Tech Support Forum banner
Status
Not open for further replies.

After MalwareBytes, Inernet, PC SystemRestore Will Not Work.

10K views 31 replies 2 participants last post by  chemist 
#1 ·
PC was running slow. I ran MalwareBytes in Chmeleon Mode. I deleted all the MB Quarantined files, as I wanted to Uninstall MB, and I thot it will "dump-back" all the quarantined fiels...

My PC is just a metal box now and am desperate. The Internet, Chrome Google will not work, "This web page is not available". The PC System Restore will not work, "Volume Shadow Copy not working. See event log. (0x81000202).

The PC Volume will not work, A red cross on the speaker on moniter, "the audio system is not running"

I formatted a 4.7 GB DVD on a windows 7 professional where it shows empty. On my PC the DVD shows full!

The DDS worked and file is attached.

The SPDTinst-v186-x86 did not work: Red cross and "The application has failed to start because its side-by-side configuration is incorrect". Via Uninstall in ControlPanel: None below were found :ActiveIsoBurner, Alcohol 120%, 52%, Astroburn, DaemonTools and Lite, Starburn, uTorrent, Bittorrent, Limewire, Morpheus, Azureus, Kazaa. I do not do ANY music or movie downloads and do not ve any P2P programmes I am aware of.

GMER Scan : First scan: stopped about three quarter way, "A problem caused windows to stop working correctly". Second Try Scan: the pc just shut down and self restarted. The third, I did as advised and ran scan with ONLY the sections and C drive boxes ticked. Result is attached.

On my previous thread I have attached a log of: Farbar Service Scanner Version: 17-01-2015, if of any use, please.

I have a HewlettPackard VistaBasic OEMAct, the pc did not come with a WidowsInstall Disc, not a Boot CD, either. I do have Proof of Licence, Certificate of Authenticity and the Product Key.

Per instructions of Disc that came with pc I personally did a back-up on first day of purchase, on 4.7 GB DVD. On it is written, "Jan 3rd 2008, System Recovery Disc. Back Up Of New PC. Store Safely!"

Attaching Zippped log files of: * attach.txt
* ark.txt

DDS.txt:: ""
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16609 BrowserJavaVersion: 11.25.2
Run by RAJ at 17:43:21 on 2015-04-01
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\Windows\system32\SLsvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkService
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
uWindow Title = Internet Explorer, optimized for Bing and MSN
uSearch Bar = Google
uSearch Page = Google
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=74&bd=smb&pf=desktop
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=74&bd=smb&pf=desktop
uSearchAssistant = Google
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
dURLSearchHooks: {A3BC75A2-1F87-4686-AA43-5347D756017C} - <orphaned>
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.8.0_25\bin\ssv.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - c:\program files\windows live\companion\companioncore.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre1.8.0_25\bin\jp2ssv.dll
EB: Developer Tools: {1A6FE369-F28C-4AD9-A3E6-2BCB50807CF1} - c:\program files\internet explorer\iedvtool.dll
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [AvastUI.exe] "c:\program files\avast software\avast\AvastUI.exe" /nogui
dRun: [GarminExpressTrayApp] "c:\program files\garmin\express tray\ExpressTray.exe"
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - c:\programs\partygaming\partypoker\RunApp.exe
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{44E3C8D3-CBE9-4035-9AFD-1D00672F7F17} : DHCPNameServer = 192.168.1.254
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\41.0.2272.101\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
============= SERVICES / DRIVERS ===============
.
.
=============== File Associations ===============
.
ShellExec: DigitalTheatre.exe: open="c:\program files\arcsoft\totalmedia extreme\digital theatre\uDigital Theatre.exe" "%1"
.
=============== Created Last 30 ================
.
2015-03-26 12:37:38 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-26 12:33:05 92888 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-03-26 12:33:05 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-03-26 12:33:05 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-03-26 12:33:04 -------- d-----w- c:\programdata\Malwarebytes
2015-03-26 12:33:04 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-03-26 12:14:31 -------- d-----w- c:\windows\pss
2015-03-23 10:46:47 -------- d-----w- c:\windows\system32\vbox
2015-03-21 16:07:23 26096 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2015-03-21 16:07:22 253728 ----a-w- c:\windows\system32\drivers\aswNdis2.sys
2015-03-21 16:05:12 12112 ----a-w- c:\windows\system32\drivers\aswNdis.sys
2015-03-21 16:01:20 43112 ----a-w- c:\windows\avastSS.scr
.
==================== Find3M ====================
.
2015-03-21 16:01:31 206976 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-03-21 16:01:30 73440 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-03-21 16:01:30 49904 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-03-21 16:01:30 24144 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-03-21 16:01:07 788272 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-02-17 16:04:46 1202848 ----a-w- c:\windows\system32\FM20.DLL
2015-02-06 17:00:00 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-02-06 17:00:00 701616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-01-23 03:00:27 1810944 ----a-w- c:\windows\system32\jscript9.dll
2015-01-15 04:13:11 440760 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-01-14 01:49:16 367104 ----a-w- c:\windows\system32\html.iec
2015-01-14 01:42:51 1129472 ----a-w- c:\windows\system32\wininet.dll
2015-01-14 01:42:31 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2015-01-14 01:41:28 421376 ----a-w- c:\windows\system32\vbscript.dll
2015-01-14 01:41:09 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2015-01-14 01:40:35 11776 ----a-w- c:\windows\system32\mshta.exe
2015-01-14 01:40:33 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-01-13 01:39:22 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-01-09 00:20:49 2063360 ----a-w- c:\windows\system32\win32k.sys
2008-07-23 20:12:39 774144 ----a-w- c:\program files\RngInterstitial.dll
.
============= FINISH: 17:51:29.79 ===============

Many thanks to all the Team Members in advance. Please feel free to ask anything that may help me thru this crisis. Nothing like this has ever happened to me.
 

Attachments

See less See more
#2 ·
Hello and Welcome to TSF.

If you haven't already, please Subscribe to this Thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant notification by email, then click Add Subscription.

Please note that the forum is very busy and if I don't hear from you within three days this thread will be closed.

------------------------------------------------------

I need to see the scan log from MBAM.

Open MBAM > History > Application Logs

Please post the contents of the scan log where MBAM quarantined the files you deleted.

------------------------------------------------------

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2

  • Double-click SystemLook.exe to run it. (Vista/Win7/Win8 users, right-click > Run as Administrator)
  • Copy/paste the contents of the following codebox into the main textfield:
    Code:
    :reg
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Winmgmt /s
  • Click the Look button to start the scan.
  • Please be patient, as it may take a while.
  • When finished, a Notepad file will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt

------------------------------------------------------
 
#3 ·
Hi Chemist, great to hear from an Expert. My apologies for delay.

Please, I have three logs for you [BTW I had assumed that if I deleted MBAN quaratined files, that they would be "gone permanently"] :

MBAN-1:
Malwarebytes Anti-Malware
Malwarebytes | Free Anti-Malware & Internet Security Software


Update, 27/03/2015 11:36:33, SYSTEM, RAJ-PC, Scheduler, Rootkit Database, 2015.2.25.1, 2015.3.26.1,
Update, 27/03/2015 11:37:14, SYSTEM, RAJ-PC, Scheduler, Malware Database, 2015.3.26.4, 2015.3.27.4,
Protection, 27/03/2015 11:37:15, SYSTEM, RAJ-PC, Protection, Refresh, Starting,
Protection, 27/03/2015 11:37:15, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Stopping,
Protection, 27/03/2015 11:37:20, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Stopped,
Protection, 27/03/2015 11:40:51, SYSTEM, RAJ-PC, Protection, Refresh, Success,
Protection, 27/03/2015 11:40:52, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Starting,
Protection, 27/03/2015 11:42:18, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Started,
Update, 27/03/2015 11:49:47, SYSTEM, RAJ-PC, Scheduler, Malware Database, 2015.3.27.4, 2015.3.27.5,
Protection, 27/03/2015 11:49:47, SYSTEM, RAJ-PC, Protection, Refresh, Starting,
Protection, 27/03/2015 11:49:47, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Stopping,
Protection, 27/03/2015 11:49:48, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Stopped,
Protection, 27/03/2015 11:51:16, SYSTEM, RAJ-PC, Protection, Refresh, Success,
Protection, 27/03/2015 11:51:16, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Starting,
Protection, 27/03/2015 11:51:22, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Started,
Detection, 27/03/2015 12:32:52, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, IP, 119.145.147.181, mama.cn, 0, Outbound,
Detection, 27/03/2015 12:32:56, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, IP, 5.150.195.167, 0427d7.se, 0, Outbound,
Detection, 27/03/2015 12:33:03, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, IP, 64.210.142.13, bongacams.com, 0, Outbound,
Protection, 27/03/2015 12:57:10, SYSTEM, RAJ-PC, Protection, Malware Protection, Starting,
Protection, 27/03/2015 12:57:10, SYSTEM, RAJ-PC, Protection, Malware Protection, Started,
Protection, 27/03/2015 12:57:10, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Starting,
Protection, 27/03/2015 12:57:21, SYSTEM, RAJ-PC, Protection, Malicious Website Protection, Started,
Update, 27/03/2015 13:12:38, SYSTEM, RAJ-PC, Scheduler, Failed, Unable to access update server,
Update, 27/03/2015 13:23:15, SYSTEM, RAJ-PC, Scheduler, Failed, Unable to access update server,
Update, 27/03/2015 13:30:28, SYSTEM, RAJ-PC, Scheduler, Failed, Unable to access update server,
Scan, 27/03/2015 14:22:35, SYSTEM, RAJ-PC, Context, Start:27/03/2015 13:27:37, Duration:26 min 14 sec, Threat Scan, Completed, 0 Malware Detections, 24 Non-Malware Detections,

(end)



MBAN-2::
Malwarebytes Anti-Malware
Malwarebytes | Free Anti-Malware & Internet Security Software

Scan Date: 27/03/2015
Scan Time: 13:27:37
Logfile: MBAN Scan History Log.txt
Administrator: Yes

Version: 2.01.4.1018
Malware Database: v2015.03.27.05
Rootkit Database: v2015.03.26.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Enabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: RAJ

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 547258
Time Elapsed: 26 min, 14 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 24
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3\CacheIcons, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3\plugins, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAJ\AppData\LocalLow\Free_TV_Bar_c3\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin, No Action By User, [8df44bffcebc86b0d89e823026ddcd33],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\CacheIcons, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\Chat, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\EmailNotifier, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\ExternalComponent, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\LanguagePack, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\LanguagePack\en, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\Logs, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\MyStuffComponents, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\plugins, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\RadioPlayer, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\RadioPlayer\Skins, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\Repository, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\Repository\conduit_CT2399412_CT2399412, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\Repository\conduit_CT2399412_CT2399412\ToolbarSettings, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Users\RAKHIL.RAJ-PC\AppData\LocalLow\Free_TV_Bar_c3\UserDefinedItems, No Action By User, [9ce56cde7f0b092d5f17f8ba946f20e0],
PUP.Optional.FreeTVBar.A, C:\Program Files\Free_TV_Bar_c3, No Action By User, [344d5ded2b5fb680e691684ac14227d9],

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)




SYSTEMLOOK::

SystemLook 30.07.11 by jpshortstuff
Log created at 00:29 on 09/04/2015 by RAJ
Administrator - Elevation successful

========== reg ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp]
"ServiceDll"="%SystemRoot%\system32\dhcpcsvc.dll"
"DisplayName"="@%SystemRoot%\system32\dhcpcsvc.dll,-100"
"Group"="TDI"
"ImagePath"="%SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted"
"Description"="@%SystemRoot%\system32\dhcpcsvc.dll,-101"
"ObjectName"="NT Authority\LocalService"
"ErrorControl"= 0x0000000001 (1)
"Start"= 0x0000000004 (4)
"Type"= 0x0000000020 (32)
"DependOnService"="NSI Tdx Afd"
"ServiceSidType"= 0x0000000001 (1)
"RequiredPrivileges"="SeChangeNotifyPrivilege SeCreateGlobalPrivilege"
"FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Configurations]
"Options"=32 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 ff ff ff 7f 00 00 00 00 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 ff ff ff 7f 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Linkage]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Linkage\Disabled]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters]
"ServiceDll"="%SystemRoot%\System32\dhcpcsvc.dll"
"ServiceDllUnloadOnStop"= 0x0000000001 (1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\1]
"KeyType"= 0x0000000007 (7)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpSubnetMaskOpt SYSTEM\CurrentControlSet\Services\?\Parameters\Tcpip\DhcpSubnetMaskOpt"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\15]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpDomain SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\DhcpDomain"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\220]
"KeyType"= 0x0000000003 (3)
"RegSendLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\SoHRequest"
"VendorType"= 0x0000000001 (1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\3]
"KeyType"= 0x0000000007 (7)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpDefaultGateway SYSTEM\CurrentControlSet\Services\?\Parameters\Tcpip\DhcpDefaultGateway"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\44]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_?\DhcpNameServerList SYSTEM\CurrentControlSet\Services\NetBT\Adapters\?\DhcpNameServer"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\46]
"KeyType"= 0x0000000004 (4)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\DhcpNodeType"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\47]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\DhcpScopeID"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\6]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpNameServer SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DhcpNameServer"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\DhcpNetbiosOptions]
"KeyType"= 0x0000000004 (4)
"OptionId"= 0x0000000001 (1)
"VendorType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_?\DhcpNetbiosOptions"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6]
"DllName"="%SystemRoot%\system32\dhcpcsvc6.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options\23]
"KeyType"= 0x0000000003 (3)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\Dhcpv6DNSServers SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\Dhcpv6DNSServers"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options\24]
"KeyType"= 0x0000000003 (3)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\Dhcpv6DomainSearchList SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\Dhcpv6DomainSearchList"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Security]
"Security"=01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2c 02 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 (REG_BINARY)


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache]
"DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101"
"Group"="TDI"
"ImagePath"="%SystemRoot%\system32\svchost.exe -k NetworkService"
"Description"="@%SystemRoot%\System32\dnsapi.dll,-102"
"ObjectName"="NT AUTHORITY\NetworkService"
"ErrorControl"= 0x0000000001 (1)
"Start"= 0x0000000004 (4)
"Type"= 0x0000000020 (32)
"DependOnService"="Tdx"
"ServiceSidType"= 0x0000000001 (1)
"RequiredPrivileges"="SeChangeNotifyPrivilege SeCreateGlobalPrivilege"
"FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters]
"ServiceDll"="%SystemRoot%\System32\dnsrslvr.dll"
"ServiceDllUnloadOnStop"= 0x0000000001 (1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Security]
"Security"=01 00 14 90 d0 00 00 00 dc 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 a0 00 07 00 00 00 00 02 18 00 8d 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 02 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 02 14 00 8d 00 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 02 14 00 8d 00 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 02 18 00 cd 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2c 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Enum]
"0"="Root\LEGACY_DNSCACHE\0000"
"Count"= 0x0000000001 (1)
"NextInstance"= 0x0000000001 (1)


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
"ImagePath"="%systemroot%\system32\svchost.exe -k LocalService"
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
"ObjectName"="NT Authority\LocalService"
"ErrorControl"= 0x0000000001 (1)
"Start"= 0x0000000004 (4)
"Type"= 0x0000000020 (32)
"DependOnService"="nsiproxy"
"ServiceSidType"= 0x0000000001 (1)
"RequiredPrivileges"="SeCreateGlobalPrivilege SeImpersonatePrivilege"
"FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
"ServiceDllUnloadOnStop"= 0x0000000001 (1)


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Winmgmt]
"DisplayName"="@%Systemroot%\system32\wbem\wmisvc.dll,-205"
"ImagePath"="%systemroot%\system32\svchost.exe -k netsvcs"
"Description"="@%Systemroot%\system32\wbem\wmisvc.dll,-204"
"ObjectName"="localSystem"
"ErrorControl"= 0x0000000000 (0)
"Start"= 0x0000000004 (4)
"Type"= 0x0000000020 (32)
"DependOnService"="RPCSS"
"ServiceSidType"= 0x0000000001 (1)
"FailureActions"=84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Winmgmt\Parameters]
"ServiceDllUnloadOnStop"= 0x0000000001 (1)
"ServiceDll"="%SystemRoot%\system32\wbem\WMIsvc.dll"
"ServiceMain"="ServiceMain"


-= EOF =-

Chemist, I have tried to do exactly as you have suggested. Hope I did ok with the logs. Once again many thx 4 all the assist by TSF Experts.
 
#4 ·
Hello mg222. I am so sorry, I thought I had already replied. If I ever don't reply within 24 hours, please PM me.

Your machine is a mess. WMI isn't working. Parts of the logs aren't showing entries as a result.

It may be beyond repair. You may have to use that backup you created.

Are you aware you have no system restore points?

------------------------------------------------------

BTW I had assumed that if I deleted MBAN quaratined files, that they would be "gone permanently"
If you deleted them, they are gone. I just wanted to see what files you deleted.

Nevertheless, I don't see any files deleted by MBAM that would cause your problems.

No system files are reflected in the MBAM log.

------------------------------------------------------

Please note that these fixes are not instantaneous. Most infections require more than one round to properly eradicate.

Please stay with me until given the 'all clear' even if symptoms seemingly abate.

Kindly follow my instructions and please do no fixing on your own or running of scanners unless requested by a helper.

------------------------------------------------------

If there are any personal files, pics, etc. on your computer you cannot live without, back them up now just as a precaution.

Emergency Backup Procedure - Tech Support Forum

------------------------------------------------------

Please download AdwCleaner from here and save it to your desktop.
  • Do NOT click the green 'Download' button(if visible).
  • Click the blue 'Download now @bleepingcomputer' button.
  • Run AdwCleaner and select Scan
  • Once the Scan is done, select Clean
  • Once done it will ask to reboot, please allow the reboot.
  • On reboot, a log will be produced. It can also be found at C:\AdwCleaner\AdwCleaner[S#].txt
  • Please copy/paste the contents of the log in your next reply.
------------------------------------------------------

Please download ComboFix and Save it to your Desktop.

**Note: It is important that it is saved directly to your desktop**

* Ensure you have disabled all antivirus and antimalware programs so they do not interfere with the running of ComboFix.

Get help here

Double-click ComboFix.exe and follow the prompts to run it.

Your desktop may go blank. This is normal. It will return when ComboFix is done. ComboFix may reboot your machine. This is normal.

When finished, it shall produce a log for you. Please post that log, C:\ComboFix.txt, in your next reply.

Please re-enable your antivirus before posting the ComboFix.txt log.

If you get an 'Illegal operation attempted on a Registry key which has been marked for deletion' error message, please reboot your machine.

------------------------------------------------------
 
#5 ·
Hi Chemist, thank you for that.

[1] I have backed-up 24Gb of files important to me. It took much longer as it seemed "drives / drivers" were not being recognised. Ended up buying a 1TB PortableHD

[2] Yeah Chemist, altho the PC won't let me Restore it back; I have Restored PC back 8 to 10 different times over the years. I do believe Vista has safety mechanisn where-in it creates a restore point @ serious downloads.

[3] There is a Drive in the PC : HP_Recovery(D:) 6.87GB free of 12.0GB

[4]Few weeks back Avast2015 un-be-known to me Installed its on Firewall and Disabled PCToolsFirewall. I found that out today, bec it says I have no antivirus, as my Trial for PremiumAvast[which I did not ask for] has run out. Because there is no Inernet on the PC, I cant download AvastFree, either.

So, altho PCToolsFirewall is on, the PC is without any antivirus as of today.

Attached below please find both AdwCleaner and ComboFix Scan Logs.
The ComboFix took about an Hour...


<><><>

# AdwCleaner v4.201 - Logfile created 14/04/2015 at 00:21:34
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Local]
# Operating system : Windows Vista (TM) Home Basic Service Pack 2 (x86)
# Username : RAJ - RAJ-PC
# Running from : C:\Users\RAJ\Desktop\adwcleaner_4.201.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : vToolbarUpdater15.3.0

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\PC Drivers HeadQuarters
Folder Deleted : C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp
File Deleted : C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fmlgoencnlndpglbocajlimaikjohmab_0.localstorage
File Deleted : C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nhogbcndagiknbfomjgdeghehkljalhi
File Deleted : C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pialekdjmfmckiccfkgbbgphficjdekh_0.localstorage
File Deleted : C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cbhfdchmklhpcngcgjmpdbjakdggkkjp_0.localstorage

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Classes\MF
Key Deleted : HKU\.DEFAULT\Software\AVG Secure Search
Key Deleted : HKU\.DEFAULT\Software\AVG Security Toolbar
Key Deleted : HKU\.DEFAULT\Software\ImInstaller
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{177CD779-4EEC-43C5-8DEA-4E0EC103624B}

***** [ Web browsers ] *****

-\\ Internet Explorer v9.0.8112.16609


-\\ Google Chrome v41.0.2272.101

[C:\Users\MANALI.RAJ-PC\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}
[C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}
[C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : fmlgoencnlndpglbocajlimaikjohmab
[C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : cbhfdchmklhpcngcgjmpdbjakdggkkjp
[C:\Users\RAKHIL.RAJ-PC\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}

*************************

AdwCleaner[R0].txt - [14100 bytes] - [08/10/2014 21:45:43]
AdwCleaner[R1].txt - [921 bytes] - [17/10/2014 12:50:33]
AdwCleaner[R2].txt - [980 bytes] - [17/10/2014 13:18:01]
AdwCleaner[R3].txt - [2867 bytes] - [13/04/2015 23:52:56]
AdwCleaner[R4].txt - [2926 bytes] - [14/04/2015 00:17:36]
AdwCleaner[S0].txt - [14588 bytes] - [08/10/2014 21:49:50]
AdwCleaner[S1].txt - [968 bytes] - [17/10/2014 14:07:35]
AdwCleaner[S2].txt - [2889 bytes] - [14/04/2015 00:21:34]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [2948 bytes] ##########


<><><><>


ComboFix 15-04-09.01 - RAJ 14/04/2015 0:48.1.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.44.1033.18.1918.1109 [GMT 1:00]
Running from: c:\users\RAJ\Desktop\ComboFix.exe
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\RAJ\AppData\Roaming\Microsoft\Windows\Recent\Comfy Cakes.pif
c:\users\RAJ\Documents\~WRL0003.tmp
c:\users\RAJ\Documents\~WRL0004.tmp
c:\users\RAJ\Documents\~WRL0840.tmp
c:\users\RAJ\Documents\~WRL1146.tmp
c:\users\RAJ\Documents\~WRL1342.tmp
c:\users\RAJ\Documents\~WRL1932.tmp
c:\users\RAJ\Documents\~WRL2093.tmp
c:\users\RAJ\Documents\~WRL2599.tmp
c:\users\RAJ\Documents\~WRL2861.tmp
c:\users\RAJ\Documents\~WRL3399.tmp
c:\users\RAJ\Documents\~WRL3706.tmp
c:\users\RAJ\Documents\~WRL3724.tmp
c:\users\RAJ\Documents\~WRL3834.tmp
c:\users\RAJ\Documents\~WRL3853.tmp
c:\windows\Downloaded Program Files\f3initialsetup1.0.1.0.inf
D:\Autorun.inf
D:\Documents.lnk
.
.
((((((((((((((((((((((((( Files Created from 2015-03-14 to 2015-04-14 )))))))))))))))))))))))))))))))
.
.
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\RAKHIL.RAJ-PC\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\MANALI.RAJ-PC\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:14 -------- d-----w- c:\users\RAJ\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\SMITA\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\RAKHIL\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\MANALI\AppData\Local\temp
2015-04-14 00:05 . 2015-04-14 00:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-03-26 12:37 . 2015-04-08 23:08 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-26 12:33 . 2015-03-27 11:49 92888 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-03-26 12:33 . 2015-03-17 06:15 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-03-26 12:33 . 2015-03-17 06:15 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-03-26 12:33 . 2015-03-26 12:33 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-03-26 12:33 . 2015-03-26 12:33 -------- d-----w- c:\programdata\Malwarebytes
2015-03-23 10:46 . 2015-03-23 10:56 -------- d-----w- c:\windows\system32\vbox
2015-03-21 16:07 . 2015-03-21 16:06 26096 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2015-03-21 16:07 . 2015-03-21 16:05 253728 ----a-w- c:\windows\system32\drivers\aswNdis2.sys
2015-03-21 16:07 . 2015-03-21 16:01 291312 ----a-w- c:\windows\system32\aswBoot.exe
2015-03-21 16:05 . 2015-03-21 16:05 12112 ----a-w- c:\windows\system32\drivers\aswNdis.sys
2015-03-21 16:01 . 2015-03-21 16:01 43112 ----a-w- c:\windows\avastSS.scr
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-21 16:01 . 2014-09-11 15:19 57888 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2015-03-21 16:01 . 2014-09-11 15:19 206976 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-03-21 16:01 . 2014-09-11 15:19 427480 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-03-21 16:01 . 2014-09-11 15:19 73440 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-03-21 16:01 . 2014-09-11 15:19 49904 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-03-21 16:01 . 2014-09-11 15:19 24144 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-03-21 16:01 . 2014-09-11 15:19 55200 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2015-03-21 16:01 . 2014-09-11 15:19 788272 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-02-17 16:04 . 2015-02-17 16:04 1202848 ----a-w- c:\windows\system32\FM20.DLL
2015-02-06 17:00 . 2014-11-16 19:53 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-02-06 17:00 . 2014-11-16 19:53 701616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-01-23 03:00 . 2015-02-13 12:06 1810944 ----a-w- c:\windows\system32\jscript9.dll
2015-01-15 04:13 . 2015-02-12 19:56 440760 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-01-14 01:49 . 2015-02-12 15:42 367104 ----a-w- c:\windows\system32\html.iec
2015-01-14 01:42 . 2015-02-12 15:42 1129472 ----a-w- c:\windows\system32\wininet.dll
2015-01-14 01:42 . 2015-02-12 15:41 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2015-01-14 01:41 . 2015-02-12 15:42 421376 ----a-w- c:\windows\system32\vbscript.dll
2015-01-14 01:41 . 2015-02-12 15:41 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2015-01-14 01:40 . 2015-02-12 15:41 11776 ----a-w- c:\windows\system32\mshta.exe
2015-01-14 01:40 . 2015-02-12 15:41 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2008-07-23 20:12 . 2008-07-23 20:12 774144 ----a-w- c:\program files\RngInterstitial.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-03-21 16:01 644608 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-03-21 5511352]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
backup=c:\windows\pss\Secunia PSI Tray.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\00PCTFW]
2009-03-04 21:28 2652056 ----a-w- c:\program files\PC Tools Firewall Plus\FirewallGUI.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\amd_dc_opt]
2007-03-13 23:31 77824 ----a-w- c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2013-04-21 20:43 59720 ----a-w- c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-10-27 19:17 207424 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft Default Manager]
2010-05-10 14:12 439568 ----a-w- c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
2012-03-08 17:50 4280184 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete]
2007-08-07 17:59 331288 ----a-w- c:\program files\PDF Complete\pdfsty.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2014-10-02 14:23 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 19:24 32768 ----a-w- c:\program files\ASUSTeK\ASUSDVD\PDVDServ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetRefresh]
2003-11-20 16:01 525824 ----a-w- c:\program files\COMPAQ\SetRefresh\SetRefresh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-19 07:38 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
2007-05-31 08:21 648072 ----a-w- c:\windows\WindowsMobile\wmdc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
2008-01-19 07:33 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WPCUMI]
2006-11-02 12:34 176128 ----a-w- c:\windows\System32\wpcumi.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
getPlusHelper REG_MULTI_SZ getPlusHelper
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-21 15:57 1061704 ----a-w- c:\program files\Google\Chrome\Application\41.0.2272.101\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2015-03-27 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-16 17:00]
.
2015-03-26 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-12 04:09]
.
2015-04-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-12 13:56]
.
2015-04-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-12 13:56]
.
2015-04-14 c:\windows\Tasks\User_Feed_Synchronization-{0E33D065-2BA1-4925-BF6B-BDAE4D89BF96}.job
- c:\windows\system32\msfeedssync.exe [2015-02-12 01:40]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://google.com/
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=74&bd=smb&pf=desktop
uSearchAssistant = Google
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
TCP: DhcpNameServer = 192.168.1.254
.
- - - - ORPHANS REMOVED - - - -
.
HKU-Default-Run-GarminExpressTrayApp - c:\program files\Garmin\Express Tray\ExpressTray.exe
SafeBoot-WudfPf
SafeBoot-WudfRd
MSConfigStartUp-AVG-Secure-Search-Update_0913b - c:\users\RAJ\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe
MSConfigStartUp-Lexmark X1100 Series - c:\program files\Lexmark X1100 Series\lxbkbmgr.exe
AddRemove-Flash Player Pro_is1 - c:\program files\Flash Player Pro\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover
Rootkit scan 2015-04-14 01:13
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
.
C:\avast! sandbox
.
scan completed successfully
hidden files: 1
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\pdfcDispatcher]
"ImagePath"="c:\program files\PDF Complete\pdfsvc.exe /startedbyscm:66B66708-40E2BE4D-pdfcService"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@DACL=(02 0000)
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(3936)
c:\users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\PC Tools Firewall Plus\FWService.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\AVAST Software\Avast\afwServ.exe
c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\system32\vssvc.exe
.
**************************************************************************
.
Completion time: 2015-04-14 01:57:01 - machine was rebooted
ComboFix-quarantined-files.txt 2015-04-14 00:55
.
Pre-Run: 99,051,483,136 bytes free
Post-Run: 98,109,726,720 bytes free
.
- - End Of File - - 7D82F878514E891DFE95B222752BED40
739B36F7A373FC81121D831231B6D311


****** ****** ***** ******

Chemist, I hope the above helps to get me online again, been tough few days.
With many thanks, mg222.
 
#6 ·
Hello again, mg222. You're very welcome! You can turn on Windows Defender until we get another antivirus installed.

------------------------------------------------------

I'd like to try something. If this doesn't work, we can still fix it another way.

Press the Windows "logo" key and "R" key then copy/paste the following single-line command into the Run box and click OK:

"C:\Program Files\Malwarebytes Anti-Malware\Plugins\fixdamage.exe"

A command prompt will open asking you if you want to proceed to repair possible damages...

Press 'Y' then follow the prompts.

When done, you will get the message 'Applying fix...Done!'

Press any key to exit.

Reboot your machine. Are you able to connect now?

-------------------------------------------------------

If running fixdamage.exe didn't fix your connection problem, please do the following:

Open Notepad and copy/paste the entire contents of the codebox below into Notepad(don't forget to copy and paste REGEDIT4):

Code:
REGEDIT4

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp]
"Start"=dword:00000002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache]
"Start"=dword:00000002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi]
"DisplayName"="@%SystemRoot%\\system32\\nsisvc.dll,-200"
"ImagePath"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,00,6f,00,\
  74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
  00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
  6b,00,20,00,4c,00,6f,00,63,00,61,00,6c,00,53,00,65,00,72,00,76,00,69,00,63,\
  00,65,00,00,00
"Description"="@%SystemRoot%\\system32\\nsisvc.dll,-201"
"ObjectName"="NT Authority\\LocalService"
"ErrorControl"=dword:00000001
"Start"=dword:00000002
"Type"=dword:00000020
"DependOnService"=hex(7):6e,00,73,00,69,00,70,00,72,00,6f,00,78,00,79,00,00,00,\
  00,00
"ServiceSidType"=dword:00000001
"RequiredPrivileges"=hex(7):53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,\
  00,6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,\
  67,00,65,00,00,00,53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,00,6e,\
  00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,\
  00,00,00,00
"FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
  00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi\Parameters]
"ServiceDll"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,00,6f,\
  00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
  6e,00,73,00,69,00,73,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Winmgmt]
"Start"=dword:00000002
Save the file as fix.reg and choose to Save as type: - All Files then close the Notepad file.
It should look like this:


Double-click on fix.reg and choose Yes to merge/add it to the registry. Please delete the file afterwards.

Reboot. Are you able to access the internet now?

------------------------------------------------------
 
#7 ·
Hi Chemist,
thank you again for the latest assist.
I was excited, at least 1 of the 2 gotta work... Sorry, buddy neither worked.

From one of the "other" fixes the InternetExplorer has loaded up on my DeskTop. So, I tried with both ChromeGoogle [my default] and IE.

I have turned ON the WindowsDefender. Please, I dont know if this means anything but PCToolsPlus seems to keep disappearing from the TaskBar! I find it either in the DeskTop or go to Start + Programmes and just click on it seems to load to TaskBar right away.

FYI I tried a new Internet Cable to my PC also. My son's school laptop works fine with the same InternetHub. [ Both wired].

Chemist please, I am also worried if we wipe the slate clean and my recovery DVD dsnt work?? Will MS work with us since I do have the 25 character ProductKey and it is easy for MS to authenticate the Key to this Machine? Sorry, I am jumping the gun here, please I feel is educational, however.

With warm regards, mg222
 
#8 ·
Hello again, mg222. You're very welcome! Sorry it didn't work. You should be OK with the key.

Let's check something.

You probably still have FSS.exe on your desktop, but in case you don't...

Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure the Internet Services option remains checked.
  • Check all the other boxes.
  • Click Scan.
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log in your next reply.
------------------------------------------------------

Also...

Please download Farbar Recovery Scan Tool and save it to your desktop.
  • Double-click to run it. When the tool opens click Yes to the disclaimer.
  • Make sure the Addition.txt button is ticked.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply.
------------------------------------------------------
 
#9 ·
Hi Chemist, once again thank you for staying with me [ and relieved to hear Key s'd be ok ].

I have followed your instructions, and please find attached the three scan results. Interestingly, while running the FRST, I was intently trying to watch the file names whizz by during scan and ... it actually stopped on the spot only twice and both times it was at MBAN Chameleon!

Probably nothing, however : I used to have Limewire which was legally stopped to carry on. Last time I used it was approx 4 / 5 years ago. But I seem to recall finding its remnants in the PC and deleted it some 3 / 4 weeks ago.


**************************

FSS.txt ::

Farbar Service Scanner Version: 17-01-2015
Ran by RAJ (administrator) on 15-04-2015 at 12:08:52
Running from "H:\"
Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============
Dhcp Service is not running. Checking service configuration:
The start type of Dhcp service is OK.
The ImagePath of Dhcp service is OK.
The ServiceDll of Dhcp service is OK.

Nsi Service is not running. Checking service configuration:
The start type of Nsi service is OK.
The ImagePath of Nsi: "%".
The ServiceDll of Nsi: "%".
Checking LEGACY_Nsi: ATTENTION!=====> Unable to open LEGACY_Nsi\0000 registry key. The key does not exist.


Connection Status:
==============
Attempt to access Local Host IP returned error: Localhost is blocked: Other errors
LAN connected.
Attempt to access Google IP returned error. Other errors
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============

Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0


System Restore:
============
SDRSVC Service is not running. Checking service configuration:
The start type of SDRSVC service is set to Disabled. The default start type is 3.
The ImagePath of SDRSVC service is OK.
The ServiceDll of SDRSVC service is OK.


System Restore Policy:
========================


Security Center:
============


Windows Update:
============
BITS Service is not running. Checking service configuration:
The start type of BITS service is OK.
The ImagePath of BITS service is OK.
The ServiceDll of BITS service is OK.
Checking LEGACY_BITS: ATTENTION!=====> Unable to open LEGACY_BITS\0000 registry key. The key does not exist.

EventSystem Service is not running. Checking service configuration:
The start type of EventSystem service is set to Disabled. The default start type is Auto.
The ImagePath of EventSystem service is OK.
The ServiceDll of EventSystem service is OK.


Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============

Other Services:
==============


File Check:
========
C:\Windows\system32\nsisvc.dll => File is digitally signed
C:\Windows\system32\Drivers\nsiproxy.sys => File is digitally signed
C:\Windows\system32\dhcpcsvc.dll => File is digitally signed
C:\Windows\system32\Drivers\afd.sys => File is digitally signed
C:\Windows\system32\Drivers\tdx.sys => File is digitally signed
C:\Windows\system32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\system32\dnsrslvr.dll => File is digitally signed
C:\Windows\system32\mpssvc.dll => File is digitally signed
C:\Windows\system32\bfe.dll => File is digitally signed
C:\Windows\system32\Drivers\mpsdrv.sys => File is digitally signed
C:\Windows\system32\SDRSVC.dll => File is digitally signed
C:\Windows\system32\vssvc.exe => File is digitally signed
C:\Windows\system32\wscsvc.dll => File is digitally signed
C:\Windows\system32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\system32\wuaueng.dll => File is digitally signed
C:\Windows\system32\qmgr.dll => File is digitally signed
C:\Windows\system32\es.dll => File is digitally signed
C:\Windows\system32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\system32\ipnathlp.dll => File is digitally signed
C:\Windows\system32\iphlpsvc.dll => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed


**** End of log ****

**************************************

FRST.txt ::


Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-04-2015
Ran by RAJ (administrator) on RAJ-PC on 15-04-2015 12:19:27
Running from C:\Users\RAJ\Desktop
Loaded Profiles: RAJ (Available profiles: RAJ & RAKHIL & MANALI & SMITA)
Platform: Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) OS Language: English (United States)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(PC Tools) C:\Program Files\PC Tools Firewall Plus\FWService.exe
(Microsoft Corporation) C:\windows\System32\SLsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Microsoft Corporation) C:\windows\System32\wbem\unsecapp.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5511352 2015-03-21] (Avast Software s.r.o.)
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\InprocServer32: [Default-pngfilt] <==== ATTENTION!

HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1006\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1005\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1004\User: Group Policy restriction detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = AOL.co.uk
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = msn
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-10-17] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-21] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-17] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {A057A204-BACC-4D26-9990-79A187E2698E} - No File
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2001-05-03] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll [2014-03-11] (Adobe Systems, Inc.)
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2012-11-02] (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2013-12-19] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-10-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-10-17] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-06] (Google)
FF Plugin: @real.com/npracplug;version=1.0.0.0 -> C:\Program Files\Real\RealArcade\Plugins\Mozilla\npracplug.dll [2005-04-27] (RealNetworks)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-13]
FF HKLM\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
FF Extension: Default Manager - C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2011-01-19]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-11]
FF HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Firefox\Extensions: [{e29dd2e6-7c5e-4da6-861f-5e0a9e219c15}] - C:\Program Files\electroLyrics\130.xpi

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-19]
CHR Extension: (Google Docs) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-19]
CHR Extension: (Google Drive) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-07]
CHR Extension: (YouTube) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-07]
CHR Extension: (Adblock Plus) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-02]
CHR Extension: (Google Search) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-07]
CHR Extension: (Google Sheets) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-19]
CHR Extension: (Avast Online Security) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-09-11]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-05]
CHR Extension: (Google Wallet) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
CHR Extension: (Gmail) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-07]
CHR HKLM\...\Chrome\Extension: [bhfamhipccbnledoejgeflahlcamgnam] - C:\Program Files\electroLyrics\130.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-21]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - No Path Or update_url value

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S4 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-21] (Avast Software s.r.o.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-21] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-03-21] (Avast Software)
S4 getPlusHelper; C:\Program Files\NOS\bin\getPlus_Helper.dll [67360 2010-01-25] (NOS Microsystems Ltd.)
S4 gupdate1c9bb97c1ccf3a0; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 PCToolsFirewallPlus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [146800 2008-12-11] (PC Tools)
S4 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [540184 2007-08-07] (PDF Complete Inc)
S4 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-11-04] (Secunia)
S4 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-11-04] (Secunia)
S4 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-03-13] (Ulead Systems, Inc.) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 nsi; % [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R1 archlp; C:\Windows\System32\drivers\archlp.sys [11392 2008-01-29] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-03-21] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-03-21] (Avast Software s.r.o.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-03-21] (Avast Software s.r.o.)
R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12112 2015-03-21] (ALWIL Software)
R0 aswNdis2; C:\Windows\system32\Drivers\aswNdis2.sys [253728 2015-03-21] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [55200 2015-03-21] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-03-21] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-03-21] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427480 2015-03-21] (Avast Software s.r.o.)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57888 2015-03-21] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [206976 2015-03-21] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-06-26] (AVG Technologies)
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [92888 2015-03-27] (Malwarebytes Corporation)
R2 PCTAppEvent; C:\Windows\system32\drivers\PCTAppEvent.sys [73840 2009-03-04] (PC Tools)
R1 pctgntdi; C:\windows\System32\drivers\pctgntdi.sys [159600 2008-12-11] (PC Tools)
R3 pctplfw; C:\windows\System32\drivers\pctplfw.sys [95640 2009-03-04] (PC Tools)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-11-04] (Secunia)
R3 SFilter; C:\Windows\System32\DRIVERS\pctfw.sys [97408 2008-09-22] (PC Tools)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-03-21] (Avast Software)
S3 vsdatant; C:\Windows\system32\vsdatant.sys [394984 2007-06-22] (Zone Labs, LLC)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20061106.064\NAVEX15.SYS [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-15 12:19 - 2015-04-15 12:19 - 00016151 _____ () C:\Users\RAJ\Desktop\FRST.txt
2015-04-15 12:17 - 2015-04-15 12:19 - 00000000 ____D () C:\FRST
2015-04-15 12:16 - 2015-04-15 11:33 - 01136640 _____ (Farbar) C:\Users\RAJ\Desktop\FRST.exe
2015-04-15 12:07 - 2015-04-15 11:10 - 00415232 _____ (Farbar) C:\Users\RAJ\Desktop\FSS (2).exe
2015-04-14 02:04 - 2015-04-14 02:04 - 00015958 _____ () C:\Users\RAJ\Desktop\ComboFix 14 APR SCAN.txt
2015-04-14 01:57 - 2015-04-14 01:57 - 00015958 _____ () C:\ComboFix.txt
2015-04-14 00:44 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-14 00:44 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-14 00:44 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-14 00:43 - 2015-04-14 01:59 - 00000000 ____D () C:\Qoobox
2015-04-14 00:43 - 2015-04-14 01:59 - 00000000 ____D () C:\ComboFix
2015-04-14 00:43 - 2015-04-14 01:27 - 00000000 ____D () C:\Windows\erdnt
2015-04-14 00:40 - 2015-04-13 11:34 - 05617275 ____R (Swearware) C:\Users\RAJ\Desktop\ComboFix.exe
2015-04-14 00:36 - 2015-04-14 00:36 - 00003028 _____ () C:\Users\RAJ\Desktop\ADWCLNR SCAN 14 APR.txt
2015-04-13 23:43 - 2015-04-13 11:27 - 02217984 _____ () C:\Users\RAJ\Desktop\adwcleaner_4.201.exe
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\MSG
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\DAWDA
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\COOK'G
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\COMUNCATNS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\CHILD
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\CFS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\BUSINESS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\AUTO-CAR
2015-04-13 22:30 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\MINU & OTH MP3 SONGS 2-12
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\X
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\UTILITIES Tel,Gas,Mob
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\USA
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\Ulead DVD MovieFactory 4.0 SE for SANYO
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\TRAVEL
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PREETA PIX & OTH
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PERSONL DEVLPMNT
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PATANJALI YOG PEETH
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PASSPORT PIX
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\ORDERED GOODS
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\LEGAL & TRUSTS
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\LANDLORD
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\CRHMS UK
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\ADHYATMA
2015-04-13 22:30 - 2012-06-06 23:35 - 00002048 _____ () C:\Users\RAJ\Documents\Ulead Photo Explorer 8.5 SE Basic.lnk
2015-04-13 22:25 - 2015-04-13 22:25 - 00000000 ____D () C:\Users\RAJ\Documents\SOFTWR PROGRMS
2015-04-13 22:24 - 2015-04-13 22:25 - 00000000 ____D () C:\Users\RAJ\Documents\SNOOKER
2015-04-13 22:24 - 2015-04-13 22:24 - 00000000 ____D () C:\Users\RAJ\Documents\SECURITY
2015-04-13 22:22 - 2015-04-13 23:23 - 00000000 ____D () C:\Users\RAJ\Documents\SANYO_PEX
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\RELATIONSHP
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\POKER
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\MIN EDU USA
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\KNIFE
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\INTEREST'G
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\INSPIRE
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\HINDU
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\HEALTH
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\EMPLYMNT
2015-04-13 22:21 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\My Received Files
2015-04-13 22:21 - 2015-03-25 13:12 - 00000000 ____D () C:\Users\RAJ\Documents\ArcSoft MediaConverter
2015-04-09 00:36 - 2015-04-09 00:36 - 00017652 _____ () C:\Users\RAJ\Desktop\SystemLook.txt
2015-04-09 00:05 - 2015-04-09 00:05 - 00002783 _____ () C:\Users\RAJ\Desktop\MBAN 1.txt
2015-04-02 17:47 - 2015-04-02 17:47 - 00003361 _____ () C:\Users\RAJ\Desktop\ark (2).zip
2015-04-02 17:08 - 2015-04-02 17:08 - 00003361 _____ () C:\Users\RAJ\Desktop\attach.zip
2015-04-02 17:06 - 2015-04-02 17:06 - 00003361 _____ () C:\Users\RAJ\Desktop\ark.zip
2015-04-02 15:11 - 2015-04-02 15:11 - 00002275 _____ () C:\Users\RAJ\Desktop\GMER SCAN LOG.log
2015-04-02 15:10 - 2015-04-02 15:10 - 00002275 _____ () C:\Users\RAJ\Desktop\ark.txt
2015-04-02 13:21 - 2015-04-02 13:21 - 00000269 _____ () C:\Users\RAJ\Desktop\gmer - Shortcut.lnk
2015-04-01 17:51 - 2015-04-01 17:51 - 00008871 _____ () C:\Users\RAJ\Desktop\attach.txt
2015-04-01 17:51 - 2015-04-01 17:51 - 00007378 _____ () C:\Users\RAJ\Desktop\dds.txt
2015-03-26 13:37 - 2015-04-09 00:08 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-26 13:33 - 2015-03-27 12:49 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-26 13:33 - 2015-03-26 13:33 - 00000859 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-26 13:33 - 2015-03-17 07:15 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-26 13:33 - 2015-03-17 07:15 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-26 13:31 - 2015-03-26 13:31 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\RAJ\Downloads\mbam-setup-2.1.4.1018.exe
2015-03-26 13:14 - 2015-03-26 13:14 - 00000000 ____D () C:\Windows\pss
2015-03-25 15:53 - 2015-04-14 03:07 - 00004296 _____ () C:\Windows\PFRO.log
2015-03-23 11:46 - 2015-03-23 11:56 - 00000000 ____D () C:\Windows\system32\vbox
2015-03-21 17:10 - 2015-03-21 17:10 - 00001789 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2015-03-21 17:07 - 2015-03-21 17:06 - 00026096 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswKbd.sys
2015-03-21 17:07 - 2015-03-21 17:05 - 00253728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswNdis2.sys
2015-03-21 17:07 - 2015-03-21 17:01 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-03-21 17:05 - 2015-03-21 17:05 - 00012112 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswNdis.sys
2015-03-21 17:01 - 2015-03-21 17:01 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-15 12:17 - 2008-01-30 20:11 - 00000418 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{0E33D065-2BA1-4925-BF6B-BDAE4D89BF96}.job
2015-04-15 11:59 - 2006-11-02 11:33 - 00826598 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-15 11:58 - 2008-08-09 02:06 - 01220851 _____ () C:\Windows\WindowsUpdate.log
2015-04-15 11:55 - 2009-07-01 14:32 - 00000882 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-15 11:55 - 2008-01-14 20:28 - 00000000 ____D () C:\ProgramData\TEMP
2015-04-15 11:55 - 2006-11-02 13:58 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-15 11:55 - 2006-11-02 13:45 - 00003296 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-15 11:55 - 2006-11-02 13:45 - 00003296 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-14 22:52 - 2006-11-02 13:58 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-14 22:48 - 2014-11-16 20:53 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-14 22:22 - 2009-07-01 14:32 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-14 01:58 - 2014-04-01 12:05 - 00000000 ____D () C:\Users\TEMP
2015-04-14 01:58 - 2006-11-02 12:18 - 00000000 ___RD () C:\Users\Public
2015-04-14 01:14 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-04-14 00:21 - 2014-10-08 21:44 - 00000000 ____D () C:\AdwCleaner
2015-04-13 21:24 - 2008-01-04 05:04 - 00000000 ____D () C:\Users\RAJ
2015-04-02 13:39 - 2009-05-02 23:33 - 00000000 ____D () C:\Windows\Minidump
2015-04-02 13:39 - 2007-10-04 11:29 - 00146355 _____ () C:\Windows\Minidump\Mini040215-01.dmp
2015-03-26 14:23 - 2009-04-12 18:53 - 00000868 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-26 13:18 - 2008-01-04 08:35 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2015-03-26 07:02 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\tracing
2015-03-25 15:51 - 2010-04-14 12:39 - 00000318 _____ () C:\lxbk.log
2015-03-24 20:41 - 2013-09-12 16:11 - 00000000 ____D () C:\Users\RAJ\AppData\Local\Garmin
2015-03-24 20:41 - 2013-09-12 16:06 - 00000000 ____D () C:\ProgramData\Garmin
2015-03-24 20:41 - 2013-09-12 16:05 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-24 20:41 - 2013-06-06 17:36 - 00000000 ____D () C:\Program Files\Garmin
2015-03-24 20:41 - 2013-06-06 16:35 - 00000000 ____D () C:\Users\RAJ\AppData\Roaming\Garmin
2015-03-21 17:01 - 2014-09-11 16:19 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00427480 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00206976 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00057888 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswTdi.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00055200 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys

==================== Files in the root of some directories =======

2008-07-23 21:12 - 2008-07-23 21:12 - 0774144 _____ (RealNetworks, Inc.) C:\Program Files\RngInterstitial.dll
2008-04-13 20:50 - 2008-04-13 20:52 - 0024206 _____ () C:\Users\RAJ\AppData\Roaming\UserTile.png
2010-02-15 20:35 - 2014-01-05 01:17 - 0007160 _____ () C:\Users\RAJ\AppData\Local\d3d9caps.dat
2008-11-26 13:38 - 2010-03-13 03:35 - 0013824 _____ () C:\Users\RAJ\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-06 00:37 - 2012-06-06 00:37 - 0034814 _____ () C:\Users\RAJ\AppData\Local\dt.dat
2010-01-07 00:08 - 2009-11-08 00:08 - 0000032 ____R () C:\ProgramData\hash.dat
2012-06-06 23:35 - 2003-08-14 12:49 - 0000829 ____N () C:\ProgramData\pex.ini

Files to move or delete:
====================
C:\ProgramData\hash.dat


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-15 12:01

==================== End Of Log ============================


*************************************************

Addition.txt ::

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-04-2015
Ran by RAJ at 2015-04-15 12:20:46
Running from C:\Users\RAJ\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: PC Tools Firewall Plus (Enabled) {7352CBFB-3EEC-25C5-276E-DC9378FC688F}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Acrobat.com (HKLM\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe Acrobat 4.0 (HKLM\...\Adobe Acrobat 4.0) (Version: - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
Adobe SVG Viewer 3.0 (HKLM\...\Adobe SVG Viewer) (Version: 3.0 - )
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E14ADE0E-75F3-4A46-87E5-26692DD626EC}) (Version: 6.1.0.13 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft MediaConverter 2.5 (HKLM\...\{A72FC039-FE41-4BAD-B36E-64368EC54B54}) (Version: - ArcSoft)
ArcSoft ShowBiz DVD 2 (HKLM\...\{996F79F5-2ABF-4B9D-A0C0-ACD046AA8008}) (Version: 2.2.2.118 - ArcSoft)
ArcSoft TotalMedia Extreme (HKLM\...\{BC5E28DB-A496-415F-9BCF-374AE8E33AB5}) (Version: 1.0.14.1 - ArcSoft)
ASUSDVD (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: - )
ATI - Software Uninstall Utility (HKLM\...\All ATI Software) (Version: 6.14.10.1016 - )
ATI Catalyst Install Manager (HKLM\...\{1CF703F9-C891-55CB-E16D-94B9E46279FB}) (Version: 3.0.627.0 - ATI Technologies, Inc.)
ATI Catalyst Install Manager (HKLM\...\{4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B}) (Version: 3.0.641.0 - ATI Technologies, Inc.)
Avast Internet Security (HKLM\...\Avast) (Version: 10.2.2214 - AVAST Software)
Bing Rewards Client Installer (Version: 16.0.345.0 - Microsoft Corporation) Hidden
Business Contact Manager for Outlook 2007 SP2 (HKLM\...\Business Contact Manager) (Version: 3.0.8619.1 - Microsoft Corporation)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1 - Microsoft Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
CDPoker (HKLM\...\Club Dice Poker) (Version: - )
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Driving Test Success - All Tests 2012 Edition (HKLM\...\{EF570A1B-7593-4EDB-8AF0-8041F2A7A81B}_is1) (Version: 16.0 - Imagitech Ltd.)
Dropbox (HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Dropbox) (Version: 2.0.22 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM\...\{38DD9AAA-A09A-42FF-A9EE-DA9C84B2E036}) (Version: 1.1.2.0151 - AMD)
FileHippo.com Update Checker (HKLM\...\FileHippo.com) (Version: - )
Garmin Communicator Plugin (HKLM\...\{647BB978-2876-487B-9B0E-FDB73F0EA4A2}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Earth (HKLM\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
Hinduism Today Digital Edition (HKLM\...\Hinduism Today Digital Edition_is1) (Version: - )
HP Backup & Recovery Manager (HKLM\...\{3F9F7336-6DF8-476F-ABF6-C70A17FAF619}) (Version: 4.1.4 enhanced - Hewlett-Packard Company)
HP Product Detection (HKLM\...\{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}) (Version: 9.7.2 - Hewlett-Packard Company)
HP SetRefresh (HKLM\...\{F5242227-2051-4158-AC42-0F2BAA3CD3D6}) (Version: 1.2.1.3 - Hewlett-Packard Company)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: - )
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
InterVideo WinDVD (HKLM\...\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}) (Version: 5.0-B11.1155 - InterVideo Inc.)
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java SE Development Kit 8 Update 11 (HKLM\...\{32A3A4F4-B792-11D6-A78A-00B0D0180110}) (Version: 8.0.110 - Oracle Corporation)
Java(TM) SE Runtime Environment 6 Update 1 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160010}) (Version: 1.6.0.10 - Sun Microsystems, Inc.)
JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2003 Web Components (HKLM\...\{90A40409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Small Business Connectivity Components (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM\...\{90850409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office XP Media Content (HKLM\...\{90300409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2619.0 - Microsoft Corporation)
Microsoft Office XP Professional with FrontPage (HKLM\...\{90280409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Publisher 2002 (HKLM\...\{90190409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{E7084B89-69E0-46B3-A118-8F99D06988CD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
MyFreeCodec (HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\MyFreeCodec) (Version: - )
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
PC Tools Firewall Plus 5.0 (HKLM\...\PC Tools Firewall Plus) (Version: 5.0 - PC Tools)
PDF Complete (HKLM\...\PDF Complete) (Version: - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PokerHost (HKLM\...\PokerHost) (Version: - )
PokerStars (HKLM\...\PokerStars) (Version: - PokerStars)
QuickTime 7 (HKLM\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6873 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Secunia PSI (3.0.0.9015) (HKLM\...\Secunia PSI) (Version: 3.0.0.9015 - Secunia)
Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Ulead DVD MovieFactory 4.0 SE for SANYO (HKLM\...\{448AB2CB-C94A-47DE-80B8-9D7824DEFA57}) (Version: 4.0 - Ulead Systems, Inc.)
Ulead Photo Explorer 8.5 SE Basic (HKLM\...\{025C3792-E9C6-432A-92C1-661F99D021CA}) (Version: 8.5 - Ulead Systems, Inc.)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
USB Audio/Video Driver (HKLM\...\InstallShield_{015C057F-D7B9-4D82-B266-FBCF0178F382}) (Version: 1.00.0000 - )
USB Audio/Video Driver (Version: 1.00.0000 - ) Hidden
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM\...\Windows Media Encoder 9) (Version: - )
Windows Mobile Device Center (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation)
WinRAR 4.20 beta 3 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.3 - win.rar GmbH)
ZTE_1.2059.0.8 (HKLM\...\ZTE_1.2059.0.8) (Version: - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00021401-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00b7e0ab-817a-44ad-a04b-d1148d524136}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F406-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4CF-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4F5-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{30C3B080-30FB-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{53D7E4EF-4DFB-45BE-B9CC-A0243AECB238}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{6A01FDA0-30DF-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7057E952-BD1B-11D1-8919-00C04FC2C836}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\InprocServer32 -> C:\Windows\system32\urlmon.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7c6e29bc-8b8b-4c3d-859e-af6cd158be0f}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c0-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c1-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c2-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c3-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c4-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c5-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c8-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c9-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969ca-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969d6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarManagerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{939A0D04-0E07-48FE-A463-6623B70C3A96}\localserver32 -> "C:\Users\RAJ\AppData\Roaming\ValueApps\IE\ValueApps.exe" No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{A3CCEDF7-2DE2-11D0-86F4-00A0C913F750}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{CD773740-B187-4974-A1D5-E0FF91372277}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{D7B70EE0-4340-11CF-B063-0020AFC2CD35}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E569BDE7-A8DC-47F3-893F-FD2B31B3EEFD}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{EB030009-6D26-11D3-B0F4-00C04F60B2A1}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{F6240000-66DA-4DCD-B1AF-5C59D05C44D5}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InprocServer32 -> No File Path

==================== Restore Points =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2015-04-14 01:12 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {039B8399-2485-408D-9DA9-76B43A573702} - System32\Tasks\{8AF4065A-08D1-48A8-80BB-50F2C338A953} => pcalua.exe -a C:\Users\RAJ\Downloads\gamesFree.exe -d C:\Users\RAJ\Downloads
Task: {09977583-6469-4579-AC2F-D88E5F3CDF5C} - System32\Tasks\{C6493663-0AAB-4FE9-A1EC-B6A437EE45F5} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6TMFPN17\zaasSetup_70_362_000_en[1].exe" -d C:\Users\RAJ
Task: {09FF77AF-451D-42D5-8B8D-722DF90278EF} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - RAJ => C:\Program Files\Windows Calendar\wincal.exe [2009-04-10] (Microsoft Corporation)
Task: {200863E4-EB3B-4685-B7F2-3EA25058F933} - System32\Tasks\{2F9985C7-CCF9-451C-AC1E-E9613C2D1954} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OOI0XGTL\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
Task: {24E837E6-22E4-40CA-AFBA-E840298FFD2C} - System32\Tasks\{A68810BF-554A-473B-9F12-B4C1DA9D8FEA} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GZ80UMY5\epson320037eu[1].exe" -d C:\Users\RAJ\Desktop
Task: {25B04DD9-2AC9-4498-AB33-EEF531997B56} - System32\Tasks\{F95057DD-C0C7-4A68-8BA3-FA343156C0A0} => pcalua.exe -a C:\WINDOWS\ISUNINST.EXE -c -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"
Task: {2E457764-27E7-4B64-A8E8-C79A99A627D1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {2FCD3D2F-9178-404E-9CC2-350857212F40} - System32\Tasks\{CC2FDF14-4AB4-4C92-98D2-82BA9C229BCB} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOAZZ4BZ\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
Task: {329A2827-C775-4FDE-B224-999B02ED5AA9} - System32\Tasks\{F835B388-A406-4F51-AF4F-04EB58385544} => pcalua.exe -a "C:\Program Files\electroLyrics\uninstall.exe"
Task: {3C86078D-68D9-4695-8A0C-86CAC5018341} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {3E2C6916-88C1-48B7-81A4-E7846E1FA4BD} - System32\Tasks\{A51E3F4C-C7E9-4178-9BAD-F494103C7884} => pcalua.exe -a F:\install.exe -d F:\
Task: {53C2FCA9-855E-4294-A056-4F15ABECB52F} - System32\Tasks\{8E1D8974-7A49-48DA-9E54-CCC7CC4E21B4} => pcalua.exe -a C:\Users\RAJ\Documents\arcadegamepFree.exe -d C:\Users\RAJ\Documents
Task: {5A09DAAB-7006-481F-9704-6D22BBD7CFB4} - System32\Tasks\{7D1D0678-B5B1-4F87-91DB-E5C09A71D684} => pcalua.exe -a F:\Setupx.exe -d F:\
Task: {5BDDA938-CA00-4F0E-8323-C19080D08A7A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1291136695-2564591854-1091026493-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {63DF1438-BE2B-4C37-9595-D40D45700174} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-18] (Google)
Task: {6633D1DA-95B0-4B1B-94B3-D7DCFAA5CBA1} - System32\Tasks\Microsoft\Office Genuine Advantage\OGALogon => C:\Windows\system32\OGAExec.exe [2009-08-03] ()
Task: {66A2A4F6-BB9E-4DF7-8C52-761F477A63A5} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1291136695-2564591854-1091026493-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {7760087E-D8CF-45AC-BD9B-F4C756C65D86} - System32\Tasks\{8F358102-2563-4671-8161-4376FE24E1F1} => pcalua.exe -a G:\MSASYNC_WWE.EXE -d G:\
Task: {86A47DA2-6371-421B-BEAF-009B5C99196B} - System32\Tasks\Microsoft\Windows\RestartManager\{0316A6C8-192D-4797-9B11-9D14D18B0632} => C:\Windows\system32\rmclient.exe [2006-11-02] (Microsoft Corporation)
Task: {8A317128-B102-4EAD-9917-FC5FC9A990AF} - \electroLyrics Update No Task File <==== ATTENTION
Task: {990D683C-227B-4E52-8837-51B858770D91} - System32\Tasks\{E946C6AC-071B-4129-810F-19C2EB9E324D} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SVDHDEEV\sp36740[1].exe" -d C:\Windows\system32
Task: {991936E5-FA56-4B8C-9FAC-734C9DD9CD1E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9DF24723-FBE0-4251-B3A7-4129DEB41FC8} - System32\Tasks\{85D8EA08-02EE-4825-878A-B84AE23D4165} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15_eng[1].exe" -d C:\Windows\system32
Task: {A17919FE-CE1B-4C18-943F-542EF559C867} - System32\Tasks\{817ACABE-393F-4261-9DE9-799A1F177406} => C:\Program Files\Skype\Phone\Skype.exe
Task: {A37B63AA-FBCB-4506-B00C-49ADF062CAAC} - System32\Tasks\{B1087782-4ED9-4AB2-B6B7-9A93AF854211} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MVKF1IU2\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
Task: {A59BDF61-9776-422C-9649-44C315B0F743} - System32\Tasks\{935695EF-2E7C-4416-B626-F6151684B7C0} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MIAKCS67\NVE-3.1.0.25_eng[1].exe" -d C:\Windows\system32
Task: {A8D14AD6-E4A8-4E94-A623-B978881C94DE} - System32\Tasks\{EEF06578-EC32-4026-A791-0F4579B2DCFA} => pcalua.exe -a "C:\Program Files\PokerHost\uninstall.exe"
Task: {A8F46329-33EC-4895-B3AE-07C6D7A64DA4} - System32\Tasks\{DD31C027-608D-4E0E-A290-034B3D44E952} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUSMK2SA\sp43003[1].exe" -d C:\Users\RAJ\Desktop
Task: {B02F825A-91DA-4A7F-9C29-9115760B68FD} - System32\Tasks\{4C14E304-955E-45FA-8741-631DD57F91A4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15a[1].exe" -d C:\Windows\system32
Task: {B3C50AB1-EE4C-4AB3-A2F5-9F7E5A047886} - System32\Tasks\{7728FBA9-7A7B-4A8C-827F-83E8B56FBC0C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK319B7N\sp41879[1].exe" -d C:\Users\RAJ\Desktop
Task: {B6B46DE0-5E6E-497C-A7B2-38839865379D} - System32\Tasks\{ED213DD0-4632-41BF-BFFB-6F9CF2E172B1} => pcalua.exe -a F:\INSTMSI.EXE -d F:\
Task: {BDA88B60-FDDC-43F8-BE02-483D6A24E123} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {BE2D421C-2B24-4E4A-B3DA-C933AB4566A8} - System32\Tasks\{1CEECA12-A1E2-427C-B8BF-DED0E53398E2} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\NMP-1.4.0.35b[1].exe" -d C:\Windows\system32
Task: {BE368C08-F7A9-4239-AB11-164D99B106D5} - System32\Tasks\{182E446E-05CA-48DC-BAF9-D2D32E2690E4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\InCD-4.3.23.2[1].exe" -d C:\Windows\system32
Task: {C1E836FB-D8E7-4F41-BACB-5E92D13F183B} - System32\Tasks\{20045C68-266D-4A51-8E2D-9ED74DB43A24} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZZDXGSZT\SetupPoker[1].exe" -d C:\Users\RAJ
Task: {C2A85A4A-5676-48F0-A51A-057E248169FF} - System32\Tasks\{FB6D28FC-03FF-4CDC-AC0E-84DA6D7E67EF} => pcalua.exe -a F:\install.exe -d F:\
Task: {D0B4F229-D9A7-4CB0-B62A-4089F6DE9CA7} - System32\Tasks\{0158A7B6-A612-4C59-9E09-13A6F5539CA3} => pcalua.exe -a "C:\Program Files\QuickTime\QTSystem\QuickTime.cpl"
Task: {D65F2397-DB65-42D8-BE2C-48F36692A8AB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-06] (Adobe Systems Incorporated)
Task: {DD252486-7D42-42B4-8A8A-7AC7AFDF08AD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {DF90B2AD-9F52-4A49-8A12-7261B6EAE0CE} - System32\Tasks\{53D593C2-8FE6-4043-B37C-B9EB4AC69FA7} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTN0UE9P\sp34615[1].exe" -d C:\Windows\system32
Task: {EF12A234-0DFD-4653-BC3C-5C06FC7FA027} - System32\Tasks\{724BC68F-6E34-42C3-B1E0-8F3E51C5251C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\LimeWireWin[1].exe" -d C:\Users\RAJ
Task: {F5B11F64-A62F-48A3-8083-9F5879E45276} - System32\Tasks\{6A4345A8-D00D-4722-BB3F-231119823718} => pcalua.exe -a F:\ie6setup.exe -d F:\
Task: {F87A6AD1-7B74-4E44-A0C6-43072133B6A6} - System32\Tasks\{2D6FDA70-8FE1-4EE8-A434-0E4E55A51A0A} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9BQH1L1D\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
Task: {F9A05307-3E26-493D-8D6E-8C5C4955EDCF} - System32\Tasks\{B2A84B01-510D-474B-978A-099718BFF8AD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1B897UL3\sp36740[1].exe" -d C:\Users\RAJ\Desktop
Task: {F9E19298-D85D-4EB3-989C-362D1A255EA3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-21] (Avast Software s.r.o.)
Task: {FA5B99FD-63FE-4A0E-BF21-91CEBC669C29} - System32\Tasks\{219D8A32-FD4C-405B-B8B8-AF49473237CD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\79358QAL\sp34615[1].exe" -d C:\Users\RAJ

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{0E33D065-2BA1-4925-BF6B-BDAE4D89BF96}.job => C:\Windows\system32\msfeedssync.exe

==================== Loaded Modules (whitelisted) ==============

2015-03-21 17:01 - 2015-03-21 17:01 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-03-27 12:40 - 2015-03-27 12:40 - 02923008 _____ () C:\Program Files\AVAST Software\Avast\defs\15032700\algo.dll
2007-07-27 08:35 - 2007-07-27 07:35 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2015-03-14 14:41 - 2015-03-21 17:01 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Program Files\DoylesRoom:MID
AlternateDataStreams: C:\Program Files\PokerHost:MID
AlternateDataStreams: C:\ProgramData\TEMP:0B4227B4
AlternateDataStreams: C:\ProgramData\TEMP:1CA73D29
AlternateDataStreams: C:\ProgramData\TEMP:C31F31E6

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.254

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: ACDaemon => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AeLookupSvc => 2
MSCONFIG\Services: ALG => 3
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Ati External Event Utility => 2
MSCONFIG\Services: AudioEndpointBuilder => 2
MSCONFIG\Services: Audiosrv => 2
MSCONFIG\Services: BcmSqlStartupSvc => 2
MSCONFIG\Services: BITS => 2
MSCONFIG\Services: Browser => 2
MSCONFIG\Services: CertPropSvc => 3
MSCONFIG\Services: clr_optimization_v2.0.50727_32 => 3
MSCONFIG\Services: clr_optimization_v4.0.30319_32 => 2
MSCONFIG\Services: COMSysApp => 3
MSCONFIG\Services: CryptSvc => 2
MSCONFIG\Services: DFSR => 3
MSCONFIG\Services: Dhcp => 2
MSCONFIG\Services: Dnscache => 2
MSCONFIG\Services: dot3svc => 3
MSCONFIG\Services: DPS => 2
MSCONFIG\Services: EapHost => 3
MSCONFIG\Services: EMDMgmt => 2
MSCONFIG\Services: Eventlog => 2
MSCONFIG\Services: EventSystem => 2
MSCONFIG\Services: fdPHost => 3
MSCONFIG\Services: FDResPub => 3
MSCONFIG\Services: FontCache => 2
MSCONFIG\Services: FontCache3.0.0.0 => 3
MSCONFIG\Services: fsssvc => 3
MSCONFIG\Services: Garmin Core Update Service => 2
MSCONFIG\Services: getPlusHelper => 3
MSCONFIG\Services: gupdate1c9bb97c1ccf3a0 => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 2
MSCONFIG\Services: hidserv => 3
MSCONFIG\Services: hkmsvc => 3
MSCONFIG\Services: idsvc => 3
MSCONFIG\Services: IKEEXT => 2
MSCONFIG\Services: IPBusEnum => 3
MSCONFIG\Services: iphlpsvc => 2
MSCONFIG\Services: IviRegMgr => 2
MSCONFIG\Services: KeyIso => 3
MSCONFIG\Services: KtmRm => 2
MSCONFIG\Services: LanmanServer => 2
MSCONFIG\Services: LanmanWorkstation => 2
MSCONFIG\Services: lltdsvc => 3
MSCONFIG\Services: lmhosts => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: MMCSS => 2
MSCONFIG\Services: MpsSvc => 2
MSCONFIG\Services: MSDTC => 3
MSCONFIG\Services: MSiSCSI => 3
MSCONFIG\Services: MSIServer => 3
MSCONFIG\Services: MSSQL$MSSMLBIZ => 3
MSCONFIG\Services: napagent => 3
MSCONFIG\Services: Netlogon => 3
MSCONFIG\Services: Netman => 3
MSCONFIG\Services: netprofm => 2
MSCONFIG\Services: NlaSvc => 2
MSCONFIG\Services: nosGetPlusHelper => 3
MSCONFIG\Services: nsi => 2
MSCONFIG\Services: odserv => 3
MSCONFIG\Services: ose => 3
MSCONFIG\Services: p2pimsvc => 3
MSCONFIG\Services: p2psvc => 3
MSCONFIG\Services: PcaSvc => 2
MSCONFIG\Services: pdfcDispatcher => 2
MSCONFIG\Services: pla => 3
MSCONFIG\Services: PNRPAutoReg => 3
MSCONFIG\Services: PNRPsvc => 3
MSCONFIG\Services: PolicyAgent => 2
MSCONFIG\Services: ProtectedStorage => 3
MSCONFIG\Services: QWAVE => 3
MSCONFIG\Services: RapiMgr => 2
MSCONFIG\Services: RasAuto => 3
MSCONFIG\Services: RasMan => 3
MSCONFIG\Services: RemoteRegistry => 3
MSCONFIG\Services: RpcLocator => 3
MSCONFIG\Services: SamSs => 2
MSCONFIG\Services: SCardSvr => 3
MSCONFIG\Services: SCPolicySvc => 3
MSCONFIG\Services: SDRSVC => 3
MSCONFIG\Services: seclogon => 2
MSCONFIG\Services: Secunia PSI Agent => 2
MSCONFIG\Services: Secunia Update Agent => 2
MSCONFIG\Services: SENS => 2
MSCONFIG\Services: SessionEnv => 3
MSCONFIG\Services: ShellHWDetection => 2
MSCONFIG\Services: SLUINotify => 3
MSCONFIG\Services: SNMPTRAP => 3
MSCONFIG\Services: Spooler => 2
MSCONFIG\Services: SQLBrowser => 2
MSCONFIG\Services: SQLWriter => 2
MSCONFIG\Services: SSDPSRV => 3
MSCONFIG\Services: SstpSvc => 3
MSCONFIG\Services: stisvc => 2
MSCONFIG\Services: swprv => 3
MSCONFIG\Services: SysMain => 2
MSCONFIG\Services: TabletInputService => 2
MSCONFIG\Services: TapiSrv => 3
MSCONFIG\Services: TBS => 2
MSCONFIG\Services: TermService => 2
MSCONFIG\Services: Themes => 2
MSCONFIG\Services: THREADORDER => 3
MSCONFIG\Services: TrkWks => 2
MSCONFIG\Services: TrustedInstaller => 3
MSCONFIG\Services: UI0Detect => 3
MSCONFIG\Services: UleadBurningHelper => 2
MSCONFIG\Services: upnphost => 3
MSCONFIG\Services: UxSms => 2
MSCONFIG\Services: vds => 3
MSCONFIG\Services: VSS => 3
MSCONFIG\Services: W32Time => 2
MSCONFIG\Services: WcesComm => 2
MSCONFIG\Services: wcncsvc => 3
MSCONFIG\Services: WcsPlugInService => 3
MSCONFIG\Services: WdiServiceHost => 3
MSCONFIG\Services: WdiSystemHost => 3
MSCONFIG\Services: WebClient => 2
MSCONFIG\Services: Wecsvc => 3
MSCONFIG\Services: wercplsupport => 3
MSCONFIG\Services: WerSvc => 2
MSCONFIG\Services: WinDefend => 2
MSCONFIG\Services: WinHttpAutoProxySvc => 3
MSCONFIG\Services: Winmgmt => 2
MSCONFIG\Services: WinRM => 3
MSCONFIG\Services: Wlansvc => 3
MSCONFIG\Services: wlidsvc => 2
MSCONFIG\Services: wmiApSrv => 3
MSCONFIG\Services: WMPNetworkSvc => 3
MSCONFIG\Services: WPCSvc => 2
MSCONFIG\Services: WPDBusEnum => 2
MSCONFIG\Services: WPFFontCache_v0400 => 3
MSCONFIG\Services: wscsvc => 2
MSCONFIG\Services: WSearch => 2
MSCONFIG\Services: wuauserv => 2
MSCONFIG\Services: wudfsvc => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup
MSCONFIG\startupreg: 00PCTFW => "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
MSCONFIG\startupreg: amd_dc_opt => C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
MSCONFIG\startupreg: Microsoft Default Manager => "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
MSCONFIG\startupreg: MsnMsgr => "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
MSCONFIG\startupreg: PDF Complete => "C:\Program Files\PDF Complete\pdfsty.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RemoteControl => "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
MSCONFIG\startupreg: SetRefresh => C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe
MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide
MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe
MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe
MSCONFIG\startupreg: WPCUMI => C:\Windows\system32\WpcUmi.exe

==================== Accounts: =============================

Administrator (S-1-5-21-1291136695-2564591854-1091026493-500 - Administrator - Disabled)
Guest (S-1-5-21-1291136695-2564591854-1091026493-501 - Limited - Disabled)
MANALI (S-1-5-21-1291136695-2564591854-1091026493-1005 - Limited - Enabled) => C:\Users\MANALI.RAJ-PC
RAJ (S-1-5-21-1291136695-2564591854-1091026493-1003 - Administrator - Enabled) => C:\Users\RAJ
RAKHIL (S-1-5-21-1291136695-2564591854-1091026493-1004 - Limited - Enabled) => C:\Users\RAKHIL.RAJ-PC
SMITA (S-1-5-21-1291136695-2564591854-1091026493-1006 - Limited - Enabled) => C:\Users\SMITA

==================== Faulty Device Manager Devices =============

Name: Microsoft 6to4 Adapter #5
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Microsoft 6to4 Adapter #6
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: isatap.{5C88CA14-ED28-46DC-AD4C-00E7FFDB29A1}
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Microsoft ISATAP Adapter #8
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer:
Service:
Problem: : Reinstall the drivers for this device. (Code 18)
Resolution: The drivers for this device must be reinstalled.
Click "Update Driver", which starts the Hardware Update wizard.
Alternately, uninstall the driver, and then click "Scan for hardware changes" to reload the drivers.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/15/2015 00:20:48 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422].


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Query Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 13
Snapshot Context: 13
Execution Context: Coordinator

Error: (04/15/2015 00:20:48 PM) (Source: VSS) (EventID: 40) (User: )
Description: Volume Shadow Copy Service error: The Microsoft Software Shadow Copy Provider (SWPRV) service is
disabled. Please enable the service and try again.


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Query Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 13
Snapshot Context: 13
Execution Context: Coordinator

Error: (04/15/2015 00:08:58 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp4580070422

Error: (04/15/2015 00:05:03 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "1".Error in manifest or policy file "2" on line 3.
Invalid Xml syntax.

Error: (04/15/2015 00:00:22 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "1".Error in manifest or policy file "2" on line 3.
Invalid Xml syntax.

Error: (04/15/2015 11:58:50 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point on volume (Process = C:\Windows\system32\svchost.exe -k netsvcs; Descripton = Windows Update; Hr = 0x8000ffff).

Error: (04/15/2015 11:58:50 AM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422].


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Delete Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 0
Snapshot Context: 0
Execution Context: Coordinator

Error: (04/15/2015 11:58:50 AM) (Source: VSS) (EventID: 40) (User: )
Description: Volume Shadow Copy Service error: The Microsoft Software Shadow Copy Provider (SWPRV) service is
disabled. Please enable the service and try again.


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Delete Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 0
Snapshot Context: 0
Execution Context: Coordinator

Error: (04/15/2015 11:58:50 AM) (Source: VSS) (EventID: 12292) (User: )
Description: Volume Shadow Copy Service error: Error creating the Shadow Copy Provider COM class with CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422].


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Query Shadow Copies
Delete Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 0
Snapshot Context: 0
Execution Context: Coordinator
Execution Context: Coordinator

Error: (04/15/2015 11:58:50 AM) (Source: VSS) (EventID: 40) (User: )
Description: Volume Shadow Copy Service error: The Microsoft Software Shadow Copy Provider (SWPRV) service is
disabled. Please enable the service and try again.


Operation:
Obtain a callable interface for this provider
List interfaces for all providers supporting this context
Query Shadow Copies
Delete Shadow Copies

Context:
Provider ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Class ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshot Context: 0
Snapshot Context: 0
Execution Context: Coordinator
Execution Context: Coordinator


System errors:
=============
Error: (04/15/2015 00:09:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Background Intelligent Transfer ServiceCOM+ Event System%%1058

Error: (04/15/2015 00:07:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Background Intelligent Transfer ServiceCOM+ Event System%%1058

Error: (04/15/2015 00:07:59 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1068BITS{4991D34B-80A1-4291-83B6-3328366B9097}

Error: (04/15/2015 00:05:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068

Error: (04/15/2015 00:05:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: DHCP ClientNetwork Store Interface Service%%1075

Error: (04/15/2015 00:05:00 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Network Store Interface Servicey

Error: (04/15/2015 00:04:49 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068

Error: (04/15/2015 00:04:49 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: DHCP ClientNetwork Store Interface Service%%1075

Error: (04/15/2015 00:04:49 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Network Store Interface Servicey

Error: (04/15/2015 00:04:46 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068


Microsoft Office Sessions:
=========================
Error: (06/17/2010 02:22:10 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6535.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 34 seconds with 0 seconds of active time. This session ended with a crash.


CodeIntegrity Errors:
===================================
Date: 2015-04-15 12:20:27.379
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:26.100
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:24.805
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:23.511
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:22.060
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:20.765
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:19.470
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:20:18.191
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:19:46.819
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-15 12:19:45.525
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
Percentage of memory in use: 41%
Total physical RAM: 1917.83 MB
Available physical RAM: 1128.54 MB
Total Pagefile: 4078.14 MB
Available Pagefile: 3345.95 MB
Total Virtual: 2047.88 MB
Available Virtual: 1881.18 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:218.87 GB) (Free:91.73 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (HP_RECOVERY) (Fixed) (Total:12.05 GB) (Free:6.97 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (OS_TOOLS) (Fixed) (Total:1.96 GB) (Free:1.56 GB) NTFS
Drive h: () (Removable) (Total:1.87 GB) (Free:1.84 GB) FAT

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: D904B864)
Partition 1: (Active) - (Size=218.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=12.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=2 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 1.9 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================

That's it for now Chemist.
most sincerely, mg222
 
#10 ·
Hello again, mg222. You're very welcome!

Please explain why all these services and startups have been disabled under msconfig:

MSCONFIG\Services: ACDaemon => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AeLookupSvc => 2
MSCONFIG\Services: ALG => 3
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Ati External Event Utility => 2
MSCONFIG\Services: AudioEndpointBuilder => 2
MSCONFIG\Services: Audiosrv => 2
MSCONFIG\Services: BcmSqlStartupSvc => 2
MSCONFIG\Services: BITS => 2
MSCONFIG\Services: Browser => 2
MSCONFIG\Services: CertPropSvc => 3
MSCONFIG\Services: clr_optimization_v2.0.50727_32 => 3
MSCONFIG\Services: clr_optimization_v4.0.30319_32 => 2
MSCONFIG\Services: COMSysApp => 3
MSCONFIG\Services: CryptSvc => 2
MSCONFIG\Services: DFSR => 3
MSCONFIG\Services: Dhcp => 2
MSCONFIG\Services: Dnscache => 2
MSCONFIG\Services: dot3svc => 3
MSCONFIG\Services: DPS => 2
MSCONFIG\Services: EapHost => 3
MSCONFIG\Services: EMDMgmt => 2
MSCONFIG\Services: Eventlog => 2
MSCONFIG\Services: EventSystem => 2
MSCONFIG\Services: fdPHost => 3
MSCONFIG\Services: FDResPub => 3
MSCONFIG\Services: FontCache => 2
MSCONFIG\Services: FontCache3.0.0.0 => 3
MSCONFIG\Services: fsssvc => 3
MSCONFIG\Services: Garmin Core Update Service => 2
MSCONFIG\Services: getPlusHelper => 3
MSCONFIG\Services: gupdate1c9bb97c1ccf3a0 => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 2
MSCONFIG\Services: hidserv => 3
MSCONFIG\Services: hkmsvc => 3
MSCONFIG\Services: idsvc => 3
MSCONFIG\Services: IKEEXT => 2
MSCONFIG\Services: IPBusEnum => 3
MSCONFIG\Services: iphlpsvc => 2
MSCONFIG\Services: IviRegMgr => 2
MSCONFIG\Services: KeyIso => 3
MSCONFIG\Services: KtmRm => 2
MSCONFIG\Services: LanmanServer => 2
MSCONFIG\Services: LanmanWorkstation => 2
MSCONFIG\Services: lltdsvc => 3
MSCONFIG\Services: lmhosts => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: MMCSS => 2
MSCONFIG\Services: MpsSvc => 2
MSCONFIG\Services: MSDTC => 3
MSCONFIG\Services: MSiSCSI => 3
MSCONFIG\Services: MSIServer => 3
MSCONFIG\Services: MSSQL$MSSMLBIZ => 3
MSCONFIG\Services: napagent => 3
MSCONFIG\Services: Netlogon => 3
MSCONFIG\Services: Netman => 3
MSCONFIG\Services: netprofm => 2
MSCONFIG\Services: NlaSvc => 2
MSCONFIG\Services: nosGetPlusHelper => 3
MSCONFIG\Services: nsi => 2
MSCONFIG\Services: odserv => 3
MSCONFIG\Services: ose => 3
MSCONFIG\Services: p2pimsvc => 3
MSCONFIG\Services: p2psvc => 3
MSCONFIG\Services: PcaSvc => 2
MSCONFIG\Services: pdfcDispatcher => 2
MSCONFIG\Services: pla => 3
MSCONFIG\Services: PNRPAutoReg => 3
MSCONFIG\Services: PNRPsvc => 3
MSCONFIG\Services: PolicyAgent => 2
MSCONFIG\Services: ProtectedStorage => 3
MSCONFIG\Services: QWAVE => 3
MSCONFIG\Services: RapiMgr => 2
MSCONFIG\Services: RasAuto => 3
MSCONFIG\Services: RasMan => 3
MSCONFIG\Services: RemoteRegistry => 3
MSCONFIG\Services: RpcLocator => 3
MSCONFIG\Services: SamSs => 2
MSCONFIG\Services: SCardSvr => 3
MSCONFIG\Services: SCPolicySvc => 3
MSCONFIG\Services: SDRSVC => 3
MSCONFIG\Services: seclogon => 2
MSCONFIG\Services: Secunia PSI Agent => 2
MSCONFIG\Services: Secunia Update Agent => 2
MSCONFIG\Services: SENS => 2
MSCONFIG\Services: SessionEnv => 3
MSCONFIG\Services: ShellHWDetection => 2
MSCONFIG\Services: SLUINotify => 3
MSCONFIG\Services: SNMPTRAP => 3
MSCONFIG\Services: Spooler => 2
MSCONFIG\Services: SQLBrowser => 2
MSCONFIG\Services: SQLWriter => 2
MSCONFIG\Services: SSDPSRV => 3
MSCONFIG\Services: SstpSvc => 3
MSCONFIG\Services: stisvc => 2
MSCONFIG\Services: swprv => 3
MSCONFIG\Services: SysMain => 2
MSCONFIG\Services: TabletInputService => 2
MSCONFIG\Services: TapiSrv => 3
MSCONFIG\Services: TBS => 2
MSCONFIG\Services: TermService => 2
MSCONFIG\Services: Themes => 2
MSCONFIG\Services: THREADORDER => 3
MSCONFIG\Services: TrkWks => 2
MSCONFIG\Services: TrustedInstaller => 3
MSCONFIG\Services: UI0Detect => 3
MSCONFIG\Services: UleadBurningHelper => 2
MSCONFIG\Services: upnphost => 3
MSCONFIG\Services: UxSms => 2
MSCONFIG\Services: vds => 3
MSCONFIG\Services: VSS => 3
MSCONFIG\Services: W32Time => 2
MSCONFIG\Services: WcesComm => 2
MSCONFIG\Services: wcncsvc => 3
MSCONFIG\Services: WcsPlugInService => 3
MSCONFIG\Services: WdiServiceHost => 3
MSCONFIG\Services: WdiSystemHost => 3
MSCONFIG\Services: WebClient => 2
MSCONFIG\Services: Wecsvc => 3
MSCONFIG\Services: wercplsupport => 3
MSCONFIG\Services: WerSvc => 2
MSCONFIG\Services: WinDefend => 2
MSCONFIG\Services: WinHttpAutoProxySvc => 3
MSCONFIG\Services: Winmgmt => 2
MSCONFIG\Services: WinRM => 3
MSCONFIG\Services: Wlansvc => 3
MSCONFIG\Services: wlidsvc => 2
MSCONFIG\Services: wmiApSrv => 3
MSCONFIG\Services: WMPNetworkSvc => 3
MSCONFIG\Services: WPCSvc => 2
MSCONFIG\Services: WPDBusEnum => 2
MSCONFIG\Services: WPFFontCache_v0400 => 3
MSCONFIG\Services: wscsvc => 2
MSCONFIG\Services: WSearch => 2
MSCONFIG\Services: wuauserv => 2
MSCONFIG\Services: wudfsvc => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup
MSCONFIG\startupreg: 00PCTFW => "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
MSCONFIG\startupreg: amd_dc_opt => C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
MSCONFIG\startupreg: Microsoft Default Manager => "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
MSCONFIG\startupreg: MsnMsgr => "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
MSCONFIG\startupreg: PDF Complete => "C:\Program Files\PDF Complete\pdfsty.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RemoteControl => "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
MSCONFIG\startupreg: SetRefresh => C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe
MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide
MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe
MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe
MSCONFIG\startupreg: WPCUMI => C:\Windows\system32\WpcUmi.exe
------------------------------------------------------
 
#11 ·
Hi Chemist,
again thankyou for that feedback.

WOW, All them files disabled!

I am sorry if have come across as Tech-Savvy...

Chemist, please I have no idea at all about those files / programmes... I dont even know what most of them are and if I wanted to disable them i wouldnt kno where to start.

The only thing I remember disabling is the part of Avast that was over-riding / hijacking some of the ChromeGoogle attributes.

Over to you, Boss.
rgds, mg222
 
#12 ·
Hi Chemist,
My apologies, I should have also mentioned:

You are the only person who has access to my PC [technically].
I only turn it on when you ask me to run something. Please, nothing else at all has been done to the PC after I requested assistance from TechSupportForum. And it will remain so, as I respect the hard work you guys are giving to the Community.

The one I might messed up with maybe:
On Apr 14th you asked me to run, here in lay mans terms:
MBAM Fixdamage.exe if not fixed, then run REGEDIT4... In my earnestto get the PC running, I think after both failed, I repeated the 1st and then the 2nd...

I now realise it was probably a dumb to do, sorry if that has caused problems.

rgds, mg222
 
#13 ·
Hello again, mg222. Sorry, I should have worded that differently. I didn't mean to imply you did it, or did it intentionally.

OK, first you need to re-enable all those entries.

Press the Windows "logo" key and "R" key then type msconfig into the Run box and click OK:

Under the 'Services' tab, click 'Enable All' > 'Apply'.

Under the 'Startup' tab, click 'Enable All' > 'Apply' > 'Close' > 'Restart'.

Are you able to connect now? If not, I need to see fresh logs from FSS and FRST as before.

Make sure you delete the previous logs and post the fresh ones.

------------------------------------------------------
  • Run FSS.exe again.
  • Make sure the Internet Services option remains checked.
  • Check all the other boxes.
  • Click Scan.
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log in your next reply.
------------------------------------------------------

Also...
  • Double-click FRST.exe to run it. When the tool opens click Yes to the disclaimer.
  • Make sure the Addition.txt button is ticked.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply.
------------------------------------------------------
 
#14 ·
Hi Chemist, thank you for that.

I have done as per above. The scan /logs went straightfwd. Please find attched the logs:

FSS::

Farbar Service Scanner Version: 17-01-2015
Ran by RAJ (administrator) on 16-04-2015 at 23:54:26
Running from "H:\"
Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============
Dhcp Service is not running. Checking service configuration:
The start type of Dhcp service is OK.
The ImagePath of Dhcp service is OK.
The ServiceDll of Dhcp service is OK.

Nsi Service is not running. Checking service configuration:
The start type of Nsi service is OK.
The ImagePath of Nsi: "%".
The ServiceDll of Nsi: "%".
Checking LEGACY_Nsi: ATTENTION!=====> Unable to open LEGACY_Nsi\0000 registry key. The key does not exist.


Connection Status:
==============
Attempt to access Local Host IP returned error: Localhost is blocked: Other errors
There is no connection to network.
Attempt to access Google IP returned error. Other errors
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============

Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0


System Restore:
============

System Restore Policy:
========================


Security Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============

Other Services:
==============


File Check:
========
C:\Windows\system32\nsisvc.dll => File is digitally signed
C:\Windows\system32\Drivers\nsiproxy.sys => File is digitally signed
C:\Windows\system32\dhcpcsvc.dll => File is digitally signed
C:\Windows\system32\Drivers\afd.sys => File is digitally signed
C:\Windows\system32\Drivers\tdx.sys => File is digitally signed
C:\Windows\system32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\system32\dnsrslvr.dll => File is digitally signed
C:\Windows\system32\mpssvc.dll => File is digitally signed
C:\Windows\system32\bfe.dll => File is digitally signed
C:\Windows\system32\Drivers\mpsdrv.sys => File is digitally signed
C:\Windows\system32\SDRSVC.dll => File is digitally signed
C:\Windows\system32\vssvc.exe => File is digitally signed
C:\Windows\system32\wscsvc.dll => File is digitally signed
C:\Windows\system32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\system32\wuaueng.dll => File is digitally signed
C:\Windows\system32\qmgr.dll => File is digitally signed
C:\Windows\system32\es.dll => File is digitally signed
C:\Windows\system32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\system32\ipnathlp.dll => File is digitally signed
C:\Windows\system32\iphlpsvc.dll => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed


**** End of log ****


FRST::

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-04-2015 04
Ran by RAJ (administrator) on RAJ-PC on 17-04-2015 00:21:40
Running from C:\Users\RAJ\Desktop
Loaded Profiles: RAJ (Available profiles: RAJ & RAKHIL & MANALI & SMITA)
Platform: Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) OS Language: English (United States)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(PC Tools) C:\Program Files\PC Tools Firewall Plus\FWService.exe
(ATI Technologies Inc.) C:\windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\windows\System32\SLsvc.exe
(ATI Technologies Inc.) C:\windows\System32\Ati2evxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
(InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(Secunia) C:\Program Files\Secunia\PSI\sua.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\windows\System32\wpcumi.exe
(Cyberlink Corp.) C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsty.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(PC Tools) C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Microsoft Corporation) C:\windows\System32\wbem\unsecapp.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5511352 2015-03-21] (Avast Software s.r.o.)
HKLM\...\Run: [WPCUMI] => C:\Windows\system32\WpcUmi.exe [176128 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [648072 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-19] (Microsoft Corporation)
HKLM\...\Run: [SetRefresh] => C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe [525824 2003-11-20] (Hewlett-Packard Company)
HKLM\...\Run: [RemoteControl] => C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe [32768 2004-11-02] (Cyberlink Corp.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [331288 2007-08-07] (PDF Complete Inc)
HKLM\...\Run: [Microsoft Default Manager] => C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [439568 2010-05-10] (Microsoft Corporation)
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [amd_dc_opt] => C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2007-03-14] (AMD)
HKLM\...\Run: [00PCTFW] => C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2652056 2009-03-04] (PC Tools)
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Run: [MsnMsgr] => C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [4280184 2012-03-08] (Microsoft Corporation)
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\InprocServer32: [Default-pngfilt] <==== ATTENTION!

HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1006\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1005\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1004\User: Group Policy restriction detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = AOL.co.uk
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = msn
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-10-17] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-21] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-17] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {A057A204-BACC-4D26-9990-79A187E2698E} - No File
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2001-05-03] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll [2014-03-11] (Adobe Systems, Inc.)
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2012-11-02] (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2013-12-19] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-10-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-10-17] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-06] (Google)
FF Plugin: @real.com/npracplug;version=1.0.0.0 -> C:\Program Files\Real\RealArcade\Plugins\Mozilla\npracplug.dll [2005-04-27] (RealNetworks)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-13]
FF HKLM\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
FF Extension: Default Manager - C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2011-01-19]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-11]
FF HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Firefox\Extensions: [{e29dd2e6-7c5e-4da6-861f-5e0a9e219c15}] - C:\Program Files\electroLyrics\130.xpi

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://google.co.uk/"
CHR Profile: C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-19]
CHR Extension: (Google Docs) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-19]
CHR Extension: (Google Drive) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-07]
CHR Extension: (YouTube) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-07]
CHR Extension: (Adblock Plus) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-02]
CHR Extension: (Google Search) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-07]
CHR Extension: (Google Sheets) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-19]
CHR Extension: (Avast Online Security) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-09-11]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-05]
CHR Extension: (Google Wallet) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
CHR Extension: (Gmail) - C:\Users\RAJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-07]
CHR HKLM\...\Chrome\Extension: [bhfamhipccbnledoejgeflahlcamgnam] - C:\Program Files\electroLyrics\130.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-21]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - No Path Or update_url value

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-21] (Avast Software s.r.o.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-21] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-03-21] (Avast Software)
S3 getPlusHelper; C:\Program Files\NOS\bin\getPlus_Helper.dll [67360 2010-01-25] (NOS Microsystems Ltd.)
S2 gupdate1c9bb97c1ccf3a0; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 PCToolsFirewallPlus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [146800 2008-12-11] (PC Tools)
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [540184 2007-08-07] (PDF Complete Inc)
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-11-04] (Secunia)
R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-11-04] (Secunia)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-03-13] (Ulead Systems, Inc.) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 nsi; % [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R1 archlp; C:\Windows\System32\drivers\archlp.sys [11392 2008-01-29] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-03-21] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-03-21] (Avast Software s.r.o.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-03-21] (Avast Software s.r.o.)
R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12112 2015-03-21] (ALWIL Software)
R0 aswNdis2; C:\Windows\system32\Drivers\aswNdis2.sys [253728 2015-03-21] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [55200 2015-03-21] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-03-21] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-03-21] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427480 2015-03-21] (Avast Software s.r.o.)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57888 2015-03-21] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [206976 2015-03-21] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-06-26] (AVG Technologies)
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [92888 2015-03-27] (Malwarebytes Corporation)
R2 PCTAppEvent; C:\Windows\system32\drivers\PCTAppEvent.sys [73840 2009-03-04] (PC Tools)
R1 pctgntdi; C:\windows\System32\drivers\pctgntdi.sys [159600 2008-12-11] (PC Tools)
R3 pctplfw; C:\windows\System32\drivers\pctplfw.sys [95640 2009-03-04] (PC Tools)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-11-04] (Secunia)
R3 SFilter; C:\Windows\System32\DRIVERS\pctfw.sys [97408 2008-09-22] (PC Tools)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-03-21] (Avast Software)
S3 vsdatant; C:\Windows\system32\vsdatant.sys [394984 2007-06-22] (Zone Labs, LLC)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20061106.064\NAVEX15.SYS [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-17 00:21 - 2015-04-17 00:22 - 00019804 _____ () C:\Users\RAJ\Desktop\FRST.txt
2015-04-17 00:19 - 2015-04-17 00:16 - 01137152 _____ (Farbar) C:\Users\RAJ\Desktop\FRST.exe
2015-04-15 12:17 - 2015-04-17 00:21 - 00000000 ____D () C:\FRST
2015-04-15 12:07 - 2015-04-15 11:10 - 00415232 _____ (Farbar) C:\Users\RAJ\Desktop\FSS (2).exe
2015-04-14 01:57 - 2015-04-14 01:57 - 00015958 _____ () C:\ComboFix.txt
2015-04-14 00:44 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-14 00:44 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-14 00:44 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-14 00:44 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-14 00:43 - 2015-04-14 01:59 - 00000000 ____D () C:\Qoobox
2015-04-14 00:43 - 2015-04-14 01:59 - 00000000 ____D () C:\ComboFix
2015-04-14 00:43 - 2015-04-14 01:27 - 00000000 ____D () C:\Windows\erdnt
2015-04-14 00:40 - 2015-04-13 11:34 - 05617275 ____R (Swearware) C:\Users\RAJ\Desktop\ComboFix.exe
2015-04-14 00:36 - 2015-04-14 00:36 - 00003028 _____ () C:\Users\RAJ\Desktop\ADWCLNR SCAN 14 APR.txt
2015-04-13 23:43 - 2015-04-13 11:27 - 02217984 _____ () C:\Users\RAJ\Desktop\adwcleaner_4.201.exe
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\MSG
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\DAWDA
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\COOK'G
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\COMUNCATNS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\CHILD
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\CFS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\BUSINESS
2015-04-13 22:31 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\AUTO-CAR
2015-04-13 22:30 - 2015-04-15 17:26 - 00000000 ____D () C:\Users\RAJ\Documents\LANDLORD
2015-04-13 22:30 - 2015-04-13 22:31 - 00000000 ____D () C:\Users\RAJ\Documents\MINU & OTH MP3 SONGS 2-12
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\X
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\UTILITIES Tel,Gas,Mob
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\USA
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\Ulead DVD MovieFactory 4.0 SE for SANYO
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\TRAVEL
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PREETA PIX & OTH
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PERSONL DEVLPMNT
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PATANJALI YOG PEETH
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\PASSPORT PIX
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\ORDERED GOODS
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\LEGAL & TRUSTS
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\CRHMS UK
2015-04-13 22:30 - 2015-04-13 22:30 - 00000000 ____D () C:\Users\RAJ\Documents\ADHYATMA
2015-04-13 22:30 - 2012-06-06 23:35 - 00002048 _____ () C:\Users\RAJ\Documents\Ulead Photo Explorer 8.5 SE Basic.lnk
2015-04-13 22:25 - 2015-04-13 22:25 - 00000000 ____D () C:\Users\RAJ\Documents\SOFTWR PROGRMS
2015-04-13 22:24 - 2015-04-13 22:25 - 00000000 ____D () C:\Users\RAJ\Documents\SNOOKER
2015-04-13 22:24 - 2015-04-13 22:24 - 00000000 ____D () C:\Users\RAJ\Documents\SECURITY
2015-04-13 22:22 - 2015-04-13 23:23 - 00000000 ____D () C:\Users\RAJ\Documents\SANYO_PEX
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\RELATIONSHP
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\POKER
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\MIN EDU USA
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\KNIFE
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\INTEREST'G
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\INSPIRE
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\HINDU
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\HEALTH
2015-04-13 22:22 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\EMPLYMNT
2015-04-13 22:21 - 2015-04-13 22:22 - 00000000 ____D () C:\Users\RAJ\Documents\My Received Files
2015-04-13 22:21 - 2015-03-25 13:12 - 00000000 ____D () C:\Users\RAJ\Documents\ArcSoft MediaConverter
2015-03-26 13:37 - 2015-04-09 00:08 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-26 13:33 - 2015-03-27 12:49 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-26 13:33 - 2015-03-26 13:33 - 00000859 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-26 13:33 - 2015-03-26 13:33 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-26 13:33 - 2015-03-17 07:15 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-26 13:33 - 2015-03-17 07:15 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-26 13:31 - 2015-03-26 13:31 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\RAJ\Downloads\mbam-setup-2.1.4.1018.exe
2015-03-26 13:14 - 2015-04-16 23:08 - 00000000 ____D () C:\Windows\pss
2015-03-25 15:53 - 2015-04-14 03:07 - 00004296 _____ () C:\Windows\PFRO.log
2015-03-23 11:46 - 2015-03-23 11:56 - 00000000 ____D () C:\Windows\system32\vbox
2015-03-21 17:10 - 2015-03-21 17:10 - 00001789 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2015-03-21 17:07 - 2015-03-21 17:06 - 00026096 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswKbd.sys
2015-03-21 17:07 - 2015-03-21 17:05 - 00253728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswNdis2.sys
2015-03-21 17:07 - 2015-03-21 17:01 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-03-21 17:05 - 2015-03-21 17:05 - 00012112 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswNdis.sys
2015-03-21 17:01 - 2015-03-21 17:01 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-17 00:22 - 2009-07-01 14:32 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-17 00:22 - 2008-01-30 20:11 - 00000418 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{0E33D065-2BA1-4925-BF6B-BDAE4D89BF96}.job
2015-04-17 00:20 - 2006-11-02 11:33 - 00826598 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-17 00:19 - 2009-07-01 14:32 - 00000882 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-17 00:19 - 2008-01-14 20:28 - 00000000 ____D () C:\ProgramData\TEMP
2015-04-17 00:18 - 2008-08-09 02:06 - 01247248 _____ () C:\Windows\WindowsUpdate.log
2015-04-17 00:04 - 2008-01-04 08:35 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2015-04-17 00:04 - 2006-11-02 13:58 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-17 00:04 - 2006-11-02 13:45 - 00003296 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-17 00:04 - 2006-11-02 13:45 - 00003296 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-17 00:03 - 2006-11-02 13:58 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-16 23:48 - 2014-11-16 20:53 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-15 17:24 - 2009-04-12 18:53 - 00000868 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-14 01:58 - 2014-04-01 12:05 - 00000000 ____D () C:\Users\TEMP
2015-04-14 01:58 - 2006-11-02 12:18 - 00000000 ___RD () C:\Users\Public
2015-04-14 01:14 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-04-14 00:21 - 2014-10-08 21:44 - 00000000 ____D () C:\AdwCleaner
2015-04-13 21:24 - 2008-01-04 05:04 - 00000000 ____D () C:\Users\RAJ
2015-04-02 13:39 - 2009-05-02 23:33 - 00000000 ____D () C:\Windows\Minidump
2015-04-02 13:39 - 2007-10-04 11:29 - 00146355 _____ () C:\Windows\Minidump\Mini040215-01.dmp
2015-03-26 07:02 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\tracing
2015-03-25 15:51 - 2010-04-14 12:39 - 00000318 _____ () C:\lxbk.log
2015-03-24 20:41 - 2013-09-12 16:11 - 00000000 ____D () C:\Users\RAJ\AppData\Local\Garmin
2015-03-24 20:41 - 2013-09-12 16:06 - 00000000 ____D () C:\ProgramData\Garmin
2015-03-24 20:41 - 2013-09-12 16:05 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-24 20:41 - 2013-06-06 17:36 - 00000000 ____D () C:\Program Files\Garmin
2015-03-24 20:41 - 2013-06-06 16:35 - 00000000 ____D () C:\Users\RAJ\AppData\Roaming\Garmin
2015-03-21 17:01 - 2014-09-11 16:19 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00427480 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00206976 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00057888 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswTdi.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00055200 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-03-21 17:01 - 2014-09-11 16:19 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys

==================== Files in the root of some directories =======

2008-07-23 21:12 - 2008-07-23 21:12 - 0774144 _____ (RealNetworks, Inc.) C:\Program Files\RngInterstitial.dll
2008-04-13 20:50 - 2008-04-13 20:52 - 0024206 _____ () C:\Users\RAJ\AppData\Roaming\UserTile.png
2010-02-15 20:35 - 2014-01-05 01:17 - 0007160 _____ () C:\Users\RAJ\AppData\Local\d3d9caps.dat
2008-11-26 13:38 - 2010-03-13 03:35 - 0013824 _____ () C:\Users\RAJ\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-06 00:37 - 2012-06-06 00:37 - 0034814 _____ () C:\Users\RAJ\AppData\Local\dt.dat
2010-01-07 00:08 - 2009-11-08 00:08 - 0000032 ____R () C:\ProgramData\hash.dat
2012-06-06 23:35 - 2003-08-14 12:49 - 0000829 ____N () C:\ProgramData\pex.ini

Files to move or delete:
====================
C:\ProgramData\hash.dat


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-17 00:26

==================== End Of Log ============================


Addition::


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-04-2015 04
Ran by RAJ at 2015-04-17 00:22:58
Running from C:\Users\RAJ\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: PC Tools Firewall Plus (Enabled) {7352CBFB-3EEC-25C5-276E-DC9378FC688F}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Acrobat.com (HKLM\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe Acrobat 4.0 (HKLM\...\Adobe Acrobat 4.0) (Version: - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
Adobe SVG Viewer 3.0 (HKLM\...\Adobe SVG Viewer) (Version: 3.0 - )
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E14ADE0E-75F3-4A46-87E5-26692DD626EC}) (Version: 6.1.0.13 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft MediaConverter 2.5 (HKLM\...\{A72FC039-FE41-4BAD-B36E-64368EC54B54}) (Version: - ArcSoft)
ArcSoft ShowBiz DVD 2 (HKLM\...\{996F79F5-2ABF-4B9D-A0C0-ACD046AA8008}) (Version: 2.2.2.118 - ArcSoft)
ArcSoft TotalMedia Extreme (HKLM\...\{BC5E28DB-A496-415F-9BCF-374AE8E33AB5}) (Version: 1.0.14.1 - ArcSoft)
ASUSDVD (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: - )
ATI - Software Uninstall Utility (HKLM\...\All ATI Software) (Version: 6.14.10.1016 - )
ATI Catalyst Install Manager (HKLM\...\{1CF703F9-C891-55CB-E16D-94B9E46279FB}) (Version: 3.0.627.0 - ATI Technologies, Inc.)
ATI Catalyst Install Manager (HKLM\...\{4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B}) (Version: 3.0.641.0 - ATI Technologies, Inc.)
Avast Internet Security (HKLM\...\Avast) (Version: 10.2.2214 - AVAST Software)
Bing Rewards Client Installer (Version: 16.0.345.0 - Microsoft Corporation) Hidden
Business Contact Manager for Outlook 2007 SP2 (HKLM\...\Business Contact Manager) (Version: 3.0.8619.1 - Microsoft Corporation)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1 - Microsoft Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
CDPoker (HKLM\...\Club Dice Poker) (Version: - )
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Driving Test Success - All Tests 2012 Edition (HKLM\...\{EF570A1B-7593-4EDB-8AF0-8041F2A7A81B}_is1) (Version: 16.0 - Imagitech Ltd.)
Dropbox (HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Dropbox) (Version: 2.0.22 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM\...\{38DD9AAA-A09A-42FF-A9EE-DA9C84B2E036}) (Version: 1.1.2.0151 - AMD)
FileHippo.com Update Checker (HKLM\...\FileHippo.com) (Version: - )
Garmin Communicator Plugin (HKLM\...\{647BB978-2876-487B-9B0E-FDB73F0EA4A2}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Earth (HKLM\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
Hinduism Today Digital Edition (HKLM\...\Hinduism Today Digital Edition_is1) (Version: - )
HP Backup & Recovery Manager (HKLM\...\{3F9F7336-6DF8-476F-ABF6-C70A17FAF619}) (Version: 4.1.4 enhanced - Hewlett-Packard Company)
HP Product Detection (HKLM\...\{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}) (Version: 9.7.2 - Hewlett-Packard Company)
HP SetRefresh (HKLM\...\{F5242227-2051-4158-AC42-0F2BAA3CD3D6}) (Version: 1.2.1.3 - Hewlett-Packard Company)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: - )
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
InterVideo WinDVD (HKLM\...\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}) (Version: 5.0-B11.1155 - InterVideo Inc.)
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java SE Development Kit 8 Update 11 (HKLM\...\{32A3A4F4-B792-11D6-A78A-00B0D0180110}) (Version: 8.0.110 - Oracle Corporation)
Java(TM) SE Runtime Environment 6 Update 1 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160010}) (Version: 1.6.0.10 - Sun Microsystems, Inc.)
JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2003 Web Components (HKLM\...\{90A40409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Small Business Connectivity Components (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM\...\{90850409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office XP Media Content (HKLM\...\{90300409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2619.0 - Microsoft Corporation)
Microsoft Office XP Professional with FrontPage (HKLM\...\{90280409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Publisher 2002 (HKLM\...\{90190409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{E7084B89-69E0-46B3-A118-8F99D06988CD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
MyFreeCodec (HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\MyFreeCodec) (Version: - )
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
PC Tools Firewall Plus 5.0 (HKLM\...\PC Tools Firewall Plus) (Version: 5.0 - PC Tools)
PDF Complete (HKLM\...\PDF Complete) (Version: - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PokerHost (HKLM\...\PokerHost) (Version: - )
PokerStars (HKLM\...\PokerStars) (Version: - PokerStars)
QuickTime 7 (HKLM\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6873 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Secunia PSI (3.0.0.9015) (HKLM\...\Secunia PSI) (Version: 3.0.0.9015 - Secunia)
Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Ulead DVD MovieFactory 4.0 SE for SANYO (HKLM\...\{448AB2CB-C94A-47DE-80B8-9D7824DEFA57}) (Version: 4.0 - Ulead Systems, Inc.)
Ulead Photo Explorer 8.5 SE Basic (HKLM\...\{025C3792-E9C6-432A-92C1-661F99D021CA}) (Version: 8.5 - Ulead Systems, Inc.)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
USB Audio/Video Driver (HKLM\...\InstallShield_{015C057F-D7B9-4D82-B266-FBCF0178F382}) (Version: 1.00.0000 - )
USB Audio/Video Driver (Version: 1.00.0000 - ) Hidden
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM\...\Windows Media Encoder 9) (Version: - )
Windows Mobile Device Center (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation)
WinRAR 4.20 beta 3 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.3 - win.rar GmbH)
ZTE_1.2059.0.8 (HKLM\...\ZTE_1.2059.0.8) (Version: - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00021401-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00b7e0ab-817a-44ad-a04b-d1148d524136}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F406-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4CF-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4F5-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{30C3B080-30FB-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{53D7E4EF-4DFB-45BE-B9CC-A0243AECB238}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{6A01FDA0-30DF-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7057E952-BD1B-11D1-8919-00C04FC2C836}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\InprocServer32 -> C:\Windows\system32\urlmon.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7c6e29bc-8b8b-4c3d-859e-af6cd158be0f}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c0-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c1-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c2-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c3-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c4-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c5-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c8-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c9-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969ca-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969d6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarManagerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{939A0D04-0E07-48FE-A463-6623B70C3A96}\localserver32 -> "C:\Users\RAJ\AppData\Roaming\ValueApps\IE\ValueApps.exe" No File
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{A3CCEDF7-2DE2-11D0-86F4-00A0C913F750}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{CD773740-B187-4974-A1D5-E0FF91372277}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{D7B70EE0-4340-11CF-B063-0020AFC2CD35}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E569BDE7-A8DC-47F3-893F-FD2B31B3EEFD}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{EB030009-6D26-11D3-B0F4-00C04F60B2A1}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{F6240000-66DA-4DCD-B1AF-5C59D05C44D5}\InprocServer32 -> No File Path
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\CDPoker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\RAJ\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InprocServer32 -> No File Path

==================== Restore Points =========================

20-02-2015 21:54:04 Windows Update
24-02-2015 06:02:46 Windows Update
24-02-2015 15:55:36 Windows Update
24-02-2015 20:47:25 Windows Update
25-02-2015 21:12:40 Windows Update
27-02-2015 15:59:03 Windows Update
04-03-2015 11:46:21 Windows Update
04-03-2015 21:13:58 Windows Update
05-03-2015 11:39:23 Windows Update
05-03-2015 20:45:13 Windows Update
06-03-2015 16:48:03 Windows Update
07-03-2015 17:21:59 Windows Update
09-03-2015 22:40:06 Windows Update
10-03-2015 22:34:01 Windows Update
11-03-2015 22:32:45 Windows Update
13-03-2015 11:44:44 Windows Update
14-03-2015 06:04:57 Windows Update
14-03-2015 14:13:35 Windows Update
14-03-2015 18:29:13 Windows Update
14-03-2015 19:10:36 Windows Update
16-03-2015 11:44:48 Windows Update
17-03-2015 06:02:55 Windows Update
17-03-2015 12:25:51 Windows Update
17-03-2015 20:44:33 Windows Update
18-03-2015 16:27:18 Windows Update
19-03-2015 17:40:17 Windows Update
21-03-2015 06:06:36 Windows Update
21-03-2015 16:59:24 avast! antivirus system restore point
21-03-2015 17:03:43 avast! antivirus system restore point
21-03-2015 17:08:21 Device Driver Package Install: ALWIL Software Network Service
21-03-2015 17:14:29 Windows Update
23-03-2015 11:48:39 Windows Update
23-03-2015 16:18:37 Windows Update
24-03-2015 16:40:07 Windows Update
24-03-2015 20:37:49 Removed Garmin Communicator Plugin
24-03-2015 20:39:50 Garmin Express
24-03-2015 20:54:20 Windows Update
25-03-2015 13:28:48 Windows Update
25-03-2015 16:09:56 Windows Update
26-03-2015 06:02:56 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2015-04-14 01:12 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {039B8399-2485-408D-9DA9-76B43A573702} - System32\Tasks\{8AF4065A-08D1-48A8-80BB-50F2C338A953} => pcalua.exe -a C:\Users\RAJ\Downloads\gamesFree.exe -d C:\Users\RAJ\Downloads
Task: {09977583-6469-4579-AC2F-D88E5F3CDF5C} - System32\Tasks\{C6493663-0AAB-4FE9-A1EC-B6A437EE45F5} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6TMFPN17\zaasSetup_70_362_000_en[1].exe" -d C:\Users\RAJ
Task: {09FF77AF-451D-42D5-8B8D-722DF90278EF} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - RAJ => C:\Program Files\Windows Calendar\wincal.exe [2009-04-10] (Microsoft Corporation)
Task: {200863E4-EB3B-4685-B7F2-3EA25058F933} - System32\Tasks\{2F9985C7-CCF9-451C-AC1E-E9613C2D1954} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OOI0XGTL\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
Task: {24E837E6-22E4-40CA-AFBA-E840298FFD2C} - System32\Tasks\{A68810BF-554A-473B-9F12-B4C1DA9D8FEA} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GZ80UMY5\epson320037eu[1].exe" -d C:\Users\RAJ\Desktop
Task: {25B04DD9-2AC9-4498-AB33-EEF531997B56} - System32\Tasks\{F95057DD-C0C7-4A68-8BA3-FA343156C0A0} => pcalua.exe -a C:\WINDOWS\ISUNINST.EXE -c -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"
Task: {2E457764-27E7-4B64-A8E8-C79A99A627D1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {2FCD3D2F-9178-404E-9CC2-350857212F40} - System32\Tasks\{CC2FDF14-4AB4-4C92-98D2-82BA9C229BCB} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOAZZ4BZ\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
Task: {329A2827-C775-4FDE-B224-999B02ED5AA9} - System32\Tasks\{F835B388-A406-4F51-AF4F-04EB58385544} => pcalua.exe -a "C:\Program Files\electroLyrics\uninstall.exe"
Task: {3C86078D-68D9-4695-8A0C-86CAC5018341} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {3E2C6916-88C1-48B7-81A4-E7846E1FA4BD} - System32\Tasks\{A51E3F4C-C7E9-4178-9BAD-F494103C7884} => pcalua.exe -a F:\install.exe -d F:\
Task: {53C2FCA9-855E-4294-A056-4F15ABECB52F} - System32\Tasks\{8E1D8974-7A49-48DA-9E54-CCC7CC4E21B4} => pcalua.exe -a C:\Users\RAJ\Documents\arcadegamepFree.exe -d C:\Users\RAJ\Documents
Task: {5A09DAAB-7006-481F-9704-6D22BBD7CFB4} - System32\Tasks\{7D1D0678-B5B1-4F87-91DB-E5C09A71D684} => pcalua.exe -a F:\Setupx.exe -d F:\
Task: {5BDDA938-CA00-4F0E-8323-C19080D08A7A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1291136695-2564591854-1091026493-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {63DF1438-BE2B-4C37-9595-D40D45700174} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-18] (Google)
Task: {6633D1DA-95B0-4B1B-94B3-D7DCFAA5CBA1} - System32\Tasks\Microsoft\Office Genuine Advantage\OGALogon => C:\Windows\system32\OGAExec.exe [2009-08-03] ()
Task: {66A2A4F6-BB9E-4DF7-8C52-761F477A63A5} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1291136695-2564591854-1091026493-1003 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {7760087E-D8CF-45AC-BD9B-F4C756C65D86} - System32\Tasks\{8F358102-2563-4671-8161-4376FE24E1F1} => pcalua.exe -a G:\MSASYNC_WWE.EXE -d G:\
Task: {86A47DA2-6371-421B-BEAF-009B5C99196B} - System32\Tasks\Microsoft\Windows\RestartManager\{0316A6C8-192D-4797-9B11-9D14D18B0632} => C:\Windows\system32\rmclient.exe [2006-11-02] (Microsoft Corporation)
Task: {8A317128-B102-4EAD-9917-FC5FC9A990AF} - \electroLyrics Update No Task File <==== ATTENTION
Task: {990D683C-227B-4E52-8837-51B858770D91} - System32\Tasks\{E946C6AC-071B-4129-810F-19C2EB9E324D} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SVDHDEEV\sp36740[1].exe" -d C:\Windows\system32
Task: {991936E5-FA56-4B8C-9FAC-734C9DD9CD1E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9DF24723-FBE0-4251-B3A7-4129DEB41FC8} - System32\Tasks\{85D8EA08-02EE-4825-878A-B84AE23D4165} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15_eng[1].exe" -d C:\Windows\system32
Task: {A17919FE-CE1B-4C18-943F-542EF559C867} - System32\Tasks\{817ACABE-393F-4261-9DE9-799A1F177406} => C:\Program Files\Skype\Phone\Skype.exe
Task: {A37B63AA-FBCB-4506-B00C-49ADF062CAAC} - System32\Tasks\{B1087782-4ED9-4AB2-B6B7-9A93AF854211} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MVKF1IU2\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
Task: {A59BDF61-9776-422C-9649-44C315B0F743} - System32\Tasks\{935695EF-2E7C-4416-B626-F6151684B7C0} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MIAKCS67\NVE-3.1.0.25_eng[1].exe" -d C:\Windows\system32
Task: {A8D14AD6-E4A8-4E94-A623-B978881C94DE} - System32\Tasks\{EEF06578-EC32-4026-A791-0F4579B2DCFA} => pcalua.exe -a "C:\Program Files\PokerHost\uninstall.exe"
Task: {A8F46329-33EC-4895-B3AE-07C6D7A64DA4} - System32\Tasks\{DD31C027-608D-4E0E-A290-034B3D44E952} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUSMK2SA\sp43003[1].exe" -d C:\Users\RAJ\Desktop
Task: {B02F825A-91DA-4A7F-9C29-9115760B68FD} - System32\Tasks\{4C14E304-955E-45FA-8741-631DD57F91A4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15a[1].exe" -d C:\Windows\system32
Task: {B3C50AB1-EE4C-4AB3-A2F5-9F7E5A047886} - System32\Tasks\{7728FBA9-7A7B-4A8C-827F-83E8B56FBC0C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK319B7N\sp41879[1].exe" -d C:\Users\RAJ\Desktop
Task: {B6B46DE0-5E6E-497C-A7B2-38839865379D} - System32\Tasks\{ED213DD0-4632-41BF-BFFB-6F9CF2E172B1} => pcalua.exe -a F:\INSTMSI.EXE -d F:\
Task: {BDA88B60-FDDC-43F8-BE02-483D6A24E123} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {BE2D421C-2B24-4E4A-B3DA-C933AB4566A8} - System32\Tasks\{1CEECA12-A1E2-427C-B8BF-DED0E53398E2} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\NMP-1.4.0.35b[1].exe" -d C:\Windows\system32
Task: {BE368C08-F7A9-4239-AB11-164D99B106D5} - System32\Tasks\{182E446E-05CA-48DC-BAF9-D2D32E2690E4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\InCD-4.3.23.2[1].exe" -d C:\Windows\system32
Task: {C1E836FB-D8E7-4F41-BACB-5E92D13F183B} - System32\Tasks\{20045C68-266D-4A51-8E2D-9ED74DB43A24} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZZDXGSZT\SetupPoker[1].exe" -d C:\Users\RAJ
Task: {C2A85A4A-5676-48F0-A51A-057E248169FF} - System32\Tasks\{FB6D28FC-03FF-4CDC-AC0E-84DA6D7E67EF} => pcalua.exe -a F:\install.exe -d F:\
Task: {D0B4F229-D9A7-4CB0-B62A-4089F6DE9CA7} - System32\Tasks\{0158A7B6-A612-4C59-9E09-13A6F5539CA3} => pcalua.exe -a "C:\Program Files\QuickTime\QTSystem\QuickTime.cpl"
Task: {D65F2397-DB65-42D8-BE2C-48F36692A8AB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-06] (Adobe Systems Incorporated)
Task: {DD252486-7D42-42B4-8A8A-7AC7AFDF08AD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {DF90B2AD-9F52-4A49-8A12-7261B6EAE0CE} - System32\Tasks\{53D593C2-8FE6-4043-B37C-B9EB4AC69FA7} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTN0UE9P\sp34615[1].exe" -d C:\Windows\system32
Task: {EF12A234-0DFD-4653-BC3C-5C06FC7FA027} - System32\Tasks\{724BC68F-6E34-42C3-B1E0-8F3E51C5251C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\LimeWireWin[1].exe" -d C:\Users\RAJ
Task: {F5B11F64-A62F-48A3-8083-9F5879E45276} - System32\Tasks\{6A4345A8-D00D-4722-BB3F-231119823718} => pcalua.exe -a F:\ie6setup.exe -d F:\
Task: {F87A6AD1-7B74-4E44-A0C6-43072133B6A6} - System32\Tasks\{2D6FDA70-8FE1-4EE8-A434-0E4E55A51A0A} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9BQH1L1D\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
Task: {F9A05307-3E26-493D-8D6E-8C5C4955EDCF} - System32\Tasks\{B2A84B01-510D-474B-978A-099718BFF8AD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1B897UL3\sp36740[1].exe" -d C:\Users\RAJ\Desktop
Task: {F9E19298-D85D-4EB3-989C-362D1A255EA3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-21] (Avast Software s.r.o.)
Task: {FA5B99FD-63FE-4A0E-BF21-91CEBC669C29} - System32\Tasks\{219D8A32-FD4C-405B-B8B8-AF49473237CD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\79358QAL\sp34615[1].exe" -d C:\Users\RAJ

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{0E33D065-2BA1-4925-BF6B-BDAE4D89BF96}.job => C:\Windows\system32\msfeedssync.exe

==================== Loaded Modules (whitelisted) ==============

2015-03-21 17:01 - 2015-03-21 17:01 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-03-27 12:40 - 2015-03-27 12:40 - 02923008 _____ () C:\Program Files\AVAST Software\Avast\defs\15032700\algo.dll
2011-06-24 22:56 - 2011-06-24 22:56 - 00087328 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-06-24 22:56 - 2011-06-24 22:56 - 01241888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2007-07-27 08:35 - 2007-07-27 07:35 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2015-03-14 14:41 - 2015-03-21 17:01 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Program Files\DoylesRoom:MID
AlternateDataStreams: C:\Program Files\PokerHost:MID
AlternateDataStreams: C:\ProgramData\TEMP:0B4227B4
AlternateDataStreams: C:\ProgramData\TEMP:1CA73D29
AlternateDataStreams: C:\ProgramData\TEMP:C31F31E6

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.254

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: Garmin Core Update Service => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: nsi => 2

==================== Accounts: =============================

Administrator (S-1-5-21-1291136695-2564591854-1091026493-500 - Administrator - Disabled)
Guest (S-1-5-21-1291136695-2564591854-1091026493-501 - Limited - Disabled)
MANALI (S-1-5-21-1291136695-2564591854-1091026493-1005 - Limited - Enabled) => C:\Users\MANALI.RAJ-PC
RAJ (S-1-5-21-1291136695-2564591854-1091026493-1003 - Administrator - Enabled) => C:\Users\RAJ
RAKHIL (S-1-5-21-1291136695-2564591854-1091026493-1004 - Limited - Enabled) => C:\Users\RAKHIL.RAJ-PC
SMITA (S-1-5-21-1291136695-2564591854-1091026493-1006 - Limited - Enabled) => C:\Users\SMITA

==================== Faulty Device Manager Devices =============

Name: Microsoft 6to4 Adapter #5
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Microsoft 6to4 Adapter #6
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: isatap.{5C88CA14-ED28-46DC-AD4C-00E7FFDB29A1}
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Microsoft ISATAP Adapter #8
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer:
Service:
Problem: : Reinstall the drivers for this device. (Code 18)
Resolution: The drivers for this device must be reinstalled.
Click "Update Driver", which starts the Hardware Update wizard.
Alternately, uninstall the driver, and then click "Scan for hardware changes" to reload the drivers.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/17/2015 00:19:28 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "1".Error in manifest or policy file "2" on line 3.
Invalid Xml syntax.

Error: (04/17/2015 00:19:20 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/17/2015 00:19:08 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/17/2015 00:19:08 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/17/2015 00:01:58 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program FRST.exe version 15.4.2015.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: f50
Start Time: 01d0789919b4ff30
Termination Time: 0

Error: (04/16/2015 11:50:18 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "1".Error in manifest or policy file "2" on line 3.
Invalid Xml syntax.

Error: (04/16/2015 11:28:17 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/16/2015 11:28:15 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/16/2015 11:28:13 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.

Error: (04/16/2015 11:13:28 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.1_none_e163563597edeada.manifest.


System errors:
=============
Error: (04/17/2015 00:23:23 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068

Error: (04/17/2015 00:23:23 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: DHCP ClientNetwork Store Interface Service%%1075

Error: (04/17/2015 00:23:23 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Network Store Interface Servicey

Error: (04/17/2015 00:23:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068

Error: (04/17/2015 00:23:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: DHCP ClientNetwork Store Interface Service%%1075

Error: (04/17/2015 00:23:12 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Network Store Interface Servicey

Error: (04/17/2015 00:23:09 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068

Error: (04/17/2015 00:23:09 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: DHCP ClientNetwork Store Interface Service%%1075

Error: (04/17/2015 00:23:09 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Network Store Interface Servicey

Error: (04/17/2015 00:22:56 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: WinHTTP Web Proxy Auto-Discovery ServiceDHCP Client%%1068


Microsoft Office Sessions:
=========================
Error: (06/17/2010 02:22:10 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6535.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 34 seconds with 0 seconds of active time. This session ended with a crash.


CodeIntegrity Errors:
===================================
Date: 2015-04-17 00:22:39.512
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:38.311
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:37.110
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:35.924
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:34.536
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:33.335
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:32.134
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:30.932
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:01.433
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-04-17 00:22:00.232
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
Percentage of memory in use: 48%
Total physical RAM: 1917.83 MB
Available physical RAM: 995.81 MB
Total Pagefile: 4078.14 MB
Available Pagefile: 3042.16 MB
Total Virtual: 2047.88 MB
Available Virtual: 1901.35 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:218.87 GB) (Free:91.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (HP_RECOVERY) (Fixed) (Total:12.05 GB) (Free:6.88 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (OS_TOOLS) (Fixed) (Total:1.96 GB) (Free:1.56 GB) NTFS
Drive h: () (Removable) (Total:1.87 GB) (Free:1.84 GB) FAT

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: D904B864)
Partition 1: (Active) - (Size=218.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=12.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=2 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 1.9 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================


Over to you Chemist,
rgds, mg222
 
#15 · (Edited)
Hello again, mg222.

nsi, and others, are still disabled under msconfig:

MSCONFIG\Services: Garmin Core Update Service => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: nsi => 2
Go into msconfig again and make sure those are all ticked, then enable them. Reboot when prompted.

Then go into msconfig again to make sure they are enabled.

If you are unable to enable nsi, let me know.

------------------------------------------------------
  • Double-click SystemLook.exe to run it. (Vista/Win7/Win8 users, right-click > Run as Administrator)
  • Copy/paste the contents of the following codebox into the main textfield:
    Code:
    :reg
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp /s
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi /s
    
    :regfind
    nsi
  • Click the Look button to start the scan.
  • Please be patient, as it may take a while.
  • When finished, a Notepad file will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt

------------------------------------------------------
 
#16 ·
Hi Chemist,
Ok, will do that.

Can I please ask a silly Q? It seems like U got system restore working again. I believe my prob arose on 26th March. The sys restr shows dates available to the 1st March? Any good trying that? Thank you, later, mg222
 
#17 ·
Hi Chemist,
I have done some...

Slight problem: I did Window Logo +R. msconfig, ok, Services

BUT could not find any of: MSCONFIG\Services:
Garmin Core Update Service => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: nsi => 2

Very confused, I looked four times and very very carefully as well reading every word of each file name...

I however clicked ENABLE ALL in Services and StartUp [ top line] and Apply.

Again after reboot, I looked hard but could not find any of above four...?

***********************************


Please find attached SystemLook::
I HAVE attached a ZipFile as it is five times the size this post will permit me... Just in case this dsnt go to plan I am also posting the Log in 5 postings. Please, if the Zip works, than feel free to delete the repeated log.

SystemLook 30.07.11 by jpshortstuff
Log created at 12:46 on 17/04/2015 by RAJ
Administrator - Elevation successful


End Of REport, Chemist, and thank you again for staying with this.
rgds, mg22
 

Attachments

#18 ·
Hi Chemist,
very long log, here goes, in six posts, sorry to be a pest:

SYSLOOK.Scan 17APR 1 0F6

========== reg ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp]
"ServiceDll"="%SystemRoot%\system32\dhcpcsvc.dll"
"DisplayName"="@%SystemRoot%\system32\dhcpcsvc.dll,-100"
"Group"="TDI"
"ImagePath"="%SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted"
"Description"="@%SystemRoot%\system32\dhcpcsvc.dll,-101"
"ObjectName"="NT Authority\LocalService"
"ErrorControl"= 0x0000000001 (1)
"Start"= 0x0000000002 (2)
"Type"= 0x0000000020 (32)
"DependOnService"="NSI Tdx Afd"
"ServiceSidType"= 0x0000000001 (1)
"RequiredPrivileges"="SeChangeNotifyPrivilege SeCreateGlobalPrivilege"
"FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Configurations]
"Options"=32 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 ff ff ff 7f 00 00 00 00 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 ff ff ff 7f 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Linkage]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Linkage\Disabled]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters]
"ServiceDll"="%SystemRoot%\System32\dhcpcsvc.dll"
"ServiceDllUnloadOnStop"= 0x0000000001 (1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\1]
"KeyType"= 0x0000000007 (7)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpSubnetMaskOpt SYSTEM\CurrentControlSet\Services\?\Parameters\Tcpip\DhcpSubnetMaskOpt"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\15]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpDomain SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\DhcpDomain"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\220]
"KeyType"= 0x0000000003 (3)
"RegSendLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\SoHRequest"
"VendorType"= 0x0000000001 (1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\3]
"KeyType"= 0x0000000007 (7)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpDefaultGateway SYSTEM\CurrentControlSet\Services\?\Parameters\Tcpip\DhcpDefaultGateway"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\44]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_?\DhcpNameServerList SYSTEM\CurrentControlSet\Services\NetBT\Adapters\?\DhcpNameServer"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\46]
"KeyType"= 0x0000000004 (4)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\DhcpNodeType"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\47]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\DhcpScopeID"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\6]
"KeyType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\DhcpNameServer SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DhcpNameServer"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parameters\Options\DhcpNetbiosOptions]
"KeyType"= 0x0000000004 (4)
"OptionId"= 0x0000000001 (1)
"VendorType"= 0x0000000001 (1)
"RegLocation"="SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_?\DhcpNetbiosOptions"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6]
"DllName"="%SystemRoot%\system32\dhcpcsvc6.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options]
(No values found)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options\23]
"KeyType"= 0x0000000003 (3)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\Dhcpv6DNSServers SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\Dhcpv6DNSServers"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Parametersv6\Options\24]
"KeyType"= 0x0000000003 (3)
"RegLocation"="SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\?\Dhcpv6DomainSearchList SYSTEM\CurrentControlSet\Services\TcpIp\Parameters\Dhcpv6DomainSearchList"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dhcp\Security]
"Security"=01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2c 02 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 (REG_BINARY)


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
"ImagePath"="%"
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
"ObjectName"="NT Authority\LocalService"
"ErrorControl"= 0x0000000001 (1)
"Start"= 0x0000000002 (2)
"Type"= 0x0000000020 (32)
"DependOnService"="n s i p r o x y"
"ServiceSidType"= 0x0000000001 (1)
"RequiredPrivileges"="S e C r e a t e G l o b a l P r i v i l e g e"
"FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 c0 d4 01 00 01 00 00 00 e0 93 04 00 00 00 00 00 00 00 00 00 (REG_BINARY)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\nsi\Parameters]
"ServiceDll"="%"
"ServiceDllUnloadOnStop"= 0x0000000001 (1)


========== regfind ==========

Searching for "nsi"
[HKEY_CURRENT_USER\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_CURRENT_USER\Software\AppDataLow\Software\Adobe\Shockwave 11\uicontrol\minduration2consider]
[HKEY_CURRENT_USER\Software\Google\Google Earth Plus]
"GroundLevelAutoTransition"="true"
[HKEY_CURRENT_USER\Software\Intel\LANDesk\VirusProtect6\CurrentVersion\Licensing]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Approved Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\26]
"IEFixedFontName"="NSimsun"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\Gemini\0.1\Preferences\PluginHandlerData\PluginInfo2]
@="~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XIIFpsRvv0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativescrollbar~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XQFDDVdXv0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativeslider~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XkKSifd/v0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativespinner~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XkqSifd/v0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:menubar~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XEKdWOu5B1BGC4QDQt3LynQ==}{PluginFilename~Srpcontrols2.dll~ComponentCLSID~XearuX0Jf9EmTmTWOPAp19w==}{PluginFilename~Srpcontrols2.dll~ComponentCLSID~XiTaLUsGijkKNnG5/Rt+akg==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativeuiplaceholder~
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo0]
@="{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N-1610608308~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~S3GPP Timed Text Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~S3gppttrenderer.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Svideo/X-RN-3GPP-TEXT}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608308~Copyright~SCopyright(c) RealNetworks, Inc. 2003-2004. All rights reserved. Source code for this program is available under the RealNetworks Public Source License.~Description~SHelix DNA AAC Audio Format~FileExtensions~SAAC~FileMime~Saudio/aac|audio/aacp~FileOpenNames~S~PlgCopy~Shttp://www.helixc
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo1]
@=". (http://www.real.com)~Description~SRealNetworks RealVideo Image Map Renderer Plugin~PlgCopy~Shttp://www.real.com~PluginFilename~Simaprender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/x-pn-imagemap|image_map/x-pn-realvideo}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608154~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SHelix JPEG File Format Plugin~FileExtensions~Sjpg|jpeg|jpe|jfif~FileMime~Simage/jpeg~FileOpenNames~SJPEG Images (*.jpg)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Simgrender.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N1~LoadMultiple~N1~Renderer_Granularity~N100~Version~N-1610608155~Copyr
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo2]
@="dio/MP4A-LATM|audio/mpeg4-simple-A2|audio/mpeg4-generic|audio/X-HX-AAC-GENERIC|audio/X-RN-3GPP-AMR|audio/AMR|audio/X-RN-3GPP-AMR-WB|audio/AMR-WB}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608309~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Mpeg4 File Format Plugin~FileExtensions~Smov|qt|mp4|3gp|3g2|m4a~FileMime~Sapplication/x-pn-quicktime-stream|audio/3gpp|video/3gpp|audio/x-m4a~FileOpenNames~SQuickTime Files (*.mov, *.qt)|MP4 Files (*.mp4)|3GPP-MP4 Files (*.3gp, *.3g2)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp4fformat.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granular
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo3]
@="ealad|application/x-pn-realad-encrypted|application/vnd.rn-realmedia-secure~FileOpenNames~SRealMedia Files (*.rm, *.rmc, *.rms, *.rma, *.rax, *.rvx, *.rmvb, *.ra, *.rv)~PlgCopy~Shttp://www.real.com~PluginFilename~Srmwrtr.dll~PluginType~SPLUGIN_FILE_WRITER}{IndexNumber~N0~LoadMultiple~N1~Version~N0~Copyright~S(c) 1995-2003 RealNetworks, Inc. All rights reserved.~Description~SRealPlayer Secure Media Plugin~FileExtensions~Srmx~FileMime~Sapplication/x-pn-container~FileOpenNames~SRealPlayer Secure Media Clip (*.rmx)~PlgCopy~Shttp://www.real.com~PluginFilename~Srmxfpln.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N100~Version~N268451908~Copyright~S(c) 1995-2002 RealNetworks, Inc. All rights reserved.~Description~SEncrypted Real Media Renderer Plugin~PlgCopy
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo4]
@="rights reserved.~Description~SRealNetworks Renderer Plugin for Macromedia Flash 4~PlgCopy~Shttp://www.real.com~PluginFilename~Sswfrender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/x-shockwave-flash|application/x-shockwave-flash2}{IndexNumber~N0~LoadMultiple~N1~Version~N268451908~Copyright~S(c) 1995-2002 RealNetworks, Inc. All rights reserved.~Description~SRealNetworks Local TFile System~FileProtocol~Stfile~FileShort~Stfile-local~PlgCopy~Shttp://www.real.com~PluginFilename~Stfilesys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N20~Version~N-1610612736~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealPlayer\6.0\Preferences\PluginHandlerData\PluginInfo2]
@="a9hUKrg2JaWw==}{PluginFilename~Srpcomproxy.dll~ComponentCLSID~XhWryN5xzl0KOBMaslKhI1A==}{PluginFilename~Srpds3260.dll~rpplayersupportedextensions~Savi|vob|dat|divx|mid|midi|mpg|mpeg~rpplayersupportedmimetypes~Svideo/msvideo~rpplayersupportedprotocols~Sfile~rpplayersupportedtracktypes~SDVD|VCD~ComponentCLSID~X+MtPZlfg+k+1+EPeGsyQrQ==}{PluginFilename~Srpds3260.dll~ComponentCLSID~X7an57I/tbkq86wihSA4CIA==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XxgJgPrysRkaz9z5brFDy6g==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XT3lC6KX0uk6vnHXjcOrxOg==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XrXHDh9ygfkKplCckYy+k/A==}{ComponentName~Shttp://ns.real.com/gemini.v1:rpdvdactor~PluginFilename~Srpds3260.dll~ComponentCLSID~X2sCeKMuB4E6yWCvPF/NFAw==}{PluginFilename~Srpflashplayer.dll~rpplayersupportedextension
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealPlayer\6.0\Preferences\PluginHandlerData\PluginInfo3]
@="260.dll~ComponentCLSID~XDoCfxTdaI0qRIv3YYdL+Pg==}{ComponentName~Shttp://ns.real.com/gemini.v1:RPShowHtmlActor~PluginFilename~Srpwe3260.dll~ComponentCLSID~Xu5+52VQM+0aGpWpRyiZriQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:RPUrlMenuActor~PluginFilename~Srpwe3260.dll~ComponentCLSID~Xg8R9cJP+1UmNKStS9f02/w==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~X0Qi6pmWoy0yrEt3JZ5gPug==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~X4D7ttnuqUkCXx/FwBGG4yA==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~XMUk8AWCpHk2ZG3jFtfjG1A==}{PluginFilename~Srpwm3260.dll~rpplayersupportedextensions~Sasf|wma|wmv|asx|wm|wax|wvx|wmx~rpplayersupportedmimetypes~Svideo/x-ms-asf|audio/x-ms-wma|audio/x-ms-wax|video/x-ms-wmv|video/x-ms-wm|video/x-ms-wmx|video/x-ms-wvx|application/x-mplayer2~rpplayersupportedprotocols~Sfile|http|
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\Update\6.0\Preferences\PluginHandlerData\PluginInfo0]
@="{ComponentName~Shttp://ns.real.com/gemini.v1:CRNFaust~PluginFilename~Sfaus3270.dll~ComponentCLSID~X0Utm1Ihh1BGU8gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNDTInfo~PluginFilename~Sfaus3270.dll~ComponentCLSID~XcZogsXti1BGU8gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNDTAssoc~PluginFilename~Sfaus3270.dll~ComponentCLSID~XofNv0N9o1BGU9gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNAppInfo~PluginFilename~Sfaus3270.dll~ComponentCLSID~XYTVKVkdu1BGU9gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:RNATHInstallDlgActor~PluginFilename~Sfaus3270.dll~ComponentCLSID~XyZ6NnWvE0xGIAgCQJ5ApnA==}{ComponentName~Shttp://ns.real.com/gemini.v1:ATH2AutoUpdateDlgActor~PluginFilename~Sfaus3270.dll~ComponentCLSID~XIMyeU58Ns0asRL0LAYMXVA==}{ComponentName~Shttp://ns.real.com/
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Shell Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Enable Browser Extensions"="yes"
[HKEY_CURRENT_USER\Software\Microsoft\MediaPlayer\Player\Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Common\Licensing]
[HKEY_CURRENT_USER\Software\Microsoft\Office\12.0\Common\Licensing]
[HKEY_CURRENT_USER\Software\Microsoft\Photo Editor\3.0\Microsoft Photo Editor]
"LastFile4"="C:\Users\RAJ\Dropbox\Photos\Sample Album\Pensive Parakeet.jpg"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Export\GIF]
"Extensions"="gif"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Export\JPEG]
"Extensions"="jpg, jpeg"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Export\PNG]
"Extensions"="png"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Export\TIFF]
"Extensions"="tif"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\BMP]
"Extensions"="bmp"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\GIF]
"Extensions"="gif"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\JPEG]
"Extensions"="jpg, jpeg"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\PCD]
"Extensions"="pcd"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\PCX]
"Extensions"="PCX"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\PNG]
"Extensions"="png"
[HKEY_CURRENT_USER\Software\Microsoft\Shared Tools\Graphics Filters\Import\TIFF]
"Extensions"="tif"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Group Policy\History\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}\0]
"Extensions"="[{35378EAC-683F-11D2-A89A-00C04FBBCFA2}{9DACBD1F-CB6F-4E8F-999D-A8351BE5C886}]"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Group Policy\Status\GPExtensions]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"AnsiChar"="0x00000001"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionA_Char"="0x00000000"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionB_Char"="0x00000000"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache\Extensible Cache]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo0]
@="{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~S3GPP Timed Text Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~S3gppttrenderer.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Svideo/X-RN-3GPP-TEXT}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 2003-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License.~Description~SHelix DNA AAC Audio Format~FileExtensions~SAAC~FileMime~Saudio/aac|audio/aacp~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Saacff.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Version~N-
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo1]
@="leShort~Spn-http~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Shttpfsys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{IndexNumber~N1~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks RFC 2397 Data Scheme File System~FileProtocol~Sdata|tone~FileShort~Spn-datafsys~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Shttpfsys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{PluginFilename~Shxmedplyeng.dll~ComponentCLSID~XAwQAAAEJ0RGLBgCgJEBtWQ==}{PluginFilename~Shxnetwksvc.dll~ComponentCLSID~XWo5XqUd82BGLywACs2WHIA==}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the Real
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo2]
@="egurl|audio/scpls|audio/x-scpls~FileOpenNames~SMP3 Playlist Files (*.m3u,*.pls,*.xpl)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp3metaff.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N0~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks MPEG Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp3render.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Saudio/X-MP3-draft-00|audio/X-MP3-draft-00-RN|audio/MPEG-ELEMENTARY|audio/MPEG-ELEMENTARY-RN|audio/MPEG-ELEMENTARY-RAW|audio/rn-mpeg|audio/mpa-robust|audio/MPA|audio/mp1s|audio/mp2p|audio/vnd.rn-mp1s|audio/vnd.rn-mp2p}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo3]
@="etworks Internet Video Recording Manager Plugin~DRMId~SRAV2~PlgCopy~Shttp://www.real.com~PluginFilename~Sravemgr.dll~PluginType~SPLUGIN_SOURCE_HANDLER~SOURCE_HANDLER_GUID~SA672077B-2DB6-492B-A079096204BF1B28~SourceHandlerType~SSOURCE_HANDLER_DRM}{IndexNumber~N1~LoadMultiple~N1~Renderer_Granularity~N100~Version~N0~Copyright~S(c) 1995-2008 RealNetworks, All rights reserved.~Description~Sivr-null Renderer Plugin~PlgCopy~Shttp://www.real.com~PluginFilename~Sravemgr.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sivr-null}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~S(c) 1995,1996,1997 RealNetworks, All rights reserved.~Description~SRecord File Format Plugin~FileExtensions~Srec|ivr~FileMime~Sapplication/x-pn-recordfileformat~FileOpenNames~SInternet Video Recording (*.ivr)~PlgCopy~Shttp://www.real.com~PluginFilename~Srecf3260.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo4]
@="Shttp://www.helixcommunity.org~PluginFilename~Ssmlrender.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N3~LoadMultiple~N1~Renderer_Granularity~N200~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Brush Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Ssmlrender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/vnd.rn-brushstream}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N100~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Synchronized Renderer Plugin~PlgCopy~Shttp:/
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\FileInfo0]
@="{converterapp.dll,15E2C7005123D255A19893260B8DA1F0,0,587264,1}{fftr3210.dll,5A99B37A6F94DCC11D341528DC6DFBBF,0,523776,1}{locd3210.dll,C6550A628FAC140334A3D4FC692A2565,0,102400,1}{mpacore.dll,249E8B0815BF4881AAC6B33637701CEA,0,251904,1}{rpcontrols.dll,F39B09BE41B388D0AD34A86852CAC5AE,0,2545152,1}{rpflvframegrabber.dll,B9AE0EFC0781D3EFEFD6AB554863266A,0,128000,1}{rpsharedcomponents.dll,21673B2F9A857AA1CE0CDA14442CC599,0,1182720,1}{rpshellextension.dll,BE1779348B2BB28D990FA332401CBDE5,0,123904,1}{sharemedia.dll,2802487A263491E20B49A1F73754DD33,0,218624,1}{sonr3210.dll,256AE358630973D4813BE0DA60438E10,0,503808,1}{uisy3201.dll,93F491D6A2B201AF71C2A5501F6641DE,0,461824,1}{videoeditor.dll,73E5283E3ABD42BFCB42F741BF298B7E,0,320000,1}{xmlc3201.dll,481E3D05050007B52A1CDE17DCAFCADF,0,57344,1}792"
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo0]
@="{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:FileListActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XLpSzKyABZUquNWYCxpL+sA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:FileListEntryActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XkP5t+7fT10GespbB1/CRpA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:MainWindowActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XUxcn9iX+yEy1kCNHlOGKXg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:ConvertListEntryActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~Xyo3q4CLPUEu9DNc9u98NrQ==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:ConvertListActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~Xx2ZuBT2XtES0Mq5H5TD4aQ==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:DevicePaneActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XEaD9pa
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo3]
@="trols.dll~ComponentCLSID~XA2xANEwT/UmbRz8BpX8kOA==}{LoadMultiple~N1~PluginFilename~Srpcontrols.dll~ComponentCLSID~XHLnK+FNQyUaXnDDEmqVcCg==}{LoadMultiple~N1~PluginFilename~Srpcontrols.dll~ComponentCLSID~XePy/RK6svk6vef5GxY4Oag==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:CloseActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~X7YY8kHra0xGU7gDQtxA1UA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:RCAMinimizeActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~XXVteWuLTNEmOVB+azVYRgg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:RCAMaximizeActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~Xu0zQkWdswUiuhZN/7bB/yg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:dragactor~PluginFilename~Srpcontrols.dll~ComponentCLSID~Xa4O2GBSZik2uTXO+2tiWhw==}{LoadMultiple~N1~PluginFilename~Srpcontrols.dll~ComponentCLSID~XGHQWub3CeEOqDDS
[HKEY_CURRENT_USER\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo4]
@="{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:SetRecordingLengthActor~PluginFilename~Ssonr3210.dll~ComponentCLSID~XSABghtcuvESxRs9G/uS+mg==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~ComponentCLSID~X++LKPZNVnUqWwPl+JqFOug==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~rpbgrecordersupportedextensions~Smov|qt|m4v~rpbgrecordersupportedmimetype~Svideo/quicktime|video/mpeg4~ComponentCLSID~Xws7nyWXUQUifyRSoJwekfQ==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~ComponentCLSID~XDzyHuV+GSEGGggNvPPey4Q==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XdAuZKannb0aWO1QZRQ9FtA==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~X+iS854q4QUWduQmAu1WJRQ==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XDqBXb3HFrk+D2JDqzgv3/Q==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XilFIwCP9p0OFLOMjtmQOxw==}{LoadMultiple~N1~PluginFilen
[HKEY_CURRENT_USER\Software\Classes\Drive\shellex\FolderExtensions]
[HKEY_CURRENT_USER\Software\Classes\Interface\{8A683C90-BA84-11CF-8110-00A0C9030074}]
@="IReturnSingle"
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\RAJ\Desktop\ComboFix.exe"="ComboFix NSIS Installer"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/sdp]
"Extension"=".sdp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/smil]
"Extension"=".smi"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realaudio-secure]
"Extension"=".rms"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia]
"Extension"=".rm"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-secure]
"Extension"=".rms"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-vbr]
"Extension"=".rmvb"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realplayer]
"Extension"=".rnx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rjt]
"Extension"=".rjt"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmj]
"Extension"=".rmj"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmx]
"Extension"=".rmx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-rn_music_package]
"Extension"=".rmp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/vnd.rn-rsml]
"Extension"=".rsml"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent]
"Extension"=".torrent"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bubbledock]
"Extension"=".bubbledock"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/3gpp]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/3gpp2]
"Extension"=".3g2"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/AMR]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/AMR-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/AMR-WB]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/evrc-qcp]
"Extension"=".EVRC"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/qcelp]
"Extension"=".qcp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/vnd.rn-realaudio]
"Extension"=".ra"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/x-pn-realaudio]
"Extension"=".ram"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/x-realaudio]
"Extension"=".ra"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/x-realaudio-secure]
"Extension"=".rms"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\ICM.DIV4]
"Extension"=".divx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\ICM.DIV6]
"Extension"=".divx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\ICM.DIVX1]
"Extension"=".divx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\ICM.DX50]
"Extension"=".divx"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\image/vnd.rn-realpix]
"Extension"=".rp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\text/vnd.rn-realtext]
"Extension"=".rt"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/3gpp]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/3gpp2]
"Extension"=".3g2"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo]
"Extension"=".rv"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo-secure]
"Extension"=".rms"
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\video/x-flv]
"Extension"=".flv"
[HKEY_CURRENT_USER\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSBiff]
"Extensions"="xls xlw xl5"
[HKEY_CURRENT_USER\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSPAB]
"Extensions"="PAB"
[HKEY_CURRENT_USER\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\OUTLOOK]
"Extensions"="OLK"
[HKEY_CURRENT_USER\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\SPLUS]
"Extensions"="SCD"
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6000.16386_none_233de19528492776]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6001.18000_none_2574a3912534384a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6002.18005_none_27601c9d22560396]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_6.0.6000.16386_en-us_609cd3be2ca35f5b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_6.0.6002.18005_en-us_b9ab630990bf5c51]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_6.0.6000.16386_none_010ab2690e89e5f8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_6.0.6002.18005_none_fae9cb63f2d528b4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_6.0.6000.16386_none_a6c374f3e59a0c1c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-i..nsibility.resources_31bf3856ad364e35_6.0.6000.16386_en-us_4bf8db0d2331b48f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6000.16386_none_4beed1897a7bfe1d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6001.18000_none_4e25938577670ef1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6002.18005_none_50110c917488da3d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_8.0.6001.18702_none_3110b5df8d327f4e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_9.1.8112.16421_none_0e18ce75b54b5503]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_6.0.6000.16386_none_77b85a0e005a85c4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_6.0.6001.18000_none_79ef1c09fd459698]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6000.16386_none_f35969b3cdd81cde]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6001.18000_none_f5902bafcac32db2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6002.18005_none_f77ba4bbc7e4f8fe]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_6.0.6000.16386_none_38b2944aff04a15e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_6.0.6000.16386_none_4c1382f9a3c9c090]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_6.0.6001.18000_none_4e4a44f5a0b4d164]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6000.16386_none_1c7028e3a9070697]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.18000_none_1ea6eadfa5f2176b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.18570_none_1e5b44e9a62accc5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.22821_none_1f1bf566bf1ef47f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.18005_none_209263eba313e2b7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.18362_none_204e8937a34735cd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.22555_none_20e5f8b2bc5a02d2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.22869_none_20df2fa0bc5e7b94]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_6.0.6000.16386_none_1021b2d6766d72c2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_6.0.6001.18000_none_125874d273588396]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_6.0.6000.16386_none_1177be79edf6a0c2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_6.0.6001.18000_none_13ae8075eae1b196]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_6.0.6000.16386_none_e8729baedd076f47]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_6.0.6001.18000_none_eaa95daad9f2801b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_6.0.6000.16386_none_f969c6fb95739a7a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_6.0.6001.18000_none_fba088f7925eab4e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_de4b43ffc2cb29cd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_6.0.6000.16386_none_39101a4d24134dbf]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_a574738db8a17b9a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_6.0.6001.18000_none_a7ab3589b58c8c6e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ib1-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_e30cc2954d2bff10]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ib2-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_8ea574a4160d7100]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.16386_none_c2e898f3a9024b10]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.16509_none_c3421cfda8beb1db]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.20624_none_c3b1187ec1f10ad4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6001.18000_none_c51f5aefa5ed5be4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6002.18005_none_c70ad3fba30f2730]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6000.16386_none_084b152827587502]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.18000_none_0a81d724244385d6]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.18068_none_0a48f9ec246cf834]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.22175_none_0ac4c5ed3d9567ea]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6002.18005_none_0c6d503021655122]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6000.16386_none_c31344726af92eb7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6001.18000_none_c54a066e67e43f8b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6002.18005_none_c7357f7a65060ad7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6000.16386_none_6a0593df546ad073]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6001.18000_none_6c3c55db5155e147]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6002.18005_none_6e27cee74e77ac93]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_5f53a1cac8f9d707]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_7644b9541de460a1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6000.16386_none_8e1403202caad46d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6001.18000_none_904ac51c2995e541]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6002.18005_none_92363e2826b7b08d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.16386_en-us_cc9601aaa8e38997]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.16509_en-us_ccef85b4a89ff062]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.20624_en-us_cd5e8135c1d2495b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6001.18000_en-us_ceccc3a6a5ce9a6b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6002.18005_en-us_d0b83cb2a2f065b7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..re-extension-agents_31bf3856ad364e35_6.0.6000.16386_none_7278d476b0c6ca45]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6000.16386_none_e2cd4c3152bc7a6f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6001.18000_none_e5040e2d4fa78b43]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6002.18005_none_e6ef87394cc9568f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_6.0.6000.16386_none_14b4713a11974c07]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_6.0.6000.16386_none_b208484d3302a9a7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.16386_none_88412d1ab84caf4a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.16509_none_889ab124b8091615]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.20624_none_8909aca5d13b6f0e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6001.18000_none_8a77ef16b537c01e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6002.18005_none_8c636822b2598b6a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6000.16386_none_b81870b06ede43d1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6001.18000_none_ba4f32ac6bc954a5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6002.18005_none_bc3aabb868eb1ff1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.16386_none_4c40bb7dfc9ae9f4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.16509_none_4c9a3f87fc5750bf]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.20624_none_4d093b091589a9b8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6001.18000_none_4e777d79f985fac8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6002.18005_none_5062f685f6a7c614]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6000.16386_none_4c10a7ebfcbfa7c3]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6001.18000_none_4e4769e7f9aab897]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6002.18005_none_5032e2f3f6cc83e3]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.16386_none_4c15f367fcbb0cd5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.16509_none_4c6f7771fc7773a0]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.20624_none_4cde72f315a9cc99]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6001.18000_none_4e4cb563f9a61da9]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6002.18005_none_50382e6ff6c7e8f5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6000.16386_none_ef92b4e2388d5d6a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6001.18000_none_f1c976de35786e3e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6002.18005_none_f3b4efea329a398a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_6.0.6000.16386_none_779398cbcb8a3b0c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_6.0.6001.18000_none_79ca5ac7c8754be0]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6000.16386_none_97da777e6e2235f4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6001.18000_none_9a11397a6b0d46c8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6002.18005_none_9bfcb286682f1214]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_6.0.6000.16386_en-us_c0262cf4dfe59b6f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_6.0.6000.16386_en-us_3a1a542ce2e821a9]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-usermodensi_31bf3856ad364e35_6.0.6000.16386_none_702b60e3ca88cfce]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-usermodensi_31bf3856ad364e35_6.0.6001.18000_none_726222dfc773e0a2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_3c3daf9f83461003]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_491daa4e5f0129b8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_6af46ccacdea4ece]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6002.18112_en-us_4d3216725918d2eb]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_6.0.6000.16386_none_8bb78a6231951d71]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_6.0.6001.18000_none_8dee4c5e2e802e45]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_6.0.6000.16386_none_317a8db4e08e5964]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_6.0.6001.18000_none_33b14fb0dd796a38]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_6.0.6000.16386_none_f7ac6d32266e7828]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_6.0.6001.18000_none_f9e32f2e235988fc]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6000.16386_none_0ef22aaec9dea191]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6001.18000_none_1128ecaac6c9b265]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6002.18112_none_130696d2c3f64ac4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_6.0.6000.16386_none_6c448a7e922ef1f7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_6.0.6001.18000_none_6e7b4c7a8f1a02cb]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_7.0.6001.16503_none_5fef00ac19fdb620]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_none_bf7b521a2f28ecb0]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_en-us_af12e3a4840274b3]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_en-us_e23aa09494ab710d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_none_6b6c723ea3cc65be]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_none_736c0b32c2a90502]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_none_8fbfd0a01a1fefba]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-i..nsibility.resources_31bf3856ad364e35_en-us_a1cc42b3bdf2a41f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_none_50a27482d0b17f81]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_none_815a5230c1d1a952]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_none_fcc3be7faafc9888]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_none_9830d61989141808]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_none_3979b153e88c69e6]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_none_bd0f121a20daf057]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_none_37c63f5042ec00c4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_none_a99cdae8c3dcc2c4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_none_65e5b3bffea20127]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_none_462cb431785d18cc]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_en-us_8747374e8fc52551]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_none_289e2e69132ee86f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_none_71666f3690e638ac]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ib1-extension-agent_31bf3856ad364e35_none_76b0e7ed47817f66]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ib2-extension-agent_31bf3856ad364e35_none_35940d60f84c00f6]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_none_fcbc465492a29366]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_none_2acba61c84990084]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_none_6cddaf3c0b4e4137]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_none_1ed2eb1b7f96f65b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_none_ae84580400dc6767]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_none_bcd58ae44cc2581d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_none_ccc969b5a07367b1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_en-us_3adf7eaeaf17c557]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..re-extension-agents_31bf3856ad364e35_none_e2b733187553da99]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_none_8fdd79efb8aa553f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_none_fdb4e8bebfe75a67]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_none_b2830443bc30c1c7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_none_84748be3580c167c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_none_22234e24b58a226d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_none_79a212528958baa2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_none_79a681968954a58b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_none_79a6081689552889]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_none_2d1e09e282af915c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_none_7607e4c48ecc5c4a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_none_0f9d73a7d210cea2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_en-us_219cdb683733fc3f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_en-us_e7bdb74a6fc1ed55]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-usermodensi_31bf3856ad364e35_none_2b06ddd33993a118]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_4b20b047c76c5a18]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_93ff18fa7e69cffe]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_d3bdca0296d3ef4b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_none_fc55cdd0f53cedcd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_none_3e17376c7004cab2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_none_7bad538f6841390e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_none_4bf824331d34c2ad]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_windowssearchengine-licensing_31bf3856ad364e35_none_6c0fc5655c4847f7]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_none_bf7b521a2f28ecb0]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_en-us_af12e3a4840274b3]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_en-us_e23aa09494ab710d]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_none_6b6c723ea3cc65be]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_none_736c0b32c2a90502]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_none_8fbfd0a01a1fefba]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_none_50a27482d0b17f81]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_none_fcc3be7faafc9888]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_none_9830d61989141808]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_none_3979b153e88c69e6]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_none_bd0f121a20daf057]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_none_37c63f5042ec00c4]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_none_a99cdae8c3dcc2c4]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_none_65e5b3bffea20127]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_none_462cb431785d18cc]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_en-us_8747374e8fc52551]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_none_289e2e69132ee86f]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_none_fcbc465492a29366]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_none_2acba61c84990084]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_none_6cddaf3c0b4e4137]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_none_1ed2eb1b7f96f65b]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_none_ccc969b5a07367b1]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_en-us_3adf7eaeaf17c557]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_none_8fdd79efb8aa553f]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_none_fdb4e8bebfe75a67]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_none_b2830443bc30c1c7]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_none_84748be3580c167c]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_none_22234e24b58a226d]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_none_79a212528958baa2]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_none_79a681968954a58b]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_none_79a6081689552889]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_none_2d1e09e282af915c]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_none_7607e4c48ecc5c4a]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_none_0f9d73a7d210cea2]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_en-us_219cdb683733fc3f]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_en-us_e7bdb74a6fc1ed55]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-usermodensi_31bf3856ad364e35_none_2b06ddd33993a118]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_4b20b047c76c5a18]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_93ff18fa7e69cffe]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_d3bdca0296d3ef4b]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_none_fc55cdd0f53cedcd]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_none_3e17376c7004cab2]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_none_7bad538f6841390e]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_none_4bf824331d34c2ad]
[HKEY_LOCAL_MACHINE\COMPONENTS\Winners\x86_windowssearchengine-licensing_31bf3856ad364e35_none_6c0fc5655c4847f7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\CLSID\{B801CA65-A1FC-11D0-85AD-444553540000}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\MIME\Database\Content Type\application/pdf]
"Extension"=".pdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\MIME\Database\Content Type\application/vnd.adobe.xdp+xml]
"Extension"=".xdp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\MIME\Database\Content Type\application/vnd.adobe.xfd+xml]
"Extension"=".xfd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\MIME\Database\Content Type\application/vnd.adobe.xfdf]
"Extension"=".xfdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\PDF Owner\PreviousOwner\MIME\Database\Content Type\application/vnd.fdf]
"Extension"=".fdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\Shockwave 11\uicontrol\minduration2consider]
[HKEY_LOCAL_MACHINE\SOFTWARE\Adobe\Shockwave 12\uicontrol\minduration2consider]
[HKEY_LOCAL_MACHINE\SOFTWARE\ATI Technologies\CDS\Device\0]
"DeviceItem0080"="[Non-Plug and Play Drivers] -> [NSI proxy service] (0x00000000)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ShellExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.accda]
@="Access.ACCDAExtension.12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mda]
@="Access.Extension.12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mda\Access.Extension.10]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mda\Access.Extension.12]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.qpx]
@="QuickTimePlayerExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.qtx]
@="QuickTimeExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ACCDAExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ACCDAExtension\CurVer]
@="Access.Extension.12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ACCDAExtension.12]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ADEFile]
@="Microsoft Office Access Project Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ADEFile.10]
@="Microsoft Access Project Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.ADEFile.12]
@="Microsoft Office Access Project Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.Extension\CurVer]
@="Access.Extension.12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.Extension.10]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Access.Extension.12]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8C334A55-DDB9-491C-817E-35A6B85D2ECB}]
@="IASExtensionHost"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-internet-signup]
"FileExtensions"=".ins"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-ns-proxy-autoconfig]
"FileExtensions"=".pac;.jvs;.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVIFile\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BlnMgrPs.BlnSinkPs]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BlnMgrPs.BlnSinkPs]
@="BlnSink Proxy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BlnMgrPs.BlnSinkPs.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BlnMgrPs.BlnSinkPs.1]
@="BlnSink Proxy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Briefcase\ShellNew\Config]
"NoExtension"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020820-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020821-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020830-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020832-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020833-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020906-0000-0000-C000-000000000046}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0006F045-0000-0000-C000-000000000046}]
@="Outlook File Icon Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00F43B3A-7FBE-4B84-A670-27F3A0A9CD4D}\InprocServer32]
@="C:\Program Files\Windows Live\Photo Gallery\PublishPluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0102563D-F16D-434d-82A2-37968BD3E31E}]
@="RNWF Extensible Helper Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{048EB43E-2059-422F-95E0-557DA96038AF}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05D3B7FA-C00B-3188-B2F6-E43897CBED34}]
@="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05D3B7FA-C00B-3188-B2F6-E43897CBED34}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05D3B7FA-C00B-3188-B2F6-E43897CBED34}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05D3B7FA-C00B-3188-B2F6-E43897CBED34}\ProgId]
@="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}\Instance\{8B498511-1218-11CF-ADC4-00A0D100041B}]
"FriendlyName"="Arcsoft DV Transition"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18A06B6B-2F3F-4E2B-A611-52BE631B2D22}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A5D1111-F0FA-46B4-A048-C4328E7DD2BB}]
@="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A5D1111-F0FA-46B4-A048-C4328E7DD2BB}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A5D1111-F0FA-46B4-A048-C4328E7DD2BB}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A5D1111-F0FA-46B4-A048-C4328E7DD2BB}\ProgId]
@="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B261B22-AC6A-4E68-A870-AB5080E8687B}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D6322AD-AA85-4EF5-A828-86D71067D145}]
@="UIAnimationTransitionLibrary"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083969-829F-11D3-AB5D-00C04F9407B9}]
@="MSOLAPDimension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083969-829F-11D3-AB5D-00C04F9407B9}\ProgID]
@="MSOlapAdmin2.MSOLAPDimension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083969-829F-11D3-AB5D-00C04F9407B9}\VersionIndependentProgID]
@="MSOlapAdmin2.MSOLAPDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083980-829F-11D3-AB5D-00C04F9407B9}]
@="MSOLAPDimensions Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083980-829F-11D3-AB5D-00C04F9407B9}\ProgID]
@="MSOlapAdmin2.MSOLAPDimensions.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E083980-829F-11D3-AB5D-00C04F9407B9}\VersionIndependentProgID]
@="MSOlapAdmin2.MSOLAPDimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E3D786D-BE27-4C3B-B139-49A43155C9C7}]
@="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E3D786D-BE27-4C3B-B139-49A43155C9C7}\InprocServer32]
"Class"="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E3D786D-BE27-4C3B-B139-49A43155C9C7}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E3D786D-BE27-4C3B-B139-49A43155C9C7}\ProgId]
@="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}]
@="DTC MMC Property-sheet extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c}]
@="Security Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21B22460-3AEA-1069-A2DC-08002B30309D}]
@="File Property Page Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2495A96E-B163-4305-8FAC-2EACA196F949}]
@="WBEM Software Licensing Token Activation License Provider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25585dc7-4da0-438d-ad04-e42c8d2d64b9}]
@="Client application shell extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2dfb3a35-6071-11d1-8c13-00c04fd8d503}]
@="Microsoft Locality Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\Implemented Categories\{00021490-0000-0000-C000-000000000046}]
@="Browsable Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35E946E4-7CDA-3824-8B24-D799A96309AD}]
@="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35E946E4-7CDA-3824-8B24-D799A96309AD}\InprocServer32]
"Class"="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35E946E4-7CDA-3824-8B24-D799A96309AD}\InprocServer32\2.0.0.0]
"Class"="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35E946E4-7CDA-3824-8B24-D799A96309AD}\InprocServer32\4.0.0.0]
"Class"="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35E946E4-7CDA-3824-8B24-D799A96309AD}\ProgId]
@="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35EF4182-F900-4632-B072-8639E4478A61}]
@="Transient Multi-Monitor Manager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C18EAE4-BC25-4134-B7DF-1ECA1337DDDC}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D85851B-40FE-4472-9722-6F69B5517476}]
@="Internet Explorer URL Monitor Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FC0B520-68A9-11D0-8D77-00C04FD70822}]
@="Display Control Panel HTML Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40dd6e20-7c17-11ce-a804-00aa003ca9f6}]
@="Shell extensions for sharing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41E300E0-78B6-11ce-849B-444553540000}]
@="Display Effects CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071712-76d4-11d1-8b24-00a0c9068ff3}]
@="Display Adapter CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071713-76d4-11d1-8b24-00a0c9068ff3}]
@="Display Monitor CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4666B2A3-340A-46F5-9D59-EEA5B95BA516}]
@="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4666B2A3-340A-46F5-9D59-EEA5B95BA516}\InprocServer32]
"Class"="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4666B2A3-340A-46F5-9D59-EEA5B95BA516}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4666B2A3-340A-46F5-9D59-EEA5B95BA516}\ProgId]
@="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D3C68D-7D85-3227-A9E7-88451D6BADFC}]
@="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D3C68D-7D85-3227-A9E7-88451D6BADFC}\InprocServer32]
"Class"="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D3C68D-7D85-3227-A9E7-88451D6BADFC}\InprocServer32\2.0.0.0]
"Class"="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D3C68D-7D85-3227-A9E7-88451D6BADFC}\InprocServer32\4.0.0.0]
"Class"="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D3C68D-7D85-3227-A9E7-88451D6BADFC}\ProgId]
@="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B534112-3AF6-4697-A77C-D62CE9B9E7CF}]
@="Sync Center Event Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4cadfae1-5512-456a-9d65-5b5e7e9ca9a3}]
@="PortableDeviceClassExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4cadfae1-5512-456a-9d65-5b5e7e9ca9a3}\InprocServer32]
@="C:\Windows\System32\portabledeviceclassextension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4cadfae1-5512-456a-9d65-5b5e7e9ca9a3}\ProgID]
@="PortableDeviceClassExtension.PortableDeviceClassExtension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4cadfae1-5512-456a-9d65-5b5e7e9ca9a3}\VersionIndependentProgID]
@="PortableDeviceClassExtension.PortableDeviceClassExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4de7016c-5ef9-11d1-8c13-00c04fd8d503}]
@="Microsoft User Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E40F770-369C-11d0-8922-00A024AB2DBB}]
@="Security Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F58F63F-244B-4c07-B29F-210BE59BE9B4}]
@=".group shell extension handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{576C9E85-1300-4EF5-BF6B-D00509F4EDCD}]
@="Sync Center Handler Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58F5B132-53EA-4c77-A0A2-35575CDCAFC0}]
@="Windows Live Calendar Db Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59099400-57FF-11CE-BD94-0020AF85B590}]
@="Disk Copy Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59be4990-f85c-11ce-aff7-00aa003ca9f6}]
@="Shell extensions for Microsoft Windows Network objects"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ACC8E22-751A-4C17-AA86-931B6FC71314}]
@="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ACC8E22-751A-4C17-AA86-931B6FC71314}\InprocServer32]
"Class"="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ACC8E22-751A-4C17-AA86-931B6FC71314}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ACC8E22-751A-4C17-AA86-931B6FC71314}\ProgId]
@="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F327514-6C5E-4d60-8F16-D07FA08A78ED}]
@="Auto Update Property Sheet Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F5295E0-429F-1069-A2E2-08002B30309D}]
@="Drive Property Page Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F7B1267-94A9-47F5-98DB-E99415F33AEC}\InprocServer32]
@="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60254CA5-953B-11CF-8C96-00AA00B8708C}]
@="Shell Extension For Windows Script Host"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{625F1F60-342A-40E1-86D2-C0CBABC574F4}]
@="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{625F1F60-342A-40E1-86D2-C0CBABC574F4}\InprocServer32]
"Class"="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{625F1F60-342A-40E1-86D2-C0CBABC574F4}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{625F1F60-342A-40E1-86D2-C0CBABC574F4}\ProgId]
@="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64818D10-4F9B-11CF-86EA-00AA00B929E8}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67E4FF55-C379-4DD4-B5BF-67FE43509B70}]
@="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67E4FF55-C379-4DD4-B5BF-67FE43509B70}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67E4FF55-C379-4DD4-B5BF-67FE43509B70}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67E4FF55-C379-4DD4-B5BF-67FE43509B70}\ProgId]
@="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D5313C0-8C62-11D1-B2CD-006097DF8C11}]
@="Folder Options Property Page Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72245140-F8BD-4705-AE23-6DFABA51F92D}]
@="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72245140-F8BD-4705-AE23-6DFABA51F92D}\InprocServer32]
"Class"="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72245140-F8BD-4705-AE23-6DFABA51F92D}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72245140-F8BD-4705-AE23-6DFABA51F92D}\ProgId]
@="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75D01070-1234-44E9-82F6-DB5B39A47C13}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77597368-7B15-11D0-A0C2-080036AF3F03}]
@="PrintUIShellExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{795634D5-6F56-495F-A6EC-B4A462B3BD87}\InProcServer32]
@="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A956EEC-0193-48DF-880D-8DBA13A867B0}]
@="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A956EEC-0193-48DF-880D-8DBA13A867B0}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A956EEC-0193-48DF-880D-8DBA13A867B0}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A956EEC-0193-48DF-880D-8DBA13A867B0}\ProgId]
@="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5E1329-C951-4DBD-A404-11050D15280A}]
@="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5E1329-C951-4DBD-A404-11050D15280A}\InprocServer32]
"Class"="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5E1329-C951-4DBD-A404-11050D15280A}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5E1329-C951-4DBD-A404-11050D15280A}\ProgId]
@="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}]
@="WSecEdit Extension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8082C5E6-4C27-48ec-A809-B8E1122E8F97}]
@=".contact shell extension handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{827CE1A1-8255-4165-8C83-8379F8C127AE}\ProgID]
@="Wireless.Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{827CE1A1-8255-4165-8C83-8379F8C127AE}\VersionIndependentProgID]
@="Wireless.Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{838A77A6-14D4-439C-925F-30EE58005026}]
@="CCOMNSScopeForExtensionSnapin Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86422020-42A0-1069-A2E5-08002B30309D}]
@="Network Context Menu Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2}\ProgID]
@="SDSHELLEXTENSION.SdShellExtension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2}\VersionIndependentProgID]
@="SDSHELLEXTENSION.SdShellExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200d-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200d-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200d-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200e-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Collection"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200e-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509Extensions.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200e-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200f-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200f-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionKeyUsage.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200f-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionKeyUsage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2010-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Enhanced Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2010-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionEnhancedKeyUsage.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2010-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionEnhancedKeyUsage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2011-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Template Name"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2011-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionTemplateName.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2011-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionTemplateName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2012-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Template"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2012-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionTemplate.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2012-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionTemplate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2015-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Alternative Names"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2015-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionAlternativeNames.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2015-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionAlternativeNames"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2016-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Basic Constraints"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2016-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionBasicConstraints.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2016-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionBasicConstraints"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2017-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Subject Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2017-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionSubjectKeyIdentifier.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2017-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionSubjectKeyIdentifier"
 
#19 ·
SYSLOOK.Scan 17APR 2 0F6


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2018-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Authority Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2018-217d-11da-b2a4-000e7bbb2b09}\ProgID]

@="X509Enrollment.CX509ExtensionAuthorityKeyIdentifier.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2018-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionAuthorityKeyIdentifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201b-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Smime Capabilities"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201b-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionSmimeCapabilities.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201b-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionSmimeCapabilities"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2020-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension Certificate Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2020-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionCertificatePolicies.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2020-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionCertificatePolicies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2021-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Extension MS Application Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2021-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509ExtensionMSApplicationPolicies.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2021-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509ExtensionMSApplicationPolicies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2024-217d-11da-b2a4-000e7bbb2b09}]
@="X509 Attribute Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2024-217d-11da-b2a4-000e7bbb2b09}\ProgID]
@="X509Enrollment.CX509AttributeExtensions.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2024-217d-11da-b2a4-000e7bbb2b09}\VersionIndependentProgID]
@="X509Enrollment.CX509AttributeExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A624388-AA27-43E0-89F8-2A12BFF7BCCD}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A683C92-BA84-11CF-8110-00A0C9030074}\InprocServer32]
"Class"="Microsoft.Vbe.Interop.Forms.ReturnSingleClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A683C92-BA84-11CF-8110-00A0C9030074}\InprocServer32\11.0.0.0]
"Class"="Microsoft.Vbe.Interop.Forms.ReturnSingleClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A9B1CDD-FCD7-419c-8B44-42FD17DB1887}]
@="UIAnimationTransitionFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B498511-1218-11CF-ADC4-00A0D100041B}]
@="Arcsoft DV Transition"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B498511-1218-11CF-ADC4-00A0D100041B}\InprocServer32]
@="C:\PROGRA~1\COMMON~1\ArcSoft\MPEGEN~1\DVTransition.ax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B498512-1218-11CF-ADC4-00A0D100041B}\InprocServer32]
@="C:\PROGRA~1\COMMON~1\ArcSoft\MPEGEN~1\DVTransition.ax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C334A55-DDB9-491c-817E-35A6B85D2ECB}\ProgID]
@="IAS.ExtensionHost.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C334A55-DDB9-491c-817E-35A6B85D2ECB}\VersionIndependentProgID]
@="IAS.ExtensionHost"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}]
@="DiskManagement.SnapInExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}\ProgID]
@="DiskManagement.SnapInExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90087284-d6d6-11d0-8353-00a0c90640bf}]
@="Device Manager extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{912ABC52-36E2-4714-8E62-A8B73CA5E390}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ACDCF7-45C0-3DCB-98DA-8C9039CCD861}]
@="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ACDCF7-45C0-3DCB-98DA-8C9039CCD861}\InprocServer32]
"Class"="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ACDCF7-45C0-3DCB-98DA-8C9039CCD861}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ACDCF7-45C0-3DCB-98DA-8C9039CCD861}\ProgId]
@="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92187326-72B4-11d0-A1AC-0000F8026977}]
@="Game Controllers CPL Shell Extension Default Property Sheets"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93A314AA-9B9A-4DA4-A9D4-4944781D6E9C}]
@="Software Licensing Token Activation Signer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93A314AA-9B9A-4DA4-A9D4-4944781D6E9C}\ProgID]
@="SLWMI.TokenActivationSigner.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93A314AA-9B9A-4DA4-A9D4-4944781D6E9C}\VersionIndependentProgID]
@="SLWMI.TokenActivationSigner"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94a909a5-6f52-11d1-8c18-00c04fd8d503}]
@="Microsoft Group Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f37f39c-6f49-11d1-8c18-00c04fd8d503}]
@="Microsoft PrintQueue Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A17DA8D0-F67D-47A0-9EC4-19C486383206}\ProgID]
@="IPSECMon.Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A17DA8D0-F67D-47A0-9EC4-19C486383206}\VersionIndependentProgID]
@="IPSECMon.Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1E7036D-72A1-4529-B108-0C3C9E92D424}\ProgID]
@="Wired.Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1E7036D-72A1-4529-B108-0C3C9E92D424}\VersionIndependentProgID]
@="Wired.Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2A54893-AAF2-49A3-B3F5-CC43CEBCC27C}]
@="Network Access Protection GPEdit Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA14F9C9-62B5-4637-8AC4-8F25BF29D5A7}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE6BE008-07FB-400D-8BEB-337A64F7051F}]
@="TF_TransitoryExtensionUIEntry"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2952b16-0e07-4e5a-b993-58c52cb94cae}\Implemented Categories\{00021490-0000-0000-C000-000000000046}]
@="Browsable Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B32D3949-ED98-4DBB-B347-17A144969BBA}]
@="Sync Center Item Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5941C86-A91E-4D3A-91E8-00E8ED8B70EB}]
@="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5941C86-A91E-4D3A-91E8-00E8ED8B70EB}\InprocServer32]
"Class"="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5941C86-A91E-4D3A-91E8-00E8ED8B70EB}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5941C86-A91E-4D3A-91E8-00E8ED8B70EB}\ProgId]
@="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6B04F24-88EB-3914-A474-A6678E5F8052}]
@="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6B04F24-88EB-3914-A474-A6678E5F8052}\InprocServer32]
"Class"="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6B04F24-88EB-3914-A474-A6678E5F8052}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6B04F24-88EB-3914-A474-A6678E5F8052}\ProgId]
@="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B801CA65-A1FC-11D0-85AD-444553540000}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC08386A-9952-40CD-BA50-9541D64A4B4E}\InProcServer32]
@="C:\Windows\System32\portabledeviceclassextension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC5F1E53-5110-11D1-AFF5-006097C9A284}]
@="BlnSink Proxy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC5F1E53-5110-11D1-AFF5-006097C9A284}\ProgID]
@="BlnMgrPs.BlnSinkPs.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC5F1E53-5110-11D1-AFF5-006097C9A284}\VersionIndependentProgID]
@="BlnMgrPs.BlnSinkPs"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C000D3F7-7B2A-4034-9F1A-D0B06102771F}]
@="WBEM Software Licensing Product Provider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C20CE506-5DA9-4B9C-9662-D88BD30E10A1}]
@="PrinterQueueViewJobExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C260BF5F-5B40-3C37-AF14-5B8753F6A3D2}]
@="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C260BF5F-5B40-3C37-AF14-5B8753F6A3D2}\InprocServer32]
"Class"="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C260BF5F-5B40-3C37-AF14-5B8753F6A3D2}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C260BF5F-5B40-3C37-AF14-5B8753F6A3D2}\ProgId]
@="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C282417B-2662-44B8-8A94-3BFF61C50900}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442A40A-EF2C-496E-AED9-24C865DF2738}]
@="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442A40A-EF2C-496E-AED9-24C865DF2738}\InprocServer32]
"Class"="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442A40A-EF2C-496E-AED9-24C865DF2738}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442A40A-EF2C-496E-AED9-24C865DF2738}\ProgId]
@="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C859248A-513E-11D1-8194-00A0C95C0756}\ProgID]
@="LDVPCTLS.LDVPExtensionsCtrl.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB295954-22BF-4446-B173-4B3FC0930737}]
@="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB295954-22BF-4446-B173-4B3FC0930737}\InprocServer32]
"Class"="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB295954-22BF-4446-B173-4B3FC0930737}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB295954-22BF-4446-B173-4B3FC0930737}\ProgId]
@="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF4F55F4-8F87-4D47-80BB-5808164BB3F8}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1B9159C-C2EC-4494-8BF5-AD9D67D0E182}]
@="WBEM Software Licensing Service Provider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D245D11D-C3DD-4D75-9AF0-C90DB5094BCB}]
@="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D245D11D-C3DD-4D75-9AF0-C90DB5094BCB}\InprocServer32]
"Class"="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D245D11D-C3DD-4D75-9AF0-C90DB5094BCB}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D245D11D-C3DD-4D75-9AF0-C90DB5094BCB}\ProgId]
@="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D94D3947-7CDA-40B0-B897-A4E6D5166697}]
@="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D94D3947-7CDA-40B0-B897-A4E6D5166697}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D94D3947-7CDA-40B0-B897-A4E6D5166697}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D94D3947-7CDA-40B0-B897-A4E6D5166697}\ProgId]
@="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB49BBEB-C744-49F8-81AC-AF97669D4CB0}]
@="PrinterStatusHTMLViewExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC020317-E6E2-4A62-B9FA-B3EFE16626F4}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC5DA001-7CD4-11D2-8ED9-D8C857F98FE3}\ProgID]
@="CorTransientLoader.CorLoad.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC5DA001-7CD4-11D2-8ED9-D8C857F98FE3}\VersionIndependentProgID]
@="CorTransientLoader.CorLoad"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dccc0bed-6066-11d1-8c13-00c04fd8d503}]
@="Microsoft Organization Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEA8AFA1-CC85-11D0-9CE2-0080C7221EBD}\ProgID]
@="IPSEC.Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEA8AFA1-CC85-11D0-9CE2-0080C7221EBD}\VersionIndependentProgID]
@="IPSEC.Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFCB3BDD-51BE-416D-9E6C-3655EBB2845D}]
@="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFCB3BDD-51BE-416D-9E6C-3655EBB2845D}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFCB3BDD-51BE-416D-9E6C-3655EBB2845D}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFCB3BDD-51BE-416D-9E6C-3655EBB2845D}\ProgId]
@="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFFAE4D-F0CF-46CD-9586-FE891237AB8A}]
@="ComponentServicesExtensionSnapin Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFFAE4D-F0CF-46CD-9586-FE891237AB8A}\ProgID]
@="COMSNAP.ComponentServicesExtensionSnapin.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFFAE4D-F0CF-46CD-9586-FE891237AB8A}\VersionIndependentProgID]
@="COMSNAP.ComponentServicesExtensionSnapin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EABCECDB-CC1C-4A6F-B4E3-7F888A5ADFC8}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eb124705-128b-40d4-8dd8-d93ed12589a4}\Instance\PropertySetStorage\{EEBB82B9-EACE-4Af7-AA64-B7F3C7C996B4}\4]
"XPath"="/smil/head/viewstate/iconsize"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0152790-D56E-4445-850E-4F3117DB740C}]
@="Remote Sessions CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F04CC277-03A2-4277-96A9-77967471BDFF}]
@="Sync Center Conflict Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}]
@="Security Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4482A71-DF4F-4988-A731-BDB83E71127C}\InprocServer32]
@="C:\Program Files\Windows Live\Photo Gallery\SubscribePluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4754C9B-64F5-4B40-8AF4-679732AC0607}\DefaultExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f6b13ba7-d626-45e5-82c5-26e596114dc0}]
@="WFP Clients Extensible Helper Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}]
@="Shell extensions for sharing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8951BCD-700D-4aca-8394-3640DEF99C13}\ProgID]
@="Knowledge.ConSink.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8951BCD-700D-4aca-8394-3640DEF99C13}\VersionIndependentProgID]
@="Knowledge.ConSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f92e8c40-3d33-11d2-b1aa-080036a75b03}]
@="Display TroubleShoot CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F9DB5320-233E-11D1-9F84-707F02C10627}]
@="PDF Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FAC67227-E178-4fab-9FEA-B4E77D3DBE7D}]
@="Video Extension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fbebb71b-a592-4880-b096-9429ebe119db}]
@="Extensible L2Sec Helper Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd8d3a5f-6066-11d1-8c13-00c04fd8d503}]
@="Microsoft OrganizationUnit Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDC2AA4D-77F7-4DF8-ADA1-70EE3836F3FD}]
@="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDC2AA4D-77F7-4DF8-ADA1-70EE3836F3FD}\InprocServer32]
"Class"="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDC2AA4D-77F7-4DF8-ADA1-70EE3836F3FD}\InprocServer32\9.0.242.0]
"Class"="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDC2AA4D-77F7-4DF8-ADA1-70EE3836F3FD}\ProgId]
@="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\COMSNAP.ComponentServicesExtensionSnapin]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\COMSNAP.ComponentServicesExtensionSnapin\CurVer]
@="COMSNAP.ComponentServicesExtensionSnapin.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\COMSNAP.ComponentServicesExtensionSnapin.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CorTransientLoader.CorLoad]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CorTransientLoader.CorLoad.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ShellExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DiskManagement.SnapInExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DiskManagement.SnapInExtension]
@="DiskManagement.SnapInExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile]
@="Application Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\FolderExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellNew\Config]
"NoExtension"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IAS.ExtensionHost]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IAS.ExtensionHost\CurVer]
@="IAS.ExtensionHost.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IAS.ExtensionHost.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IDBHO.IDBrowserExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IDBHO.IDBrowserExtension\CurVer]
@="IDBHO.IDBrowserExtension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IDBHO.IDBrowserExtension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files|Common Files|Microsoft Shared|MSEnv|PublicAssemblies|extensibility.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files|Common Files|Microsoft Shared|MSEnv|PublicAssemblies|extensibility.dll]
"Extensibility,fileVersion="7.0.9466.0",version="7.0.3300.0",culture="neutral",publicKeyToken="B03F5F7F11D50A3A""="w_1^VY!!!!!!!!!MKKSkExcel_PIA>0nNL=`1st9ov2d&OMvT_ 1iLgA=[!!!!!!!!MKKSkExcel_PIARedist>0nNL=`1st9ov2d&OMvT_"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Common Files|Microsoft Shared|VSTA|Pipeline.v10.0|AddInSideAdapters|Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Common Files|Microsoft Shared|VSTA|Pipeline.v10.0|AddInSideAdapters|Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Common Files|Microsoft Shared|VSTA|Pipeline.v10.0|AddInSideAdapters|Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Common Files|Microsoft Shared|VSTA|Pipeline.v10.0|AddInSideAdapters|Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Common Files|Microsoft Shared|VSTA|Pipeline.v10.0|AddInSideAdapters|Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Microsoft Silverlight|4.0.50826.0|ms|Microsoft.VisualBasic.resources.dll]
"Microsoft.VisualBasic.resources,culture="ms",fileVersion="4.0.50826.0",processorArchitecture="MSIL",publicKeyToken="31bf3856ad364e35",version="2.0.5.0""="3PgDT0$gy?~Dc}DI]?&!Complete4.0.50826.0>,TNsiJp2A?)LPT],hGq-"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files|Microsoft Small Business|Business Contact Manager|extensibility.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files|Microsoft Small Business|Business Contact Manager|extensibility.dll]
"Extensibility,Version="7.0.3300.0",Culture="neutral",FileVersion="7.0.9466.0""="LGmYbBe?49'tAkp6pyP.COMAddin>orF^?YIOp?eqh8E6=3B1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Data.DataSetExtensions.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Data.DataSetExtensions.dll]
"System.Data.DataSetExtensions,version="3.5.0.0",publicKeyToken="b77a5c561934e089",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>-zt_s(VLf9QPy.cp0)B3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Web.Extensions.Design.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Web.Extensions.Design.dll]
"System.Web.Extensions.Design,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>-Vv32s$~QAXp5M*`AH'B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Web.Extensions.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\c:|Program Files|Reference Assemblies|Microsoft|Framework|v3.5|System.Web.Extensions.dll]
"System.Web.Extensions,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.4056",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>}Q!&H8xn]9@RZE9`fH5Y"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global]
"Extensibility,fileVersion="7.0.9466.0",version="7.0.3300.0",culture="neutral",publicKeyToken="B03F5F7F11D50A3A""="w_1^VY!!!!!!!!!MKKSkExcel_PIA>n-xOnBb5g(X*z?VXB]2d 1iLgA=[!!!!!!!!MKKSkExcel_PIARedist>n-xOnBb5g(X*z?VXB]2d"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global]
"Extensibility,Version="7.0.3300.0",Culture="neutral",FileVersion="7.0.9466.0""="LGmYbBe?49'tAkp6pyP.GACFiles>eJ}9TBv^19O%{k_?zEFj"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global]
"System.Web.Extensions.Design,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>2ap!*~@oO92P{1LsSj.{"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global]
"System.Web.Extensions,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.4056",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>YRZEKi1I5AgLJ2q*Vob2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global]
"System.Data.DataSetExtensions,version="3.5.0.0",publicKeyToken="b77a5c561934e089",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""="dlP=kN'k[5nu[y@0gyqnNetFX_Core_x86_enu_DDF>K.3q?a6^,===~N[O__DK"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\019DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>ta8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\219DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>va8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\419DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>xa8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD90A-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD90C-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD90E-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD910-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD912-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{CC29EDE7-7BC2-11D1-A921-00A0C91E2AA2},1033\MSOutlook"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{E57BD914-308C-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{0C6DD81C-309F-11D2-9A9A-006097C4E452},1033"="vUpAVO(8A$!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\613B99D5CFD7FCB4793B500086BB4113]
"{CC29EDFD-7BC2-11D1-A921-00A0C91E2AA2},MSOutlook"="w_1^VY!!!!!!!!!MKKSkGimme_OnDemandData<OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\7EDE92CC2CB71D119A12000A9CE1A22A]
"1033\MSOutlook"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>xa8irtGqf(i`bqFgkW_BMicrosoft Outlook;DTVZ;Ren ;Ren ;Ren ;0000003f;00000003;;"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\A09DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>na8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\C09DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>pa8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\C18DD6C0F9032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>A_V~&,Hqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\DFDE92CC2CB71D119A12000A9CE1A22A]
"MSOutlook"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>OzT]jI{jf(=1&L[-81-]"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\E09DB75EC8032D11A9A90006794C4E25]
"1033"="C84DVn-}f(YR]eAR6.jiOutlookDVExtensionsFiles>ra8irtGqf(i`bqFgkW_B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVAct3FilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVExtensionsFilesIntl_1033"=" OutlookImportExportFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVCsvDosFilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVCsvWinFilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVDbaseFilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVOrg97FilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002109A10090400000000000F01FEC]
"OutlookDVPabFilesIntl_1033"=" OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVAct3Files"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVExtensionsFiles"=" OutlookImportExportFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVCsvDosFiles"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVCsvWinFiles"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVDbaseFiles"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVOrg97Files"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00002119130000000000000000F01FEC]
"OutlookDVPabFiles"=" OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\14A7CAC1B3853844F95AE34556FA8F2C]
"FFFDMExtension"="DefaultManagerFeatures"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVAct3Files"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVExtensionsFiles"="OutlookImportExportFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVActFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVCsvDosFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVCsvWinFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVDbaseFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVEccoFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVOrg97Files"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVPabFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVSchplusFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"OutlookDVSchplusinterFiles"="OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040820900063D11C8EF00054038389C]
"RemoveOPSExtensionFeature"="PackUpSettingsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\9040910900063D11C8EF00054038389C]
"RemoveOPSExtensionFeature"="PackUpSettingsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000C0396-0000-0000-C000-000000000046}]
@="IRibbonExtensibility"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000C03C4-0000-0000-C000-000000000046}]
@="IBlogExtensibility"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{000C03C5-0000-0000-C000-000000000046}]
@="IBlogPictureExtensibility"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{01458cfb-a1a2-11d1-8f85-00600895e7d5}]
@="ITipConnectionSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0422B845-B636-3688-8F61-9B6D93096336}]
@="_CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{09E6831E-04E1-4ED4-9D0F-E8B168BAFEAF}]
@="IServiceComTIIntrinsicsConfig"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0BA6C62F-C7D3-4C34-8AC8-E43ECEF9F32C}]
@="IExtensionCollection"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0C733A11-2A1C-11CE-ADE5-00AA0044773D}]
@="IColumnsInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0C733AB8-2A1C-11CE-ADE5-00AA0044773D}]
@="IColumnsInfo2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10031009-E260-11CF-AE68-00AA004A34D5}]
@="ReplicationSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{12133BC2-390A-4B30-AD5B-504C1D1C89E7}]
@="IVsExtensibility2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{18d56a91-974a-11d1-8f48-00c04fb611c7}]
@="ITcpConnectionSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1A0CF920-D452-46F4-BC36-48118D54EA52}]
@="IServiceIISIntrinsicsConfig"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1E9C03F6-950B-4087-B3BA-F81AC2724E90}]
@="IPrivateExtensionResultCallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{22813742-8BD3-11D0-B4EF-00A0C9138CA4}]
@="Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2281375C-8BD3-11D0-B4EF-00A0C9138CA4}]
@="Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{23A15647-58F4-46E8-A188-D96C69C29D66}]
@="IRDORuleActionSensitivity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{310AAD5D-8F2A-4CAB-94D4-3611217EEEAE}]
@="ISdSetupExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3bbe95a2-c53f-11d1-b3a2-00a0c9083365}]
@="ITxBeginSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3bbe95fd-c53f-11d1-b3a2-00a0c9083365}]
@="IGatewayInstanceScanSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{45C35144-154E-4797-BED8-D33AE7BF8794}]
@="ITfCleanupContextDurationSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{50342A30-9ACD-11D1-8810-000000000000}]
@="ElementExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{519EB857-7A2D-3A95-A2A3-8BB8ED63D41B}]
@="_ExtensibleClassFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E6487A6-75F4-4EAF-9A86-04AB74E05878}]
@="IIDBrowserExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5F20AA40-B57A-4F34-96AB-3576F377CC79}]
@="ITfContextOwnerCompositionSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5FC5DF2F-22FC-4CAD-B93E-DC2E859CACDF}]
@="IExtensionsManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6242E079-8F22-4E35-AE26-4FF11B1D4F95}]
@="ElementExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{648FA5C0-9D19-11D1-8813-000000000000}]
@="ElementExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6A1B635E-99C8-11D1-ABE1-00C04FC30999}]
@="IMSOLAPDimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6A1B6361-99C8-11D1-ABE1-00C04FC30999}]
@="IMSOLAPDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{708FBF70-B520-416B-B06C-2C41AB44F8BA}]
@="ITfEditTransactionSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{71C6E74E-0F28-11D8-A82A-00065B84435C}]
@="ITfInputProcessorProfileActivationSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab30d-217d-11da-b2a4-000e7bbb2b09}]
@="IX509Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab30e-217d-11da-b2a4-000e7bbb2b09}]
@="IX509Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab30f-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionKeyUsage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab310-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionEnhancedKeyUsage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab311-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionTemplateName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab312-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionTemplate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab315-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionAlternativeNames"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab316-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionBasicConstraints"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab317-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionSubjectKeyIdentifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab318-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionAuthorityKeyIdentifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab31b-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionSmimeCapabilities"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab320-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionCertificatePolicies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab321-217d-11da-b2a4-000e7bbb2b09}]
@="IX509ExtensionMSApplicationPolicies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{728ab324-217d-11da-b2a4-000e7bbb2b09}]
@="IX509AttributeExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7469AE5E-1CA1-4181-970C-BDFD8EAA2C4F}]
@="IIASExtensionHost"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{82DBEA43-8CA4-44BC-A2CA-D18741059EC8}]
@="Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8A456287-C88B-4BFC-8404-A15902C9A174}]
@="IExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8A683C90-BA84-11CF-8110-00A0C9030074}]
@="IReturnSingle"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{91493471-5A91-11CF-8700-00AA0060263B}]
@="SlideShowTransition"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9d0876ca-02dc-453a-95d9-f2194a656442}]
@="IExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A781718C-579A-4B15-A280-32B8577ACC5E}]
@="ITfCompositionSink"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AD4D6CA6-912F-409B-A26E-7FD234AEF542}]
@="Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B05651CD-9B10-425E-B616-1FCD828DB3B1}]
@="IExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B65AD801-ABAF-11D0-BB8B-00A0C90F2744}]
@="_IDTExtensibility2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC08386A-9952-40CD-BA50-9541D64A4B4E}]
@="IPortableDeviceClassExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC530D61-E692-4225-9E7A-07B90B45856A}]
@="IExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C73105BE-AC80-11D1-8DF3-00C04FB6EF4F}]
@="IExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C73105BF-AC80-11D1-8DF3-00C04FB6EF4F}]
@="IExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C8592488-513E-11D1-8194-00A0C95C0756}]
@="_DLDVPExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C8592489-513E-11D1-8194-00A0C95C0756}]
@="_DLDVPExtensionsEvents"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CDA81541-363F-4CBF-97FB-FD138F4D102D}]
@="IConsistentAttributes"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D081E337-12DB-4146-8986-A3A46BA5DE5C}]
@="IDebugBuiltInEEExtension2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D6433F5C-AF10-4855-88BB-D7C607094DFF}]
@="IDccManSink2Priv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D8943E0F-1319-4498-B175-7AF930AD30A8}]
@="IIEExtensionsDlg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF9A753C-8E61-4CF8-B68E-D59DC1137209}]
@="ICmiExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E16F1874-C5B1-4400-A9F0-08E7FD4D3F8C}]
@="IRestrictionSize"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E205BEC5-692D-11D2-8D1B-006008319779}]
@="IReturnSingle"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E4B3C658-D2A7-4DD2-BA90-4AA79ACB45C9}]
@="ElementExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EA6795AC-97D6-3377-BE64-829ABD67607B}]
@="_CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{ED4E4ED4-FDD8-476E-AED9-5239E7948257}]
@="IExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F5B39AAC-1480-11D3-8549-00C04FAC67D7}]
@="ElementExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F5B39AC9-1480-11D3-8549-00C04FAC67D7}]
@="ElementExtensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FB4604D2-2621-47DF-867C-1C8B7C9AF196}]
@="ISLWmiTokenActivationSigner"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Knowledge.ConSink]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Knowledge.ConSink\CurVer]
@="Knowledge.ConSink.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Knowledge.ConSink.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDVPCTLS.LDVPExtensionsCtrl.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Contact]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.DistList]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Message]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Note]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Note.Read]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Post]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Post.Rss]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.StickyNote]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Task]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDesignDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDesignDimension]
@="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDesignDimension\CurVer]
@="Microsoft.AnalysisServices.AggregationDesignDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDesignDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDesignDimension.9]
@="Microsoft.AnalysisServices.AggregationDesignDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDimension]
@="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDimension\CurVer]
@="Microsoft.AnalysisServices.AggregationDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationDimension.9]
@="Microsoft.AnalysisServices.AggregationDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationInstanceDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationInstanceDimension]
@="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationInstanceDimension\CurVer]
@="Microsoft.AnalysisServices.AggregationInstanceDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationInstanceDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.AggregationInstanceDimension.9]
@="Microsoft.AnalysisServices.AggregationInstanceDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimension]
@="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimension\CurVer]
@="Microsoft.AnalysisServices.CubeDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimension.9]
@="Microsoft.AnalysisServices.CubeDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionBinding]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionBinding]
@="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionBinding\CurVer]
@="Microsoft.AnalysisServices.CubeDimensionBinding.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionBinding.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionBinding.9]
@="Microsoft.AnalysisServices.CubeDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionPermission]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionPermission]
@="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionPermission\CurVer]
@="Microsoft.AnalysisServices.CubeDimensionPermission.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionPermission.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.CubeDimensionPermission.9]
@="Microsoft.AnalysisServices.CubeDimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DataMiningMeasureGroupDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DataMiningMeasureGroupDimension]
@="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DataMiningMeasureGroupDimension\CurVer]
@="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DataMiningMeasureGroupDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DataMiningMeasureGroupDimension.9]
@="Microsoft.AnalysisServices.DataMiningMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DegenerateMeasureGroupDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DegenerateMeasureGroupDimension]
@="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DegenerateMeasureGroupDimension\CurVer]
@="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DegenerateMeasureGroupDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DegenerateMeasureGroupDimension.9]
@="Microsoft.AnalysisServices.DegenerateMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.Dimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.Dimension]
@="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.Dimension\CurVer]
@="Microsoft.AnalysisServices.Dimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.Dimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.Dimension.9]
@="Microsoft.AnalysisServices.Dimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionAttribute]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionAttribute]
@="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionAttribute\CurVer]
@="Microsoft.AnalysisServices.DimensionAttribute.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionAttribute.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionAttribute.9]
@="Microsoft.AnalysisServices.DimensionAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionBinding]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionBinding]
@="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionBinding\CurVer]
@="Microsoft.AnalysisServices.DimensionBinding.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionBinding.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionBinding.9]
@="Microsoft.AnalysisServices.DimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionPermission]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionPermission]
@="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionPermission\CurVer]
@="Microsoft.AnalysisServices.DimensionPermission.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionPermission.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionPermission.9]
@="Microsoft.AnalysisServices.DimensionPermission"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionStorageMode]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionStorageMode]
@="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionStorageMode\CurVer]
@="Microsoft.AnalysisServices.DimensionStorageMode.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionStorageMode.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionStorageMode.9]
@="Microsoft.AnalysisServices.DimensionStorageMode"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionType]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionType]
@="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionType\CurVer]
@="Microsoft.AnalysisServices.DimensionType.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionType.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.DimensionType.9]
@="Microsoft.AnalysisServices.DimensionType"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension]
@="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension\CurVer]
@="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension.9]
@="Microsoft.AnalysisServices.ManyToManyMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.MeasureGroupDimensionBinding]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.MeasureGroupDimensionBinding]
@="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.MeasureGroupDimensionBinding\CurVer]
@="Microsoft.AnalysisServices.MeasureGroupDimensionBinding.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.MeasureGroupDimensionBinding.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.MeasureGroupDimensionBinding.9]
@="Microsoft.AnalysisServices.MeasureGroupDimensionBinding"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.PerspectiveDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.PerspectiveDimension]
@="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.PerspectiveDimension\CurVer]
@="Microsoft.AnalysisServices.PerspectiveDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.PerspectiveDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.PerspectiveDimension.9]
@="Microsoft.AnalysisServices.PerspectiveDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceDimensionMaterialization]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceDimensionMaterialization]
@="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceDimensionMaterialization\CurVer]
@="Microsoft.AnalysisServices.ReferenceDimensionMaterialization.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceDimensionMaterialization.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceDimensionMaterialization.9]
@="Microsoft.AnalysisServices.ReferenceDimensionMaterialization"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceMeasureGroupDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceMeasureGroupDimension]
@="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceMeasureGroupDimension\CurVer]
@="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceMeasureGroupDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.ReferenceMeasureGroupDimension.9]
@="Microsoft.AnalysisServices.ReferenceMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.RegularMeasureGroupDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.RegularMeasureGroupDimension]
@="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.RegularMeasureGroupDimension\CurVer]
@="Microsoft.AnalysisServices.RegularMeasureGroupDimension.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.RegularMeasureGroupDimension.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.AnalysisServices.RegularMeasureGroupDimension.9]
@="Microsoft.AnalysisServices.RegularMeasureGroupDimension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Charset\ANSI_X3.4-1968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Charset\ANSI_X3.4-1986]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Charset\x-ansi]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/fractals]
"Extension"=".fif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/futuresplash]
"Extension"=".spl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/hta]
"Extension"=".hta"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/mac-binhex40]
"Extension"=".hqx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/msaccess]
"Extension"=".accdb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/msword]
"Extension"=".doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pdf]
"Extension"=".pdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pkcs10]
"Extension"=".p10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pkcs7-mime]
"Extension"=".p7c"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pkcs7-signature]
"Extension"=".p7s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pkix-cert]
"Extension"=".cer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/pkix-crl]
"Extension"=".crl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/postscript]
"Extension"=".ps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/sdp]
"Extension"=".sdp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/smil]
"Extension"=".smi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.acrobat-security-settings]
"Extension"=".acrobatsecuritysettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.pdfxml]
"Extension"=".pdfxml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.pdx]
"Extension"=".pdx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.xdp+xml]
"Extension"=".xdp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.xfd+xml]
"Extension"=".xfd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.adobe.xfdf]
"Extension"=".xfdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.fdf]
"Extension"=".fdf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.google-earth.kml+xml]
"Extension"=".kml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.google-earth.kmz]
"Extension"=".kmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-excel]
"Extension"=".xls"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-excel.addin.macroEnabled.12]
"Extension"=".xlam"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-excel.sheet.binary.macroEnabled.12]
"Extension"=".xlsb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-excel.sheet.macroEnabled.12]
"Extension"=".xlsm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-excel.template.macroEnabled.12]
"Extension"=".xltm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-mediapackage]
"Extension"=".mpf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-officetheme]
"Extension"=".thmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-package.relationships+xml]
"Extension"=".rels"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.certstore]
"Extension"=".sst"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.pko]
"Extension"=".pko"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.seccat]
"Extension"=".cat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.stl]
"Extension"=".stl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint]
"Extension"=".ppt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint.addin.macroEnabled.12]
"Extension"=".ppam"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint.presentation.macroEnabled.12]
"Extension"=".pptm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint.slide.macroEnabled.12]
"Extension"=".sldm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint.slideshow.macroEnabled.12]
"Extension"=".ppsm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-powerpoint.template.macroEnabled.12]
"Extension"=".potm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-publisher]
"Extension"=".pub"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-visio.viewer]
"Extension"=".vdx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-word.document.macroEnabled.12]
"Extension"=".docm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-word.template.macroEnabled.12]
"Extension"=".dotm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-wpl]
"Extension"=".wpl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-xpsdocument]
"Extension"=".xps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.oasis.opendocument.presentation]
"Extension"=".odp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.oasis.opendocument.spreadsheet]
"Extension"=".ods"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.oasis.opendocument.text]
"Extension"=".odt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.presentationml.presentation]
"Extension"=".pptx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.presentationml.slide]
"Extension"=".sldx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.presentationml.slideshow]
"Extension"=".ppsx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.presentationml.template]
"Extension"=".potx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.spreadsheetml.sheet]
"Extension"=".xlsx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.spreadsheetml.template]
"Extension"=".xltx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.wordprocessingml.document]
"Extension"=".docx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.openxmlformats-officedocument.wordprocessingml.template]
"Extension"=".dotx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realaudio-secure]
"Extension"=".rms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia]
"Extension"=".rm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-secure]
"Extension"=".rms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-vbr]
"Extension"=".rmvb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realplayer]
"Extension"=".rnx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rjt]
"Extension"=".rjt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmj]
"Extension"=".rmj"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmx]
"Extension"=".rmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-rn_game_info]
"Extension"=".mez"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-rn_game_package]
"Extension"=".rgp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-rn_music_package]
"Extension"=".rmp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-rn_secured_installer]
"Extension"=".rgs"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.rn-rsml]
"Extension"=".rsml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-compress]
"Extension"=".z"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-compressed]
"Extension"=".tgz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-director]
"Extension"=".dir"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-gzip]
"Extension"=".gz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-java-jnlp-file]
"Extension"=".jnlp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-jtx+xps]
"Extension"=".jtx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-latex]
"Extension"=".latex"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mix-transfer]
"Extension"=".nix"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mpeg]
"Extension"=".amc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mplayer2]
"Extension"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-application]
"Extension"=".application"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-license]
"Extension"=".slupkg-ms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-vsto]
"Extension"=".vsto"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-wmd]
"Extension"=".wmd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-wmz]
"Extension"=".wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-ms-xbap]
"Extension"=".xbap"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-msexcel]
"Extension"=".xls"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mspowerpoint]
"Extension"=".ppt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mspowerpoint.12]
"Extension"=".pptx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mspowerpoint.macroEnabled.12]
"Extension"=".pptm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-mswebsite]
"Extension"=".website"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-pkcs12]
"Extension"=".p12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-pkcs7-certificates]
"Extension"=".p7b"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-pkcs7-certreqresp]
"Extension"=".p7r"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-quicktimeplayer]
"Extension"=".qtl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-rtsp]
"Extension"=".rtsp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-sdp]
"Extension"=".sdp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-shockwave-flash]
"Extension"=".swf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-stuffit]
"Extension"=".sit"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-tar]
"Extension"=".tar"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-troff-man]
"Extension"=".man"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-wlpg-detect]
"Extension"=".wlpginstall"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-wlpg3-detect]
"Extension"=".wlpginstall3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-wmplayer]
"Extension"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-x509-ca-cert]
"Extension"=".cer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-zip-compressed]
"Extension"=".zip"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/xaml+xml]
"Extension"=".xaml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/xhtml+xml]
"Extension"=".xht"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/xml]
"Extension"=".xml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/3gpp]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/3gpp2]
"Extension"=".3g2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/aac]
"Extension"=".aac"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/ac3]
"Extension"=".ac3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/aiff]
"Extension"=".aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/AMR]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/AMR-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/AMR-WB]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/basic]
"Extension"=".au"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/evrc-qcp]
"Extension"=".EVRC"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mid]
"Extension"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/midi]
"Extension"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mp3]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mp4]
"Extension"=".mp4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mpeg]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mpegurl]
"Extension"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/mpg]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/qcelp]
"Extension"=".qcp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/vnd.qcelp]
"Extension"=".qcp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/vnd.rn-realaudio]
"Extension"=".ra"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/wav]
"Extension"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-aac]
"Extension"=".aac"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-ac3]
"Extension"=".ac3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-aiff]
"Extension"=".aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-caf]
"Extension"=".caf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-gsm]
"Extension"=".gsm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-m4a]
"Extension"=".m4a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-m4b]
"Extension"=".m4b"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-m4p]
"Extension"=".m4p"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-mid]
"Extension"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-midi]
"Extension"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-mp3]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-mpeg]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-mpegurl]
"Extension"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-mpg]
"Extension"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-ms-wax]
"Extension"=".wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-ms-wma]
"Extension"=".wma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-pn-realaudio]
"Extension"=".ram"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-realaudio]
"Extension"=".ra"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-realaudio-secure]
"Extension"=".rms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\audio/x-wav]
"Extension"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\ICM.DIV4]
 
#20 ·
SYSLOOK.Scan 17APR 3 0F6

"Extension"=".divx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\ICM.DIV6]
"Extension"=".divx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\ICM.DIVX1]
"Extension"=".divx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\ICM.DX50]
"Extension"=".divx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/bmp]
"Extension"=".bmp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/gif]
"Extension"=".gif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/jp2]
"Extension"=".jp2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/jpeg]
"Extension"=".jpg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/jpeg2000]
"Extension"=".jp2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/jpeg2000-image]
"Extension"=".jp2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/pict]
"Extension"=".pict"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/pjpeg]
"Extension"=".jpg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/png]
"Extension"=".png"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/svg+xml]
"Extension"=".svg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/svg-xml]
"Extension"=".svg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/tiff]
"Extension"=".tif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/vnd.adobe.svg+xml]
"Extension"=".svg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/vnd.ms-photo]
"Extension"=".wdp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/vnd.rn-realpix]
"Extension"=".rp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-emf]
"Extension"=".emf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-icon]
"Extension"=".ico"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-jpeg2000-image]
"Extension"=".jp2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-macpaint]
"Extension"=".pntg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-pict]
"Extension"=".pict"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-png]
"Extension"=".png"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-quicktime]
"Extension"=".qtif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-sgi]
"Extension"=".sgi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-targa]
"Extension"=".targa"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-tiff]
"Extension"=".tif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-wmf]
"Extension"=".wmf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\midi/mid]
"Extension"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\model/vnd.dwfx+xps]
"Extension"=".dwfx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\pkcs10]
"Extension"=".p10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\pkcs7-mime]
"Extension"=".p7m"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\pkcs7-signature]
"Extension"=".p7s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\pkix-cert]
"Extension"=".cer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\pkix-crl]
"Extension"=".crl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/calendar]
"Extension"=".ics"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/css]
"Extension"=".css"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/html]
"Extension"=".htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/plain]
"Extension"=".txt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/scriptlet]
"Extension"=".wsc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/vnd.rn-realtext]
"Extension"=".rt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-component]
"Extension"=".htc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-ms-contact]
"Extension"=".contact"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-ms-iqy]
"Extension"=".iqy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-ms-odc]
"Extension"=".odc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-ms-rqy]
"Extension"=".rqy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/x-vcard]
"Extension"=".vcf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/xml]
"Extension"=".xml"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/3gpp]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/3gpp2]
"Extension"=".3g2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/avi]
"Extension"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/flc]
"Extension"=".flc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/mp4]
"Extension"=".mp4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/mpeg]
"Extension"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/mpg]
"Extension"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/msvideo]
"Extension"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/quicktime]
"Extension"=".mov"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/sd-video]
"Extension"=".sdv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo]
"Extension"=".rv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo-secure]
"Extension"=".rms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-flv]
"Extension"=".flv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-m4v]
"Extension"=".m4v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-mpeg]
"Extension"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-mpeg2a]
"Extension"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-asf]
"Extension"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-asf-plugin]
"Extension"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-wm]
"Extension"=".wm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-wmv]
"Extension"=".wmv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-wmx]
"Extension"=".wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-ms-wvx]
"Extension"=".wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\video/x-msvideo]
"Extension"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.certstore]
"Extension"=".sst"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.pko]
"Extension"=".pko"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.seccat]
"Extension"=".cat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.stl]
"Extension"=".stl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\x-pkcs12]
"Extension"=".p12"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\x-pkcs7-certificates]
"Extension"=".p7b"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\x-pkcs7-certreqresp]
"Extension"=".p7r"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\x-x509-ca-cert]
"Extension"=".cer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimension]
@="MSOLAPDimension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimension.1]
@="MSOLAPDimension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimensions]
@="MSOLAPDimensions Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimensions.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSOlapAdmin2.MSOLAPDimensions.1]
@="MSOLAPDimensions Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Network\Type\2]
@="Microsoft Windows Network shell extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PDFShell.PDFShell]
@="Adobe PDF Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PDFShell.PDFShell.1]
@="Adobe PDF Shell Extension "
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PortableDeviceClassExtension.PortableDeviceClassExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PortableDeviceClassExtension.PortableDeviceClassExtension]
@="PortableDeviceClassExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PortableDeviceClassExtension.PortableDeviceClassExtension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PortableDeviceClassExtension.PortableDeviceClassExtension.1]
@="PortableDeviceClassExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickTimeExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickTimeExtension]
@="QuickTime Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickTimePlayerExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{0EE49F40-E956-11CE-8141-00AA00611080}\11.0.0.0]
"Class"="Microsoft.Vbe.Interop.Forms.fmTransitionEffect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Safari.safariextz]
@="Safari Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Safari.webarchive]
@="Safari Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SDSHELLEXTENSION.SdShellExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SDSHELLEXTENSION.SdShellExtension]
@="SdShellExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SDSHELLEXTENSION.SdShellExtension\CurVer]
@="SDSHELLEXTENSION.SdShellExtension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SDSHELLEXTENSION.SdShellExtension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SDSHELLEXTENSION.SdShellExtension.1]
@="SdShellExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SLWMI.TokenActivationSigner]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SLWMI.TokenActivationSigner]
@="Software Licensing Token Activation Signer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SLWMI.TokenActivationSigner\CurVer]
@="SLWMI.TokenActivationSigner.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SLWMI.TokenActivationSigner.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SLWMI.TokenActivationSigner.1]
@="Software Licensing Token Activation Signer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SQLXMLX]
@="Microsoft XML extensions for SQL Server"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SQLXMLX.1]
@="Microsoft XML extensions for SQL Server"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.CaseInsensitiveComparer]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.CaseInsensitiveComparer]
@="System.Collections.CaseInsensitiveComparer"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.CaseInsensitiveHashCodeProvider]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.CaseInsensitiveHashCodeProvider]
@="System.Collections.CaseInsensitiveHashCodeProvider"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp]
"PreviewDetails"="prop:*System.DateModified;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp]
"FullDetails"="prop:System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp]
"InfoTip"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp]
"ExtendedTileInfo"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib]
"PreviewDetails"="prop:*System.DateModified;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib]
"FullDetails"="prop:System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib]
"InfoTip"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib]
"ExtendedTileInfo"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif]
"PreviewDetails"="prop:*System.DateModified;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif]
"FullDetails"="prop:System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif]
"InfoTip"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif]
"ExtendedTileInfo"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ico]
"PreviewDetails"="prop:*System.DateModified;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ico]
"FullDetails"="prop:System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ico]
"InfoTip"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ico]
"ExtendedTileInfo"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.P
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.Pr
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.P
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.Pr
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png]
"PreviewDetails"="prop:System.Photo.DateTaken;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png]
"FullDetails"="prop:System.PropGroup.Origin;System.Photo.DateTaken;System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.rle]
"PreviewDetails"="prop:*System.DateModified;*System.Image.Dimensions;*System.Size;*System.OfflineAvailability;*System.OfflineStatus;*System.DateCreated;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.rle]
"FullDetails"="prop:System.PropGroup.Image;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.BitDepth;System.PropGroup.FileSystem;System.ItemNameDisplay;System.ItemType;System.ItemFolderPathDisplay;System.DateCreated;System.DateModified;System.Size;System.FileAttributes;System.OfflineAvailability;System.OfflineStatus;System.SharedWith;System.FileOwner;System.ComputerName"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.rle]
"InfoTip"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions;*System.Size"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.rle]
"ExtendedTileInfo"="prop:System.ItemType;*System.DateModified;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.Pr
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;*System.Photo.PeopleNames;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.P
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;*System.Photo.PeopleNames;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp]
"PreviewDetails"="prop:System.Photo.DateTaken;System.Keywords;System.Rating;*System.Image.Dimensions;*System.Size;System.Title;System.Author;System.Comment;*System.OfflineAvailability;*System.OfflineStatus;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Subject;*System.Photo.FNumber;*System.Photo.ExposureTime;*System.Photo.ISOSpeed;*System.Photo.ExposureBias;*System.Photo.FocalLength;*System.Photo.MaxAperture;*System.Photo.MeteringMode;*System.Photo.SubjectDistance;*System.Photo.Flash;*System.Photo.FlashEnergy;*System.Photo.FocalLengthInFilm;*System.DateCreated;*System.DateModified;*System.DateAccessed;*System.SharedWith"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp]
"FullDetails"="prop:System.PropGroup.Description;System.Title;System.Subject;System.Rating;System.Keywords;System.Comment;System.PropGroup.Origin;System.Author;System.Photo.DateTaken;System.ApplicationName;System.DateAcquired;System.Copyright;System.PropGroup.Image;System.Image.ImageID;System.Image.Dimensions;System.Image.HorizontalSize;System.Image.VerticalSize;System.Image.HorizontalResolution;System.Image.VerticalResolution;System.Image.BitDepth;System.Image.Compression;System.Image.ResolutionUnit;System.Image.ColorSpace;System.Image.CompressedBitsPerPixel;System.PropGroup.Camera;System.Photo.CameraManufacturer;System.Photo.CameraModel;System.Photo.FNumber;System.Photo.ExposureTime;System.Photo.ISOSpeed;System.Photo.ExposureBias;System.Photo.FocalLength;System.Photo.MaxAperture;System.Photo.MeteringMode;System.Photo.SubjectDistance;System.Photo.Flash;System.Photo.FlashEnergy;System.Photo.FocalLengthInFilm;System.PropGroup.PhotoAdvanced;Syst
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp]
"InfoTip"="prop:System.ItemType;System.Photo.DateTaken;System.Keywords;System.Rating;*System.Image.Dimensions;*System.Size;System.Title"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp]
"ExtendedTileInfo"="prop:System.ItemType;System.Photo.DateTaken;*System.Image.Dimensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Contact]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.DistList]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Message]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Note]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Note.Read]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Post]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Post.Rss]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.StickyNote]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"DefaultExtension"=".msg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{0002E157-0000-0000-C000-000000000046}\5.3]
@="Microsoft Visual Basic for Applications Extensibility 5.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{04051819-616F-429B-B2B0-C1FA27B0DBBE}\1.0\0\win32]
@="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll\1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22813728-8BD3-11D0-B4EF-00A0C9138CA4}\2.8]
@="Microsoft ActiveX Data Objects (Multi-dimensional) 2.8 Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22813728-8BD3-11D0-B4EF-00A0C9138CA4}\6.0]
@="Microsoft ActiveX Data Objects (Multi-dimensional) 6.0 Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6B904BA2-BFB1-11D2-9701-0000F875B2D3}\1.0]
@="Microsoft Tahoe Shell Extension Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{73CA1716-D932-4015-A5DA-0B8037C24788}\1.0]
@="IAS Extensions 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AC0714F2-3D04-11D1-AE7D-00A0C90F26F4}\1.0]
"PrimaryInteropAssemblyName"="Extensibility, Version=7.0.3300.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B8812619-BDB3-11D0-B19E-00A0C91E29D8}\5.0\HELPDIR]
@="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B8812619-BDB3-11D0-B19E-00A0C91E29D8}\5.3\HELPDIR]
@="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0FFA723-FF4C-4983-8565-66D78E73036E}\1.0]
@="PortableDeviceClassExtension 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0FFA723-FF4C-4983-8565-66D78E73036E}\1.0\0\win32]
@="C:\Windows\System32\portabledeviceclassextension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D6589123-FC70-11D0-AC94-00C04FD97575}\2.0]
@="Microsoft Agent Server Extensions 2.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wired.Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wired.Extension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wireless.Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wireless.Extension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509AttributeExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509AttributeExtensions]
@="X509 Attribute Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509AttributeExtensions\CurVer]
@="X509Enrollment.CX509AttributeExtensions.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509AttributeExtensions.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509AttributeExtensions.1]
@="X509 Attribute Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extension]
@="X509 Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extension\CurVer]
@="X509Enrollment.CX509Extension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extension.1]
@="X509 Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAlternativeNames]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAlternativeNames]
@="X509 Extension Alternative Names"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAlternativeNames\CurVer]
@="X509Enrollment.CX509ExtensionAlternativeNames.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAlternativeNames.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAlternativeNames.1]
@="X509 Extension Alternative Names"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAuthorityKeyIdentifier]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAuthorityKeyIdentifier]
@="X509 Extension Authority Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAuthorityKeyIdentifier\CurVer]
@="X509Enrollment.CX509ExtensionAuthorityKeyIdentifier.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAuthorityKeyIdentifier.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionAuthorityKeyIdentifier.1]
@="X509 Extension Authority Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionBasicConstraints]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionBasicConstraints]
@="X509 Extension Basic Constraints"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionBasicConstraints\CurVer]
@="X509Enrollment.CX509ExtensionBasicConstraints.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionBasicConstraints.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionBasicConstraints.1]
@="X509 Extension Basic Constraints"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionCertificatePolicies]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionCertificatePolicies]
@="X509 Extension Certificate Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionCertificatePolicies\CurVer]
@="X509Enrollment.CX509ExtensionCertificatePolicies.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionCertificatePolicies.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionCertificatePolicies.1]
@="X509 Extension Certificate Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionEnhancedKeyUsage]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionEnhancedKeyUsage]
@="X509 Extension Enhanced Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionEnhancedKeyUsage\CurVer]
@="X509Enrollment.CX509ExtensionEnhancedKeyUsage.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionEnhancedKeyUsage.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionEnhancedKeyUsage.1]
@="X509 Extension Enhanced Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionKeyUsage]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionKeyUsage]
@="X509 Extension Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionKeyUsage\CurVer]
@="X509Enrollment.CX509ExtensionKeyUsage.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionKeyUsage.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionKeyUsage.1]
@="X509 Extension Key Usage"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionMSApplicationPolicies]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionMSApplicationPolicies]
@="X509 Extension MS Application Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionMSApplicationPolicies\CurVer]
@="X509Enrollment.CX509ExtensionMSApplicationPolicies.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionMSApplicationPolicies.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionMSApplicationPolicies.1]
@="X509 Extension MS Application Policies"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extensions]
@="X509 Extension Collection"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extensions\CurVer]
@="X509Enrollment.CX509Extensions.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extensions.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509Extensions.1]
@="X509 Extension Collection"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSmimeCapabilities]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSmimeCapabilities]
@="X509 Extension Smime Capabilities"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSmimeCapabilities\CurVer]
@="X509Enrollment.CX509ExtensionSmimeCapabilities.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSmimeCapabilities.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSmimeCapabilities.1]
@="X509 Extension Smime Capabilities"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSubjectKeyIdentifier]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSubjectKeyIdentifier]
@="X509 Extension Subject Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSubjectKeyIdentifier\CurVer]
@="X509Enrollment.CX509ExtensionSubjectKeyIdentifier.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSubjectKeyIdentifier.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionSubjectKeyIdentifier.1]
@="X509 Extension Subject Key Identifier"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplate]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplate]
@="X509 Extension Template"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplate\CurVer]
@="X509Enrollment.CX509ExtensionTemplate.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplate.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplate.1]
@="X509 Extension Template"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplateName]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplateName]
@="X509 Extension Template Name"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplateName\CurVer]
@="X509Enrollment.CX509ExtensionTemplateName.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplateName.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\X509Enrollment.CX509ExtensionTemplateName.1]
@="X509 Extension Template Name"
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\MIME\Database\Content Type\text/x-ms-contact]
"Extension"=".contact"
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\MIME\Database\Content Type\text/x-ms-group]
"Extension"=".group"
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\MIME\Database\Content Type\text/x-vcard]
"Extension"=".vcf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Intel\LANDesk\VirusProtect6\CurrentVersion\Licensing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Intel\LANDesk\VirusProtect6\CurrentVersion\LocalScans\ManualScan]
"ExcludedExtensions"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Intel\LANDesk\VirusProtect6\CurrentVersion\Storages\Filesystem\RealTimeScan]
"ExcludedExtensions"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\System.Data.DataSetExtensions, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=MSIL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Security\Policy\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\c:/Program Files/Common Files/Microsoft Shared/VSTA/Pipeline.v10.0/AddInSideAdapters/Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\c:/Program Files/Common Files/Microsoft Shared/VSTA/Pipeline.v10.0/AddInSideAdapters/Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\c:/Program Files/Common Files/Microsoft Shared/VSTA/Pipeline.v10.0/AddInSideAdapters/Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\c:/Program Files/Common Files/Microsoft Shared/VSTA/Pipeline.v10.0/AddInSideAdapters/Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Data.DataSetExtensions, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Data.DataSetExtensions, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Web.Extensions, Version=3.5.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Web.Extensions, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Web.Extensions.Design, Version=3.5.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGENService\Roots\System.Web.Extensions.Design, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ADs\Providers\LDAP\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ADs\Providers\WinNT\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32]
"FuncName"="FormatVerisignExtension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\Compatibility\ThirdDimension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"Remote Exchange Extensions"="4.0;C:\Windows\system32\emsui32.dll;6;111;111;MSEMS"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"Exchange Extensions"="4.0;emsuix32.dll;7;011111111111110;1111011100"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2563446e\47c22b9c\70]
"DisplayName"="Extensibility,7.0.3300.0,,b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\392c4553\79f1b393\80]
"DisplayName"="System.Web.Extensions.Design,3.5.0.0,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\5573250d\7425fe3f\f2]
"DisplayName"="WindowsLive.Writer.Extensibility,15.4.3555.308,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\5b2d242\277be394\89]
"DisplayName"="System.Web.Extensions,3.5.0.0,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\712ad40\7f0c7f24\9b]
"DisplayName"="System.Data.DataSetExtensions,3.5.0.0,,b77a5c561934e089"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\361f692e\5b2d242\77]
"DisplayName"="System.Web.Extensions,3.5.0.0,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\46af0769\2563446e\e1]
"DisplayName"="Extensibility,7.0.3300.0,,b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\481e243f\392c4553\71]
"DisplayName"="System.Web.Extensions.Design,3.5.0.0,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\740e747\712ad40\8a]
"DisplayName"="System.Data.DataSetExtensions,3.5.0.0,,b77a5c561934e089"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\7489308e\5573250d\f1]
"DisplayName"="WindowsLive.Writer.Extensibility,15.4.3555.308,,31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"NoAdd-onsInfo"="res://ieframe.dll/noaddoninfo.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\BROWSE\USEBHO]
"Text"="Enable third-party browser extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\BROWSE\USEBHO]
"ValueName"="Enable Browser Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{0000036B-C524-4050-81A0-243669A86B9F}]
"ClsidExtension"="{B63DBA5F-523F-4B9C-A43D-65DF1977EAD3}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}]
"HotIcon"="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}]
"Icon"="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}]
"ClsidExtension"="{5F7B1267-94A9-47F5-98DB-E99415F33AEC}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F}]
"clsidExtension"="{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F}]
"clsidExtension"="{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN]
"Extensions Off Page"="about:NoAdd-ons"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Transitions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\InstalledBrowserExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\InstalledBrowserExtensions\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\Excel]
"DisabledExtensions"="!xls"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\Lotus]
"DisabledExtensions"="!wks,wk1,wk3,wk4,wj2,wj3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\Text]
"DisabledExtensions"="!txt,csv,tab,asc,tmp,htm,html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\Text]
"CharacterSet"="ANSI"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\Text]
"Extensions"="txt,csv,tab,asc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Player\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{0442836D-C770-11d1-87F4-00C04FC2C17B}\Dynamic Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{0442836D-C770-11d1-87F4-00C04FC2C17B}\Dynamic Extensions\{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}]
@="DTC MMC Property-sheet extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{0442836D-C770-11d1-87F4-00C04FC2C17B}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{0442836D-C770-11d1-87F4-00C04FC2C17B}\Extensions\PropertySheet]
"{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}"="DTC MMC Property-sheet extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{121F028E-715E-4736-B1EC-AFCB3B1262A9}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{24a7f717-1f0c-11d1-affb-00c04fb984f9}]
@="SCE Service Template Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{301B82BA-7AC3-4f32-B77F-BD8EF3D44934}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{301B82BA-7AC3-4f32-B77F-BD8EF3D44934}\Extensions\NameSpace]
"{DFFFAE4D-F0CF-46CD-9586-FE891237AB8A}"="Component Services Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{33F2C345-BF11-41b6-90DA-4FB4963EA4E2}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6446-aaff-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6448-aaff-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6448-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}"="Event Viewer Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6448-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}"="Task Scheduler Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6448-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"{58221C69-EA27-11CF-ADCF-00AA00A80033}"="Shared Folders Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Dynamic Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Dynamic Extensions]
"{A17DA8D0-F67D-47A0-9EC4-19C486383206}"="IP Security Monitor Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"{A17DA8D0-F67D-47A0-9EC4-19C486383206}"="IP Security Monitor Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"{58221C6A-EA27-11CF-ADCF-00AA00A80033}"="Services Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e6449-aaff-11d0-b944-00c04fd8d5b0}\Extensions\Task]
"{A17DA8D0-F67D-47A0-9EC4-19C486383206}"="IP Security Monitor Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e644a-aaff-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{476e644a-aaff-11d0-b944-00c04fd8d5b0}\Extensions\NameSpace]
"{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}"="Disk Management Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{4e410f12-abc1-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{4e410f16-abc1-11d0-b944-00c04fd8d5b0}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{5D6179CC-17EC-11D1-9AA9-00C04FD8FE93}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{5D6179CC-17EC-11D1-9AA9-00C04FD8FE93}\Extensions\PropertySheet]
"{0910DD01-DF8C-11D1-AE27-00C04FA35813}"="Terminal Server property page extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{5D6179D3-17EC-11D1-9AA9-00C04FD8FE93}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions\NameSpace]
"{2DA6AA7F-8C88-4194-A558-0D36E7FD3E64}"="Wireless Network Policy Manager Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions\NameSpace]
"{06993B16-A5C7-47eb-B61C-B1CB7EE600AC}"="Wired Network Policy Manager Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions\NameSpace]
"{A2A54893-AAF2-49A3-B3F5-CC43CEBCC27C}"="Namespace Extension to the GPEdit"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions\NameSpace]
"{DEA8AFA0-CC85-11d0-9CE2-0080C7221EBD}"="IP Security Policy Manager Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{668A49ED-8888-11D1-AB72-00C04FB6C6FA}\Extensions\NameSpaceSOFTWARE\Microsoft\MMC\NodeTypes\{9801A67A-9913-49EC-B85C-7EA6FC052EA8}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{678050c7-1ff8-11d1-affb-00c04fb984f9}]
@="SCE Service Analysis Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{7478EF63-8C46-11d1-8D99-00A0C913CAD4}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{8FC0B737-A0E1-11D1-A7D3-0000F87571E3}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{8FC0B738-A0E1-11D1-A7D3-0000F87571E3}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{9801A67A-9913-49ec-B85C-7EA6FC052EA8}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{99829bf6-ba10-42f1-aca1-1dcd47b9fe80}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{99829bf6-ba10-42f1-aca1-1dcd47b9fe80}\Extensions\NameSpace]
"FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}"="Event Viewer Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c2-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c2-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension IIS Snap in"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c3-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c3-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension Static Node"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c4-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c4-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension Machine Node"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c5-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c5-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c6-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c6-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c7-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c7-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension Instance Node"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c8-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c8-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension VDir Node"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c9-7577-11d0-bb1f-00a0c922e79c}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{a841b6c9-7577-11d0-bb1f-00a0c922e79c}\Extensions\PropertySheet]
"{fedb2179-2335-48f1-aa28-5cda35a2b36d}"="ASP.NET MMC Extension File Node"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{AB87364F-0CEC-4CD8-9BF8-898F34628FB8}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{BD1C2544-CF5B-4640-B83E-A5B71AAE2E4A}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{BD1C2544-CF5B-4640-B83E-A5B71AAE2E4A}\Extensions\NameSpace]
"FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}"="Task Scheduler Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{BD1C2544-CF5B-4640-B83E-A5B71AAE2E4A}\Extensions\NameSpace]
"{58221C6A-EA27-11CF-ADCF-00AA00A80033}"="Services Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{BD4C1A2E-0B7A-4A62-A6B0-C0577539C97E}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{F15BB83B-D382-4a5e-B5E9-CC4A9CFD2FF9}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\NodeTypes\{F15BB83B-D382-4a5e-B5E9-CC4A9CFD2FF9}\Extensions\NameSpace]
"{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}"="Disk Management Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{a1bc4ecb-66b2-44e8-9915-be02e84438ba}]
"Type"="Microsoft.Networking.NetworkAccessProtection.Admin.NapClient.NapSnapExtension, napsnap, Version=6.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{a1bc4ecb-66b2-44e8-9915-be02e84438ba}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba12}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba13}]
"Type"="Microsoft.WindowsFirewall.SnapIn.AuthFWSnapInRMTExtension, AuthFwSnapin, Version=6.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba13}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}]
"Type"="Microsoft.EventViewer.SnapIn.EventViewerExtension, EventViewer, Version=6.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}]
"Description"="Event Viewer Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}]
"Type"="Microsoft.TaskScheduler.SnapIn.TaskSchedulerExtension, TaskScheduler, Version=6.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}]
"Description"="Task Scheduler Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{011BE22D-E453-11D1-945A-00C04FB984F9}\NodeTypes\{24a7f717-1f0c-11d1-affb-00c04fb984f9}]
@="SCE Service Template Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{011BE22D-E453-11D1-945A-00C04FB984F9}\NodeTypes\{678050c7-1ff8-11d1-affb-00c04fb984f9}]
@="SCE Service Inspection Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{06993B16-A5C7-47eb-B61C-B1CB7EE600AC}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}]
"NameString"="DTC MMC Property-sheet extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{2DA6AA7F-8C88-4194-A558-0D36E7FD3E64}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{394C052E-B830-11D0-9A86-00C04FD8DBF7}]
"NameString"="Classic Event Viewer Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{58221C69-EA27-11CF-ADCF-00AA00A80033}]
"NameString"="Shared Folders Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{58221C6A-EA27-11CF-ADCF-00AA00A80033}]
"NameString"="Services Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\NodeTypes\{24a7f717-1f0c-11d1-affb-00c04fb984f9}]
@="SCE Service Template Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\NodeTypes\{678050c7-1ff8-11d1-affb-00c04fb984f9}]
@="SCE Service Inspection Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{7478EF65-8C46-11d1-8D99-00A0C913CAD4}]
"NameString"="Reliability and Performance Monitor Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}\NodeTypes\{24a7f717-1f0c-11d1-affb-00c04fb984f9}]
@="SCE Service Template Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}\NodeTypes\{678050c7-1ff8-11d1-affb-00c04fb984f9}]
@="SCE Service Inspection Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}]
"NameString"="Disk Management Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{90087284-d6d6-11d0-8353-00a0c90640bf}]
"NameString"="Device Manager extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{A2A54893-AAF2-49A3-B3F5-CC43CEBCC27C}]
"NameString"="Network Access Protection GPEdit Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{A2A54893-AAF2-49A3-B3F5-CC43CEBCC27C}]
"Description"="Network Access Protection GPEdit Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC0}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC1}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{DEA8AFA0-CC85-11d0-9CE2-0080C7221EBD}\Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{DFFFAE4D-F0CF-46CD-9586-FE891237AB8A}]
"($build.empty)"="Component Services Extension Snapin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{FE883157-CEBD-4570-B7A2-E4FE06ABE626}\NodeTypes\{24a7f717-1f0c-11d1-affb-00c04fb984f9}]
@="SCE Service Template Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{FE883157-CEBD-4570-B7A2-E4FE06ABE626}\NodeTypes\{678050c7-1ff8-11d1-affb-00c04fb984f9}]
@="SCE Service Inspection Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MMC\SnapIns\{fedb2179-2335-48f1-aa28-5cda35a2b36d}]
"NameString"="ASP.NET Management Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSLicensing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\MPlayer2\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aif]
"Extension.MIME"="audio/aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aif]
"Extension.Handler"="AIFFFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aifc]
"Extension.MIME"="audio/aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aifc]
"Extension.Handler"="AIFFFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aiff]
"Extension.MIME"="audio/aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.aiff]
"Extension.Handler"="AIFFFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.asf]
"Extension.MIME"="video/x-ms-asf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.asf]
"Extension.Handler"="ASFFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.asx]
"Extension.MIME"="video/x-ms-asf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.asx]
"Extension.Handler"="ASXFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.au]
"Extension.MIME"="audio/basic"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.au]
"Extension.Handler"="AUFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.avi]
"Extension.MIME"="video/avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.avi]
"Extension.Handler"="avifile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.cda]
"Extension.Handler"="CDAFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.dvr-ms]
"Extension.Handler"="WMP.DVR-MSFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m1v]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m1v]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m2v]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m2v]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m3u]
"Extension.MIME"="audio/x-mpegurl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.m3u]
"Extension.Handler"="m3ufile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mid]
"Extension.MIME"="audio/mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mid]
"Extension.Handler"="midfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.midi]
"Extension.MIME"="audio/mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.midi]
"Extension.Handler"="midfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mod]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mod]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp2]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp2]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp2v]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp2v]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp3]
"Extension.MIME"="audio/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mp3]
"Extension.Handler"="mp3file"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpa]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpa]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpe]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpe]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpeg]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpeg]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpg]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpg]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpv2]
"Extension.MIME"="video/mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.mpv2]
"Extension.Handler"="mpegfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.rmi]
"Extension.MIME"="audio/mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.rmi]
"Extension.Handler"="midfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.snd]
"Extension.MIME"="audio/basic"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.snd]
"Extension.Handler"="AUFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wav]
"Extension.MIME"="audio/wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wav]
"Extension.Handler"="soundrec"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wax]
"Extension.MIME"="audio/x-ms-wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wax]
"Extension.Handler"="WAXFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wm]
"Extension.MIME"="video/x-ms-wm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wm]
"Extension.Handler"="ASFFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wma]
"Extension.MIME"="audio/x-ms-wma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wma]
"Extension.Handler"="WMAFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmd]
"Extension.MIME"="application/x-ms-wmd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmd]
"Extension.Handler"="WMDFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wms]
"Extension.Handler"="WMSFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmv]
"Extension.MIME"="video/x-ms-wmv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmv]
"Extension.Handler"="WMVFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmx]
"Extension.MIME"="video/x-ms-wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmx]
"Extension.Handler"="ASXFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmz]
"Extension.MIME"="application/x-ms-wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wmz]
"Extension.Handler"="WMZFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wpl]
"Extension.MIME"="application/vnd.ms-wpl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wpl]
"Extension.Handler"="WPLFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wvx]
"Extension.MIME"="video/x-ms-wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Extensions\.wvx]
"Extension.Handler"="WVXFile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\AIFF]
"Description"="Includes files with .aif, .aifc, and .aiff extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\AIFF]
"Extensions"=".aif .aifc .aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\AU]
"Description"="Includes files with .au, and .snd extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\AU]
"Extensions"=".au .snd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\CDA]
"Description"="Includes audio CDs and files with .cda extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\CDA]
"Extensions"=".cda"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\MIDI]
"Description"="Includes files with .mid, .midi, and .rmi extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\MIDI]
"Extensions"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\MP3]
"Description"="Includes files with .mp3 and .m3u extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\MP3]
"Extensions"=".mp3 .m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\WAV]
"Description"="Includes files with .wav extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\WAV]
"Extensions"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\WMA]
"Description"="Includes files with .wma and .wax extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Audio\WMA]
"Extensions"=".wma .wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\ASF]
"Description"="Includes files with .asf, .asx, .wpl, .wm, .wmx, .wmd, and .wmz extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\ASF]
"Extensions"=".asf .asx .wpl .wm .wmx .wmd .wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\AVI]
"Description"="Includes files with .avi extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\AVI]
"Extensions"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\DVR-MS]
"Extensions"=".dvr-ms"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\MPEG]
"Description"="Includes files with .mpeg, .mpg, .mpe, .m1v, .m2v, .mod, .mp2, .mpv2, .mp2v, and .mpa extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\MPEG]
"Extensions"=".mpeg .mpg .mpe .m1v .m2v .mod .mp2 .mpv2 .mp2v .mpa"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\WMV]
"Description"="Includes files with .wmv and .wvx extensions."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Groups\Video\WMV]
"Extensions"=".wmv .wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/vnd.ms-wpl]
"Extension.Key"=".wpl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/vnd.ms-wpl]
"Extensions.CommaSep"="wpl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/vnd.ms-wpl]
"Extensions.SpaceSep"=".wpl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-mplayer2]
"Extension.Key"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-mplayer2]
"Extensions.CommaSep"="asf,asx,wm,wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-mplayer2]
"Extensions.SpaceSep"=".asf .asx .wm .wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmd]
"Extension.Key"=".wmd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmd]
"Extensions.CommaSep"="wmd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmd]
"Extensions.SpaceSep"=".wmd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmz]
"Extension.Key"=".wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmz]
"Extensions.CommaSep"="wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\application/x-ms-wmz]
"Extensions.SpaceSep"=".wmz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/aiff]
"Extension.Key"=".aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/aiff]
"Extensions.CommaSep"="aif,aifc,aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/aiff]
"Extensions.SpaceSep"=".aif .aifc .aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/basic]
"Extension.Key"=".au"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/basic]
"Extensions.CommaSep"="au,snd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/basic]
"Extensions.SpaceSep"=".au .snd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mid]
"Extension.Key"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mid]
"Extensions.CommaSep"="mid,midi,rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mid]
"Extensions.SpaceSep"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/midi]
"Extension.Key"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/midi]
"Extensions.CommaSep"="mid,midi,rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/midi]
"Extensions.SpaceSep"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mp3]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mp3]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mp3]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpeg]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpeg]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpeg]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpegurl]
"Extension.Key"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpegurl]
"Extensions.CommaSep"="m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpegurl]
"Extensions.SpaceSep"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpg]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpg]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/mpg]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/wav]
"Extension.Key"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/wav]
"Extensions.CommaSep"="wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/wav]
"Extensions.SpaceSep"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-aiff]
"Extension.Key"=".aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-aiff]
"Extensions.CommaSep"="aif,aifc,aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-aiff]
"Extensions.SpaceSep"=".aif .aifc .aiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mid]
"Extension.Key"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mid]
"Extensions.CommaSep"="mid,midi,rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mid]
"Extensions.SpaceSep"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-midi]
"Extension.Key"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-midi]
"Extensions.CommaSep"="mid,midi,rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-midi]
"Extensions.SpaceSep"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mp3]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mp3]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mp3]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpeg]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpeg]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpeg]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpegurl]
"Extension.Key"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpegurl]
"Extensions.CommaSep"="m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpegurl]
"Extensions.SpaceSep"=".m3u"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpg]
"Extension.Key"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpg]
"Extensions.CommaSep"="mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-mpg]
"Extensions.SpaceSep"=".mp3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wax]
"Extension.Key"=".wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wax]
"Extensions.CommaSep"="wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wax]
"Extensions.SpaceSep"=".wax"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wma]
 
#21 ·
SYSLOOK.Scan 17APR 4 0F6

"Extension.Key"=".wma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wma]
"Extensions.CommaSep"="wma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-ms-wma]
"Extensions.SpaceSep"=".wma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-wav]
"Extension.Key"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-wav]
"Extensions.CommaSep"="wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\audio/x-wav]
"Extensions.SpaceSep"=".wav"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\midi/mid]
"Extension.Key"=".mid"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\midi/mid]
"Extensions.CommaSep"="mid,midi,rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\midi/mid]
"Extensions.SpaceSep"=".mid .midi .rmi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/avi]
"Extension.Key"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/avi]
"Extensions.CommaSep"="avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/avi]
"Extensions.SpaceSep"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpeg]
"Extension.Key"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpeg]
"Extensions.CommaSep"="mpeg,mpg,mpe,mpv,m1v,m2v,mod,mp2,mpa,mpv2,mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpeg]
"Extensions.SpaceSep"=".mpeg .mpg .mpe .mpv .m1v .m2v .mod .mp2 .mpa .mpv2 .mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpg]
"Extension.Key"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpg]
"Extensions.CommaSep"="mpeg,mpg,mpe,mpv,m1v,m2v,mod,mp2,mpa,mpv2,mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/mpg]
"Extensions.SpaceSep"=".mpeg .mpg .mpe .mpv .m1v .m2v .mod .mp2 .mpa .mpv2 .mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/msvideo]
"Extension.Key"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/msvideo]
"Extensions.CommaSep"="avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/msvideo]
"Extensions.SpaceSep"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg]
"Extension.Key"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg]
"Extensions.CommaSep"="mpeg,mpg,mpe,mpv,m1v,m2v,mod,mp2,mpa,mpv2,mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg]
"Extensions.SpaceSep"=".mpeg .mpg .mpe .mpv .m1v .m2v .mod .mp2 .mpa .mpv2 .mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg2a]
"Extension.Key"=".mpeg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg2a]
"Extensions.CommaSep"="mpeg,mpg,mpe,mpv,m1v,m2v,mod,mp2,mpa,mpv2,mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-mpeg2a]
"Extensions.SpaceSep"=".mpeg .mpg .mpe .mpv .m1v .m2v .mod .mp2 .mpa .mpv2 .mp2v"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf]
"Extension.Key"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf]
"Extensions.CommaSep"="asf,asx,wm,wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf]
"Extensions.SpaceSep"=".asf .asx .wm .wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf-plugin]
"Extension.Key"=".asx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf-plugin]
"Extensions.CommaSep"="asf,asx,wm,wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-asf-plugin]
"Extensions.SpaceSep"=".asf .asx .wm .wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wm]
"Extension.Key"=".wm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wm]
"Extensions.CommaSep"="asf,asx,wm,wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wm]
"Extensions.SpaceSep"=".asf .asx .wm .wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmv]
"Extension.Key"=".wmv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmv]
"Extensions.CommaSep"="wmv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmv]
"Extensions.SpaceSep"=".wmv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmx]
"Extension.Key"=".wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmx]
"Extensions.CommaSep"="asf,asx,wm,wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wmx]
"Extensions.SpaceSep"=".asf .asx .wm .wmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wvx]
"Extension.Key"=".wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wvx]
"Extensions.CommaSep"="wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-ms-wvx]
"Extensions.SpaceSep"=".wvx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-msvideo]
"Extension.Key"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-msvideo]
"Extensions.CommaSep"="avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\MIME Types\video/x-msvideo]
"Extensions.SpaceSep"=".avi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Access Connectivity Engine\Engines\Excel]
"DisabledExtensions"="!xls"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Access Connectivity Engine\Engines\Lotus]
"DisabledExtensions"="!wks,wk1,wk3,wk4,wj2,wj3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Access Connectivity Engine\Engines\Text]
"DisabledExtensions"="!txt,csv,tab,asc,tmp,htm,html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Access Connectivity Engine\Engines\Text]
"CharacterSet"="ANSI"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Access Connectivity Engine\Engines\Text]
"Extensions"="txt,csv,tab,asc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\Common\DRM]
"CloudLicenseServer"="https://licensing.drm.microsoft.com/licensing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{57312C73-6202-49e9-B1E1-40EA1A6DC1F6}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{8281C572-2171-45AA-A642-7D8BC1662F1C}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{8B382828-6202-11d1-8870-0000F87579D2}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{C76D83F8-A489-11D0-8195-00A0C91BBEE3}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{CFF630F8-2DB3-44ba-9FC9-6489665DE5B8}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Editors\{FB9167C9-D3B8-4eda-8083-9AF6B6F6DA62}\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Languages\File Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Projects\{059D6162-CD51-11d0-AE1F-00A0C90FFFC3}]
"PossibleProjectExtensions"="dsp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Projects\{059D6162-CD51-11d0-AE1F-00A0C90FFFC3}]
"DefaultProjectExtension"="dsp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\Projects\{059D6162-CD51-11d0-AE1F-00A0C90FFFC3}]
"DisplayProjectFileExtensions"="#13582"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\SolutionPersistence\ExtensibilityAddIns]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\MSE\SolutionPersistence\ExtensibilityGlobals]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\AccessDE_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Access_Core\Create\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Access_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Excel_Core\Create\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Excel_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Graph_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\PowerPoint_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Word_Core\Create\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\12.0\User Settings\Word_Core\Delete\Software\Microsoft\Windows NT\CurrentVersion\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Export\GIF]
"Extensions"="gif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Export\JPEG]
"Extensions"="jpg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Export\PNG]
"Extensions"="png"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Export\TIFF]
"Extensions"="tif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\BMP]
"Extensions"="bmp"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\BMP]
"ExtensionsEx"="bmp dib rle"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\CDR]
"Extensions"="cdr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\CGM]
"Extensions"="cgm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\EPS]
"Extensions"="eps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\FPX]
"Extensions"="fpx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\GIF]
"Extensions"="gif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\GIF]
"ExtensionsEx"="gif gfa"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\JPEG]
"Extensions"="jpg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\JPEG]
"ExtensionsEx"="jpg jpe jpeg jfif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\MIX]
"Extensions"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\PCD]
"Extensions"="pcd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\PCX]
"Extensions"="pcx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\PICT]
"Extensions"="pct"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\PICT]
"ExtensionsEx"="pct pict"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\PNG]
"Extensions"="png"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\TIFF]
"Extensions"="tif"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\TIFF]
"ExtensionsEx"="tif tiff"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\WMF]
"Extensions"="wmf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Graphics Filters\Import\WPG]
"Extensions"="wpg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\nsi]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Msinfo\Categories\Applications10\Environment\ServerExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Msinfo\Categories\Applications10\Environment\ServerExtensions]
@="Local Web Server Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Msinfo\Categories\Applications12\Environment\ServerExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Msinfo\Categories\Applications12\Environment\ServerExtensions]
@="Local Web Server Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\HTML]
"Extensions"="htm html htx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MEWord12]
"Extensions"="docm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWord6Exp]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWord6RTFExp]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWordWin2]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin4]
"Extensions"="wps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin5]
"Extensions"="wps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin6]
"Extensions"="wps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\Word12]
"Extensions"="docx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Export\Word97]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\HTML]
"Extensions"="htm html htx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MEWord12]
"Extensions"="docm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSBiff]
"Extensions"="xls xlw"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWord6]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWord8]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWordJ6]
"Extensions"="doc dot"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWordWin2]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin4]
"Extensions"="wps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin5]
"Extensions"="wps wpt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin6]
"Extensions"="wps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\Recover]
"Extensions"="*"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\Word12]
"Extensions"="docx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\Word97]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\WordPerfect6x]
"Extensions"="doc wpd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\Text Converters\Import\WrdPrfctDos]
"Extensions"="doc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Speech\Recognizers\Tokens\MS-1033-80-DESK]
"RecoExtension"="{4F4DB904-CA35-4A3A-90AF-C9D8BE7532AC}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Speech\Recognizers\Tokens\MS-2057-80-DESK]
"RecoExtension"="{4F4DB904-CA35-4A3A-90AF-C9D8BE7532AC}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Speech\Recognizers\Tokens\MSASREnglish]
"RecoExtension"="{1A6F5C32-45F4-11D3-9A67-00C04F8EF48F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Terminal Server Client\TransportExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VSAnsi]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VSAnsi]
"7.0"="C:\Program Files\Microsoft Office\Office10\VS Runtime\vsansi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM]
"Autorecover MOFs"="%windir%\system32\wbem\cimwin32.mof %windir%\system32\wbem\ncprov.mof %windir%\system32\wbem\wmipcima.mof %windir%\system32\wbem\secrcw32.mof %windir%\system32\wbem\subscrpt.mof %windir%\system32\wbem\scm.mof %windir%\system32\wbem\system.mof %windir%\system32\wbem\scrcons.mof %windir%\system32\wbem\smtpcons.mof %windir%\system32\wbem\wbemcons.mof %windir%\system32\wbem\wmi.mof %windir%\system32\wbem\wmi_tracing.mof %windir%\system32\wbem\win32_printer.mof %windir%\system32\wbem\tcpip.mof %windir%\system32\wbem\rsop.mof %windir%\system32\wbem\scersop.mof %windir%\system32\wbem\msv1_0.mof %windir%\system32\wbem\fundisc.mof %windir%\system32\wbem\ncsi.mof %windir%\system32\wbem\nlasvc.mof %windir%\system32\wbem\l2gpstore.mof %windir%\system32\wbem\schedsvc.mof %windir%\system32\wbem\l2sechc.mof %windir%\system32\wbem\onex.mof %windir%\system32\wbem\netprofm.mof %windir%\system32\wbem\lltdio.mof %windir%\system32\wbem\rspndr.mof %windir%\sys
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders]
"Root\CIMv2:__Win32Provider.Name="SoftwareLicensingProduct_Provider""="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders]
"Root\CIMv2:__Win32Provider.Name="SoftwareLicensingService_Provider""="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders]
"root\cimv2:__Win32Provider.Name="Win32_WIN32_TERMSERVLICENSING_Prov""="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\cmmgr32.exe]
"CmstpExtensionDll"="C:\Windows\system32\cmcfg32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_0.0.0.0_none_494e993e6d5e7480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_0.0.0.0_en-us_db99dfaadbc7cd3b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_0.0.0.0_none_1cd848053ddd999e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_0.0.0.0_none_71ff8932bf914b27]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_0.0.0.0_none_9dc911b7456fd2ce]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_0.0.0.0_none_196a215d12ed69e8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_0.0.0.0_none_72243aa2e8df0d9a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_0.0.0.0_none_4280e08cee1c53a1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_0.0.0.0_none_36326a7fbb82bfcc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_0.0.0.0_none_37887623330bedcc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_0.0.0.0_none_0e835358221cbc51]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_0.0.0.0_none_1f7a7ea4da88e784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_0.0.0.0_none_cb852b36fdb6c8a4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_0.0.0.0_none_e8f9509cee17981a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_0.0.0.0_none_2e5bccd16c6dc20c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_0.0.0.0_none_e923fc1bb00e7bc1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_0.0.0.0_none_90164b8899801d7d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_0.0.0.0_none_b424bac971c02177]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_0.0.0.0_en-us_f2a6b953edf8d6a1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_0.0.0.0_none_08de03da97d1c779]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_0.0.0.0_none_ae51e4c3fd61fc54]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_0.0.0.0_none_de292859b3f390db]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_0.0.0.0_none_7251732741b036fe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_0.0.0.0_none_72215f9541d4f4cd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_0.0.0.0_none_7226ab1141d059df]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_0.0.0.0_none_15a36c8b7da2aa74]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_0.0.0.0_none_9da45075109f8816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_0.0.0.0_none_bdeb2f27b33782fe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-usermodensi_31bf3856ad364e35_0.0.0.0_none_963c188d0f9e1cd8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_0.0.0.0_none_b1c8420b76aa6a7b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_0.0.0.0_none_578b455e25a3a66e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_0.0.0.0_none_1dbd24db6b83c532]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_0.0.0.0_none_3502e2580ef3ee9b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_windowssearchengine-licensing_31bf3856ad364e35_0.0.0.0_none_92554227d7443f01]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Desk\shellex\PropertySheetHandlers\Display Effects CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Device\shellex\PropertySheetHandlers\Display Adapter CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Device\shellex\PropertySheetHandlers\Display Monitor CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Device\shellex\PropertySheetHandlers\Display TroubleShoot CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Display\shellex\PropertySheetHandlers\LDVP Shell Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\Display\shellex\PropertySheetHandlers\PlusPack CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\System\shellex\PropertySheetHandlers\Auto Update Property Sheet Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Controls Folder\System\shellex\PropertySheetHandlers\Remote Sessions CPL Extension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Diagnostics\Performance]
"BinariesExtensionList"=".exe:.dll:.sys:.db:.cpl:.mui:.cmd:.lnk"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Diagnostics\Performance\Resolvers]
"SystemBinariesList"="win32k.sys:winlogon.exe:EXPLORER.EXE:CSRSS.Exe:dwm.exe:logon.scr:logonui.exe:lsass.exe:lsm.exe:ntkrpamp.exe:ntoskrnl.exe:RUNDLL32.EXE:services.exe:slsvc.exe:smss.exe:spoolsv.exe:svchost.exe:taskeng.exe:WinInit.exe:WISPTIS.EXE:dllhost.exe:dllhst3g.exe:cscript.exe:mmc.exe:msiexec.exe:upnpcont.exe:wscript.exe:WUDFHost.exe:dfsvc.exe:dfsvc.exe:fdbs.exe:ntfsbs.exe:memdiag.exe:NETFXSBS10.exe:applaunch.exe:aspnet_compiler.exe:aspnet_regbrowsers.exe:aspnet_regiis.exe:aspnet_regsql.exe:aspnet_state.exe:aspnet_wp.exe:caspol.exe:csc.exe:CVTRES.EXE:dfsvc.exe:dw20.exe:IEExec.exe:ilasm.exe:InstallUtil.exe:jsc.exe:MSBuild.exe:mscorsvw.exe:ngen.exe:RegAsm.exe::RegSvcs.exe:vbc.exe:TrustedInstaller.exe:Aurora.scr:AutoChk.Exe:AUTOFMT.EXE:CHKDSK.EXE:CHKNTFS.EXE:consent.exe:pnPUnattend.exe:pnPutil.exe:RacAgent.exe:fsquirt.exe:Uninst.exe:updateWmc.exe:wmdc.exe:wmdsync.exe:mofcomp.exe:ScrCons.exe:smi2smir.exe:unsec
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\FindExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\FolderTypes\{822b2508-bccc-457a-b698-a3e06bc68f1b}]
"ColumnList"="prop:0System.ItemNameDisplay;0System.Photo.DateTaken;0System.ItemFolderPathDisplayNarrow;0System.Keywords;0System.Size;0System.Rating;1System.ItemType;1System.Image.Dimensions;1System.DateModified"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}]
"ColumnList"="prop:0System.ItemNameDisplay;0System.Photo.DateTaken;0System.Keywords;0System.Size;0System.Rating;1System.ItemType;1System.Image.Dimensions;1System.DateModified"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}]
"MatchExtensions"="*.contact;*.group"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}]
"MatchExtensions"="*.contact;*.group"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\History\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}\0]
"Extensions"="[{35378EAC-683F-11D2-A89A-00C04FBBCFA2}{C22149F2-4CE9-4037-A1BA-A1B653698F94}]"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\State\Machine\Extension-List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\State\S-1-5-21-1291136695-2564591854-1091026493-1003\Extension-List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\State\S-1-5-21-1291136695-2564591854-1091026493-1004\Extension-List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\State\S-1-5-21-1291136695-2564591854-1091026493-1005\Extension-List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\State\S-1-5-21-1291136695-2564591854-1091026493-1006\Extension-List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\Status\GPExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\1033\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bots\vinavbar\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bots\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_adm\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_aut\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\servsupp\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\ProgramData\Microsoft\Search Enhancement Pack\Search Box Extension\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\chrome\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\defaults\preferences\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\defaults\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\components\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\content\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Reflection.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Reflection.Extensions\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Extensions\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Text.Encoding.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Text.Encoding.Extensions\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions.Design\v4.0_4.0.0.0__31bf3856ad364e35\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions.Design\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions\v4.0_4.0.0.0__31bf3856ad364e35\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0101F9D9337A9D042A016200AF346B2F]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BarsVerticalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0477D3E71958C974B8F1A17FC34A8F4A]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\048409C8AD4AE1D4C8B1E14E1573BD84]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FilledVRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04DE70F831DCDF94D992AB2DCAE0DD81]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ShatterRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\053E5B33931A50045BD98B2A918338BC]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SplitHorizontalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09AEC5BC2C7EC3B43BFF8A738F4A57FD]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CheckerboardTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B9443A4A8B9DC44980DB10AA3C82FD6]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="<\System.Data.DataSetExtensions,version="3.5.0.0",publicKeyToken="b77a5c561934e089",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B9443A4A8B9DC44980DB10AA3C82FD6\26DDC2EC4210AC63483DF9D4FCC5B59D]
"File"="FL_System_Data_DataSetExtensions_dll_Gac_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C3DF7480B9A8824F97AF29B41DA57BC]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\StarsTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C81529C29D12D11AA79000A9CF0750B]
"9040820900063D11C8EF00054038389C"="02:\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C81529C29D12D11AA79000A9CF0750B]
"00000000000000000000000000000000"="02:\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C81529C29D12D11AA79000A9CF0750B]
"9040910900063D11C8EF00054038389C"="02:\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F481840A7F5108438A4E7B6DBDDB264]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\PageCurlDownLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1317D1BD314F3964391EDB7D296187EA]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.WorkflowBuildExtensions.targets"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1335A82CB351925419F8EB7B89E28397]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\HeartTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1567BFD60FAEB6E428E4C80E65B2DAD2]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="<\System.Web.Extensions,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.4056",culture="neutral""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1567BFD60FAEB6E428E4C80E65B2DAD2\26DDC2EC4210AC63483DF9D4FCC5B59D]
"File"="System.Web.Extensions_dll_x86_gc.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\174EE699FDB06BD4BA620322B02C40D5]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\KeyholeTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\195327AFC4749EF4EB43746B0B37EF1A]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WheelTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D2DB3FDCC6B1D1199C8000A9CA0343B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_aut\AUTHOR.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D2DB3FDCC6B1D1199C8000A9CA0343B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_aut\AUTHOR.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D58432E82724134997101204DA67C90]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\DOMExtension.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2168143289C7B204EAC64F97D787D2B1]
"3FB95CD427D08EC3FBFEE1F8FA86E90B"="c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\219A5C400B6BD964BB061E6DAC92CC22]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ExtensionServer.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21DF1FA3065D4784F9361F71ED5D4CD5]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CrossFadeTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21F049DC0C165644AB3AF1033A927F2E]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ZigzagVerticalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\227A5E5F29487CE4E9D882C38A177838]
"00002119130000000000000000F01FEC"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\FPSRVUTL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22C82DC835C0FA2409D402B8B2E4A2E7]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ShatterUpLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\25D23F7EED8E0984DBBCA4209C7041FE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CircleTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\260EEA28D7E8DD11FBC99D57658D5939]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\260EEA28D7E8DD11FBC99D57658D5939\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.web.extensions.dll_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28EB7CFB5E4F1D11994A000A9CA0343B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\FPMMCSAT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28EB7CFB5E4F1D11994A000A9CA0343B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\FPMMCSAT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28FEFCE3A30CF4F4A972C5A3B4E84AE1]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\RevealDownTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BB2B043F7E8DD11CB535FA9658D5939]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Extensions.Design.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BB2B043F7E8DD11CB535FA9658D5939\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.web.extensions.design.dll_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2C659DF8071B6BB3BB129587E009A3F7]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Text.Encoding.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2C659DF8071B6BB3BB129587E009A3F7\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Text.Encoding.Extensions.dll_facade_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2CD937201F8E6E046A4B229415A7464F]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SweepUpTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\303C047A14968934699A2D8F77E647B0]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DiagonalCrossOutTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3290729A38C3655409B540DA3D7D9C5B]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ExtensionAuditCategory.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3616DEFA92730AF49B4D581F293983FA]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CinematicFadeThroughGrayTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A2FACC3EFCA4D115A34000972A8B18B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Microsoft Office\Office10\VS Runtime\vsansi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A985E6D629D7134D9A24A302E213D27]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeNarrowDownTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3B744F0075229964CB6BAAE529AE6A89]
"B6ACDB9A3563B764CA384963D73AFB3E"="C:\Program Files\Windows Live\Photo Gallery\PublishPluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3B744F0075229964CB6BAAE529AE6A89\B6ACDB9A3563B764CA384963D73AFB3E]
"File"="PublishPluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D2DB3FDCC6B1D1199C8000A9CA0343B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_adm\ADMIN.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D2DB3FDCC6B1D1199C8000A9CA0343B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\_vti_adm\ADMIN.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D52051FBEE979B45975BC878A8C4605]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ScopeChainSidebarPane.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C0F820CFEDBD340B6CE4A5B9B1C925]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ZigzagHorizontalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\44170FE38F8D26B4A94C6E00D7004D8C]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FanInTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4425C388643E3D11D881000CF446F1B3]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\OWSADM.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4425C388643E3D11D881000CF446F1B3]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\OWSADM.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4639118FAD2D3D116813000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AUTL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4639118FAD2D3D116813000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AUTL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4639118FAD2D3D116813000540386890]
"9040910900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AUTL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46C2EED53AA18CB4D8E0B06F846A4D26]
"14A7CAC1B3853844F95AE34556FA8F2C"="C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\components\IFFGlobalExtension.xpt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4705987359C32EA43AEA969A944DDE67]
"076CFAAAB965F2A4284B2449E5D03EFE"="C:\Program Files\Windows Live\Writer\WindowsLive.Writer.Extensibility.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4705987359C32EA43AEA969A944DDE67\076CFAAAB965F2A4284B2449E5D03EFE]
"File"="ExtensibilityDll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\470F383F18624164287B9CA9A2B54E09]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\PixelateTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48807D50CE8F5244E8A1AFA68B4B75EE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FlipTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A399A5DD8FE1824592BDB6CB63E07DE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ShatterInTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4AAD4068086995D458A8E26BEDDD7E66]
"3FB95CD427D08EC3FBFEE1F8FA86E90B"="c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D29C77A0F2C1D84F99B32E8862170AE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BlurTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\524756F7451E4E446ABA95328A109B80]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SpinTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\563BA6DD8F90CFD4A844E8353D818140]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary1TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\576C4383739D60740AD1C4D7DFE46C9C]
"3FB95CD427D08EC3FBFEE1F8FA86E90B"="c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A87F683F021B2D4194688CACA48263F]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeWideRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A92610A0136FD24DA6BF0BDF5A4691E]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SlideDownGapTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BC5B8408088788499EB7FB27E020470]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\InsetUpLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C3447A0A9E62D11AA2A000A9CF0750B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\NORTBOTS.HTM"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C3447A0A9E62D11AA2A000A9CF0750B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\NORTBOTS.HTM"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F5487FFB1737B848A7DB2135C71C519]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SlideUpCenterTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F709C546FEDD1447A3108B07A7D8A9A]
"00002119130000000000000000F01FEC"="C:\Program Files\Common Files\Microsoft Shared\MSEnv\PublicAssemblies\extensibility.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F709C546FEDD1447A3108B07A7D8A9A]
"00002105501100000000000000F01FEC"="C:\Program Files\Common Files\Microsoft Shared\MSEnv\PublicAssemblies\extensibility.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6015302CE2BCC4C48B2B93EDEE67A7E2]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary8TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60E542C219C625F44A0542712558E015]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c?\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.Design.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63665FB5BDFF11B38A1826E971D74491]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Reflection.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63665FB5BDFF11B38A1826E971D74491\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Reflection.Extensions.dll_facade_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\637FC7325B5D2833E93D55947A926A86]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\637FC7325B5D2833E93D55947A926A86\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.data.datasetextensions.dll_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6545E7194BCE4EC49878560D3BA83C83]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CinematicBlurTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6639118FAD2D3D116813000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AWEL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6639118FAD2D3D116813000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AWEL.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6680558E1392B244D83BF682A31DF976]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeNormalDownTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\669004D07DF50A54495D77E83741DE04]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\PageCurlUpRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6733590C5332F41448E05B9460772D54]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ExtensionRegistryStub.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67DF70307066BA84C8CF999B5173A59A]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\RectangleTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\691A59E02D97E114D93FFEFC43008767]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BowTieHorizontalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A7788AE284A83B448DB4EA6EA004CCB]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\InsetDownLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6ABFF44A920E3D116833000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5ANWI.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6ABFF44A920E3D116833000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5ANWI.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6ABFF44A920E3D116833000540386890]
"9040910900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5ANWI.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B905E99A06FC49469FD1F73CED35D3A]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\StarTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6E2D5C9FA5C99EF458BF8245C45CEAFA]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\InsetUpRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7261182387F937E4A9C0D6F3A38484EA]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\PageCurlUpLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7578A92DB0521FE4E8139326E8314887]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\PageCurlDownRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7639118FAD2D3D116813000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AWEC.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7639118FAD2D3D116813000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AWEC.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7639118FAD2D3D116813000540386890]
"9040910900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FP5AWEC.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\776AB758CFFA7244EBA7C3D1CA31717C]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FanUpTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7D0CCA36550E5434A843C62463F48199]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c?\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7D0CCA36550E5434A843C62463F48199\26DDC2EC4210AC63483DF9D4FCC5B59D]
"File"="System.Web.Extensions_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\80FFE5BB5AE752E46B112493D7842DC3]
"14A7CAC1B3853844F95AE34556FA8F2C"="C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\content\overlay.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\81039CBEEE0C2524B8E9AB4BCF56CA14]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SweepOutTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\822359BE8644B234E9C08A0B2DCE2A1D]
"3FB95CD427D08EC3FBFEE1F8FA86E90B"="c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\846AACF8F9848954D8C88B6EDB0C6F29]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DiamondTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8574183573FA66E4CAD4674299863D03]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\defaults\preferences\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\867702598818AD74B9FF17EC34142DD8]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ExtensionAPI.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\877CDB0FBE2125C418F772C9F5DFC8A0]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FilledVLeftTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C88A19B967BC1530A0601263B0AB2C2]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions.Design\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.Extensions.Design.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C88A19B967BC1530A0601263B0AB2C2\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.web.extensions.design.dll_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\92AF38947779D2A4CBC7DFA56CF08692]
"9504C23BA7E6FE14DA0265FD81279B32"="C:\Program Files\Microsoft Small Business\Business Contact Manager\extensibility.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\93575B41C856E104D86D198E3C30AD1B]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BlurThroughBlackTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94CB588AF063D094F9EAB1D79BDAE2DE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SweepInTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9516347D3CF79044EB266E7C251B55BD]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\RevealRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\96A19002B939FC646B32F01686A7C094]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FanOutTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\977C755FCD516454082416D55ACE642D]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary6TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\987E7FA2BD5171C498E9B67AA7A0F74D]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\InsetDownRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98E365708B62FBE4A93FB3B3FAEB2142]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DissolveRoughTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9BB80B7127AE3D116833000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\servsupp\FP5AMSFT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9BB80B7127AE3D116833000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\servsupp\FP5AMSFT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C3447A0A9E62D11AA2A000A9CF0750B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\FPEXT.MSG"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C3447A0A9E62D11AA2A000A9CF0750B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\1033\FPEXT.MSG"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A3C2AB98858E81143881C5427D773266]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\CirclesTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A42CD5E7CB28F03448D1EF43ACD146F6]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FilledVDownTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A678C8C78B9F65940985C6335BC7BFD4]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\FilledVUpTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A7417D8E9D9F17947BB46D9B3EFCD5D3]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary7TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA0E809FE1F627231BA2A55FCA731B65]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA0E809FE1F627231BA2A55FCA731B65\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.web.extensions.dll_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB9F8FD1DCB025242B11536F620FF484]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DiagonalBoxOutTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC0C048ED4886934A8306E4BA0810AF2]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c?\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.DataSetExtensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE789F1D2ECDD204FAA33A8D4144B3DC]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeNormalRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B0BD1890CAD3A1E4D96E77A45D17EA40]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\chrome\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B418C173CDD0A494D9D235BADB76AAC5]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\EyeTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B558F1FD2EB9B4140AA8B8D881AEF184]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WhirlwindTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D7D0C9921411435BE6B2BA6BB38CB8]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D7D0C9921411435BE6B2BA6BB38CB8\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Runtime.Extensions.dll_facade_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B853E18ABE78E0B49AFE88FBB9BBAF2F]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DissolveTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8942FE085756A940884C11E46AB475C]
"B6ACDB9A3563B764CA384963D73AFB3E"="C:\Program Files\Windows Live\Photo Gallery\SubscribePluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8942FE085756A940884C11E46AB475C\B6ACDB9A3563B764CA384963D73AFB3E]
"File"="SubscribePluginsInterop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8A16A68A7D92C5488864E6377911720]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\RollTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB2E05ADA7A8F064591360C554A792E3]
"14A7CAC1B3853844F95AE34556FA8F2C"="02:\SOFTWARE\Mozilla\Firefox\Extensions\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB589094C616AB34BAC0619D28FB2910]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\DiagonalDownRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBD2396147AE6D838836364C8EFB235C]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Text.Encoding.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Text.Encoding.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBD2396147AE6D838836364C8EFB235C\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Text.Encoding.Extensions.dll_facade_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC3447A0A9E62D11AA2A000A9CF0750B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FPENCODE.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC3447A0A9E62D11AA2A000A9CF0750B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FPENCODE.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC3447A0A9E62D11AA2A000A9CF0750B]
"9040910900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\FPENCODE.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC3D3D86EBFC3D116813000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\CFGWIZ.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC3D3D86EBFC3D116813000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bin\CFGWIZ.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE571CF58318C07459E041B9CF4CB501]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary2TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF10E0743815A7C4B84E4F99C79B5B66]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BFE30DAA13F0EAE43A9C8500ACF451DE]
"14A7CAC1B3853844F95AE34556FA8F2C"="C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\chrome.manifest"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C3B9378E4459304449B1999BA1EE5115]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ShrinkInTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C469F9BCE76A3D1118F000087C8201A8]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Microsoft Office\Office10\MCANSI.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C469F9BCE76A3D1118F000087C8201A8]
"9040910900063D11C8EF00054038389C"="C:\Program Files\Microsoft Office\Office10\MCANSI.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C478FC512881CC2458295807BEDC09FF]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="<\System.Web.Extensions.Design,version="3.5.0.0",publicKeyToken="31bf3856ad364e35",processorArchitecture="MSIL",fileVersion="3.5.30729.1",culture="neutral""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C478FC512881CC2458295807BEDC09FF\26DDC2EC4210AC63483DF9D4FCC5B59D]
"File"="System.Web.Extensions.Design_dll_x86_gc.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5796CBA8E99EE44980FCF0974B5FEF4]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SlideDownTogetherTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5A0BF1DFA7018C408725A014EA34711]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BarsHorizontalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C8034EFA6C667EF458398C90EF0B2EF9]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\ShatterUpRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB43EF5D5BDED9B4586F37A52E810C2F]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\Contemporary5TransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC420BD08571196379A5BB0848B20C2E]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC420BD08571196379A5BB0848B20C2E\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Runtime.Extensions.dll_facade_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D08AE1398712D294FA1C8031D49B9E9C]
"60EA627A3AAA1D34783E075F0113F440"="C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D339833E231173D469094B8EC93A6273]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WhirlwindFromTopTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D6FD89EB524D7498F9C7317ADC2723]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\IrisTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8194022078417A4991CF4FE9D064076]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Data.DataSetExtensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8194022078417A4991CF4FE9D064076\65FC11932FE9AB9348A62CB73DDC6058]
"File"="system.data.datasetextensions.dll_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D86A4893DDB1B61419AD6E9E61E8666B]
"5A440F64B8EC691489E4B56D25E563D1"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\ExtensionPanel.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D9B4C958218D269429E0543302026B29]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SlideTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DAAF1AA9459A52E499F342477D3642BE]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeNarrowRightTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC204E58989594E47B06073A9F07E0D3]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\WipeWideDownTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0CD0B686ACC0553EB2EAF22926FEB31]
"65FC11932FE9AB9348A62CB73DDC6058"="C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Reflection.Extensions\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Reflection.Extensions.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0CD0B686ACC0553EB2EAF22926FEB31\65FC11932FE9AB9348A62CB73DDC6058]
"File"="System.Reflection.Extensions.dll_facade_gac_x86"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E144043D174279F43B71D9BBD679BB67]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\BowTieVerticalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E7170FFCD5100334F813E8CDBE124C99]
"68AB67CA7DA73301B744AA0100000010"="00:\MIME\Database\Content Type\application/pdf\Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F980EA5EBB7EA4AA8BE919002A906E]
"3FB95CD427D08EC3FBFEE1F8FA86E90B"="c:\Program Files\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EA48A17F60D42C34F880FA7C1FB8B1B8]
"4314AE291D01A814191EA5403531A183"="C:\Program Files\Windows Live\Photo Gallery\MovieMakerTemplates\SplitVerticalTransitionTemplate.wlmx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EA5F97CBCB5F9944DB53275D6BE780AF]
"00002109E60090400000000000F01FEC"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\1033\FPEXT.MSG"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED9C4B98606A6D14381877AA82E1A5BC]
"9504C23BA7E6FE14DA0265FD81279B32"="<\Extensibility,Version="7.0.3300.0",Culture="neutral",FileVersion="7.0.9466.0""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF2F528DBA785D115AF4000972A8B18B]
"00002119130000000000000000F01FEC"="<\Extensibility,fileVersion="7.0.9466.0",version="7.0.3300.0",culture="neutral",publicKeyToken="B03F5F7F11D50A3A""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF2F528DBA785D115AF4000972A8B18B]
"00002105501100000000000000F01FEC"="<\Extensibility,fileVersion="7.0.9466.0",version="7.0.3300.0",culture="neutral",publicKeyToken="B03F5F7F11D50A3A""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF2F528DBA785D115AF4000972A8B18B\00002105501100000000000000F01FEC]
"File"="extensibility_dll_1_____X86.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF2F528DBA785D115AF4000972A8B18B\00002119130000000000000000F01FEC]
"File"="extensibility_dll_1_____X86.3643236F_FC70_11D3_A536_0090278A1BB8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EFD93D91D5768FF408DB90C25F98B448]
"9040820900063D11C8EF00054038389C"="02:\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{42042206-2D85-11D3-8CFF-005004838597}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EFD93D91D5768FF408DB90C25F98B448]
"9040910900063D11C8EF00054038389C"="02:\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{42042206-2D85-11D3-8CFF-005004838597}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EFD93D91D5768FF408DB90C25F98B448]
"9040580900063D11C8EF10054038389C"="02:\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{42042206-2D85-11D3-8CFF-005004838597}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F0835CD311D82AC46BCDEF24F08926FB]
"00002119130000000000000000F01FEC"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\12\BIN\FPWEC.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA095D0457024D1168D3000540386890]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bots\vinavbar\FP5AVNB.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA095D0457024D1168D3000540386890]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\bots\vinavbar\FP5AVNB.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC2DB3FDCC6B1D1199C8000A9CA0343B]
"9040820900063D11C8EF00054038389C"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\SHTML.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC2DB3FDCC6B1D1199C8000A9CA0343B]
"00000000000000000000000000000000"="C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\50\isapi\SHTML.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FED9AA4301C136242A24E72E13EF9063]
"26DDC2EC4210AC63483DF9D4FCC5B59D"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVAct3FilesIntl_1033"="K}G6XydF{9nLU'dXHwG( OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVExtensionsFilesIntl_1033"="W[i^%LQ!_=G@rT6SLN`6hw6$xNfV[ASNkN]UHNfh42)ac2{'!@n]'qZF[SD^{6G4HG@Z}9x&4bB&AxbY=PMefY.NJ@q(D3^QQRVK2pvF1g3^B@&4k5Y%25XE%spby)3vY@vq',isGK&X OutlookImportExportFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVCsvDosFilesIntl_1033"="v,dx'{H'j8N(&xzPnw1O OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVCsvWinFilesIntl_1033"="v,dx'{H'j8N(&xzPnw1O OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVDbaseFilesIntl_1033"="WWl^CJ=YR@XTswpD4Fgs OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVOrg97FilesIntl_1033"="f'2%%if.UAVV3[$Xp.(S OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10090400000000000F01FEC\Features]
"OutlookDVPabFilesIntl_1033"="r=`?1(0W@A8Ldq8+Hswi OutlookDVExtensionsFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVAct3Files"="{.mTHMJhs?S^wg16NYu6 OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVExtensionsFiles"="P@pNLC&Y9@YF*~,+eaxWE&o3`{]SMA[b1%SS~)6'Ng9M5{GrH@Z*7DYqP%pvoNxhkeg*K?QXfV[0}4)Z'Pb8,[F1t9TgC&RqLS=+~h49Nj$Ak=QXg{'Q9lcqrp%741nP0=PM}jMgPg&5 OutlookImportExportFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVCsvDosFiles"="C=B[EdFPT9NbZr*MdWvsS+KO@cz__8?sFt?wTYTm OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVCsvWinFiles"="S+KO@cz__8?sFt?wTYTmo[Cyl9KjY9uQ1w+hCMzn OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVDbaseFiles"="FtN5cbFDk@%oGd?S$%Oi OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVOrg97Files"="&^ip%cS!.9Oj5*@8O+Ub OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119130000000000000000F01FEC\Features]
"OutlookDVPabFiles"="ODD2M^'ub8Lnw1)i54IY OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\14A7CAC1B3853844F95AE34556FA8F2C\Features]
"FFFDMExtension"="Gm02o(I}S=Qx~XEOm4}7.{Lu_f,N@ACGP,!EMq4uZ=)4FO&?F@qG^)xN?yiGJSj6ekGs,AlD7J6RkXV7 DefaultManagerFeatures"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\65FC11932FE9AB9348A62CB73DDC6058\Features]
"F_CDF_core_x86"="}[-8uAO'l8}u{5]%(113+bfFa4u8MA+A1SxqZvbuC.X``%1IQ?t.!}?S{bXu8^_pWwX~(@dy&jjXNpJ)?K&uGne$P@GPD*%k6f5BX?eXOpNwu@m1z?qWu5N=k6ZBTy`W^@99u?Qb~[bUrnAn9fQJ$9[g47SNa{`07gpx5JaIt9-Dps]D4!oWF?DwI@=SK@YPDKo0}@E]IKsUJ2C77@%U3!,c'V0kz[`jTniCA?2l@^VM2@yFfd~VSA_1K?J]YjvRd9.VE9!.-9wp$?0AIc,mW@t2-Ra?,O9l,AFo-{KUYu)drcG2C83{G9p+P9%fD^VwS=$O*+gvM@y[dz_Igy2-6bo&ANs4094$tR.h%.ADJ-IUM]a0l=z!-696UK`y?JX]2Lj8)9o6&v(v6bXnwO%gp4~8v?XHhgbF+'q1m(_^cGxVh@B2B4fGSXEU~+`',y5,y6yb`{Q9OpeEL3yA4%S0l7l%O((Q06.6}lsyl@il_?3V0%qfMAXio0V`in9BU7{E2}8_vC?YV4b6wdh^=4p7,k8FJW-.N[0qtNqb?ANxN8K[3ieP0?0o1cA'v@DFr=RX$4}VAuF%N6J+h(?t{%+dlOp*Kzf34p!'BABEU?^F%hLtQd*q*&1+h(zS^_,qbZ]IoTMz1dRHW9%%q+.FH6u*H_Ov!Xaa9=K='K8HgKxcJTdN6aBsq=b~,FqZoa37aj(tMHA=dAWpc([^,s1nbS9zzt`mc?ye4MZ=mJ0{.QKk?VQd!?7+R&V5`4'0ObcoWF&z@@1dMxWNrMJ99otxq]5~{7{dOGGU)?BichZySPts5?YQFP7ecrZE&7Y33ZHdV=fG*$9()K0q_h1cWOY6C7%rl8jNsilXadA
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVAct3Files"="B)jO9mwlf(x*A__qm]R2?_V~&,Hqf(i`bqFgkW_B OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVExtensionsFiles"="xa8irtGqf(i`bqFgkW_Bna8irtGqf(i`bqFgkW_Bpa8irtGqf(i`bqFgkW_Bra8irtGqf(i`bqFgkW_Bta8irtGqf(i`bqFgkW_Bva8irtGqf(i`bqFgkW_BA_V~&,Hqf(i`bqFgkW_BOzT]jI{jf(=1&L[-81-]bzT]jI{jf(=1&L[-81-]dzT]jI{jf(=1&L[-81-]fzT]jI{jf(=1&L[-81-]hzT]jI{jf(=1&L[-81-]jzT]jI{jf(=1&L[-81-]lzT]jI{jf(=1&L[-81-] OutlookImportExportFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVActFiles"="ha8irtGqf(i`bqFgkW_BGzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVCsvDosFiles"="ja8irtGqf(i`bqFgkW_B^zT]jI{jf(=1&L[-81-]IzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVCsvWinFiles"="ja8irtGqf(i`bqFgkW_B`zT]jI{jf(=1&L[-81-]IzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVDbaseFiles"="mMX~x%[qf(Rp)L[_GKbaMzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVEccoFiles"="la8irtGqf(i`bqFgkW_BKzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVOrg97Files"="!b8irtGqf(i`bqFgkW_BUzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVPabFiles"="1_V~&,Hqf(i`bqFgkW_BWzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVSchplusFiles"="rrT]jI{jf(=1&L[-81-]=&*tLlfnf(?Q)L[lj+'(7_V~&,Hqf(i`bqFgkW_BYzT]jI{jf(=1&L[-81-] OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"OutlookDVSchplusinterFiles"="D)jO9mwlf(x*A__qm]R25_V~&,Hqf(i`bqFgkW_B OutlookDVExtensionsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040820900063D11C8EF00054038389C\Features]
"RemoveOPSExtensionFeature"="]QO.*c?=k@4}Dwr~%S2A PackUpSettingsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9040910900063D11C8EF00054038389C\Features]
"RemoveOPSExtensionFeature"="]QO.*c?=k@4}Dwr~%S2A PackUpSettingsFiles"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\NoFileLifetimeExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Secure Mime Handlers]
"CorTransientLoader.CorLoad.1"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\UNSIGNEDACTIVEX]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\UNSIGNEDACTIVEX]
"Text"="Download unsigned ActiveX controls"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SO\DOTNET\DOWNLOADUNSIGNED]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SO\DOTNET\DOWNLOADUNSIGNED]
"Text"="Download unsigned managed code"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\DOTNET\DOWNLOADUNSIGNED]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\DOTNET\DOWNLOADUNSIGNED]
"Text"="Download unsigned managed code"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Extensibility]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{40dd6e20-7c17-11ce-a804-00aa003ca9f6}"="Shell extensions for sharing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}"="Shell extensions for sharing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{77597368-7b15-11d0-a0c2-080036af3f03}"="Web Printer Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{41E300E0-78B6-11ce-849B-444553540000}"="PlusPack CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{59099400-57FF-11CE-BD94-0020AF85B590}"="Disk Copy Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{25585dc7-4da0-438d-ad04-e42c8d2d64b9}"="Client application shell extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4F58F63F-244B-4c07-B29F-210BE59BE9B4}"=".group shell extension handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{8082C5E6-4C27-48ec-A809-B8E1122E8F97}"=".contact shell extension handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{7444C717-39BF-11D1-8CD9-00C04FC29D45}"="Crypto PKO Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{7444C719-39BF-11D1-8CD9-00C04FC29D45}"="Crypto Sign Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{F0152790-D56E-4445-850E-4F3117DB740C}"="Remote Sessions CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{60254CA5-953B-11CF-8C96-00AA00B8708C}"="Shell extensions for Windows Script Host"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{42071712-76d4-11d1-8b24-00a0c9068ff3}"="Display Adapter CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{42071713-76d4-11d1-8b24-00a0c9068ff3}"="Display Monitor CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{f92e8c40-3d33-11d2-b1aa-080036a75b03}"="Display TroubleShoot CPL Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
 
#22 ·
SYSLOOK.Scan 17APR 5 0F6

"{59be4990-f85c-11ce-aff7-00aa003ca9f6}"="Shell extensions for Microsoft Windows Network objects"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{89D83576-6BD1-4c86-9454-BEB04E94C819}"="MAPI Search Namespace Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4B534112-3AF6-4697-A77C-D62CE9B9E7CF}"="Sync Center Event Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{576C9E85-1300-4EF5-BF6B-D00509F4EDCD}"="Sync Center Handler Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{B32D3949-ED98-4DBB-B347-17A144969BBA}"="Sync Center Item Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{F04CC277-03A2-4277-96A9-77967471BDFF}"="Sync Center Conflict Properties Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{BD7A2E7B-21CB-41b2-A086-B309680C6B7E}"="Client Side Cache Namespace Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{8BEEE74D-455E-4616-A97A-F6E86C317F32}"="LDVP Shell Extensions"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{B41DB860-8EE4-11D2-9906-E49FADC173CA}"="WinRAR shell extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{5F327514-6C5E-4d60-8F16-D07FA08A78ED}"="Auto Update Property Sheet Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\coolcat.exe]
"ANSIDISPLAYNAMES"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\uni.exe]
"ANSIDISPLAYNAMES"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony\Country List\247]
"Name"="Ascension Island"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Channels\Microsoft-Windows-Security-Licensing-SLC/Perf]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{1fd7c1d2-d037-4620-8d29-b2c7e5fcc13a}]
@="Microsoft-Windows-Security-Licensing-SLC"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{1fd7c1d2-d037-4620-8d29-b2c7e5fcc13a}\ChannelReferences\0]
@="Microsoft-Windows-Security-Licensing-SLC/Perf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6000.16386_none_233de19528492776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6001.18000_none_2574a3912534384a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_6.0.6002.18005_none_27601c9d22560396]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_6.0.6000.16386_en-us_609cd3be2ca35f5b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_6.0.6002.18005_en-us_b9ab630990bf5c51]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_6.0.6000.16386_none_010ab2690e89e5f8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_6.0.6002.18005_none_fae9cb63f2d528b4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_6.0.6000.16386_none_a6c374f3e59a0c1c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-i..nsibility.resources_31bf3856ad364e35_6.0.6000.16386_en-us_4bf8db0d2331b48f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6000.16386_none_4beed1897a7bfe1d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6001.18000_none_4e25938577670ef1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_6.0.6002.18005_none_50110c917488da3d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_8.0.6001.18702_none_3110b5df8d327f4e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_9.1.8112.16421_none_0e18ce75b54b5503]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_6.0.6000.16386_none_77b85a0e005a85c4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_6.0.6001.18000_none_79ef1c09fd459698]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6000.16386_none_f35969b3cdd81cde]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6001.18000_none_f5902bafcac32db2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_6.0.6002.18005_none_f77ba4bbc7e4f8fe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_6.0.6000.16386_none_38b2944aff04a15e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_6.0.6000.16386_none_4c1382f9a3c9c090]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_6.0.6001.18000_none_4e4a44f5a0b4d164]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6000.16386_none_1c7028e3a9070697]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.18000_none_1ea6eadfa5f2176b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.18570_none_1e5b44e9a62accc5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6001.22821_none_1f1bf566bf1ef47f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.18005_none_209263eba313e2b7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.18362_none_204e8937a34735cd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.22555_none_20e5f8b2bc5a02d2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_6.0.6002.22869_none_20df2fa0bc5e7b94]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_6.0.6000.16386_none_1021b2d6766d72c2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_6.0.6001.18000_none_125874d273588396]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_6.0.6000.16386_none_1177be79edf6a0c2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_6.0.6001.18000_none_13ae8075eae1b196]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_6.0.6000.16386_none_e8729baedd076f47]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_6.0.6001.18000_none_eaa95daad9f2801b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_6.0.6000.16386_none_f969c6fb95739a7a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_6.0.6001.18000_none_fba088f7925eab4e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_de4b43ffc2cb29cd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_6.0.6000.16386_none_39101a4d24134dbf]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_a574738db8a17b9a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_6.0.6001.18000_none_a7ab3589b58c8c6e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ib1-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_e30cc2954d2bff10]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ib2-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_8ea574a4160d7100]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.16386_none_c2e898f3a9024b10]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.16509_none_c3421cfda8beb1db]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6000.20624_none_c3b1187ec1f10ad4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6001.18000_none_c51f5aefa5ed5be4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_6.0.6002.18005_none_c70ad3fba30f2730]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6000.16386_none_084b152827587502]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.18000_none_0a81d724244385d6]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.18068_none_0a48f9ec246cf834]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6001.22175_none_0ac4c5ed3d9567ea]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_6.0.6002.18005_none_0c6d503021655122]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6000.16386_none_c31344726af92eb7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6001.18000_none_c54a066e67e43f8b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_6.0.6002.18005_none_c7357f7a65060ad7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6000.16386_none_6a0593df546ad073]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6001.18000_none_6c3c55db5155e147]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_6.0.6002.18005_none_6e27cee74e77ac93]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_5f53a1cac8f9d707]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_6.0.6000.16386_none_7644b9541de460a1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6000.16386_none_8e1403202caad46d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6001.18000_none_904ac51c2995e541]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_6.0.6002.18005_none_92363e2826b7b08d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.16386_en-us_cc9601aaa8e38997]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.16509_en-us_ccef85b4a89ff062]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6000.20624_en-us_cd5e8135c1d2495b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6001.18000_en-us_ceccc3a6a5ce9a6b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_6.0.6002.18005_en-us_d0b83cb2a2f065b7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..re-extension-agents_31bf3856ad364e35_6.0.6000.16386_none_7278d476b0c6ca45]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6000.16386_none_e2cd4c3152bc7a6f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6001.18000_none_e5040e2d4fa78b43]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_6.0.6002.18005_none_e6ef87394cc9568f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_6.0.6000.16386_none_14b4713a11974c07]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_6.0.6000.16386_none_b208484d3302a9a7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.16386_none_88412d1ab84caf4a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.16509_none_889ab124b8091615]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6000.20624_none_8909aca5d13b6f0e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6001.18000_none_8a77ef16b537c01e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_6.0.6002.18005_none_8c636822b2598b6a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6000.16386_none_b81870b06ede43d1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6001.18000_none_ba4f32ac6bc954a5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_6.0.6002.18005_none_bc3aabb868eb1ff1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.16386_none_4c40bb7dfc9ae9f4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.16509_none_4c9a3f87fc5750bf]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6000.20624_none_4d093b091589a9b8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6001.18000_none_4e777d79f985fac8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_6.0.6002.18005_none_5062f685f6a7c614]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6000.16386_none_4c10a7ebfcbfa7c3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6001.18000_none_4e4769e7f9aab897]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_6.0.6002.18005_none_5032e2f3f6cc83e3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.16386_none_4c15f367fcbb0cd5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.16509_none_4c6f7771fc7773a0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6000.20624_none_4cde72f315a9cc99]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6001.18000_none_4e4cb563f9a61da9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_6.0.6002.18005_none_50382e6ff6c7e8f5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6000.16386_none_ef92b4e2388d5d6a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6001.18000_none_f1c976de35786e3e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_6.0.6002.18005_none_f3b4efea329a398a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_6.0.6000.16386_none_779398cbcb8a3b0c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_6.0.6001.18000_none_79ca5ac7c8754be0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6000.16386_none_97da777e6e2235f4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6001.18000_none_9a11397a6b0d46c8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_6.0.6002.18005_none_9bfcb286682f1214]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_6.0.6000.16386_en-us_c0262cf4dfe59b6f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_6.0.6000.16386_en-us_3a1a542ce2e821a9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-usermodensi_31bf3856ad364e35_6.0.6000.16386_none_702b60e3ca88cfce]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-usermodensi_31bf3856ad364e35_6.0.6001.18000_none_726222dfc773e0a2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_3c3daf9f83461003]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_491daa4e5f0129b8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6000.16386_en-us_6af46ccacdea4ece]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_6.0.6002.18112_en-us_4d3216725918d2eb]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_6.0.6000.16386_none_8bb78a6231951d71]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_6.0.6001.18000_none_8dee4c5e2e802e45]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_6.0.6000.16386_none_317a8db4e08e5964]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_6.0.6001.18000_none_33b14fb0dd796a38]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_6.0.6000.16386_none_f7ac6d32266e7828]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_6.0.6001.18000_none_f9e32f2e235988fc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6000.16386_none_0ef22aaec9dea191]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6001.18000_none_1128ecaac6c9b265]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_6.0.6002.18112_none_130696d2c3f64ac4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_6.0.6000.16386_none_6c448a7e922ef1f7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_6.0.6001.18000_none_6e7b4c7a8f1a02cb]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\Components\x86_windowssearchengine-licensing_31bf3856ad364e35_7.0.6001.16503_none_5fef00ac19fdb620]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_none_bf7b521a2f28ecb0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_en-us_af12e3a4840274b3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_en-us_e23aa09494ab710d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_none_6b6c723ea3cc65be]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_none_736c0b32c2a90502]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_none_8fbfd0a01a1fefba]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-i..nsibility.resources_31bf3856ad364e35_en-us_a1cc42b3bdf2a41f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_none_50a27482d0b17f81]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-iis-netfxextensibility_31bf3856ad364e35_none_815a5230c1d1a952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_none_fcc3be7faafc9888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_none_9830d61989141808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_none_3979b153e88c69e6]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_none_bd0f121a20daf057]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_none_37c63f5042ec00c4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_none_a99cdae8c3dcc2c4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_none_65e5b3bffea20127]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_none_462cb431785d18cc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_en-us_8747374e8fc52551]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_none_289e2e69132ee86f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..gnt-extension-agent_31bf3856ad364e35_none_71666f3690e638ac]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ib1-extension-agent_31bf3856ad364e35_none_76b0e7ed47817f66]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ib2-extension-agent_31bf3856ad364e35_none_35940d60f84c00f6]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_none_fcbc465492a29366]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_none_2acba61c84990084]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_none_6cddaf3c0b4e4137]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_none_1ed2eb1b7f96f65b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_none_ae84580400dc6767]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..mib-extension-agent_31bf3856ad364e35_none_bcd58ae44cc2581d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_none_ccc969b5a07367b1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_en-us_3adf7eaeaf17c557]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..re-extension-agents_31bf3856ad364e35_none_e2b733187553da99]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_none_8fdd79efb8aa553f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_none_fdb4e8bebfe75a67]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_none_b2830443bc30c1c7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_none_84748be3580c167c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_none_22234e24b58a226d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_none_79a212528958baa2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_none_79a681968954a58b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_none_79a6081689552889]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_none_2d1e09e282af915c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_none_7607e4c48ecc5c4a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_none_0f9d73a7d210cea2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_en-us_219cdb683733fc3f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_en-us_e7bdb74a6fc1ed55]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-usermodensi_31bf3856ad364e35_none_2b06ddd33993a118]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_4b20b047c76c5a18]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_93ff18fa7e69cffe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_d3bdca0296d3ef4b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_none_fc55cdd0f53cedcd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_none_3e17376c7004cab2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_none_7bad538f6841390e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_none_4bf824331d34c2ad]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\DerivedData\VersionedIndex\6.0.6002.18005_001c11ba\ComponentFamilies\x86_windowssearchengine-licensing_31bf3856ad364e35_none_6c0fc5655c4847f7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-a..ace-ldap-extensions_31bf3856ad364e35_none_bf7b521a2f28ecb0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-a..xtensions.resources_31bf3856ad364e35_en-us_af12e3a4840274b3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-e..extension.resources_31bf3856ad364e35_en-us_e23aa09494ab710d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-e..nsiblestorageengine_31bf3856ad364e35_none_6b6c723ea3cc65be]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-es-shellextension_31bf3856ad364e35_none_736c0b32c2a90502]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-g..howgadget-insidebar_31bf3856ad364e35_none_8fbfd0a01a1fefba]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-ie-extensionmanager_31bf3856ad364e35_none_50a27482d0b17f81]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-kernel-licensing_31bf3856ad364e35_none_fcc3be7faafc9888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-licensing-client-pro_31bf3856ad364e35_none_9830d61989141808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-m..cursor-library-ansi_31bf3856ad364e35_none_3979b153e88c69e6]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-m..o-multi-dimensional_31bf3856ad364e35_none_bd0f121a20daf057]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-n..n_service_licensing_31bf3856ad364e35_none_37c63f5042ec00c4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-p..-localspl-licensing_31bf3856ad364e35_none_a99cdae8c3dcc2c4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-p..e-spoolss-licensing_31bf3856ad364e35_none_65e5b3bffea20127]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-p..ellextensionhandler_31bf3856ad364e35_none_462cb431785d18cc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..extension.resources_31bf3856ad364e35_en-us_8747374e8fc52551]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..g-softwarelicensing_31bf3856ad364e35_none_289e2e69132ee86f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..icensing-slc-client_31bf3856ad364e35_none_fcbc465492a29366]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..ing-shell-extension_31bf3856ad364e35_none_2acba61c84990084]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..ity-licensing-tools_31bf3856ad364e35_none_6cddaf3c0b4e4137]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..licensing-slc-event_31bf3856ad364e35_none_1ed2eb1b7f96f65b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..nsing-slc-clientext_31bf3856ad364e35_none_ccc969b5a07367b1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..nsing-slc.resources_31bf3856ad364e35_en-us_3adf7eaeaf17c557]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..rity-licensing-slcc_31bf3856ad364e35_none_8fdd79efb8aa553f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..ryserviceextensions_31bf3856ad364e35_none_fdb4e8bebfe75a67]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..twarelicensing-core_31bf3856ad364e35_none_b2830443bc30c1c7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..ty-licensing-slc-ux_31bf3856ad364e35_none_84748be3580c167c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-s..y-licensing-pidgenx_31bf3856ad364e35_none_22234e24b58a226d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-security-licensing-slc_31bf3856ad364e35_none_79a212528958baa2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-security-licensing-wga_31bf3856ad364e35_none_79a681968954a58b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-security-licensing-wmi_31bf3856ad364e35_none_79a6081689552889]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-t..ces-serverlicensing_31bf3856ad364e35_none_2d1e09e282af915c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-t..dp-configextensions_31bf3856ad364e35_none_7607e4c48ecc5c4a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-t..instationextensions_31bf3856ad364e35_none_0f9d73a7d210cea2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-t..xtensions.resources_31bf3856ad364e35_en-us_219cdb683733fc3f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-usermodensi.resources_31bf3856ad364e35_en-us_e7bdb74a6fc1ed55]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-usermodensi_31bf3856ad364e35_none_2b06ddd33993a118]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_4b20b047c76c5a18]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_93ff18fa7e69cffe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-w..extension.resources_31bf3856ad364e35_en-us_d3bdca0296d3ef4b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-w..ywmdmshellextension_31bf3856ad364e35_none_fc55cdd0f53cedcd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-winlogon-licensing_31bf3856ad364e35_none_3e17376c7004cab2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-wlan-extension_31bf3856ad364e35_none_7bad538f6841390e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-wpd-shellextension_31bf3856ad364e35_none_4bf824331d34c2ad]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_windowssearchengine-licensing_31bf3856ad364e35_none_6c0fc5655c4847f7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Live\Photo Gallery\FileSupport\QuickTimeMovieExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Live\Photo Gallery\FileSupport\RawPhotoExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility]
"INSIGHT"="0x00000400"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility]
"WINSIM"="0x3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontLink\SystemLink]
"NSimSun"="MINGLIU.TTC,PMingLiU MSMINCHO.TTC,MS Mincho BATANG.TTC,BatangChe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Fonts]
"SimSun & NSimSun (TrueType)"="simsun.ttc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Fonts]
"Lucida Sans Italic (TrueType)"="LSANSI.TTF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini]
"EXTENSIONS"="#USR:SOFTWARE\\MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\EXTENSIONS"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini]
"MCI EXTENSIONS"="SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\MCI EXTENSIONS"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\MCI Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009]
"Counter"="1 1847 2 System 4 Memory 6 % Processor Time 10 File Read Operations/sec 12 File Write Operations/sec 14 File Control Operations/sec 16 File Read Bytes/sec 18 File Write Bytes/sec 20 File Control Bytes/sec 24 Available Bytes 26 Committed Bytes 28 Page Faults/sec 30 Commit Limit 32 Write Copies/sec 34 Transition Faults/sec 36 Cache Faults/sec 38 Demand Zero Faults/sec 40 Pages/sec 42 Page Reads/sec 44 Processor Queue Length 46 Thread State 48 Pages Output/sec 50 Page Writes/sec 52 Browser 54 Announcements Server/sec 56 Pool Paged Bytes 58 Pool Nonpaged Bytes 60 Pool Paged Allocs 64 Pool Nonpaged Allocs 66 Pool Paged Resident Bytes 68 System Code Total Bytes 70 System Code Resident Bytes 72 System Driver Total Bytes 74 System Driver Resident Bytes 76 System Cache Resident Bytes 78 Announcements Domain/sec 80 Election Packets/sec 82 Mailslot Writes/sec 84 Server List Requests/sec 86 Cache 88 Data Maps/sec 90 Sync Data Maps/s
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009]
"Help"="3 The System performance object consists of counters that apply to more than one instance of a component processors on the computer. 5 The Memory performance object consists of counters that describe the behavior of physical and virtual memory on the computer. Physical memory is the amount of random access memory on the computer. Virtual memory consists of the space in physical memory and on disk. Many of the memory counters monitor paging, which is the movement of pages of code and data between disk and physical memory. Excessive paging, a symptom of a memory shortage, can cause delays which interfere with all system processes. 7 % Processor Time is the percentage of elapsed time that the processor spends to execute a non-Idle thread. It is calculated by measuring the percentage of time that the processor spends executing the idle thread and then subtracting that value from 100%. (Each processor has an idle thread tha
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Print\Printers\PDF Complete\DsDriver]
"printMediaSupported"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Print\Printers\PDF Complete\DsDriver]
"printMediaReady"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Session Manager/Kernel/ObCaseInsensitive]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost]
"LocalService"="nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE WebClient SstpSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\MSDTC\Modules\Transaction_Transitions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93}]
@="Windows Search Group Policy Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gather\Windows\SystemIndex\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gather\Windows\SystemIndex\Extensions\ExtensionList]
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions]
"{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}"="C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\FontLink\SystemLink]
"NSimSun"="MINGLIU.TTC,PMingLiU MSMINCHO.TTC,MS Mincho BATANG.TTC,BatangChe"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\FileSystemUtilities]
"IfsUtilExtension"="ifsutilx.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\Layer 2 Security Helper Class\HelperClasses\Extensible L2Sec Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\Wireless LAN Helper Class\HelperClasses\RNWF Extensible Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft.Extensions]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NodeInterfaces\{749E15F1-12F6-4d27-979F-9AAD9BDED6A5}]
@="Extension Unit Property Set"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"Description"="@%SystemRoot%\system32\powrprof.dll,-119,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-120,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"Description"="@%SystemRoot%\system32\powrprof.dll,-500,Configures the criticality of sleep transitions."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-501,Sleep Transition Criticality"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\5ca83367-6e45-459f-a27b-476b1d01c936]
"Description"="@%SystemRoot%\system32\powrprof.dll,-256,Power state to transition to when the system lid is closed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\7648efa3-dd9c-4e3e-b566-50f929386280]
"Description"="@%SystemRoot%\system32\powrprof.dll,-252,Power state to transition to when the power button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\96996bc0-ad50-47ec-923b-6f41874dd9eb]
"Description"="@%SystemRoot%\system32\powrprof.dll,-254,Power state to transition to when the sleep button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Print\Printers\PDF Complete\DsDriver]
"printMediaSupported"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Print\Printers\PDF Complete\DsDriver]
"printMediaReady"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot\Network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\KnownDLLs]
"NSI"="NSI.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SNMP\Parameters\ExtensionAgents]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Terminal Server\RCM\Licensing Core]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_NSIPROXY]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_NSIPROXY\0000]
"Service"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_NSIPROXY\0000]
"DeviceDesc"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_NSIPROXY\0000\Control]
"ActiveService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy\Enum]
"0"="Root\LEGACY_NSIPROXY\0000"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet007\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet008\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsi]
 
#23 ·
SYSLOOK.Scan 17APR 6 0F6

"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsi]
"DependOnService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsi\Parameters]
"ServiceDll"="%systemroot%\system32\nsisvc.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet009\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\FileSystemUtilities]
"IfsUtilExtension"="ifsutilx.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\NetDiagFx\Microsoft\HostDLLs\Layer 2 Security Helper Class\HelperClasses\Extensible L2Sec Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\NetDiagFx\Microsoft\HostDLLs\Wireless LAN Helper Class\HelperClasses\RNWF Extensible Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\NetDiagFx\Microsoft.Extensions]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\NodeInterfaces\{749E15F1-12F6-4d27-979F-9AAD9BDED6A5}]
@="Extension Unit Property Set"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"Description"="@%SystemRoot%\system32\powrprof.dll,-119,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-120,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"Description"="@%SystemRoot%\system32\powrprof.dll,-500,Configures the criticality of sleep transitions."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-501,Sleep Transition Criticality"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\5ca83367-6e45-459f-a27b-476b1d01c936]
"Description"="@%SystemRoot%\system32\powrprof.dll,-256,Power state to transition to when the system lid is closed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\7648efa3-dd9c-4e3e-b566-50f929386280]
"Description"="@%SystemRoot%\system32\powrprof.dll,-252,Power state to transition to when the power button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\96996bc0-ad50-47ec-923b-6f41874dd9eb]
"Description"="@%SystemRoot%\system32\powrprof.dll,-254,Power state to transition to when the sleep button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\SafeBoot\Network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\SafeBoot\Network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Session Manager\KnownDLLs]
"NSI"="NSI.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\SNMP\Parameters\ExtensionAgents]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Control\Terminal Server\RCM\Licensing Core]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Enum\Root\LEGACY_NSIPROXY]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Enum\Root\LEGACY_NSIPROXY\0000]
"Service"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Enum\Root\LEGACY_NSIPROXY\0000]
"DeviceDesc"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet010\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{65e8773d-8f56-11d0-a3b9-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#FrontMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\FrontMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearLineInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearLineInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{dda54a40-1e4c-11d1-a050-405705c10000}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\#RearMicInSilverTopo]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RearMicInSilverTopo"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#FrontMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\FrontMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearLineInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearLineInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses\{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\##?#HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\#RearMicInSilverWave]
"SymbolicLink"="\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0862&SUBSYS_14627297&REV_1000#4&157B2CA5&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f23f}\RearMicInSilverWave"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystemUtilities]
"IfsUtilExtension"="ifsutilx.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\NetDiagFx\Microsoft\HostDLLs\Layer 2 Security Helper Class\HelperClasses\Extensible L2Sec Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\NetDiagFx\Microsoft\HostDLLs\Wireless LAN Helper Class\HelperClasses\RNWF Extensible Helper Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\NetDiagFx\Microsoft.Extensions]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\NodeInterfaces\{749E15F1-12F6-4d27-979F-9AAD9BDED6A5}]
@="Extension Unit Property Set"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"Description"="@%SystemRoot%\system32\powrprof.dll,-119,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-120,Sleep transition settings"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"Description"="@%SystemRoot%\system32\powrprof.dll,-500,Configures the criticality of sleep transitions."
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\B7A27025-E569-46c2-A504-2B96CAD225A1]
"FriendlyName"="@%SystemRoot%\system32\powrprof.dll,-501,Sleep Transition Criticality"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\5ca83367-6e45-459f-a27b-476b1d01c936]
"Description"="@%SystemRoot%\system32\powrprof.dll,-256,Power state to transition to when the system lid is closed"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\7648efa3-dd9c-4e3e-b566-50f929386280]
"Description"="@%SystemRoot%\system32\powrprof.dll,-252,Power state to transition to when the power button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\96996bc0-ad50-47ec-923b-6f41874dd9eb]
"Description"="@%SystemRoot%\system32\powrprof.dll,-254,Power state to transition to when the sleep button is pressed"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Printers\PDF Complete\DsDriver]
"printMediaSupported"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Printers\PDF Complete\DsDriver]
"printMediaReady"="Letter (8.5 x 11 in) Legal (8.5 x 14 in) Ledger (17 x 11 in) Tabloid (11 x 17 in) Statement (5.5 x 8.5 in) Executive (7.25 x 10.5 in) Folio (8.5 x 13 in) Quarto (215 x 275 mm) C size sheet (17 x 22 in) D size sheet (22 x 34 in) E size sheet (24 x 44 in) 4A0 (1682 x 2378 mm) 2A0 (1189 x 1682 mm) A0 (841 x 1189 mm) A1 (594 x 841 mm) A2 (420 x 594 mm) A3 (297 x 420 mm) A4 (210 x 297 mm) A5 (148 x 210 mm) A6 (105 x 148 mm) B0 (1000 x 1414 mm) B1 (707 x 1000 mm) B2 (500 x 707 mm) B3 (353 x 500 mm) B4 (250 x 354 mm) B5 (176 x 250 mm) B6 (125 x 176 mm) ANSI A (8.5 x 11 in) ANSI B (11 x 17 in) ANSI C (17 x 22 in) ANSI D (22 x 34 in) ANSI E (34 x 44 in) ANSI F (28 x 40 in) ARCH A (9 x 12 in) ARCH B (12 x 18 in) ARCH C (18 x 24 in) ARCH D (24 x 36 in) ARCH E (34 x 44 in) ARCH E1 (30 x 42 in)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs]
"NSI"="NSI.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SNMP\Parameters\ExtensionAgents]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\RCM\Licensing Core]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_NSIPROXY]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_NSIPROXY\0000]
"Service"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_NSIPROXY\0000]
"DeviceDesc"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_NSIPROXY\0000\Control]
"ActiveService"="nsiproxy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dhcp]
"DependOnService"="NSI Tdx Afd"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Software Licensing Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WMI.NET Provider Extension]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\iphlpsvc]
"DependOnService"="RpcSS Tdx winmgmt tcpip nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation]
"DependOnService"="Bowser MRxSmb10 MRxSmb20 NSI"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MountMgr]
"Description"="Driver responsible with maintaining persistent drive letters and names for volumes"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netman]
"DependOnService"="RpcSs nsi"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc]
"DependOnService"="NSI RpcSs TcpIp"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi]
"DisplayName"="@%SystemRoot%\system32\nsisvc.dll,-200"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi]
"Description"="@%SystemRoot%\system32\nsisvc.dll,-201"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsiproxy]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsiproxy]
"DisplayName"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsiproxy]
"ImagePath"="system32\drivers\nsiproxy.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsiproxy]
"Description"="NSI proxy service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsiproxy\Enum]
"0"="Root\LEGACY_NSIPROXY\0000"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\volmgrx]
"Description"="Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks"
[HKEY_USERS\.DEFAULT\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Advanced INF Setup\IE.HKCUZoneInfo\RegBackup\0.map]
"57fd7ae31ab34c2c"=",33,HKCU,SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache,"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions]
[HKEY_USERS\.DEFAULT\Software\Microsoft\RSSearch\ContentIndexCommon\Filters\Extension]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Group Policy\History\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}\0]
"Extensions"="[{35378EAC-683F-11D2-A89A-00C04FBBCFA2}{9DACBD1F-CB6F-4E8F-999D-A8351BE5C886}]"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Group Policy\Status\GPExtensions]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Shell Extensions]
[HKEY_USERS\.DEFAULT\Software\Mozilla\Firefox\Extensions]
[HKEY_USERS\S-1-5-19\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\International\Scripts\26]
"IEFixedFontName"="NSimsun"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"AnsiChar"="0x00000001"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionA_Char"="0x00000000"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionB_Char"="0x00000000"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_USERS\S-1-5-20\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\International\Scripts\26]
"IEFixedFontName"="NSimsun"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"AnsiChar"="0x00000001"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionA_Char"="0x00000000"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionB_Char"="0x00000000"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\AppDataLow\Software\Adobe\Shockwave 11\uicontrol\minduration2consider]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Google\Google Earth Plus]
"GroundLevelAutoTransition"="true"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Intel\LANDesk\VirusProtect6\CurrentVersion\Licensing]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Approved Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\International\Scripts\26]
"IEFixedFontName"="NSimsun"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\Gemini\0.1\Preferences\PluginHandlerData\PluginInfo2]
@="~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XIIFpsRvv0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativescrollbar~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XQFDDVdXv0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativeslider~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XkKSifd/v0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:nativespinner~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XkqSifd/v0xGVDADQtxQWiQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:menubar~PluginFilename~Srpcontrols2.dll~ComponentCLSID~XEKdWOu5B1BGC4QDQt3LynQ==}{PluginFilename~Srpcontrols2.dll~ComponentCLSID~XearuX0Jf9EmTmTWOPAp19w==}{PluginFilename~Srpcontrols2.dll~ComponentCLSID~XiTaLUsGijkKNnG5/Rt+akg==}{ComponentName~Shttp://ns
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo0]
@="{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N-1610608308~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~S3GPP Timed Text Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~S3gppttrenderer.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Svideo/X-RN-3GPP-TEXT}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608308~Copyright~SCopyright(c) RealNetworks, Inc. 2003-2004. All rights reserved. Source code for this program is available under the RealNetworks Public Source License.~Description~SHelix DNA AAC Audio Format~FileExtensions~SAAC~FileMime~Saudio/aac|audio/aacp~Fi
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo1]
@=". (http://www.real.com)~Description~SRealNetworks RealVideo Image Map Renderer Plugin~PlgCopy~Shttp://www.real.com~PluginFilename~Simaprender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/x-pn-imagemap|image_map/x-pn-realvideo}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608154~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SHelix JPEG File Format Plugin~FileExtensions~Sjpg|jpeg|jpe|jfif~FileMime~Simage/jpeg~FileOpenNames~SJPEG Images (*.jpg)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Simgrender.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N1~LoadMultiple~N1~Renderer_Gra
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo2]
@="dio/MP4A-LATM|audio/mpeg4-simple-A2|audio/mpeg4-generic|audio/X-HX-AAC-GENERIC|audio/X-RN-3GPP-AMR|audio/AMR|audio/X-RN-3GPP-AMR-WB|audio/AMR-WB}{IndexNumber~N0~LoadMultiple~N1~Version~N-1610608309~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Mpeg4 File Format Plugin~FileExtensions~Smov|qt|mp4|3gp|3g2|m4a~FileMime~Sapplication/x-pn-quicktime-stream|audio/3gpp|video/3gpp|audio/x-m4a~FileOpenNames~SQuickTime Files (*.mov, *.qt)|MP4 Files (*.mp4)|3GPP-MP4 Files (*.3gp, *.3g2)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp4fformat.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNum
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo3]
@="ealad|application/x-pn-realad-encrypted|application/vnd.rn-realmedia-secure~FileOpenNames~SRealMedia Files (*.rm, *.rmc, *.rms, *.rma, *.rax, *.rvx, *.rmvb, *.ra, *.rv)~PlgCopy~Shttp://www.real.com~PluginFilename~Srmwrtr.dll~PluginType~SPLUGIN_FILE_WRITER}{IndexNumber~N0~LoadMultiple~N1~Version~N0~Copyright~S(c) 1995-2003 RealNetworks, Inc. All rights reserved.~Description~SRealPlayer Secure Media Plugin~FileExtensions~Srmx~FileMime~Sapplication/x-pn-container~FileOpenNames~SRealPlayer Secure Media Clip (*.rmx)~PlgCopy~Shttp://www.real.com~PluginFilename~Srmxfpln.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N100~Version~N268451908~Copyright~S(c) 1995-2002 RealNetworks, Inc. All rights reserved.~Description~SEncr
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealMediaSDK\6.0\Preferences\PluginHandlerData\PluginInfo4]
@="rights reserved.~Description~SRealNetworks Renderer Plugin for Macromedia Flash 4~PlgCopy~Shttp://www.real.com~PluginFilename~Sswfrender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/x-shockwave-flash|application/x-shockwave-flash2}{IndexNumber~N0~LoadMultiple~N1~Version~N268451908~Copyright~S(c) 1995-2002 RealNetworks, Inc. All rights reserved.~Description~SRealNetworks Local TFile System~FileProtocol~Stfile~FileShort~Stfile-local~PlgCopy~Shttp://www.real.com~PluginFilename~Stfilesys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N20~Version~N-1610612736~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2005. All rights reserved. Source code for this program is available under the RealNetworks Public So
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealPlayer\6.0\Preferences\PluginHandlerData\PluginInfo2]
@="a9hUKrg2JaWw==}{PluginFilename~Srpcomproxy.dll~ComponentCLSID~XhWryN5xzl0KOBMaslKhI1A==}{PluginFilename~Srpds3260.dll~rpplayersupportedextensions~Savi|vob|dat|divx|mid|midi|mpg|mpeg~rpplayersupportedmimetypes~Svideo/msvideo~rpplayersupportedprotocols~Sfile~rpplayersupportedtracktypes~SDVD|VCD~ComponentCLSID~X+MtPZlfg+k+1+EPeGsyQrQ==}{PluginFilename~Srpds3260.dll~ComponentCLSID~X7an57I/tbkq86wihSA4CIA==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XxgJgPrysRkaz9z5brFDy6g==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XT3lC6KX0uk6vnHXjcOrxOg==}{PluginFilename~Srpds3260.dll~ComponentCLSID~XrXHDh9ygfkKplCckYy+k/A==}{ComponentName~Shttp://ns.real.com/gemini.v1:rpdvdactor~PluginFilename~Srpds3260.dll~ComponentCLSID~X2sCeKMuB4E6yWCvPF/NFAw==}{PluginFilename~Srpfl
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealPlayer\6.0\Preferences\PluginHandlerData\PluginInfo3]
@="260.dll~ComponentCLSID~XDoCfxTdaI0qRIv3YYdL+Pg==}{ComponentName~Shttp://ns.real.com/gemini.v1:RPShowHtmlActor~PluginFilename~Srpwe3260.dll~ComponentCLSID~Xu5+52VQM+0aGpWpRyiZriQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:RPUrlMenuActor~PluginFilename~Srpwe3260.dll~ComponentCLSID~Xg8R9cJP+1UmNKStS9f02/w==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~X0Qi6pmWoy0yrEt3JZ5gPug==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~X4D7ttnuqUkCXx/FwBGG4yA==}{PluginFilename~Srpwe3260.dll~ComponentCLSID~XMUk8AWCpHk2ZG3jFtfjG1A==}{PluginFilename~Srpwm3260.dll~rpplayersupportedextensions~Sasf|wma|wmv|asx|wm|wax|wvx|wmx~rpplayersupportedmimetypes~Svideo/x-ms-asf|audio/x-ms-wma|audio/x-ms-wax|video/x-ms-wmv|video/x-ms-wm|video/x-ms-wmx|video/x-ms-wvx|application/x-mplayer
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\Update\6.0\Preferences\PluginHandlerData\PluginInfo0]
@="{ComponentName~Shttp://ns.real.com/gemini.v1:CRNFaust~PluginFilename~Sfaus3270.dll~ComponentCLSID~X0Utm1Ihh1BGU8gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNDTInfo~PluginFilename~Sfaus3270.dll~ComponentCLSID~XcZogsXti1BGU8gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNDTAssoc~PluginFilename~Sfaus3270.dll~ComponentCLSID~XofNv0N9o1BGU9gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:CRNAppInfo~PluginFilename~Sfaus3270.dll~ComponentCLSID~XYTVKVkdu1BGU9gDQtyOttQ==}{ComponentName~Shttp://ns.real.com/gemini.v1:RNATHInstallDlgActor~PluginFilename~Sfaus3270.dll~ComponentCLSID~XyZ6NnWvE0xGIAgCQJ5ApnA==}{ComponentName~Shttp://ns.real.com/gemini.v1:ATH2AutoUpdateDlgActor~PluginFilename~Sfaus3270.dll~ComponentCLSID~XIMyeU58Ns0asRL0LAYMX
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\LowRegistry\Shell Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Internet Explorer\Main]
"Enable Browser Extensions"="yes"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\MediaPlayer\Player\Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Office\10.0\Common\Licensing]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Office\12.0\Common\Licensing]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Photo Editor\3.0\Microsoft Photo Editor]
"LastFile4"="C:\Users\RAJ\Dropbox\Photos\Sample Album\Pensive Parakeet.jpg"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Export\GIF]
"Extensions"="gif"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Export\JPEG]
"Extensions"="jpg, jpeg"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Export\PNG]
"Extensions"="png"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Export\TIFF]
"Extensions"="tif"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\BMP]
"Extensions"="bmp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\GIF]
"Extensions"="gif"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\JPEG]
"Extensions"="jpg, jpeg"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\PCD]
"Extensions"="pcd"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\PCX]
"Extensions"="PCX"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\PNG]
"Extensions"="png"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Shared Tools\Graphics Filters\Import\TIFF]
"Extensions"="tif"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Group Policy\History\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}\0]
"Extensions"="[{35378EAC-683F-11D2-A89A-00C04FBBCFA2}{9DACBD1F-CB6F-4E8F-999D-A8351BE5C886}]"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Group Policy\Status\GPExtensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"AnsiChar"="0x00000001"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionA_Char"="0x00000000"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\ime\IMTC70]
"EnableExtensionB_Char"="0x00000000"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache\Extensible Cache]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Mozilla\Firefox\Extensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo0]
@="{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~S3GPP Timed Text Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~S3gppttrenderer.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Svideo/X-RN-3GPP-TEXT}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 2003-2005. All rights reserved. Source code for this program is available under the RealNetworks Public Source License.~Description~SHelix DNA AAC Audio Format~FileExtensions~SAAC~FileMime~Saudio/aac|audio/aacp~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Saacff.dll~PluginType~SPLUGIN_FILE_FORMAT}{I
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo1]
@="leShort~Spn-http~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Shttpfsys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{IndexNumber~N1~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks RFC 2397 Data Scheme File System~FileProtocol~Sdata|tone~FileShort~Spn-datafsys~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Shttpfsys.dll~PluginType~SPLUGIN_FILE_SYSTEM}{PluginFilename~Shxmedplyeng.dll~ComponentCLSID~XAwQAAAEJ0RGLBgCgJEBtWQ==}{PluginFilename~Shxnetwksvc.dll~ComponentCLSID~XWo5XqUd82BGLywACs2WHIA==}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo2]
@="egurl|audio/scpls|audio/x-scpls~FileOpenNames~SMP3 Playlist Files (*.m3u,*.pls,*.xpl)~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp3metaff.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N50~Version~N0~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks MPEG Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Smp3render.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Saudio/X-MP3-draft-00|audio/X-MP3-draft-00-RN|audio/MPEG-ELEMENTARY|audio/MPEG-ELEMENTARY-RN|audio/MPEG-ELEMENTARY-RAW|audio/rn-mpeg|audio/mpa-robust|audio/MPA|audio/mp1s|audio/mp2p|audio/vnd.rn-mp1s|audio/vnd.rn-mp2p}{IndexNumber~N0~LoadMultiple~N1~Ve
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo3]
@="etworks Internet Video Recording Manager Plugin~DRMId~SRAV2~PlgCopy~Shttp://www.real.com~PluginFilename~Sravemgr.dll~PluginType~SPLUGIN_SOURCE_HANDLER~SOURCE_HANDLER_GUID~SA672077B-2DB6-492B-A079096204BF1B28~SourceHandlerType~SSOURCE_HANDLER_DRM}{IndexNumber~N1~LoadMultiple~N1~Renderer_Granularity~N100~Version~N0~Copyright~S(c) 1995-2008 RealNetworks, All rights reserved.~Description~Sivr-null Renderer Plugin~PlgCopy~Shttp://www.real.com~PluginFilename~Sravemgr.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sivr-null}{IndexNumber~N0~LoadMultiple~N1~Version~N-268419019~Copyright~S(c) 1995,1996,1997 RealNetworks, All rights reserved.~Description~SRecord File Format Plugin~FileExtensions~Srec|ivr~FileMime~Sapplication/x-pn-recordfileformat~FileOpenNames~SInternet Video Recording (*.ivr)~PlgCopy~Shttp://www.real.com~PluginFilename~Srecf3260.dll~PluginT
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_Plugins\PluginHandlerData\PluginInfo4]
@="Shttp://www.helixcommunity.org~PluginFilename~Ssmlrender.dll~PluginType~SPLUGIN_FILE_FORMAT}{IndexNumber~N3~LoadMultiple~N1~Renderer_Granularity~N200~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Brush Renderer Plugin~PlgCopy~Shttp://www.helixcommunity.org~PluginFilename~Ssmlrender.dll~PluginType~SPLUGIN_RENDERER~RendererMime~Sapplication/vnd.rn-brushstream}{IndexNumber~N0~LoadMultiple~N1~Renderer_Granularity~N100~Version~N-268419019~Copyright~SCopyright(c) RealNetworks, Inc. 1995-2009. All rights reserved. Source code for this program is available under the RealNetworks Public Source License. (http://www.helixcommunity.org)~Description~SRealNetworks Sync
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\FileInfo0]
@="{converterapp.dll,15E2C7005123D255A19893260B8DA1F0,0,587264,1}{fftr3210.dll,5A99B37A6F94DCC11D341528DC6DFBBF,0,523776,1}{locd3210.dll,C6550A628FAC140334A3D4FC692A2565,0,102400,1}{mpacore.dll,249E8B0815BF4881AAC6B33637701CEA,0,251904,1}{rpcontrols.dll,F39B09BE41B388D0AD34A86852CAC5AE,0,2545152,1}{rpflvframegrabber.dll,B9AE0EFC0781D3EFEFD6AB554863266A,0,128000,1}{rpsharedcomponents.dll,21673B2F9A857AA1CE0CDA14442CC599,0,1182720,1}{rpshellextension.dll,BE1779348B2BB28D990FA332401CBDE5,0,123904,1}{sharemedia.dll,2802487A263491E20B49A1F73754DD33,0,218624,1}{sonr3210.dll,256AE358630973D4813BE0DA60438E10,0,503808,1}{uisy3201.dll,93F491D6A2B201AF71C2A5501F6641DE,0,461824,1}{videoeditor.dll,73E5283E3ABD42BFCB42F741BF298B7E,0,320000,1}{xmlc3201.dll,481E3D05050007B52A1CDE17DCAFCADF,0,57344,1}792"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo0]
@="{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:FileListActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XLpSzKyABZUquNWYCxpL+sA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:FileListEntryActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XkP5t+7fT10GespbB1/CRpA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:MainWindowActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~XUxcn9iX+yEy1kCNHlOGKXg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:ConvertListEntryActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~Xyo3q4CLPUEu9DNc9u98NrQ==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:ConvertListActor~PluginFilename~Sconverterapp.dll~ComponentCLSID~Xx2ZuBT2XtES0Mq5H5TD4aQ==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:DevicePaneActor~PluginFilename~
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo3]
@="trols.dll~ComponentCLSID~XA2xANEwT/UmbRz8BpX8kOA==}{LoadMultiple~N1~PluginFilename~Srpcontrols.dll~ComponentCLSID~XHLnK+FNQyUaXnDDEmqVcCg==}{LoadMultiple~N1~PluginFilename~Srpcontrols.dll~ComponentCLSID~XePy/RK6svk6vef5GxY4Oag==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:CloseActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~X7YY8kHra0xGU7gDQtxA1UA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:RCAMinimizeActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~XXVteWuLTNEmOVB+azVYRgg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:RCAMaximizeActor~PluginFilename~Srpcontrols.dll~ComponentCLSID~Xu0zQkWdswUiuhZN/7bB/yg==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:dragactor~PluginFilename~Srpcontrols.dll~ComponentCLSID~Xa4O2GBSZik2uTXO+2tiWhw==}{LoadMultiple~N1~PluginFilename~Srpcont
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\RealNetworks\RealShare\15.0\Preferences\MountPoints\DT_RCAPlugins\PluginHandlerData\PluginInfo4]
@="{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:SetRecordingLengthActor~PluginFilename~Ssonr3210.dll~ComponentCLSID~XSABghtcuvESxRs9G/uS+mg==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~ComponentCLSID~X++LKPZNVnUqWwPl+JqFOug==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~rpbgrecordersupportedextensions~Smov|qt|m4v~rpbgrecordersupportedmimetype~Svideo/quicktime|video/mpeg4~ComponentCLSID~Xws7nyWXUQUifyRSoJwekfQ==}{LoadMultiple~N1~PluginFilename~Ssonr3210.dll~ComponentCLSID~XDzyHuV+GSEGGggNvPPey4Q==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XdAuZKannb0aWO1QZRQ9FtA==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~X+iS854q4QUWduQmAu1WJRQ==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XDqBXb3HFrk+D2JDqzgv3/Q==}{LoadMultiple~N1~PluginFilename~Suisy3201.dll~ComponentCLSID~XilFIwCP9p0OFL
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\Drive\shellex\FolderExtensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\Interface\{8A683C90-BA84-11CF-8110-00A0C9030074}]
@="IReturnSingle"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\RAJ\Desktop\ComboFix.exe"="ComboFix NSIS Installer"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/sdp]
"Extension"=".sdp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/smil]
"Extension"=".smi"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realaudio-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia]
"Extension"=".rm"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-vbr]
"Extension"=".rmvb"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realplayer]
"Extension"=".rnx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rjt]
"Extension"=".rjt"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmj]
"Extension"=".rmj"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmx]
"Extension"=".rmx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-rn_music_package]
"Extension"=".rmp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/vnd.rn-rsml]
"Extension"=".rsml"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/x-bittorrent]
"Extension"=".torrent"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\application/x-bubbledock]
"Extension"=".bubbledock"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/3gpp]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/3gpp2]
"Extension"=".3g2"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/AMR]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/AMR-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/AMR-WB]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/evrc-qcp]
"Extension"=".EVRC"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/qcelp]
"Extension"=".qcp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/vnd.rn-realaudio]
"Extension"=".ra"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/x-pn-realaudio]
"Extension"=".ram"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/x-realaudio]
"Extension"=".ra"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/x-realaudio-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\ICM.DIV4]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\ICM.DIV6]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\ICM.DIVX1]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\ICM.DX50]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\image/vnd.rn-realpix]
"Extension"=".rp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\text/vnd.rn-realtext]
"Extension"=".rt"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/3gpp]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/3gpp2]
"Extension"=".3g2"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo]
"Extension"=".rv"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/vnd.rn-realvideo-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\MIME\Database\Content Type\video/x-flv]
"Extension"=".flv"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSBiff]
"Extensions"="xls xlw xl5"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSPAB]
"Extensions"="PAB"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\OUTLOOK]
"Extensions"="OLK"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\SPLUS]
"Extensions"="SCD"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\Drive\shellex\FolderExtensions]
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\Interface\{8A683C90-BA84-11CF-8110-00A0C9030074}]
@="IReturnSingle"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\RAJ\Desktop\ComboFix.exe"="ComboFix NSIS Installer"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/sdp]
"Extension"=".sdp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/smil]
"Extension"=".smi"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realaudio-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realmedia]
"Extension"=".rm"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realmedia-vbr]
"Extension"=".rmvb"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realplayer]
"Extension"=".rnx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rjt]
"Extension"=".rjt"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmj]
"Extension"=".rmj"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-realsystem-rmx]
"Extension"=".rmx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-rn_music_package]
"Extension"=".rmp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/vnd.rn-rsml]
"Extension"=".rsml"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/x-bittorrent]
"Extension"=".torrent"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\application/x-bubbledock]
"Extension"=".bubbledock"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/3gpp]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/3gpp2]
"Extension"=".3g2"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/AMR]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/AMR-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/AMR-WB]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/evrc-qcp]
"Extension"=".EVRC"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/qcelp]
"Extension"=".qcp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/vnd.rn-realaudio]
"Extension"=".ra"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/x-pn-realaudio]
"Extension"=".ram"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/x-realaudio]
"Extension"=".ra"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/x-realaudio-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\audio/X-RN-3GPP-AMR-WB-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\ICM.DIV4]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\ICM.DIV6]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\ICM.DIVX1]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\ICM.DX50]
"Extension"=".divx"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\image/vnd.rn-realpix]
"Extension"=".rp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\text/vnd.rn-realtext]
"Extension"=".rt"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/3gpp]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/3gpp-encrypted]
"Extension"=".3gp"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/3gpp2]
"Extension"=".3g2"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/vnd.rn-realvideo]
"Extension"=".rv"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/vnd.rn-realvideo-secure]
"Extension"=".rms"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\MIME\Database\Content Type\video/x-flv]
"Extension"=".flv"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSBiff]
"Extensions"="xls xlw xl5"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\MSPAB]
"Extensions"="PAB"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\OUTLOOK]
"Extensions"="OLK"
[HKEY_USERS\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Office\10.0\Word\Text Converters\Import\SPLUS]
"Extensions"="SCD"
[HKEY_USERS\S-1-5-18\Control Panel\Mouse]
"MouseSensitivity"="10"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Advanced INF Setup\IE.HKCUZoneInfo\RegBackup\0.map]
"57fd7ae31ab34c2c"=",33,HKCU,SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache,"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions]
[HKEY_USERS\S-1-5-18\Software\Microsoft\RSSearch\ContentIndexCommon\Filters\Extension]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Extensions]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Group Policy\History\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}\0]
"Extensions"="[{35378EAC-683F-11D2-A89A-00C04FBBCFA2}{9DACBD1F-CB6F-4E8F-999D-A8351BE5C886}]"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Group Policy\Status\GPExtensions]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Shell Extensions]
[HKEY_USERS\S-1-5-18\Software\Mozilla\Firefox\Extensions]

-= EOF =-


END OF REPORT.......................

I really hope I didnt mess up, the log being so long...

FYI The last para on LogText page 5 of 6 has loads on nsi...

Many thanks Chemist,
rgds, mg222
 
#24 ·
Hello again, mg222. It appears WMI is working again, and showing your restore points, but that doesn't mean system restore will work. You can try it if you wish.

If you do and it works, stop here and let me know.

------------------------------------------------------
  • Open Notepad (Start > All Programs > Accessories > Notepad).
  • Please copy all the text in the codebox below. (To do this highlight the contents of the box, right-click on it and select Copy. Right-click in the open Notepad and select Paste).
  • Save it as fixlist.txt next to FRST.exe

    NOTE: Both FRST.exe and the fixlist.txt must be in the same location or the fix will not work.


    Code:
    start
    HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [LogonHoursAction] 2
    HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
    HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\...\InprocServer32: [Default-pngfilt] <==== ATTENTION!
    HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
    HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
    GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1006\User: Group Policy restriction detected <======= ATTENTION
    GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1005\User: Group Policy restriction detected <======= ATTENTION
    GroupPolicyUsers\S-1-5-21-1291136695-2564591854-1091026493-1004\User: Group Policy restriction detected <======= ATTENTION
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-1291136695-2564591854-1091026493-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {A057A204-BACC-4D26-9990-79A187E2698E} - No File
    Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
    Toolbar: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - No Path Or update_url value
    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-21] (Avast Software s.r.o.)
    R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-21] (Avast Software s.r.o.)
    R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-03-21] (Avast Software)
    R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-03-21] ()
    R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-03-21] (Avast Software s.r.o.)
    R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-03-21] (Avast Software s.r.o.)
    R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12112 2015-03-21] (ALWIL Software)
    R0 aswNdis2; C:\Windows\system32\Drivers\aswNdis2.sys [253728 2015-03-21] (Avast Software s.r.o.)
    R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [55200 2015-03-21] (Avast Software s.r.o.)
    R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-03-21] ()
    R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-03-21] (Avast Software s.r.o.)
    R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427480 2015-03-21] (Avast Software s.r.o.)
    R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57888 2015-03-21] (Avast Software s.r.o.)
    R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [206976 2015-03-21] ()
    R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-06-26] (AVG Technologies)
    C:\Windows\system32\drivers\avgtpx86.sys
    R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-03-21] (Avast Software)
    S3 vsdatant; C:\Windows\system32\vsdatant.sys [394984 2007-06-22] (Zone Labs, LLC)
    C:\Windows\system32\vsdatant.sys
    U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
    S3 NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20061106.064\NAVEX15.SYS [X]
    C:\PROGRA~2\Symantec
    2015-03-21 17:10 - 2015-03-21 17:10 - 00001789 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
    2015-03-21 17:07 - 2015-03-21 17:06 - 00026096 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswKbd.sys
    2015-03-21 17:07 - 2015-03-21 17:05 - 00253728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswNdis2.sys
    2015-03-21 17:07 - 2015-03-21 17:01 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
    2015-03-21 17:05 - 2015-03-21 17:05 - 00012112 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswNdis.sys
    2015-03-21 17:01 - 2015-03-21 17:01 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
    2015-03-21 17:01 - 2014-09-11 16:19 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00427480 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00206976 _____ () C:\Windows\system32\Drivers\aswVmm.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00057888 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswTdi.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00055200 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
    2015-03-21 17:01 - 2014-09-11 16:19 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
    C:\ProgramData\hash.dat
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00021401-0000-0000-C000-000000000046}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{00b7e0ab-817a-44ad-a04b-d1148d524136}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F406-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4CF-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{3050F4F5-98B5-11CF-BB82-00AA00BDCE0B}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{30C3B080-30FB-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{6A01FDA0-30DF-11D0-B724-00AA006C1A01}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7057E952-BD1B-11D1-8919-00C04FC2C836}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{7c6e29bc-8b8b-4c3d-859e-af6cd158be0f}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c0-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c1-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c2-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c3-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c4-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c5-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c8-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969c9-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969ca-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{88d969d6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> %SystemDrive%\Users\RAJ\AppData\Roaming\Microsoft\MSXML2\msxml4.dll No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{939A0D04-0E07-48FE-A463-6623B70C3A96}\localserver32 -> "C:\Users\RAJ\AppData\Roaming\ValueApps\IE\ValueApps.exe" No File
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{A3CCEDF7-2DE2-11D0-86F4-00A0C913F750}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{CD773740-B187-4974-A1D5-E0FF91372277}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{D7B70EE0-4340-11CF-B063-0020AFC2CD35}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E569BDE7-A8DC-47F3-893F-FD2B31B3EEFD}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{EB030009-6D26-11D3-B0F4-00C04F60B2A1}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{F6240000-66DA-4DCD-B1AF-5C59D05C44D5}\InprocServer32 -> No File Path
    CustomCLSID: HKU\S-1-5-21-1291136695-2564591854-1091026493-1003_Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InprocServer32 -> No File Path
    Task: {09977583-6469-4579-AC2F-D88E5F3CDF5C} - System32\Tasks\{C6493663-0AAB-4FE9-A1EC-B6A437EE45F5} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6TMFPN17\zaasSetup_70_362_000_en[1].exe" -d C:\Users\RAJ
    Task: {200863E4-EB3B-4685-B7F2-3EA25058F933} - System32\Tasks\{2F9985C7-CCF9-451C-AC1E-E9613C2D1954} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OOI0XGTL\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
    Task: {24E837E6-22E4-40CA-AFBA-E840298FFD2C} - System32\Tasks\{A68810BF-554A-473B-9F12-B4C1DA9D8FEA} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GZ80UMY5\epson320037eu[1].exe" -d C:\Users\RAJ\Desktop
    Task: {2FCD3D2F-9178-404E-9CC2-350857212F40} - System32\Tasks\{CC2FDF14-4AB4-4C92-98D2-82BA9C229BCB} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOAZZ4BZ\gamesFree[1].exe" -d C:\Users\RAJ\Desktop
    Task: {8A317128-B102-4EAD-9917-FC5FC9A990AF} - \electroLyrics Update No Task File <==== ATTENTION
    Task: {990D683C-227B-4E52-8837-51B858770D91} - System32\Tasks\{E946C6AC-071B-4129-810F-19C2EB9E324D} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SVDHDEEV\sp36740[1].exe" -d C:\Windows\system32
    Task: {9DF24723-FBE0-4251-B3A7-4129DEB41FC8} - System32\Tasks\{85D8EA08-02EE-4825-878A-B84AE23D4165} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15_eng[1].exe" -d C:\Windows\system32
    Task: {A37B63AA-FBCB-4506-B00C-49ADF062CAAC} - System32\Tasks\{B1087782-4ED9-4AB2-B6B7-9A93AF854211} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MVKF1IU2\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
    Task: {A59BDF61-9776-422C-9649-44C315B0F743} - System32\Tasks\{935695EF-2E7C-4416-B626-F6151684B7C0} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MIAKCS67\NVE-3.1.0.25_eng[1].exe" -d C:\Windows\system32
    Task: {A8F46329-33EC-4895-B3AE-07C6D7A64DA4} - System32\Tasks\{DD31C027-608D-4E0E-A290-034B3D44E952} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUSMK2SA\sp43003[1].exe" -d C:\Users\RAJ\Desktop
    Task: {B02F825A-91DA-4A7F-9C29-9115760B68FD} - System32\Tasks\{4C14E304-955E-45FA-8741-631DD57F91A4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\Nero-6.6.1.15a[1].exe" -d C:\Windows\system32
    Task: {B3C50AB1-EE4C-4AB3-A2F5-9F7E5A047886} - System32\Tasks\{7728FBA9-7A7B-4A8C-827F-83E8B56FBC0C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NK319B7N\sp41879[1].exe" -d C:\Users\RAJ\Desktop
    Task: {BE2D421C-2B24-4E4A-B3DA-C933AB4566A8} - System32\Tasks\{1CEECA12-A1E2-427C-B8BF-DED0E53398E2} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\NMP-1.4.0.35b[1].exe" -d C:\Windows\system32
    Task: {BE368C08-F7A9-4239-AB11-164D99B106D5} - System32\Tasks\{182E446E-05CA-48DC-BAF9-D2D32E2690E4} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\303RAPUO\InCD-4.3.23.2[1].exe" -d C:\Windows\system32
    Task: {C1E836FB-D8E7-4F41-BACB-5E92D13F183B} - System32\Tasks\{20045C68-266D-4A51-8E2D-9ED74DB43A24} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZZDXGSZT\SetupPoker[1].exe" -d C:\Users\RAJ
    Task: {DF90B2AD-9F52-4A49-8A12-7261B6EAE0CE} - System32\Tasks\{53D593C2-8FE6-4043-B37C-B9EB4AC69FA7} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTN0UE9P\sp34615[1].exe" -d C:\Windows\system32
    Task: {EF12A234-0DFD-4653-BC3C-5C06FC7FA027} - System32\Tasks\{724BC68F-6E34-42C3-B1E0-8F3E51C5251C} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RJC1EYOF\LimeWireWin[1].exe" -d C:\Users\RAJ
    Task: {F87A6AD1-7B74-4E44-A0C6-43072133B6A6} - System32\Tasks\{2D6FDA70-8FE1-4EE8-A434-0E4E55A51A0A} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9BQH1L1D\LimeWireWin[1].exe" -d C:\Users\RAJ\Desktop
    Task: {F9A05307-3E26-493D-8D6E-8C5C4955EDCF} - System32\Tasks\{B2A84B01-510D-474B-978A-099718BFF8AD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1B897UL3\sp36740[1].exe" -d C:\Users\RAJ\Desktop
    Task: {F9E19298-D85D-4EB3-989C-362D1A255EA3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-21] (Avast Software s.r.o.)
    Task: {FA5B99FD-63FE-4A0E-BF21-91CEBC669C29} - System32\Tasks\{219D8A32-FD4C-405B-B8B8-AF49473237CD} => pcalua.exe -a "C:\Users\RAJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\79358QAL\sp34615[1].exe" -d C:\Users\RAJ
    AlternateDataStreams: C:\Program Files\DoylesRoom:MID
    AlternateDataStreams: C:\Program Files\PokerHost:MID
    AlternateDataStreams: C:\ProgramData\TEMP:0B4227B4
    AlternateDataStreams: C:\ProgramData\TEMP:1CA73D29
    AlternateDataStreams: C:\ProgramData\TEMP:C31F31E6
    EmptyTemp:
    end
  • Double-click FRST to run the tool. If the tool warns you the version is outdated, please download and run the updated version.
  • Click the Fix button just once, and wait.
  • If you receive a message that a reboot is required, please make sure you allow it to restart normally.
  • The tool will complete its run after the restart.
  • When finished, the tool will make a log (Fixlog.txt) in the same location from where it was run. Please post the Fixlog.txt log in your reply.

NOTE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

------------------------------------------------------

Please download ServicesRepair.exe by ESET and Save it to your Desktop.
  • Double-click ServicesRepair.exe to run it.(In VISTA/Win7/8, right-click and 'Run as administrator'.
  • When asked to proceed, choose 'Yes'.
  • When complete, you will get the message 'Services Repair Complete'.
  • Reboot when prompted.
Are you able to connect now?

------------------------------------------------------

If not...

Open Notepad and copy/paste the entire contents of the codebox below into Notepad(don't forget to copy and paste Windows Registry Editor Version 5.00):

Code:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Enum]
"0"="Root\\LEGACY_BITS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi]
"ImagePath"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,00,6f,00,\
  74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
  00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
  6b,00,20,00,4c,00,6f,00,63,00,61,00,6c,00,53,00,65,00,72,00,76,00,69,00,63,\
  00,65,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi\Parameters]
"ServiceDll"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,00,6f,\
  00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
  6e,00,73,00,69,00,73,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\nsi\Enum]
"0"="Root\\LEGACY_nsi\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
Save the file as fix.reg and choose to Save as type: - All Files then close the Notepad file.
It should look like this:


Double-click on fix.reg and choose Yes to merge/add it to the registry. Please delete the file afterwards.

Reboot. Are you able to access the internet now?

------------------------------------------------------
 
#25 ·
Hi Chemist,
Yes, sorry and thank you I do see the second page...
Great News, Buddy! Restoring PC back to 19/03/2015 seems to have fixed it...

ChromeGoogle Loaded up, my fav site [very reliable- virus wise] loaded up in 2 seconds, and I closed in in 2 seconds! Once Burnt, now in hiding [me]. I await your instructions.

Some of files / programs I had deleted as a cleanup are back on of course...
Cople of e.g. :[1] The GarminExpress, my SatNav prog whc annoyingly insists on start-up.
[2] Same with Lexmark all-in-1.

>>>PCTools+ had updated and gave this: "Some of your initialisation files have been tampered with by an external source. These files have been restored to provide max. security 4 yr Sys. UR adv to run anti-spywr to ensure freeof malwr."


>>> And undrstdably lost WinDefndr, and trying to enable it as I write.

>>>My PC Processor / RAM ? has has been running continuously over an hour now. I am assuming I lost some Windows updates by backdating and all the updates missed out while PC down.

Chemist, Please advise next course of action.

A Million Thanks and a recomendation for congressional medal of honor - for actually answering my p.m. on a late Saturday or Sunday. Wow, way to go man!

rgds, a happy:dance::smile: mg222
 
#26 ·
Hello again, mg222. You're very welcome! Glad you got it all back. We need to start all over though.

Please download AdwCleaner from here and save it to your desktop.
  • Do NOT click the green 'Download' button(if visible).
  • Click the blue 'Download now @bleepingcomputer' button.
  • Run AdwCleaner and select Scan
  • Once the Scan is done, select Clean
  • Once done it will ask to reboot, please allow the reboot.
  • On reboot, a log will be produced. It can also be found at C:\AdwCleaner\AdwCleaner[S#].txt
  • Please copy/paste the contents of the log in your next reply.
------------------------------------------------------

Please download Farbar Recovery Scan Tool and save it to your desktop.
  • Double-click to run it. When the tool opens click Yes to the disclaimer.
  • Make sure the Addition.txt button is ticked.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply.
------------------------------------------------------
 
Status
Not open for further replies.
You have insufficient privileges to reply here.
Top