Most P2P applications are not installed by accident. What does happen is that some people install them and forget about them, and in doing so they are inadvertently creating traffic. Others are knowingly using the software, creating even more traffic over ResNet - thus, P2P have been banned from use on the SVSU network.
One of the first things to look for in removing software is if the program has its own uninstaller in the Program menu. Otherwise, you should find it listed in the Control Panel under Add/Remove Software, then make sure to delete the directory holding the application found under the Program Files folder.
Sometimes, the uninstallers don't fully remove all traces of the P2P program and many P2P applications will secretly install Spyware too. So you'll want to consider using a Spyware Removal tool like SpyBot Search & Destroy or SpySweeper to help clean up your system and follow additional instructions posted below. Take precautions and backup your system prior to performing tasks like editing your registry.
| LimeWire | http://www.spywaredb.com/remove-limewire/ (instructions below) |
| KaZaA | http://www.spywaredb.com/remove-kazaa/ (instructions below) |
| Ares | http://www.spywaredb.com/remove-ares/ (instructions below) |
| Morpheus | http://www.spywaredb.com/remove-morpheus/ |
| BitTorrent | Use Add/Remove in Control Panel, but manually delete the folder of the program afterwards |
| Various P2P that may | |
| World of WarCraft | If you would like to use the built-in alternate download method, you can un-check the box for peer-to-peer downloading by clicking on File and selecting Preferences. This will reduce the potential download speed, since it is not as fast as peer-to-peer, but will draw the patch file directly from Blizzard's servers. |
This is not an exhaustive list, but a starting point. The purpose is to provide additional information to aid in the removal of the more popular P2P programs. The P2P File Sharing regulation does imply that network connections will be deactivated if P2P traffic is identified.
LimeWire
Below listed registry entries directories are part of this spyware. To manually get rid of it, follow these instructions (at your own risk).
Limewire Removal Instructions - Delete these registry entries:
HKEY_CURRENT_USER\software\microsoft\internet explorer\menuext\limeshop preferences
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\limewire
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\9e11dbbf317d89b4f92af7d63ab22d26
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\a8cebe6cec02c7d40a450c6455a6ad2e
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\c0da82cffcfbb79419d1189c955ee262
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\limeshop
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\bet.url
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\bonzi.url
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\browserpage.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\limeshop.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\limeshop.html
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\limeshop.url
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\limewire.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\limewire.jar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\money.url
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls\c:\program files\limewire\2.9.8\root\magnet10\options.js
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\limeshop.xml
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\limewire
Remove the following directories
Program Files\Common Files\limewire
Program Files\limeshop
Program Files\limewire
[Top]
KaZaA
Below listed registry entries directories are part of this spyware. To manually get rid of it, follow these instructions (at your own risk).
KaZaA Removal Instructions - Delete these registry entries"
HKEY_CLASSES_ROOT\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}
HKEY_CLASSES_ROOT\clsid\{726c99d0-50c5-404f-9efd-7b2834dfed50}
HKEY_CURRENT_USER\software\kazaa
HKEY_CURRENT_USER\software\kazaa tmp 0
HKEY_CURRENT_USER\software\kazaa\channels\crazyplaygames\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\dating\iconfile
HKEY_CURRENT_USER\software\kazaa\channels\dating\iconpath
HKEY_CURRENT_USER\software\kazaa\channels\dating\iconserver
HKEY_CURRENT_USER\software\kazaa\channels\dating_browse\ssmurl
HKEY_LOCAL_MACHINE\software\magnet
HKEY_LOCAL_MACHINE\software\magnet\handlers\kazaa
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{1d6711c8-7154-40bb-8380-3dea45b69cbf}\contains\files\c:\windows\downloaded program files\webp2pinstaller.dll
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{1d6711c8-7154-40bb-8380-3dea45b69cbf}\downloadinformation\codebase
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{1d6711c8-7154-40bb-8380-3dea45b69cbf}\downloadinformation\inf
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\kazaa
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\kza
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\p2p networking
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\d:\installshield\kazaa
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\kazaa
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{01083175-01cc-42aa-9090-81dd0f88f28f}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{38c76428-6c9c-4cc6-b747-3ab6a4770225}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\displayname
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\displayversion
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\installlocation
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\logfile
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\logmode
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\majorversion
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\minorversion
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\productguid
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\uninstallstring
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{548d52a1-5620-4c11-8fa7-b95404fd9fcd}\version
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{726c99d0-50c5-404f-9efd-7b2834dfed50}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kazaa
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kli
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kza
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\p2p networking
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\p2p networking\displayicon
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\p2p networking\uninstallstring
HKEY_LOCAL_MACHINE\software\p2p networking
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\dirs\c:\windows\system32\p2p networking
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\dirs\c:\windows\system32\p2p networking\cache
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\dirs\c:\winnt\system32\p2p networking
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\dirs\c:\winnt\system32\p2p networking\cache
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\downloaded program files\webp2pinstaller.dll
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\downloaded program files\webp2pinstaller2.dll
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\system32\p2p networking v125.cpl
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\system32\p2p networking\marshal.dll
HKEY_CURRENT_USER\software\kazaa\channels\emerging_artists_browse\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\g_spot_browse\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\onelove_browse\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\p2p\channelfile
HKEY_CURRENT_USER\software\kazaa\channels\p2p\iconfile
HKEY_CURRENT_USER\software\kazaa\channels\p2p\iconpath
HKEY_CURRENT_USER\software\kazaa\channels\p2p\iconserver
HKEY_CURRENT_USER\software\kazaa\channels\ringtonechannel_browse\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\ringtonechannel_search\iconfile
HKEY_CURRENT_USER\software\kazaa\channels\ringtonechannel_search\iconpath
HKEY_CURRENT_USER\software\kazaa\channels\ringtonechannel_search\iconserver
HKEY_CURRENT_USER\software\kazaa\channels\rshiphop_browse\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\skilledgames\ssmurl
HKEY_CURRENT_USER\software\kazaa\channels\skype\channelfile
HKEY_CURRENT_USER\software\kazaa\channels\skype\iconfile
HKEY_CURRENT_USER\software\kazaa\channels\skype\iconpath
HKEY_CURRENT_USER\software\kazaa\channels\skype\iconserver
HKEY_CURRENT_USER\software\kazaa\channels\websearch\channelfile
HKEY_CURRENT_USER\software\kazaa\channels\websearch\iconfile
HKEY_CURRENT_USER\software\kazaa\channels\websearch\iconpath
HKEY_CURRENT_USER\software\kazaa\channels\websearch\iconserver
HKEY_CURRENT_USER\software\p2p networking
HKEY_LOCAL_MACHINE\software\classes\adm.adm
HKEY_LOCAL_MACHINE\software\classes\adm.adm\clsid
HKEY_LOCAL_MACHINE\software\classes\adm.adm\curver
HKEY_LOCAL_MACHINE\software\classes\adm25.adm25
HKEY_LOCAL_MACHINE\software\classes\adm25.adm25\curver
HKEY_LOCAL_MACHINE\software\classes\adm4.adm4
HKEY_LOCAL_MACHINE\software\classes\adm4.adm4\curver
HKEY_LOCAL_MACHINE\software\classes\appid\{8b0fef15-54dc-49f5-8377-8172de975f75}
HKEY_LOCAL_MACHINE\software\classes\appid\{99a8e2b2-3405-4c0d-9110-131c14caaf62}
HKEY_LOCAL_MACHINE\software\classes\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c91e8926-d4be-4685-99f4-0d996b96bac0}
HKEY_LOCAL_MACHINE\software\classes\jcde_stack
HKEY_LOCAL_MACHINE\software\classes\jcde_stack\clsid
HKEY_LOCAL_MACHINE\software\classes\jcde_stack\curver
HKEY_LOCAL_MACHINE\software\classes\signingmodule.signingmodule
HKEY_LOCAL_MACHINE\software\classes\signingmodule.signingmodule\clsid
HKEY_LOCAL_MACHINE\software\classes\signingmodule.signingmodule\curver
HKEY_LOCAL_MACHINE\software\classes\webp2pinstaller.installer
HKEY_LOCAL_MACHINE\software\classes\webp2pinstaller.installer\clsid
HKEY_LOCAL_MACHINE\software\classes\webp2pinstaller.installer\curver
HKEY_LOCAL_MACHINE\software\kazaa
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in\b0
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in\b0seconds
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in\b1
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate\b
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate\time
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out\b0
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out\b0seconds
HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out\b1
HKEY_LOCAL_MACHINE\software\kazaa\cloudload\sharedir
HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo
HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo\kazaanet
HKEY_LOCAL_MACHINE\software\kazaa\listenport
HKEY_LOCAL_MACHINE\software\kazaa\localcontent
HKEY_LOCAL_MACHINE\software\kazaa\localcontent\databasedir
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\system32\p2p networking\p2p networking.eng
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\windows\system32\p2p networking\p2p networking.exe
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\winnt\downloaded program files\webp2pinstaller.dll
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\winnt\system32\p2p networking v125.cpl
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\winnt\system32\p2p networking\marshal.dll
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\winnt\system32\p2p networking\p2p networking.eng
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\files\c:\winnt\system32\p2p networking\p2p networking.exe
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\p2p chunks\activex file
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\p2p chunks\cpl file
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\p2p chunks\eng language file
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\p2p chunks\marshal file
HKEY_LOCAL_MACHINE\software\kazaa\localcontent\downloaddir
HKEY_LOCAL_MACHINE\software\kazaa\tmp
HKEY_LOCAL_MACHINE\software\lcaleb
HKEY_LOCAL_MACHINE\software\p2p networking\installation history\p2p chunks\p2p networking file
HKEY_LOCAL_MACHINE\software\sharman networks ltd
HKEY_LOCAL_MACHINE\software\updmgr\{7ee60cf1-2dff-41b5-91c9-9c1c518053fc}\installdate
HKEY_LOCAL_MACHINE\software\updmgr\{7ee60cf1-2dff-41b5-91c9-9c1c518053fc}\trackguid
HKEY_LOCAL_MACHINE\software\updmgr\{7ee60cf1-2dff-41b5-91c9-9c1c518053fc}\versionnumber
Remove the following directories
Program Files\Common Files\kazaa
Documents and Settings\UserName\start menu\programs\kazaa media desktop
Program Files\kazaa
Program Files\kazaa\my channels\bin
Program Files\kazaa\my channels\images
Program Files\kazaa\my shared folder
Program Files\kazaa\skins\orbital shadows
Windows\browserxtras\pn
Windows\cache329
Ares
Below listed processes registry entries files are part of this spyware. To manually get rid of it, follow these instructions (at your own risk).
Ares Removal Instructions -
Kill the following processes
ares.exe
Delete these registry entries
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\ares
Remove the following files
ares.exe in Program Files\ares\
[Top]