Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- REGEDIT4
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E025FBFF-0023-48A1-971C-9F1682DA08F1}]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E025FBFF-0023-48A1-971C-9F1682DA08F1}]
- "Path"="\\Microsoft\\Windows\\Defrag\\ScheduledDefrag"
- "Hash"=hex:61,92,09,d3,f3,73,6f,0a,83,6c,fb,50,77,d6,87,74,7a,f4,ac,23,fb,ac,\
- 59,50,0a,50,ed,93,c3,e4,67,2b
- "Triggers"=hex:15,00,00,00,00,00,00,00,01,d7,c2,00,98,d7,c2,00,00,a8,a6,f3,5c,\
- 82,cd,01,00,d7,c2,00,98,d7,c2,00,ff,ff,ff,ff,ff,ff,ff,ff,7e,21,42,03,48,48,\
- 48,48,98,ac,25,fb,48,48,48,48,00,48,48,48,48,48,48,48,00,48,48,48,48,48,48,\
- 48,05,00,00,00,48,48,48,48,0c,00,00,00,48,48,48,48,01,01,00,00,00,00,00,05,\
- 12,00,00,00,48,48,48,48,00,00,00,00,48,48,48,48,38,00,00,00,48,48,48,48,b4,\
- 00,00,00,80,3a,09,00,80,f4,03,00,ff,ff,ff,ff,07,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,a8,dc,c2,00,00,00,00,\
- 00,00,00,00,00,dd,dd,00,00,00,00,00,00,01,d7,c2,00,98,d7,c2,00,00,a8,a6,f3,\
- 5c,82,cd,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,ff,ff,ff,ff,02,00,\
- 00,00,01,00,08,00,00,00,00,00,00,00,00,01,01,00,00,00,00,00,00,00,27,00,00,\
- 00
- "DynamicInfo"=hex:03,00,00,00,09,39,aa,f0,8b,82,cd,01,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Defrag]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Defrag\ScheduledDefrag]
- "Id"="{E025FBFF-0023-48A1-971C-9F1682DA08F1}"
- "Index"=dword:00000003
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement