  1. Last version of Sysinternals' Process Monitor that works on XP is 3.2. For now, it can be downloaded from the link, other snapshots of that page throw an error on the .zip file. GL
  2. Well, when you put it this way, one might think that Microsoft is in the business of selling bells and whistles . And I agree fully with that. GL
  3. They are the same. The difference might not be in that location anyway, it might be in ENUM, but are you sure it isn't a hardware failure? GL
  4. How about this?
  5. For PowerShell to work, you need a fully functioning system - WMI and .net Framework need to be operational, among other subsystems. In contrast, CMD(s) can be used when most of Windows is b0rked (and that's when it's needed the most) - ipconfig /all /release /renew for example, or resetting the TCP/IP stack etc. Also try communicating the PS equivalents of these commands (if they exist) over the phone to your aunt.
  6. I think .bat and .cmd files are safe, they will still be able to be called (invoked) for a long time to come. And, dir is aliased in PowerShell, but its parameters aren't.
  7. As far as I know, H323MSP is kind of a codec for audio/video conferencing, it is not used outside of the (old) video conferencing programs (like a normal codec). TAPI application support is mostly used for modems (dial-up, maybe others), for applications to control them, like sending fax etc. I have removed it and still was able to do that (most applications use their own drivers). Vector Graphics is used inside Internet Explorer, I don't know if SVG is widely used today still, and I don't use IE at all. I think it's only the file C:\Program Files\Common Files\Microsoft Shared\VGX\vgx.dll I see some people use WebDAV, but for me, it is not useful and I always remove it. Edit: I would keep IE Core, or even IE too, because many programs rely on it internally. I have removed them in the past and regretted. I don't remember whether is possible to install IE8 with them removed - to install it for the same reasons - to have some system dlls updated.
  8. If you mean about RAS async adapter, I think it's needed and it would be a bad idea to remove it totally. I uninstalled it few times and it always came back. If I hunt down the .inf it's installed from, I might know whether it's safe to delete it, but I'm very satisfied with the situation as it is now. I have no problems, I really posted this just to brag. Edit: Oh, and in the process I downloaded the 600+ MB iso just to get devcon (Windows driver development kit I think), but it turned out it wasn't needed. There was another method of uninstall with devcon, but the above worked just fine. And I checked, there were no super hidden devices remaining. That was the only thing devcon was used for.
  9. I don't even remember their names any more... I know all of them are related to VPN, which I don't intend to use. So if you plan on using some kind of built-in VPN protocols, forget about it. Also, my system is heavily tweaked through the years, so I might have killed some other dependencies in the meantime. For starters, find in the key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002BE10318}\XXX (X-es are numbers) the victims that have CHARACTERISTICS registry value in them. It is a compilation of flags, and we are interested in only one: 0x20 NCF_NOT_USER_ REMOVABLE Component cannot be removed by the user (for example, through Control Panel or Device Manager). It might be applied also to other types of devices that seemingly are not able to be uninstalled, if need arises. But now we are interested in these. As I said, I already forgot all the names, but I killed everything that had MINIPORT in its name, and everything is running fine. We can see which device it is by looking at the DriverDesc value in the same registry kay. So, for those which I decide I want removed, I substract 0x20 (hex) from the original CHARACTERISTICS value and replace it with that. Reboot (I haven't checked if it's absolutely necessary, but just in case) and I can remove all of them - uninstall through Device Manager. And at the end I'm left with this: Beautiful, isn't it? Ras Async Adapter is the only one which can not be removed, it goes away and comes back, sometimes is faded, sometimes not... I live with it (for now ). Look 'n' Stop is the driver from the firewall, it was attached also to some of the miniports. That had to complicate something. Oh, and I almost forgot, one of them is PPoE, which will kill your Internet connection if it is of that type. I have a direct cable connection to the router, so I don't care for any of these types. And finally, because this is so dangerous (potentially), I tested it extensively in a virtual machine (which is a clone of my physical machine, so most things are similar). GL Edit: I remembered I might have done this years ago with most of the other (tunnelling) adapters like Teredo and similar... TcpIp V6 is disabled all the time.
  10. I vaguely remember there were multiple reasons for this. One is that something referenced something in recent docs, so you should clear them (ccleaner?). Others were more complex and usually it was the last thing I tried, but I forgot them all. GL
  11. Here's the driver for them: Controlling such a giant display through USB/serial? It would be unwise to task one computer with two tasks, especially when one of them is such an important one. And it's a Windows computer, as we can see. But who knows... GL
  12. For general uninstallation of third party drivers on Windows 7+ I use Rapr (driver store explorer). GL
  13. So the scammers had money after all... It makes me sad to think of all the unanswered emails that could have landed ppl a fortune...
  14. Don't know if they are similar, but Torchsoft's Registry Workshop and Nirsoft's RegScanner have extended search functionalities, maybe among them there is the one you're looking for.
  15. A child node is preventing deletition. You need to tick "Replace child permissions to this object..." Even then, some things are held by the system (open handles). Never touch SAM or SECURITY hives, the system will not boot. Also, I suggest you don't change permissions of "root" (top level) keys (the hives). As always, all this is extremely dangerous and could brick your OS at any time, for no apparent reason. Edit: While we're at it, a shameless plug of some of my ramblings...