITION0 - Unknown - 4.4 GiB PARTITION1 (bootable) - Installable File System - 229.36 GiB - C: -- Security Center ------------------------------------------------------------- AUOptions is scheduled to auto-install. -- Environment Variables ------------------------------------------------------- ALLUSERSPROFILE=C:Documents and SettingsAll Users APPDATA=C:Documents and SettingsNeil AshforthApplication Data CLASSPATH=.;C:Program FilesJavajre1.6.0_05libextQTJava.zip CommonProgramFiles=C:Program FilesCommon Files COMPUTERNAME=12PIMLICOROAD ComSpec=C:WINDOWSsystem32cmd.exe FP_NO_HOST_CHECK=NO HOMEDRIVE=C: HOMEPATH=Documents and SettingsNeil Ashforth LOGONSERVER=12PIMLICOROAD NUMBER_OF_PROCESSORS=2 OS=Windows_NT Path=C:Program FilesGetRight;C:Program FilesPC Connectivity Solution;C:WINDOWSsystem32;C:WINDOWS;C:WINDOWSSystem32Wbem;C:Program FilesQuickTimeQTSystem PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH PROCESSOR_ARCHITECTURE=x86 PROCESSOR_IDENTIFIER=x86 Family 15 Model 43 Stepping 1, AuthenticAMD PROCESSOR_LEVEL=15 PROCESSOR_REVISION=2b01 ProgramFiles=C:Program Files PROMPT=$P$G QTJAVA=C:Program FilesJavajre1.6.0_05libextQTJava.zip SESSIONNAME=Console SystemDrive=C: SystemRoot=C:WINDOWS TEMP=C:DOCUME~1NEILAS~1LOCALS~1Temp TMP=C:DOCUME~1NEILAS~1LOCALS~1Temp tvdumpflags=8 USERDOMAIN=12PIMLICOROAD USERNAME=Neil Ashforth USERPROFILE=C:Documents and SettingsNeil Ashforth windir=C:WINDOWS __COMPAT_LAYER=DisableNXShowUI -- User Profiles --------------------------------------------------------------- Neil Ashforth (admin) -- Add/Remove Programs --------------------------------------------------------- --> 'C:Program FilesCreative Installation InformationCREATIVE_MEDIASOURCE_USetup.exe' /remove /nolog/l0x0009 --> 'C:Program FilesCreative Installation InformationCTCMSGOSetup.exe' /remove /nolog/l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_NET_CONTENT_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_CDBURNER_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_MINIDISC_USetup.exe' /remove /nolog/l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_MTP_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_MUSICPLAYER_MSS_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_NOMADJUKEBOXTYPE2_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationE-CENTER_PLUGIN_ONLINESTORE_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreative Installation InformationMEDIASOURCE_PLAYER_SKINPACK_USetup.exe' /remove /l0x0009 --> 'C:Program FilesCreativeSBAudigy2ZSProgramSETUP.EXE' /S /U /W --> C:Program FilesCommon FilesRealUpdate_OBrnuninst.exe RealNetworks|RealPlayer|6.0 --> C:WINDOWSIsUninst.exe -fC:WINDOWSorun32.isu --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{1888DAFD-C634-4BC4-865C-3455E24F6177}Setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{1888DAFD-C634-4BC4-865C-3455E24F6177}Setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{5933921D-4253-40B6-B4D9-B7D680F1B6EC}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{5933921D-4253-40B6-B4D9-B7D680F1B6EC}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{77ACE67A-0D21-4CEF-8A97-ED20A61B978B}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{77ACE67A-0D21-4CEF-8A97-ED20A61B978B}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{8EF5F498-7FB5-11D6-9963-00A0C92C4EC3}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{8EF5F498-7FB5-11D6-9963-00A0C92C4EC3}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9A4D2983-4662-4387-BE3D-4CFC2FA9C100}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9A4D2983-4662-4387-BE3D-4CFC2FA9C100}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{B3549608-69D3-11D7-AB2D-0090271A23A2}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{B3549608-69D3-11D7-AB2D-0090271A23A2}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{FD851F7E-F887-405D-9E1C-488811113EF3}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{FD851F7E-F887-405D-9E1C-488811113EF3}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{19822917-61F6-4221-B1D0-1C3B8A06BE60}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{19822917-61F6-4221-B1D0-1C3B8A06BE60}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{1C41BAA3-559A-483A-89A5-149F27F90D38}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{1C41BAA3-559A-483A-89A5-149F27F90D38}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{4E9201AE-EACC-4010-B0E8-C61736512A13}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{4E9201AE-EACC-4010-B0E8-C61736512A13}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{63A317D0-60A6-43FC-848A-9FE4A53B29CE}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{700932B3-A964-4878-82A2-96054622A1F7}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{700932B3-A964-4878-82A2-96054622A1F7}setup.exe' -l0x9 /remove --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9A0B5225-B59B-4D72-B3FE-71AAA693A8E2}setup.exe' -l0x9 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9A0B5225-B59B-4D72-B3FE-71AAA693A8E2}setup.exe' -l0x9 /remove --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf Adobe Flash Player 9 ActiveX --> C:WINDOWSsystem32MacromedFlashFlashUtil9b.exe -uninstallDelete Adobe Flash Player ActiveX --> C:WINDOWSsystem32MacromedFlashuninstall_activeX.exe Adobe Reader 8.1.2 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003} Adobe Shockwave Player --> C:WINDOWSsystem32MacromedSHOCKW~1UNWISE.EXE C:WINDOWSsystem32MacromedSHOCKW~1Install.log Adobe® Photoshop® Album Starter Edition 3.2 --> MsiExec.exe /I{A654A805-41D9-40C7-AA46-4AF04F044D61} Apple Mobile Device Support --> MsiExec.exe /I{44734179-8A79-4DEE-BB08-73037F065543} Apple Software Update --> MsiExec.exe /I{02DFF6B1-1654-411C-8D7B-FD6052EF016F} AudibleManager --> C:Program FilesAudibleBinUpgrade.exe /Uninstall AVG Free 8.0 --> C:Program FilesAVGAVG8setup.exe /UNINSTALL BBC Tweenies - Play to the Music --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{64F8F956-B8CF-4D66-A200-97EA422775BA}SETUP.EXE' Ssc Service Utility V4.10 BillBluetooth Stack for Windows by Toshiba --> MsiExec.exe /X{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}Creative Audio Console --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}setup.exe' -l0x9 /remove Creative MediaSource --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{56F3E1FF-54FE-4384-A153-6CCABA097814}setup.exe' -l0x9 /remove Creative MediaSource 5 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}setup.exe' -l0x9 /remove Creative MuVo V100 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{ED57CE70-0DC6-49AB-A33E-FAC212A6AF5E}SETUP.EXE' -l0x9 /remove Creative System Information --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime0901Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{63A317D0-60A6-43FC-848A-9FE4A53B29CE}setup.exe' -l0x9 /remove Dawn of War - Dark Crusade --> C:Program FilesInstallShield Installation Information{FF39FC01-819B-42E4-AE49-1968AF12DDD4}setup.exe -runfromtemp -l0x0009 -removeonly Dawn of War - Soulstorm --> 'C:Program FilesInstallShield Installation Information{20533183-D42D-4261-A125-956736FBEA8C}setup.exe' -runfromtemp -l0x0009 -removeonly Dawn Of War - Winter Assault --> MsiExec.exe /X{DD8408E9-9421-484F-979D-DB6361E3E828} DawnOfWar --> C:PROGRA~1COMMON~1INSTAL~1Driver10INTEL3~1IDriver.exe /M{362D5167-9716-44BE-89FD-BF9EB6EF814B} Electronic Arts Product Registration --> C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{D7D50E0C-27DD-4999-BC05-E026B580F93A} /l1033 EPSON CardMonitor --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{109D28C7-FB38-483A-9C91-001CB59E2699}SETUP.EXE' -l0x9 uninst EPSON PhotoQuicker3.5 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{65F5B7AF-3363-11D7-BB6B-00018021113F}SETUP.EXE' -l0x9 uninst EPSON PhotoStarter3.1 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{C48817E7-AA05-4151-A99D-1E1E550CE801}SETUP.EXE' -l0x9 uninst EPSON Print CD --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}SETUP.EXE' -l0x9 -SYSTEM EPSON PRINT Image Framer Tool2.1 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{23B59ED4-C360-11D7-875B-0090CC005647}SETUP.EXE' -l0x9 anything EPSON Printer Software --> C:WINDOWSSystem32spoolDRIVERSW32X863EPUPDATE.EXE /r ESPR300 Reference Guide --> C:Program FilesEPSONESPR300REF_GDOCUNINS.EXE ESPR300 Software Guide --> C:Program FilesEPSONESPR300PQU_GDOCUNINS.EXE ESPR300 Standalone Guide --> C:Program FilesEPSONESPR300STA_GDOCUNINS.EXE Favorit --> 'c:documents and settingsneil ashforthlocal settingsapplication dataqkoes.exe' -uninstall Free Natural Text to Speech Reader 2008 --> MsiExec.exe /I{3E5DA526-F420-45A6-9F27-D2B5246D6823} GetRight --> 'C:Program FilesGetRightunins000.exe' Google Earth --> MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72} Google Toolbar for Internet Explorer --> regsvr32 /u /s 'c:program filesgooglegoogletoolbar4.dll' Harry Potter and the Goblet of Fire™ --> C:Program FilesElectronic ArtsHarry Potter and the Goblet of FireEAUninstall.exe Harry Potter and the Prisoner of Azkaban™ --> C:Program FilesEA GAMESHarry Potter and the Prisoner of Azkaban™EAUninstall.exe Harry Potter II --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{7BF68B83-5057-4D4B-0093-28285EEB9EE3}setup.exe' -l0x9 Uninstall Harry Potter TM --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{3F50AF3B-8997-4916-0095-99D63DDB785A}setup.exe' -l0x9 Uninstall HighMAT Extension to Microsoft Windows XP CD Writing Wizard --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F} Horrible Science --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime1100Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{2D049E2F-F15E-40A7-BEDD-CF3C84C6C720}setup.exe' -l0x9 -removeonly Hotfix for Windows Media Format 11 SDK (KB929399) --> 'C:WINDOWS$NtUninstallKB929399$spuninstspuninst.exe' ImageMixer --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{C0379BD3-ADB6-40F4-8300-BAAFF2727078}setup.exe' iTunes --> MsiExec.exe /I{585776BC-4BD6-4BD2-A19A-1D6CB44A403B} J2SE Runtime Environment 5.0 Update 11 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150110} J2SE Runtime Environment 5.0 Update 4 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150040} J2SE Runtime Environment 5.0 Update 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060} J2SE Runtime Environment 5.0 Update 9 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150090} Java 2 Runtime Environment, SE v1.4.2_01 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142010} Java™ 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020} Java™ 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030} Java™ 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050} Java™ 6 Update 7 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070} Java™ SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010} L&H TTS3000 British English --> RunDll32 advpack.dll,LaunchINFSection C:WINDOWSINFLHTTSENG.inf, Uninstall LAURA --> C:WINDOWSUbiSoftSetupUbi.exe -uninstall LAURA LEGO Racers 2 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{3DD2E9EA-0544-4162-B8BE-E21E994E9F3B}setup.exe' -uninst Logitech iTouch Software --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{036AA4D4-6D32-11D4-9875-00105ACE7734}Setup.exe' -l0x9 UNINSTALL LucasArts' Mysteries of the Sith --> C:WINDOWSuninst.exe -f'C:Program FilesLucasArtsMotSDeIsL1.isu' MediaShow 3.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{D5A9B7C0-8751-11D8-9D75-000129760D75}setup.exe' -uninstall Microsoft Compression Client Pack 1.0 for Windows XP --> 'C:WINDOWS$NtUninstallMSCompPackV1$spuninstspuninst.exe' Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 --> 'C:WINDOWS$NtUninstallWdf01005$spuninstspuninst.exe' Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120409-6000-11D3-8CFE-0150048383C9} Microsoft User-Mode Driver Framework Feature Pack 1.0 --> 'C:WINDOWS$NtUninstallWudf01000$spuninstspuninst.exe' Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Works --> MsiExec.exe /I{416D80BA-6F6D-4672-B7CF-F54DA2F80B44} Motorola Driver Installation 3.2.0 --> MsiExec.exe /I{D6A1E429-CCE1-4140-A615-710B806D12BA} MSN --> C:Program FilesMSNMsnInstallermsninst.exe /Action:ARP Nokia Connectivity Cable Driver --> MsiExec.exe /X{0FF1922C-B6C4-40BB-AF30-BEF75A482444} Nokia PC Suite --> MsiExec.exe /I{D89AC4DF-7A00-4D0B-BA99-D582C7974A09} NVIDIA Drivers --> C:WINDOWSsystem32nvudisp.exe UninstallGUI OpenOffice.org Installer 1.0 --> MsiExec.exe /X{0D499481-22C6-4B25-8AC2-6D3F6C885FB9} PC Connectivity Solution --> MsiExec.exe /I{AB2347E4-153B-4194-AA3B-97C0A662B369} PCI SoftV92 Modem --> C:Program FilesCONEXANTCNXT_MODEM_PCI_VEN_14F1&DEV_2F30&SUBSYS_205514F1HXFSETUP.EXE -U -IPSCRCTR5K.INF PhotoNow! 1.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{D36DD326-7280-11D8-97C8-000129760CBE}setup.exe' -uninstall PIF DESIGNER2.1 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{23B59B9F-C360-11D7-875B-0090CC005647}SETUP.EXE' -l0x9 anything Power2Go 4.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{40BF1E83-20EB-11D8-97C5-0009C5020658}setup.exe' -uninstall PowerBackup 1.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{ADD5DB49-72CF-11D8-9D75-000129760D75}setup.exe' -uninstall PowerCinema 4.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{2637C347-9DAD-11D6-9EA2-00055D0CA761}Setup.exe' -uninstall PowerDirector Express --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{EDE721EC-870A-11D8-9D75-000129760D75}setup.exe' -uninstall PowerDVD --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}setup.exe' -uninstall PowerDVD Copy 1.0 --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{E3D04529-6EDB-11D8-A372-0050BAE317E1}setup.exe' -uninstall PowerProducer --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{B7A0CE06-068E-11D6-97FD-0050BACBF861}setup.exe' -uninstall PowerStarter --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}setup.exe' -uninstall Praetorians --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{AAC8AF92-DAEC-45D2-B77D-36699E3751A9}setup.exe' Protected Music Converter 1.0.0.3 --> 'C:Program FilesWMA-MP3.comProtected Music Converterunins000.exe' Quake III Arena --> C:WINDOWSIsUninst.exe -f'C:Program FilesQuake III ArenaQIII.isu' QuickTime --> MsiExec.exe /I{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD} RealOne Player --> C:Program FilesCommon FilesRealUpdate_OBrnuninst.exe RealNetworks|RealPlayer|6.0 Rites of War --> C:WINDOWSIsUninst.exe -f'C:Program FilesSSIRites of WarUninst.isu' ScanToWeb --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}SETUP.EXE' ADDREMOVEDLG Security Update for Step By Step Interactive Training (KB898458) --> Security Update for Step By Step Interactive Training (KB923723) --> 'C:WINDOWS$NtUninstallKB923723$spuninstspuninst.exe' Sound Blaster Audigy 2 ZS --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{9E2514D9-DC24-4634-B348-61F3EF0F1628}setup.exe' -l0x9 Spybot - Search & Destroy 1.3 --> 'C:Program FilesSpybot - Search & Destroyunins000.exe' Spyware Doctor 5.5 --> C:Program FilesSpyware Doctorunins000.exe /LOG SSC Service Utility v4.10 --> 'C:Program FilesSSC Service Utilityunins000.exe' Star Wars Empire at War --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime1100Intel32Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{99AE7207-8612-4DBA-A8F8-BAE5C633390D}Setup.exe' -l0x9 -removeonly TalkTalk Assist & Go --> MsiExec.exe /X{D084B1A9-153B-409D-AEBF-C40FCEF925EA} The Battle for Middle-earth ™ --> C:Program FilesEA GAMESThe Battle for Middle-earth ™EAUninstall.exe The Battle for Middle-earth ™ II --> C:Program FilesElectronic ArtsThe Battle for Middle-earth ™ IIEAUninstall.exe The Lord of the Rings, The Rise of the Witch-king --> C:Program FilesElectronic ArtsThe Lord of the Rings, The Rise of the Witch-kingEAUninstall.exe Theme Park World --> C:WINDOWSIsUninst.exe -f'C:Program FilesBullfrogTheme Park WorldUninst.isu' -c'C:Program FilesBullfrogTheme Park Worlduninst.dll' -BFLANG=2057 Unreal --> C:WINDOWSIsUninst.exe -fC:UnrealSystemUninst.isu ViewSonic Monitor Drivers --> RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup 'C:Program FilesInstallShield Installation Information{B4FEA924-630D-11D4-B78E-005004566E4D}Setup.exe' -l0x9 Virtual Earth 3D (Beta) --> MsiExec.exe /X{619B8475-0F48-41B7-A370-5147F7092989} Warhammer Mark of Chaos --> C:Program FilesInstallShield Installation Information{5F374D5D-DB43-4263-9C29-BAB2C93FEFE6}Setup.exe -runfromtemp -l0x0009 -removeonly WebIQ Technology Engine --> C:WINDOWSsystem32WebIQEngineSetup.exe u Windows Defender --> MsiExec.exe /I{A06275F4-324B-4E85-95E6-87B2CD729401} Windows Driver Package - Nokia (WUDFRd) WPD (11/03/2006 6.82.26.2) --> C:PROGRA~1DIFXD6ACC4BE676423A2B130B78A4B627FC457D98997dpinst.exe /u C:WINDOWSsystem32DRVSTOREpccswpddri_6B630EE2E66584353C6CD8683D447072872F34D8pccswpddriver.inf Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1) --> C:PROGRA~1DIFXD6ACC4BE676423A2B130B78A4B627FC457D98997dpinst.exe /u C:WINDOWSsystem32DRVSTOREnokbtmdm_4EFFAAE27A08EDFDE145390033D8EF099DA65567nokbtmdm.inf Windows Imaging Component --> 'C:WINDOWS$NtUninstallWIC$spuninstspuninst.exe' Ssc Service Utility 4.20Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}Windows Live Sign-in Assistant --> MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7} Windows Media Format 11 runtime --> 'C:WINDOWS$NtUninstallWMFDist11$spuninstspuninst.exe' Windows XP Service Pack 3 --> 'C:WINDOWS$NtServicePackUninstall$spuninstspuninst.exe' Xfire (remove only) --> 'C:Program FilesXfireuninst.exe' ZoneAlarm --> C:Program FilesZone LabsZoneAlarmzauninst.exe ZoneAlarm Spy Blocker --> rundll32 C:PROGRA~1ZONEAL~1bar1.binSpyBlock.dll,O -- Application Event Log ------------------------------------------------------- Event Record #/Type44129 / Warning Event Submitted/Written: 07/15/2008 08:05:44 AM Event ID/Source: 1524 / Userenv Event Description: Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use. Event Record #/Type44128 / Warning Event Submitted/Written: 07/15/2008 08:01:21 AM Event ID/Source: 63 / WinMgmt Event Description: A provider, HiPerfCooker_v1, has been registered in the WMI namespace, RootWMI, to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Event Record #/Type44116 / Warning Event Submitted/Written: 07/14/2008 11:30:43 PM Event ID/Source: 1524 / Userenv Event Description: Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use. Event Record #/Type44104 / Warning Event Submitted/Written: 07/14/2008 10:51:23 PM Event ID/Source: 1524 / Userenv Event Description: Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use. Event Record #/Type44090 / Warning Event Submitted/Written: 07/14/2008 10:16:02 PM Event ID/Source: 1524 / Userenv Event Description: Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use. -- Security Event Log ---------------------------------------------------------- No Errors/Warnings found. -- System Event Log ------------------------------------------------------------ Event Record #/Type74245 / Warning Event Submitted/Written: 07/15/2008 11:31:06 PM Event ID/Source: 3004 / WinDefend Event Description: PIMLICOROAD27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. PIMLICOROAD27 can't undo changes that you allow. For more information please see the following: PIMLICOROAD275 Scan ID: {B34B2080-72B0-4B2E-87BD-93742E211716} User: 12PIMLICOROADNeil Ashforth Name: PIMLICOROAD271 ID: PIMLICOROAD272 Severity: 1.1.1593.05 Category: 1.1.1593.06 Path Found: PIMLICOROAD276 Alert Type: PIMLICOROAD278 Detection Type: 1.1.1593.02 Event Record #/Type74244 / Warning Event Submitted/Written: 07/15/2008 11:31:06 PM Event ID/Source: 3004 / WinDefend Event Description: PIMLICOROAD27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. PIMLICOROAD27 can't undo changes that you allow. For more information please see the following: PIMLICOROAD275 Scan ID: {2A6CB80E-F232-4DDA-AC5B-9660A7E10B73} User: 12PIMLICOROADNeil Ashforth Name: PIMLICOROAD271 ID: PIMLICOROAD272 Severity: 1.1.1593.05 Category: 1.1.1593.06 Path Found: PIMLICOROAD276 Alert Type: PIMLICOROAD278 Detection Type: 1.1.1593.02 Event Record #/Type74241 / Error Event Submitted/Written: 07/15/2008 05:53:00 PM Ssc Service Utility DownloadsEvent ID/Source: 1002 / DhcpEvent Description: The IP address lease 192.168.11.3 for the Network Card with network address 0013D45CC74C has been denied by the DHCP server 192.168.11.1 (The DHCP Server sent a DHCPNACK message). Event Record #/Type74222 / Error Event Submitted/Written: 07/15/2008 05:24:30 PM Event ID/Source: 7034 / Service Control Manager Event Description: The NVIDIA Display Driver Service service terminated unexpectedly. It has done this 1 time(s). Event Record #/Type74220 / Warning Event Submitted/Written: 07/15/2008 05:24:20 PM Event ID/Source: 256 / PlugPlayManager Event Description: Timed out sending notification of device interface change to window of 'SAS window' -- End of Deckard's System Scanner: finished at 2008-07-15 23:32:22 ------------ Comments are closed.
|
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |