Advertisement
Guest User

clean

a guest
Oct 16th, 2014
718
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 52.63 KB | None | 0 0
  1. Regshot 1.8.2
  2. Comments:
  3. Datetime:2014/10/16 13:47:38 , 2014/10/16 13:48:21
  4. Computer:VM-40A11EDE3A0F , VM-40A11EDE3A0F
  5. Username:Administrator , Administrator
  6.  
  7. ----------------------------------
  8. Keys deleted:85
  9. ----------------------------------
  10. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
  11. HKLM\SOFTWARE\SearchProtect
  12. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC
  13. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000
  14. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\Control
  15. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc
  16. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Security
  17. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Enum
  18. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC
  19. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000
  20. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\Control
  21. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc
  22. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Security
  23. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Enum
  24. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\BrowserEmulation
  25. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Default HTML Editor
  26. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop
  27. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components
  28. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0
  29. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General
  30. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Old WorkAreas
  31. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\SafeMode
  32. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\SafeMode\General
  33. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Scheme
  34. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows
  35. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Download
  36. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Extensions
  37. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Extensions\CmdMapping
  38. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Help_Menu_URLs
  39. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld
  40. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International
  41. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts
  42. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\10
  43. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\11
  44. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\12
  45. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\13
  46. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\14
  47. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\15
  48. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\16
  49. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\17
  50. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\18
  51. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\19
  52. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\20
  53. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\21
  54. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\22
  55. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\23
  56. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\24
  57. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\25
  58. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\26
  59. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\27
  60. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\28
  61. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\29
  62. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\3
  63. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\30
  64. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\34
  65. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\35
  66. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\37
  67. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\38
  68. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\39
  69. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\4
  70. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\5
  71. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\6
  72. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\7
  73. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\8
  74. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\9
  75. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\InternetRegistry
  76. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\LinksBar
  77. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\LowRegistry
  78. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main
  79. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\WindowsSearch
  80. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\New Windows
  81. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes
  82. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
  83. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchUrl
  84. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security
  85. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\P3Global
  86. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\P3Sites
  87. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Services
  88. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings
  89. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SQM
  90. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\TabbedBrowsing
  91. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar
  92. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
  93. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\TypedURLs
  94. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\URLSearchHooks
  95.  
  96. ----------------------------------
  97. Values deleted:218
  98. ----------------------------------
  99. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect\DisplayName: "Search Protect"
  100. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect\DisplayIcon: "C:\PROGRA~1\SearchProtect\SearchProtect\bin\cltmng.exe"
  101. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect\DisplayVersion: "2.17.26.7"
  102. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect\Publisher: "Client Connect LTD"
  103. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect\UninstallString: ""C:\PROGRA~1\SearchProtect\Main\bin\uninstall.exe" /S"
  104. HKLM\SOFTWARE\SearchProtect\Environment: ""
  105. HKLM\SOFTWARE\SearchProtect\InstallDir: "C:\PROGRA~1\SearchProtect"
  106. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\Control\ActiveService: "CltMngSvc"
  107. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\Service: "CltMngSvc"
  108. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\Legacy: 0x00000001
  109. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\ConfigFlags: 0x00000000
  110. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\Class: "LegacyDriver"
  111. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\ClassGUID: "{8ECC055D-047F-11D1-A537-0000F8753ED1}"
  112. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\0000\DeviceDesc: "Search Protect Service"
  113. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_CLTMNGSVC\NextInstance: 0x00000001
  114. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Enum\0: "Root\LEGACY_CLTMNGSVC\0000"
  115. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Enum\Count: 0x00000001
  116. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Enum\NextInstance: 0x00000001
  117. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Security\Security: 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00
  118. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Type: 0x00000010
  119. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Start: 0x00000002
  120. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\ErrorControl: 0x00000001
  121. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\ImagePath: "C:\PROGRA~1\SearchProtect\Main\bin\CltMngSvc.exe"
  122. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\DisplayName: "Search Protect Service"
  123. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\ObjectName: "LocalSystem"
  124. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\DependOnService: 'TermService'
  125. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\DependOnGroup: 00
  126. HKLM\SYSTEM\ControlSet001\Services\CltMngSvc\Description: "This service loads the Search Protector, which maintains your selected Search settings, and enables auto-updates."
  127. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\Control\ActiveService: "CltMngSvc"
  128. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\Service: "CltMngSvc"
  129. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\Legacy: 0x00000001
  130. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\ConfigFlags: 0x00000000
  131. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\Class: "LegacyDriver"
  132. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\ClassGUID: "{8ECC055D-047F-11D1-A537-0000F8753ED1}"
  133. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\0000\DeviceDesc: "Search Protect Service"
  134. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CLTMNGSVC\NextInstance: 0x00000001
  135. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Enum\0: "Root\LEGACY_CLTMNGSVC\0000"
  136. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Enum\Count: 0x00000001
  137. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Enum\NextInstance: 0x00000001
  138. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Security\Security: 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00
  139. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Type: 0x00000010
  140. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Start: 0x00000002
  141. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\ErrorControl: 0x00000001
  142. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\ImagePath: "C:\PROGRA~1\SearchProtect\Main\bin\CltMngSvc.exe"
  143. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\DisplayName: "Search Protect Service"
  144. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\ObjectName: "LocalSystem"
  145. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\DependOnService: 'TermService'
  146. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\DependOnGroup: 00
  147. HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc\Description: "This service loads the Search Protector, which maintains your selected Search settings, and enables auto-updates."
  148. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\BrowserEmulation\TLDUpdates: 0x00000001
  149. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Default HTML Editor\Stubs: 'msohtmed.exe'
  150. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\Source: "About:Home"
  151. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\SubscribedURL: "About:Home"
  152. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\FriendlyName: "Die derzeitige Homepage"
  153. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\Flags: 0x00000002
  154. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\Position: 2C 00 00 00 3F 01 00 00 00 00 00 00 FF 04 00 00 A3 02 00 00 00 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
  155. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\CurrentState: 04 00 00 40
  156. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\OriginalStateInfo: 18 00 00 00 FF FF 00 00 FF FF 00 00 FF FF FF FF FF FF FF FF 04 00 00 00
  157. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\0\RestoredStateInfo: 18 00 00 00 6A 02 00 00 23 00 00 00 A4 00 00 00 9A 00 00 00 01 00 00 00
  158. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\SafeMode\General\Wallpaper: "%SystemRoot%\Web\SafeMode.htt"
  159. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\SafeMode\General\VisitGallery: 0x00000000
  160. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Scheme\Edit: ""
  161. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Scheme\Display: ""
  162. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Old WorkAreas\NoOfOldWorkAreas: 0x00000001
  163. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Old WorkAreas\OldWorkAreaRects: 00 00 00 00 00 00 00 00 3E 06 00 00 6F 02 00 00
  164. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\BackupWallpaper: "%SystemRoot%\web\wallpaper\Grüne Idylle.bmp"
  165. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperFileTime: 00 58 8C 01 95 66 01 02
  166. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperLocalFileTime: 00 C0 50 63 9D 66 01 02
  167. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\TileWallpaper: "0"
  168. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperStyle: "2"
  169. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\Wallpaper: "%SystemRoot%\web\wallpaper\Grüne Idylle.bmp"
  170. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\General\ComponentsPositioned: 0x00000001
  171. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\DeskHtmlVersion: 0x00000110
  172. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\DeskHtmlMinorVersion: 0x00000005
  173. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\Settings: 0x00000001
  174. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Desktop\Components\GeneralFlags: 0x00000001
  175. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows\Maximized: "no"
  176. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows\height: 00 00 00 00
  177. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows\width: 00 00 00 80
  178. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows\x: 00 00 00 80
  179. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Document Windows\y: 00 00 00 00
  180. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Download\CheckExeSignatures: "yes"
  181. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{e2e2dd38-d088-4134-82b7-f2ba38496583}: 0x00002000
  182. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\NextId: 0x00002002
  183. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{FB5F1910-F110-11d2-BB9E-00C04F795683}: 0x00002001
  184. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh: 0x00080000
  185. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow: 0x17714BBD
  186. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh: 0x00000001
  187. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow: 0x00000008
  188. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\IETld\StaleIETldCache: 0x00000001
  189. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\9\IEPropFontName: "Simplified Arabic"
  190. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\9\IEFixedFontName: "Simplified Arabic Fixed"
  191. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\8\IEPropFontName: "David"
  192. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\8\IEFixedFontName: "Miriam Fixed"
  193. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\7\IEPropFontName: "Sylfaen"
  194. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\7\IEFixedFontName: "Sylfaen"
  195. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\6\IEPropFontName: "Times New Roman"
  196. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\6\IEFixedFontName: "Courier New"
  197. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\5\IEPropFontName: "Times New Roman"
  198. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\5\IEFixedFontName: "Courier New"
  199. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\4\IEPropFontName: "Times New Roman"
  200. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\4\IEFixedFontName: "Courier New"
  201. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\39\IEPropFontName: "Mongolian Baiti"
  202. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\39\IEFixedFontName: "Mongolian Baiti"
  203. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\38\IEPropFontName: "MV Boli"
  204. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\38\IEFixedFontName: "MV Boli"
  205. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\37\IEPropFontName: "DaunPenh"
  206. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\37\IEFixedFontName: "DaunPenh"
  207. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\35\IEPropFontName: "Estrangelo Edessa"
  208. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\35\IEFixedFontName: "Estrangelo Edessa"
  209. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\34\IEPropFontName: "Iskoola Pota"
  210. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\34\IEFixedFontName: "Iskoola Pota"
  211. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\30\IEPropFontName: "Microsoft Yi Baiti"
  212. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\30\IEFixedFontName: "Microsoft Yi Baiti"
  213. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\3\IEPropFontName: "Times New Roman"
  214. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFixedFontName: "Courier New"
  215. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\29\IEPropFontName: "Plantagenet Cherokee"
  216. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\29\IEFixedFontName: "Plantagenet Cherokee"
  217. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\28\IEPropFontName: "Euphemia"
  218. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\28\IEFixedFontName: "Euphemia"
  219. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\27\IEPropFontName: "Nyala"
  220. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\27\IEFixedFontName: "Nyala"
  221. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\26\IEPropFontName: "Simsun"
  222. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\26\IEFixedFontName: "NSimsun"
  223. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\25\IEPropFontName: "PMingLiu"
  224. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\25\IEFixedFontName: "MingLiu"
  225. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\24\IEPropFontName: "MS PGothic"
  226. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\24\IEFixedFontName: "MS Gothic"
  227. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\23\IEPropFontName: "Gulim"
  228. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\23\IEFixedFontName: "GulimChe"
  229. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\22\IEPropFontName: "Sylfaen"
  230. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\22\IEFixedFontName: "Sylfaen"
  231. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\21\IEPropFontName: "Microsoft Himalaya"
  232. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\21\IEFixedFontName: "Microsoft Himalaya"
  233. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\20\IEPropFontName: "DokChampa"
  234. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\20\IEFixedFontName: "DokChampa"
  235. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\19\IEPropFontName: "Tahoma"
  236. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\19\IEFixedFontName: "Tahoma"
  237. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\18\IEPropFontName: "Kartika"
  238. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\18\IEFixedFontName: "Kartika"
  239. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\17\IEPropFontName: "Tunga"
  240. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\17\IEFixedFontName: "Tunga"
  241. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\16\IEPropFontName: "Gautami"
  242. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\16\IEFixedFontName: "Gautami"
  243. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\15\IEPropFontName: "Latha"
  244. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\15\IEFixedFontName: "Latha"
  245. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\14\IEPropFontName: "Kalinga"
  246. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\14\IEFixedFontName: "Kalinga"
  247. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\13\IEPropFontName: "Shruti"
  248. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\13\IEFixedFontName: "Shruti"
  249. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\12\IEPropFontName: "Raavi"
  250. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\12\IEFixedFontName: "Raavi"
  251. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\11\IEPropFontName: "Vrinda"
  252. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\11\IEFixedFontName: "Vrinda"
  253. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\10\IEPropFontName: "Mangal"
  254. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\Scripts\10\IEFixedFontName: "Mangal"
  255. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\: ""
  256. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\International\CodePointToFontMap: 22 00 00 00 54 00 69 00 6D 00 65 00 73 00 20 00 4E 00 65 00 77 00 20 00 52 00 6F 00 6D 00 61 00 6E 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 20 00 53 00 61 00 6E 00 73 00 20 00 53 00 65 00 72 00 69 00 66 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4C 00 75 00 63 00 69 00 64 00 61 00 20 00 53 00 61 00 6E 00 73 00 20 00 55 00 6E 00 69 00 63 00 6F 00 64 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 00 79 00 6C 00 66 00 61 00 65 00 6E 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 45 00 73 00 74 00 72 00 61 00 6E 00 67 00 65 00 6C 00 6F 00 20 00 45 00 64 00 65 00 73 00 73 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 56 00 20 00 42 00 6F 00 6C 00 69 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 61 00 6E 00 67 00 61 00 6C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 56 00 72 00 69 00 6E 00 64 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 52 00 61 00 61 00 76 00 69 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 00 68 00 72 00 75 00 74 00 69 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4B 00 61 00 6C 00 69 00 6E 00 67 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4C 00 61 00 74 00 68 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 47 00 61 00 75 00 74 00 61 00 6D 00 69 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 54 00 75 00 6E 00 67 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4B 00 61 00 72 00 74 00 69 00 6B 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 49 00 73 00 6B 00 6F 00 6F 00 6C 00 61 00 20 00 50 00 6F 00 74 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 54 00 61 00 68 00 6F 00 6D 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 44 00 6F 00 6B 00 43 00 68 00 61 00 6D 00 70 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 00 69 00 6D 00 53 00 75 00 6E 00 2D 00 31 00 38 00 30 00 33 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 42 00 61 00 74 00 61 00 6E 00 67 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4E 00 79 00 61 00 6C 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50 00 6C 00 61 00 6E 00 74 00 61 00 67 00 65 00 6E 00 65 00 74 00 20 00 43 00 68 00 65 00 72 00 6F 00 6B 00 65 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 45 00 75 00 70 00 68 00 65 00 6D 00 69 00 61 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 44 00 61 00 75 00 6E 00 50 00 65 00 6E 00 68 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 53 00 20 00 4D 00 69 00 6E 00 63 00 68 00 6F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50 00 4D 00 69 00 6E 00 67 00 4C 00 69 00 75 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 65 00 69 00 72 00 79 00 6F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 00 69 00 6D 00 53 00 75 00 6E 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 69 00 6E 00 67 00 4C 00 69 00 55 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50 00 4D 00 69 00 6E 00 67 00 4C 00 69 00 55 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50 00 61 00 6C 00 61 00 74 00 69 00 6E 00 6F 00 20 00 4C 00 69 00 6E 00 6F 00 74 00 79 00 70 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 54 00 72 00 61 00 64 00 69 00 74 00 69 00 6F 00 6E 00 61 00 6C 00 20 00 41 00 72 00 61 00 62 00 69 00 63 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 00 69 00 6D 00 70 00 6C 00 69 00 66 00 69 00 65 00 64 00 20 00 41 00 72 00 61 00 62 00 69 00 63 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D 00 69 00 6E 00 67 00 4C 00 69 00 55 00 2D 00 45 00 78 00 74 00 42 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 5A 00 00 00 20 00 00 00 7F 00 00 00 00 A0 00 00 00 7F 01 00 00 00 80 01 00 00 AF 02 00 00 01 B0 02 00 00 FF 02 00 00 02 00 03 00 00 6F 03 00 00 01 70 03 00 00 7A 03 00 00 02 7B 03 00 00 CF 03 00 00 00 D0 03 00 00 2F 05 00 00 01 30 05 00 00 8F 05 00 00 03 B0 05 00 00 FF 06 00 00 00 00 07 00 00 4F 07 00 00 04 80 07 00 00 BF 07 00 00 05 00 09 00 00 7F 09 00 00 06 80 09 00 00 FF 09 00 00 07 00 0A 00 00 7F 0A 00 00 08 80 0A 00 00 FF 0A 00 00 09 00 0B 00 00 7F 0B 00 00 0A 80 0B 00 00 FF 0B 00 00 0B 00 0C 00 00 7F 0C 00 00 0C 80 0C 00 00 FF 0C 00 00 0D 00 0D 00 00 7F 0D 00 00 0E 80 0D 00 00 FF 0D 00 00 0F 00 0E 00 00 7F 0E 00 00 10 80 0E 00 00 FF 0E 00 00 11 00 0F 00 00 FF 0F 00 00 12 A0 10 00 00 FF 10 00 00 03 00 11 00 00 FF 11 00 00 13 00 12 00 00 9F 13 00 00 14 A0 13 00 00 FF 13 00 00 15 00 14 00 00 7F 16 00 00 16 80 17 00 00 FF 17 00 00 17 00 18 00 00 AF 18 00 00 12 E0 19 00 00 FF 19 00 00 17 00 1E 00 00 9F 1E 00 00 01 A0 1E 00 00 FF 1E 00 00 00 00 1F 00 00 FF 1F 00 00 01 00 20 00 00 3E 20 00 00 02 3F 20 00 00 5F 20 00 00 18 60 20 00 00 6F 20 00 00 00 70 20 00 00 9F 20 00 00 18 A0 20 00 00 CF 20 00 00 01 00 21 00 00 38 21 00 00 18 50 21 00 00 F1 22 00 00 18 00 23 00 00 06 23 00 00 02 07 23 00 00 07 23 00 00 19 08 23 00 00 0F 23 00 00 02 10 23 00 00 1F 23 00 00 18 20 23 00 00 3F 24 00 00 02 40 24 00 00 5F 24 00 00 1A 60 24 00 00 6F 26 00 00 18 70 26 00 00 FF 26 00 00 04 00 27 00 00 BF 27 00 00 18 80 2E 00 00 FF 2E 00 00 1B 00 2F 00 00 DF 2F 00 00 1A F0 2F 00 00 FF 2F 00 00 1B 00 30 00 00 20 30 00 00 18 21 30 00 00 2F 30 00 00 1B 30 30 00 00 37 30 00 00 18 3E 30 00 00 3F 30 00 00 12 40 30 00 00 FF 30 00 00 18 00 31 00 00 2F 31 00 00 1B 30 31 00 00 8F 31 00 00 13 90 31 00 00 9F 31 00 00 1C F0 31 00 00 FF 31 00 00 18 00 32 00 00 1F 32 00 00 13 20 32 00 00 43 32 00 00 18 60 32 00 00 7F 32 00 00 13 80 32 00 00 FF 33 00 00 18 00 34 00 00 BF 4D 00 00 12 00 4E 00 00 FF 9F 00 00 1B 00 A0 00 00 CF A4 00 00 12 00 AC 00 00 AF D7 00 00 13 00 F9 00 00 FF FA 00 00 1D 00 FB 00 00 0F FB 00 00 1E 10 FB 00 00 17 FB 00 00 03 18 FB 00 00 E7 FB 00 00 00 E8 FB 00 00 FB FB 00 00 12 FC FB 00 00 FF FB 00 00 00 00 FC 00 00 F0 FD 00 00 1F F2 FD 00 00 F2 FD 00 00 00 00 FE 00 00 0F FE 00 00 1B 30 FE 00 00 6F FE 00 00 1B 70 FE 00 00 7F FE 00 00 20 80 FE 00 00 FF FE 00 00 00 00 FF 00 00 E5 FF 00 00 18 E6 FF 00 00 E6 FF 00 00 13 E7 FF 00 00 EF FF 00 00 18 F0 FF 00 00 FF FF 00 00 00 00 00 02 00 DF A6 02 00 21 00 F8 02 00 1F FA 02 00 21
  257. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\LinksBar\LinksFolderMigrate: C2 B4 03 CB 52 DF CD 01
  258. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Version: "WS not installed"
  259. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\NoUpdateCheck: 0x00000001
  260. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\NoJITSetup: 0x00000001
  261. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Disable Script Debugger: "yes"
  262. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_ChannelBand: "No"
  263. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Anchor Underline: "yes"
  264. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Cache_Update_Frequency: "Once_Per_Session"
  265. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Display Inline Images: "yes"
  266. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Do404Search: 01 00 00 00
  267. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Local Page: "C:\WINDOWS\system32\blank.htm"
  268. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Save_Session_History_On_Exit: "no"
  269. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_FullURL: "no"
  270. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_StatusBar: "yes"
  271. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_ToolBar: "yes"
  272. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_URLinStatusBar: "yes"
  273. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Show_URLToolBar: "yes"
  274. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Start Page: "http://www.trovi.com/?gd=&ctid=CT3321459&octid=EB_ORIGINAL_CTID&ISID=MF8575A3C-5DCE-4DA0-AF5B-98266E835B28&SearchSource=55&CUI=&UM=6&UP=SP0FB0FC83-723F-4F4D-9219-C800358444A0&SSPV="
  275. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Use_DlgBox_Colors: "yes"
  276. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Search Page: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
  277. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\NotifyDownloadComplete: "yes"
  278. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\FullScreen: "no"
  279. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Window_Placement: 2C 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF 16 00 00 00 1D 00 00 00 6E 02 00 00 B1 01 00 00
  280. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\XMLHTTP: 0x00000001
  281. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\UseClearType: "yes"
  282. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Enable Browser Extensions: "yes"
  283. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Play_Background_Sounds: "yes"
  284. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Main\Play_Animations: "yes"
  285. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\New Windows\PopupMgr: "yes"
  286. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\New Windows\PlaySound: 0x00000001
  287. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\New Windows\UseSecBand: 0x00000001
  288. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}\URL: "http://www.trovi.com/Results.aspx?gd=&ctid=CT3321459&octid=EB_ORIGINAL_CTID&ISID=MF8575A3C-5DCE-4DA0-AF5B-98266E835B28&SearchSource=58&CUI=&UM=6&UP=SP0FB0FC83-723F-4F4D-9219-C800358444A0&q={searchTerms}&SSPV="
  289. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}\SuggestionsURL_JSON: "http://suggest.seccint.com/CSuggestJson.ashx?prefix={searchTerms}"
  290. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}\DisplayName: "Trovi search"
  291. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}\ShowSearchSuggestions: 0x00000001
  292. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}\Deleted: 0x00000000
  293. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsInAddressGlobal: 0x00000001
  294. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchScopes\DefaultScope: "{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}"
  295. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SearchUrl\provider: ""
  296. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\P3Global\Enabled: 0x00000001
  297. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\Sending_Security: "Medium"
  298. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\Viewing_Security: "Low"
  299. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Security\Safety Warning Level: "Query"
  300. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Services\: ""
  301. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings\Anchor Color Visited: "128,0,128"
  302. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings\Anchor Color: "0,0,255"
  303. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings\Background Color: "192,192,192"
  304. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings\Text Color: "0,0,0"
  305. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Settings\Use Anchor Hover Color: "No"
  306. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\SQM\InstallDate: B4 19 D4 50 00 00 00 00
  307. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\TabbedBrowsing\NewTabPageShow: 0x00000000
  308. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{01E04581-4EEE-11D0-BFE9-00AA005B4383}: 81 45 E0 01 EE 4E D0 11 BF E9 00 AA 00 5B 43 83 10 00 00 00 00 00 00 00 01 E0 32 F4 01 00 00 00
  309. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0E5CBF21-D15F-11D0-8301-00AA005B4383}: 21 BF 5C 0E 5F D1 D0 11 83 01 00 AA 00 5B 43 83 22 00 1C 00 08 00 00 00 06 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4C 00 00 00 01 14 02 00 00 00 00 00 C0 00 00 00 00 00 00 46 81 00 00 00 10 00 00 00 10 8E C1 EB 9A 66 01 02 E0 75 5E D5 87 6A 01 02 80 CE 91 F3 9A 66 01 02 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 6B 01 14 00 1F 50 E0 4F D0 20 EA 3A 69 10 A2 D8 08 00 2B 30 30 9D 19 00 2F 43 3A 5C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 66 00 31 00 00 00 00 00 87 9D 5C 41 10 00 44 4F 4B 55 4D 45 7E 31 00 00 4E 00 03 00 04 00 EF BE 84 9D 60 09 8C 9D 78 40 14 00 00 00 44 00 6F 00 6B 00 75 00 6D 00 65 00 6E 00 74 00 65 00 20 00 75 00 6E 00 64 00 20 00 45 00 69 00 6E 00 73 00 74 00 65 00 6C 00 6C 00 75 00 6E 00 67 00 65 00 6E 00 00 00 18 00 4A 00 31 00 00 00 00 00 87 9D 60 41 10 00 41 44 4D 49 4E 49 7E 31 00 00 32 00 03 00 04 00 EF BE 87 9D 5C 41 8C 9D 78 40 14 00 00 00 41 00 64 00 6D 00 69 00 6E 00 69 00 73 00 74 00 72 00 61 00 74 00 6F 00 72 00 00 00 18 00 56 00 31 00 00 00 00 00 87 9D 68 41 11 00 46 41 56 4F 52 49 7E 31 00 00 3E 00 03 00 04 00 EF BE 87 9D 5C 41 87 9D 68 41 14 00 28 00 46 00 61 00 76 00 6F 00 72 00 69 00 74 00 65 00 6E 00 00 00 40 73 68 65 6C 6C 33 32 2E 64 6C 6C 2C 2D 31 32 36 39 33 00 18 00 36 00 31 00 00 00 00 00 87 9D 68 41 10 00 4C 69 6E 6B 73 00 22 00 03 00 04 00 EF BE 87 9D 61 41 87 9D 11 43 14 00 00 00 4C 00 69 00 6E 00 6B 00 73 00 00 00 14 00 00 00 60 00 00 00 03 00 00 A0 58 00 00 00 00 00 00 00 76 6D 2D 34 30 61 31 31 65 64 65 33 61 30 66 00 62 0F 7B BA 96 4E 96 42 94 AD 1C E8 DC EC 5D AE A0 E5 70 56 90 D2 15 12 B3 B9 08 00 27 F6 31 03 62 0F 7B BA 96 4E 96 42 94 AD 1C E8 DC EC 5D AE A0 E5 70 56 90 D2 15 12 B3 B9 08 00 27 F6 31 03 00 00 00 00
  310. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBarLayout: 11 00 00 00 4C 00 00 00 00 00 00 00 34 00 00 00 1F 00 00 00 56 00 00 00 01 00 00 00 20 07 00 00 A0 0F 00 00 05 00 00 00 62 05 00 00 26 00 00 00 02 00 00 00 21 07 00 00 A0 0F 00 00 04 00 00 00 21 01 00 00 A0 0F 00 00 03 00 00 00 20 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
  311. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\LinksFolderName: "Links"
  312. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\Locked: 0x00000001
  313. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\Toolbar\SaveLinksOrder: 01 00 00 00
  314. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\TypedURLs\url1: "http://auto.search.msn.com/response.asp?MT=chrome+download&srch=3&prov=&utf8"
  315. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\TypedURLs\url2: "http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
  316. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Internet Explorer\URLSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}: ""
  317.  
  318. ----------------------------------
  319. Values added:4
  320. ----------------------------------
  321. HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_SCDEMU\0000\Capabilities: 0x00000000
  322. HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SCDEMU\0000\Capabilities: 0x00000000
  323. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Dokumente und Einstellungen\Administrator\Desktop\conduitdisinfector.bat: "conduitdisinfector"
  324. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\system32\cmd.exe: "Windows-Befehlsprozessor"
  325.  
  326. ----------------------------------
  327. Values modified:9
  328. ----------------------------------
  329. HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: AD C7 21 E6 AA EE DF DA 36 F7 C9 C8 B0 E5 3C C5 C7 08 8C F0 D5 AC 32 E7 C8 BB 2B 9A C4 B3 0A 4B 6A 33 08 64 97 BA 40 8D AE B9 C8 E2 5A 67 A8 78 05 D5 4D 2B 80 5C 3D E8 D1 0D 1F 75 F5 B7 1D 07 1A ED 9D 4F 18 9C 3A 34 EE 98 79 68 0D 0F 82 06
  330. HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 45 52 82 56 C5 ED A3 81 87 CF BE 00 B2 85 47 BB CD 2D 3C B7 FA C0 B5 04 06 CB 25 9B E3 DC 98 E7 D7 F2 A9 9E AB 75 02 3B 6D D7 31 FD E9 2F 9E DA 83 33 CC C5 04 D5 B3 56 4E 7C 07 27 4A 15 9E 92 A1 B7 24 C4 92 48 3C 6B BC B7 55 EA 11 53 FA 86
  331. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x00000000
  332. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x0000000F
  333. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x00000000
  334. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x00000005
  335. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\LastTraceFailure: 0x00000000
  336. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\LastTraceFailure: 0x00000004
  337. HKLM\SOFTWARE\SPPDCOM\TS: 0x00000001
  338. HKLM\SOFTWARE\SPPDCOM\TS: 0x00000002
  339. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 1B 00 00 00 46 01 00 00 C0 E8 0F BD 47 E9 CF 01
  340. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 1B 00 00 00 47 01 00 00 F0 23 4F C2 47 E9 CF 01
  341. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_HVFPHG: 1B 00 00 00 B8 00 00 00 10 D1 F5 BC 47 E9 CF 01
  342. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_HVFPHG: 1B 00 00 00 B9 00 00 00 20 28 4D C2 47 E9 CF 01
  343. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:(ahyy): 16 00 00 00 11 00 00 00 10 82 EB 59 0F 3A CE 01
  344. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:(ahyy): 1B 00 00 00 11 00 00 00 F0 23 4F C2 47 E9 CF 01
  345. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\SessionInformation\ProgramCount: 0x00000001
  346. HKU\S-1-5-21-1993962763-1935655697-1060284298-500\SessionInformation\ProgramCount: 0x00000002
  347.  
  348. ----------------------------------
  349. Total changes:316
  350. ----------------------------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement