Loading dump 1. Parsing dump 1. Loading dump 2. Parsing dump 2. Comparing the two dumps. Comparsion result: CRE HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\sysacpildap CRE HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\sysacpildap\ CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8} CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\Programmable CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\VersionIndependentProgID CRE HKEY_CLASSES_ROOT\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\VersionIndependentProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9} CRE HKEY_CLASSES_ROOT\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32 CRE HKEY_CLASSES_ROOT\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F} CRE HKEY_CLASSES_ROOT\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32 CRE HKEY_CLASSES_ROOT\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000} CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\Programmable CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\VersionIndependentProgID CRE HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\VersionIndependentProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC} CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Control CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Control\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A52-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A53-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{40FC6ED4-2438-11CF-A3DB-080036F12502} CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\1 CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\1\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ToolboxBitmap32 CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ToolboxBitmap32\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\VERSION CRE HKEY_CLASSES_ROOT\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\VERSION\ CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897} CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\ CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\IDEx CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\ CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\{00021492-0000-0000-C000-000000000046} CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\{00021492-0000-0000-C000-000000000046}\ CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9} CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Control CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Control\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A52-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A53-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{40FC6ED4-2438-11CF-A3DB-080036F12502} CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\1 CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\1\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ToolboxBitmap32 CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ToolboxBitmap32\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\VERSION CRE HKEY_CLASSES_ROOT\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\VERSION\ CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83} CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Implemented Categories CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502} CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Programmable CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\VERSION CRE HKEY_CLASSES_ROOT\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\VERSION\ CRE HKEY_CLASSES_ROOT\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865} CRE HKEY_CLASSES_ROOT\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\ CRE HKEY_CLASSES_ROOT\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839} CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Control CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Control\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32 CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32\ThreadingModel CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\1 CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\1\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ProgID CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ProgID\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ToolboxBitmap32 CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ToolboxBitmap32\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\TypeLib CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\TypeLib\ CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Version CRE HKEY_CLASSES_ROOT\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Version\ CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj.1 CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj.1\ CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj.1\CLSID CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj.1\CLSID\ CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj\ CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj\CLSID CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj\CLSID\ CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj\CurVer CRE HKEY_CLASSES_ROOT\DyFuCA_BH.BHObj\CurVer\ CRE HKEY_CLASSES_ROOT\IEMonitor.IEEvents CRE HKEY_CLASSES_ROOT\IEMonitor.IEEvents\ CRE HKEY_CLASSES_ROOT\IEMonitor.IEEvents\Clsid CRE HKEY_CLASSES_ROOT\IEMonitor.IEEvents\Clsid\ CRE HKEY_CLASSES_ROOT\IEMonitor.cBrowsers CRE HKEY_CLASSES_ROOT\IEMonitor.cBrowsers\ CRE HKEY_CLASSES_ROOT\IEMonitor.cBrowsers\Clsid CRE HKEY_CLASSES_ROOT\IEMonitor.cBrowsers\Clsid\ CRE HKEY_CLASSES_ROOT\IObjSafety.DemoCtl CRE HKEY_CLASSES_ROOT\IObjSafety.DemoCtl\ CRE HKEY_CLASSES_ROOT\IObjSafety.DemoCtl\Clsid CRE HKEY_CLASSES_ROOT\IObjSafety.DemoCtl\Clsid\ CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001} CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6} CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B} CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610} CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B} CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783} CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000} CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB} CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\Forward CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\Forward\ CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388} CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\Forward CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\Forward\ CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707} CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib\Version CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845} CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid32 CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid32\ CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid\ CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib\ CRE HKEY_CLASSES_ROOT\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib\Version CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C} CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0 CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\ CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0 CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0\win32 CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0\win32\ CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\FLAGS CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\FLAGS\ CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\HELPDIR CRE HKEY_CLASSES_ROOT\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\HELPDIR\ CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073} CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0 CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\ CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0 CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0\win32 CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0\win32\ CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\FLAGS CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\FLAGS\ CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\HELPDIR CRE HKEY_CLASSES_ROOT\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\HELPDIR\ CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB} CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0 CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\ CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0 CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0\win32 CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0\win32\ CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\FLAGS CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\FLAGS\ CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\HELPDIR CRE HKEY_CLASSES_ROOT\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\HELPDIR\ CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A} CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1 CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\ CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0 CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0\win32 CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0\win32\ CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\FLAGS CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\FLAGS\ CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\HELPDIR CRE HKEY_CLASSES_ROOT\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\HELPDIR\ CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000} CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0 CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\ CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0 CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0\win32 CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0\win32\ CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\FLAGS CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\FLAGS\ CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\HELPDIR CRE HKEY_CLASSES_ROOT\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\HELPDIR\ CRE HKEY_CLASSES_ROOT\VCCPGDATAACCESS.PgDataAccessCtrl.1 CRE HKEY_CLASSES_ROOT\VCCPGDATAACCESS.PgDataAccessCtrl.1\ CRE HKEY_CLASSES_ROOT\VCCPGDATAACCESS.PgDataAccessCtrl.1\CLSID CRE HKEY_CLASSES_ROOT\VCCPGDATAACCESS.PgDataAccessCtrl.1\CLSID\ CRE HKEY_CLASSES_ROOT\acpi.acpi.1 CRE HKEY_CLASSES_ROOT\acpi.acpi.1\ CRE HKEY_CLASSES_ROOT\acpi.acpi.1\CLSID CRE HKEY_CLASSES_ROOT\acpi.acpi.1\CLSID\ CRE HKEY_CLASSES_ROOT\acpi.ext CRE HKEY_CLASSES_ROOT\acpi.ext\ CRE HKEY_CLASSES_ROOT\acpi.ext\CLSID CRE HKEY_CLASSES_ROOT\acpi.ext\CLSID\ CRE HKEY_CLASSES_ROOT\acpi.ext\CurVer CRE HKEY_CLASSES_ROOT\acpi.ext\CurVer\ CRE HKEY_CURRENT_USER\ColorTable19 CRE HKEY_CURRENT_USER\ColorTable20 CRE HKEY_CURRENT_USER\Control Panel\Desktop\Pattern CRE HKEY_CURRENT_USER\Software\Avenue Media CRE HKEY_CURRENT_USER\Software\Classes\CLSID CRE HKEY_CURRENT_USER\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F} CRE HKEY_CURRENT_USER\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32 CRE HKEY_CURRENT_USER\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ CRE HKEY_CURRENT_USER\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ThreadingModel CRE HKEY_CURRENT_USER\Software\Imon CRE HKEY_CURRENT_USER\Software\Imon\Data CRE HKEY_CURRENT_USER\Software\Imon\Install CRE HKEY_CURRENT_USER\Software\Imon\Ut11 CRE HKEY_CURRENT_USER\Software\Imon\Version CRE HKEY_CURRENT_USER\Software\Imon\id CRE HKEY_CURRENT_USER\Software\Install CRE HKEY_CURRENT_USER\Software\Install\Version CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU\Cache CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU\Enable CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU\Factor CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU\InitHits CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\CpMRU\Size CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Default_Page_URL CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Default_Search_URL CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer\Main CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer\Main\Default_Search_URL CRE HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks\_{CFBFAE00-17A6-11D0-99CB-00C04FD64497} CRE HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\run CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Colors CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Colors\NumberOfColors CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar0\BarID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#2 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\BarID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bars CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#2 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\BarID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bars CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\BarID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\Docking CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockBottomPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockLeftPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockRightPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockTopPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatStyle CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatXPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatYPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\XPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\YPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\BarID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\Docking CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockBottomPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockID CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockLeftPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockRightPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockTopPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatStyle CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatXPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatYPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\XPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\YPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\Bars CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\ScreenCX CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\ScreenCY CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List\File1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Settings CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Bold CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\CharSet CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Italic CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PointSize CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PositionX CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PositionY CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\ShowTextTool CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\TextPen CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\TypeFaceName CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Underline CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\VerticalEdit CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\BMPHeight CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\BMPWidth CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\GridExtent CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\NoStretching CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ShowThumbnail CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\SnapToGrid CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbHeight CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbWidth CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbXPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbYPos CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\UnitSetting CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\WindowPlacement CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\c CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\d CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp\MRUList CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp\a CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\MRUList CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\a CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\b CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\c CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\d CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\e CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\f CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\g CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz\Days between clean up CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList\MRUList CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList\a CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\OpenWithList\b CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp\0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp\MRUListEx CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\2 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\3 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\4 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\5 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\6 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\MRUListEx CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\11 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\12 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\13 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\14 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\15 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\16 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\17 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\18 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\19 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\2 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\flfgrzfureybpx\qhzc_pbzcner_pbcl.ong CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\zfcnvag.rkr CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:%pfvqy2%\Gvyyoruöe CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:%pfvqy2%\Gvyyoruöe\Cnvag.yax CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\state CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheLimit CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheOptions CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CachePath CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CachePrefix CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheRepair CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net\* CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popuppers.com CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popuppers.com\* CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoAddingComponents CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoComponents CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoDeletingComponents CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoEditingComponents CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoHTMLWallPaper CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceActiveDesktopOn CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktop CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\Wallpaper CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\PayTime CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Windows installer CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\aupd CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\pro CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\wmfk CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\xp_system CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\adv640 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\MRUListEx CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\NodeSlot CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Address CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Buttons CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Col CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ColInfo CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\FFlags CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\HotKey CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Links CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MaxPos800x600(1).x CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MaxPos800x600(1).y CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MinPos800x600(1).x CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MinPos800x600(1).y CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Mode CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Rev CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ScrollPos800x600(1).x CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ScrollPos800x600(1).y CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ShowCmd CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Sort CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\SortDir CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Status CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Vid CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WFlags CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).bottom CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).left CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).right CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).top CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\22 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\22\Shell CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\22\Shell\FolderType CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@%SystemRoot%\system32\shell32.dll,-22581 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\bckgres.dll,-1212 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\chkrres.dll,-1212 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\hrtzres.dll,-1212 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\rvseres.dll,-1212 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\shvlres.dll,-1212 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\Messenger\msgslang.dll,-61144 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\comres.dll,-661 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\mstask.dll,-3408 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\mstsc.exe,-4000 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-12696 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22920 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22921 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22923 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22924 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22981 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22982 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22985 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-30348 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-32517 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\compatUI.dll,-115 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\hnetwiz.dll,-3085 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\mshearts.exe,-413 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\netshell.dll,-1010 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\netshell.dll,-1201 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\restore\rstrui.exe,-2048 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\spider.exe,-56 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\usmt\migwiz.exe,-202 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\wiashext.dll,-330 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\wiashext.dll,-331 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21760 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21762 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21768 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21772 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21788 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22016 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22017 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22018 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22019 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22021 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22022 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22023 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22025 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22026 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22027 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22029 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22030 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22031 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22040 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22041 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22045 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22052 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22054 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22055 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22057 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22058 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22059 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22060 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22061 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22062 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22063 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22065 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22066 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22067 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22069 CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\Roger\LOKALA~1\Temp\is-NGCPD.tmp\is-72LS8.tmp CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program\hjt\HijackThis.exe CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\System32\1.exe CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\System32\taskmgr.exe CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\inet20099\killer.exe CRE HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\system32\mspaint.exe CRE HKEY_CURRENT_USER\Software\Policies\Avenue Media CRE HKEY_CURRENT_USER\Software\WinRAR SFX CRE HKEY_CURRENT_USER\Software\WinRAR SFX\c%%windows CRE HKEY_CURRENT_USER\Software\mzs CRE HKEY_CURRENT_USER\Software\mzs\mdms CRE HKEY_CURRENT_USER\Software\mzs\mdms\mzu CRE HKEY_CURRENT_USER\Software\mzs\mdms\mzu\cid CRE HKEY_CURRENT_USER\Software\mzs\mdms\mzu\newhost CRE HKEY_CURRENT_USER\Software\mzs\mdms\mzu\pt CRE HKEY_CURRENT_USER\Software\vidmon CRE HKEY_CURRENT_USER\Software\vidmon\id CRE HKEY_CURRENT_USER\Software\wmfk CRE HKEY_CURRENT_USER\Software\wmfk\Ts2HWND CRE HKEY_CURRENT_USER\Software\wmfk\Tsl2HWND CRE HKEY_CURRENT_USER\Software\wmfk\Tsm2HWND CRE HKEY_CURRENT_USER\WindowsSubVersion CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\403 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\404 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\410 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\500 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\ModuleFileName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\Options CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1\Data CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1\DiffAll CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1\RawData CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1\TimeStamp CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\CLS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Conn CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\ID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\InstallT CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\RID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\ServerVisited CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\TAC CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\TargetDir CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\UpdateInterval CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer\remember[LLT] CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\sysacpildap CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\sysacpildap\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\Programmable CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\VersionIndependentProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000010-6F7D-442C-93E3-4A4827C2E4C8}\VersionIndependentProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1722ECFF-4356-4f5b-B534-E67294FE75E9}\InProcServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\Programmable CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\VersionIndependentProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\VersionIndependentProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Control CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Control\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A52-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A53-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\Implemented Categories\{40FC6ED4-2438-11CF-A3DB-080036F12502} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\MiscStatus\1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ToolboxBitmap32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\ToolboxBitmap32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\VERSION CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62FBA4E7-BD9E-4D8D-8FBB-3C32999CB7FC}\VERSION\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\IDEx CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\{00021492-0000-0000-C000-000000000046} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\Implemented Categories\{00021492-0000-0000-C000-000000000046}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67153E3A-0F8F-488E-8B72-00EDBF026897}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Control CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Control\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A52-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A53-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{0DE86A57-2BAA-11CF-A229-00AA003D7352} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\Implemented Categories\{40FC6ED4-2438-11CF-A3DB-080036F12502} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\MiscStatus\1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ToolboxBitmap32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\ToolboxBitmap32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\VERSION CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7149E79C-DC19-4C5E-A53C-A54DDF75EEE9}\VERSION\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Implemented Categories CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\Programmable CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\VERSION CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A03323D3-F649-4F16-A6E4-4FC53F917A83}\VERSION\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8BD9566-9895-4FA3-918D-A51D4CD15865}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Control CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Control\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\InprocServer32\ThreadingModel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\MiscStatus\1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ProgID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ProgID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ToolboxBitmap32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\ToolboxBitmap32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0070620-1E72-42E7-A14C-3A255AD31839}\Version\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj.1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj.1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj.1\CLSID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj.1\CLSID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj\CLSID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj\CLSID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj\CurVer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DyFuCA_BH.BHObj\CurVer\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.IEEvents CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.IEEvents\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.IEEvents\Clsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.IEEvents\Clsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.cBrowsers CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.cBrowsers\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.cBrowsers\Clsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEMonitor.cBrowsers\Clsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IObjSafety.DemoCtl CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IObjSafety.DemoCtl\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IObjSafety.DemoCtl\Clsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IObjSafety.DemoCtl\Clsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29375563-1B91-44D9-8B05-FFAD8AC286F6}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2AFDD165-B663-43C1-AFE2-105FDCA2A24B}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2BB15D36-43BE-4743-A3A0-3308F4B1A610}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E841334-C0A7-48C6-9681-3FCD3B4E104B}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{41700749-A109-4254-AF13-BE54011E8783}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E2121ED-0300-11D4-8D3B-444553540000}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\Forward CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\Forward\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A9136CFD-FD01-41B8-9969-0B37720ED8AB}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\Forward CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\Forward\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2EEDA99-DA99-4D0D-9F7F-143C30521388}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DAE67284-3C98-44C5-AA8F-9461C3247707}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\ProxyStubClsid\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E295FDEA-B7A3-4C16-9204-CE01366D1845}\TypeLib\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0\win32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\0\win32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\FLAGS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\FLAGS\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\HELPDIR CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1942BEBE-DCE5-4148-868E-1250A2218B4C}\2.0\HELPDIR\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0\win32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\0\win32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\FLAGS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\FLAGS\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\HELPDIR CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2A7DB8D1-43BE-4AD3-A81E-9BB8C9D00073}\1.0\HELPDIR\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0\win32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\0\win32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\FLAGS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\FLAGS\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\HELPDIR CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB}\1.0\HELPDIR\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0\win32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\0\win32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\FLAGS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\FLAGS\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\HELPDIR CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{466C63AC-F26E-49F1-861A-E07DA768A46A}\1.1\HELPDIR\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0\win32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\0\win32\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\FLAGS CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\FLAGS\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\HELPDIR CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5E2121E1-0300-11D4-8D3B-444553540000}\1.0\HELPDIR\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VCCPGDATAACCESS.PgDataAccessCtrl.1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VCCPGDATAACCESS.PgDataAccessCtrl.1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VCCPGDATAACCESS.PgDataAccessCtrl.1\CLSID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VCCPGDATAACCESS.PgDataAccessCtrl.1\CLSID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.acpi.1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.acpi.1\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.acpi.1\CLSID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.acpi.1\CLSID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext\CLSID CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext\CLSID\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext\CurVer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Classes\acpi.ext\CurVer\ CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon\Data CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon\Install CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon\Version CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon\id CRE HKEY_LOCAL_MACHINE\SOFTWARE\Imon\map CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DownloadManager CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Desktop CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Desktop\General CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Desktop\General\WallpaperFileTime CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Desktop\General\WallpaperLocalFileTime CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Placeholder_Datacn2 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\Asynchronous CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\DllName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\Impersonate CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\Logoff CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\Logon CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn\Shutdown CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\chk CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\chk\Asynchronous CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\chk\DllName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\chk\Impersonate CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\chk\StartShell CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer\Changed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Internet Optimizer\SlowInfoCache CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\TSA CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\TSA\Changed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\TSA\SlowInfoCache CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WebDP CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WebDP\Changed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WebDP\SlowInfoCache CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\media-motor CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\media-motor\Changed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\media-motor\SlowInfoCache CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3877C2CD-F137-4144-BDB2-0A811492F920} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3877C2CD-F137-4144-BDB2-0A811492F920}\Changed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3877C2CD-F137-4144-BDB2-0A811492F920}\SlowInfoCache CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000010-6F7D-442C-93E3-4A4827C2E4C8} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ControlPanel CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Explorer32 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Internet Optimizer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Microsoft standard protector CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Nfo CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\PayTime CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\SysMemory manager CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\adtech2005 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ecsiin CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\exp CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\noC= CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\timessquare CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vidmon CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xp_system CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{5E2121EE-0300-11D4-8D3B-444553540000} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{67153E3A-0F8F-488E-8B72-00EDBF026897} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\SysTray.Excn2 CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DyFuCA CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\DisplayIcon CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\DisplayVersion CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\Publisher CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\URLInfoAbout CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer\DisplayIcon CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout\Comment CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout\DComment CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TSA CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TSA\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TSA\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebDP CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebDP\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebDP\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\media-motor CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\media-motor\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\media-motor\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\Contact CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\DisplayName CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\DisplayVersion CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\NoModify CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\NoRemove CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\NoRepair CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3877C2CD-F137-4144-BDB2-0A811492F920}\UninstallString CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\AMeOpt CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\drsmartload CRE HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\drsmartload\Installed CRE HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Avenue Media CRE HKEY_LOCAL_MACHINE\SOFTWARE\Policies\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Policies\{645FF040-5081-101B-9F08-00AA002F954E} CRE HKEY_LOCAL_MACHINE\SOFTWARE\Policies\{6BF52A52-394A-11D3-B153-00C04F79FAA6} CRE HKEY_LOCAL_MACHINE\SOFTWARE\ecsiin CRE HKEY_LOCAL_MACHINE\SOFTWARE\ecsiin\A CRE HKEY_LOCAL_MACHINE\SOFTWARE\ecsiin\B CRE HKEY_LOCAL_MACHINE\SOFTWARE\mm CRE HKEY_LOCAL_MACHINE\SOFTWARE\mm\check CRE HKEY_LOCAL_MACHINE\SOFTWARE\vidmon CRE HKEY_LOCAL_MACHINE\SOFTWARE\vidmon\id CRE HKEY_LOCAL_MACHINE\SOFTWARE\vidmon\vm1 CRE HKEY_LOCAL_MACHINE\SOFTWARE\vidmon\vm2 CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\AffiliateID CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\CODE CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\CityCode CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\ContinentCode CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\CountryCode CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\MetroCode CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\NewInstall CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\Path CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\RegionCode CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\UID CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\update CRE HKEY_LOCAL_MACHINE\SOFTWARE\wmfk\update\TSVersion CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CMDSERVICE\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_I386P\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCHINJDRV\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_STISVC\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_STISVC\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TAPISRV\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TAPISRV\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\C:\WINDOWS\tool1.exe CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\c:\windows\system32\mdms.exe CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DoNotAllowExceptions CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\10360:TCP CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\DisplayName CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Enum CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Enum\0 CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Enum\Count CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Enum\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\ErrorControl CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\ImagePath CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\ObjectName CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Security CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Security\Security CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Start CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cmdService\Type CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\DeleteFlag CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Enum CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Enum\0 CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Enum\Count CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Enum\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\ErrorControl CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\ImagePath CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Start CRE HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mchInjDrv\Type CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CMDSERVICE\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_I386P\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000 CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Class CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\ClassGUID CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\ConfigFlags CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Control\*NewlyCreated* CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\DeviceDesc CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Legacy CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\0000\Service CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_STISVC\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_STISVC\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TAPISRV\0000\Control CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TAPISRV\0000\Control\ActiveService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\C:\WINDOWS\tool1.exe CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\c:\windows\system32\mdms.exe CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DoNotAllowExceptions CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\10360:TCP CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\DisplayName CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Enum CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Enum\0 CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Enum\Count CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Enum\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\ErrorControl CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\ImagePath CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\ObjectName CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Security CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Security\Security CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Start CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cmdService\Type CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\DeleteFlag CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Enum CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Enum\0 CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Enum\Count CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Enum\NextInstance CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\ErrorControl CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\ImagePath CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Start CRE HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mchInjDrv\Type CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\ColorTable19 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\ColorTable20 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Control Panel\Desktop\Pattern CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Avenue Media CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Classes\CLSID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F} CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ThreadingModel CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon\Data CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon\Install CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon\Ut11 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon\Version CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Imon\id CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Install CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Install\Version CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU\Cache CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU\Enable CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU\Factor CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU\InitHits CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\International\CpMRU\Size CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Default_Page_URL CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Default_Search_URL CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Search Bar CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Search CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer\Main CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer\Main\Default_Search_URL CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\_{CFBFAE00-17A6-11D0-99CB-00C04FD64497} CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows NT\CurrentVersion\Windows\run CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Colors CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Colors\NumberOfColors CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar0\BarID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bar#2 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\BarID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar1\Bars CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bar#2 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\BarID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar2\Bars CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\BarID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\Docking CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockBottomPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockLeftPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockRightPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUDockTopPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatStyle CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatXPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\MRUFloatYPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\XPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar3\YPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\BarID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\Docking CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockBottomPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockLeftPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockRightPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUDockTopPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatStyle CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatXPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\MRUFloatYPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\XPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Bar4\YPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\Bars CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\ScreenCX CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\General-Summary\ScreenCY CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List\File1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Settings CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Bold CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\CharSet CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Italic CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PointSize CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PositionX CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\PositionY CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\ShowTextTool CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\TextPen CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\TypeFaceName CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\Underline CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Text\VerticalEdit CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\BMPHeight CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\BMPWidth CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\GridExtent CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\NoStretching CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ShowThumbnail CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\SnapToGrid CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbHeight CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbWidth CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbXPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\ThumbYPos CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\UnitSetting CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\View\WindowPlacement CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\c CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\d CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp\MRUList CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\bmp\a CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\MRUList CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\a CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\b CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\c CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\d CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\e CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\f CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\log\g CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz\Days between clean up CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList\MRUList CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList\a CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\OpenWithList\b CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp\0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp\MRUListEx CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\2 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\3 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\4 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\5 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\6 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.log\MRUListEx CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\11 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\12 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\13 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\14 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\15 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\16 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\17 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\18 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\19 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\2 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\flfgrzfureybpx\qhzc_pbzcner_pbcl.ong CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\zfcnvag.rkr CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:%pfvqy2%\Gvyyoruöe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:%pfvqy2%\Gvyyoruöe\Cnvag.yax CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\state CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheLimit CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheOptions CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CachePath CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CachePrefix CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005111820051119\CacheRepair CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net\* CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popuppers.com CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popuppers.com\* CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoAddingComponents CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoComponents CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoDeletingComponents CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoEditingComponents CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoHTMLWallPaper CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceActiveDesktopOn CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktop CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\System CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Policies\System\Wallpaper CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\PayTime CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\Windows installer CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\aupd CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\pro CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\wmfk CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\xp_system CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\adv640 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\MRUListEx CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\NodeSlot CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Address CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Buttons CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Col CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ColInfo CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\FFlags CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\HotKey CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Links CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MaxPos800x600(1).x CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MaxPos800x600(1).y CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MinPos800x600(1).x CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\MinPos800x600(1).y CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Mode CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Rev CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ScrollPos800x600(1).x CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ScrollPos800x600(1).y CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\ShowCmd CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Sort CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\SortDir CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Status CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\Vid CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WFlags CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).bottom CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).left CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).right CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell\WinPos800x600(1).top CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\22 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\22\Shell CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\22\Shell\FolderType CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@%SystemRoot%\system32\shell32.dll,-22581 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\bckgres.dll,-1212 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\chkrres.dll,-1212 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\hrtzres.dll,-1212 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\rvseres.dll,-1212 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\MSNGAM~1\Windows\shvlres.dll,-1212 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\Program\Messenger\msgslang.dll,-61144 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\comres.dll,-661 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\mstask.dll,-3408 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\System32\mstsc.exe,-4000 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-12696 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22920 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22921 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22923 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22924 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22981 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22982 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-22985 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-30348 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\SHELL32.dll,-32517 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\compatUI.dll,-115 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\hnetwiz.dll,-3085 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\mshearts.exe,-413 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\netshell.dll,-1010 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\netshell.dll,-1201 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\restore\rstrui.exe,-2048 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\spider.exe,-56 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\usmt\migwiz.exe,-202 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\wiashext.dll,-330 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@C:\WINDOWS\system32\wiashext.dll,-331 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21760 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21762 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21768 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21772 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-21788 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22016 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22017 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22018 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22019 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22021 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22022 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22023 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22025 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22026 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22027 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22029 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22030 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22031 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22040 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22041 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22045 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22052 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22054 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22055 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22057 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22058 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22059 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22060 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22061 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22062 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22063 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22065 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22066 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22067 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\@shell32.dll,-22069 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\Roger\LOKALA~1\Temp\is-NGCPD.tmp\is-72LS8.tmp CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program\hjt\HijackThis.exe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\System32\1.exe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\System32\taskmgr.exe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\inet20099\killer.exe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\WINDOWS\system32\mspaint.exe CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Policies\Avenue Media CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\WinRAR SFX CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\WinRAR SFX\c%%windows CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs\mdms CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs\mdms\mzu CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs\mdms\mzu\cid CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs\mdms\mzu\newhost CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\mzs\mdms\mzu\pt CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\vidmon CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\vidmon\id CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\wmfk CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\wmfk\Ts2HWND CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\wmfk\Tsl2HWND CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\wmfk\Tsm2HWND CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\WindowsSubVersion CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003_Classes\CLSID CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003_Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F} CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003_Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32 CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003_Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ CRE HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003_Classes\CLSID\{4F141CBA-1457-6CCA-03A7-7AA21B61EA0F}\InProcServer32\ThreadingModel CRE c:\Documents and Settings\All Users\Application Data\nfo CRE c:\Documents and Settings\All Users\Application Data\nfo\arch CRE c:\Documents and Settings\All Users\Application Data\nfo\keys.dat CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0104.dbd CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0106.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0204.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0315.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0412.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0504.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon0904.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon1125.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon1204.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon1215.dbd CRE c:\Documents and Settings\All Users\Application Data\nfo\mon1909.ddx CRE c:\Documents and Settings\All Users\Application Data\nfo\mon1920.dbd CRE c:\Documents and Settings\All Users\Application Data\nfo\mon2007.dbd CRE c:\Documents and Settings\All Users\Application Data\vidmon CRE c:\Documents and Settings\All Users\Application Data\vidmon\vidmon.inf CRE c:\Documents and Settings\All Users\Dokument\Mina bilder\Exempelbilder\Thumbs.db CRE c:\Documents and Settings\Roger\Application Data\Install.dat CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Crypto CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Crypto\RSA CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1229272821-413027322-839522115-1003 CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1229272821-413027322-839522115-1003\d642018b883da684e9c7dcbbfa2f2836_c60e35d9-c6f3-431c-b979-abf7bb8140a8 CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Protect\S-1-5-21-1229272821-413027322-839522115-1003 CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Protect\S-1-5-21-1229272821-413027322-839522115-1003\99224422-30ea-45dd-aa4d-5aea4eb913f9 CRE c:\Documents and Settings\Roger\Application Data\Microsoft\Protect\S-1-5-21-1229272821-413027322-839522115-1003\Preferred CRE c:\Documents and Settings\Roger\Cookies\roger@delfinproject[2].txt CRE c:\Documents and Settings\Roger\Cookies\roger@sex.totsex[2].txt CRE c:\Documents and Settings\Roger\Cookies\roger@sex.x-park[2].txt CRE c:\Documents and Settings\Roger\Cookies\roger@totsex[2].txt CRE c:\Documents and Settings\Roger\Cookies\roger@traff-store[1].txt CRE c:\Documents and Settings\Roger\Internet Optimizer CRE c:\Documents and Settings\Roger\Internet Optimizer\optimize.exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\1.exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\B.tmp CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\D.tmp CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\E.tmp CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\cfin CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\cfout.txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\cmdinst.exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\desktop.htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\list CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\mmxourguyz.exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temp\tsinstall_4_0_4_0_b4.exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\VerifierBug[1].class CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\ab[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\ab[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\adtech2005[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\b[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\b[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\blinkbot[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\cntr[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\donotdelete[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\env[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\mm83[1].ocx CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\ms1[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\nem220[1].dll CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\patch[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\pload[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\res[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\sex.totsex[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\smartload[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\smartload_stats[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\soc[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\stub_113_4_0_4_0[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\timessquare[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\toolbar[2].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ\unstall[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\1[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\Beyond[1].class CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\ab[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\ab[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\b[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\checkin[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\cntr[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\cookie_b[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\dial[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\free[1].anr CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\kl[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\ll[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\loader2[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\optimize[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\pload[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\secure32[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\smartload_einde[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\smartload_stats[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\smartload_stats[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\takeme2[1] CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\tool1[2].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\tool4[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\tsupdate2[1].ini CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ\uniq[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\Dummy[1].class CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\Inst_cn2x[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\a[1].222 CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\ab[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\ab[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\ab[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\cookie_b[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\cookie_b[2].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\cookie_b[3].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\data[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\drsmartload[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\drsmartload[2].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\hosts[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\index2[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\installer[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\sex.x-park[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\smartload[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\smartload_stats[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\soft[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\test[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\tool2[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\tool3[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\tool5[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\totsex[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV\uniq[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\BlackBox[1].class CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\ab[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\b[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\bundle[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\child[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\cntr[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\dl[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\dluniq[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\ecsiin.stub[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\installer[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\latest[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\log3[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\mrj[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\msits[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\mte3ndi6odoxng[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\nan51[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\paytime[1].txt CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\pload[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\raw[1].php CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\smartload_stats[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\sweet-top[1] CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\takeme2[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\teller2[1].htm CRE c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB\tool[1].exe CRE c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005111820051119 CRE c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005111820051119\index.dat CRE c:\Documents and Settings\Roger\Mina dokument\Mina bilder\add-remove-dlg.bmp CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis2.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis3.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis4.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis5.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis6.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis7.log CRE c:\Documents and Settings\Roger\Mina dokument\hijackthis8.log CRE c:\Documents and Settings\Roger\Recent\Mina bilder.lnk CRE c:\Documents and Settings\Roger\Recent\add-remove-dlg.bmp.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis2.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis3.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis4.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis5.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis6.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis7.log.lnk CRE c:\Documents and Settings\Roger\Recent\hijackthis8.log.lnk CRE c:\Documents and Settings\Roger\Skrivbord\access CRE c:\Documents and Settings\Roger\Skrivbord\asfds CRE c:\Documents and Settings\Roger\Skrivbord\cdegfr CRE c:\Documents and Settings\Roger\Skrivbord\domains CRE c:\Documents and Settings\Roger\Skrivbord\fdsf CRE c:\Documents and Settings\Roger\Skrivbord\map.txt CRE c:\Documents and Settings\Roger\Skrivbord\sdfdsf CRE c:\Documents and Settings\Roger\Skrivbord\sdfff CRE c:\Documents and Settings\Roger\Skrivbord\wdcevf CRE c:\Documents and Settings\Roger\Skrivbord\wdcsadsad CRE c:\Documents and Settings\Roger\Skrivbord\wdcsafffdsad CRE c:\Documents and Settings\Roger\Skrivbord\zxczxc CRE c:\LSWMV.INI CRE c:\Program Files CRE c:\Program Files\SpySheriff CRE c:\Program Files\SpySheriff\IESecurity.dll CRE c:\Program Files\SpySheriff\ProcMon.dll CRE c:\Program Files\SpySheriff\SpySheriff.dvm CRE c:\Program Files\SpySheriff\SpySheriff.exe CRE c:\Program Files\SpySheriff\Uninstall.exe CRE c:\Program Files\SpySheriff\base.avd CRE c:\Program Files\SpySheriff\base001.avd CRE c:\Program Files\SpySheriff\base002.avd CRE c:\Program Files\SpySheriff\found.wav CRE c:\Program Files\SpySheriff\heur000.dll CRE c:\Program Files\SpySheriff\heur001.dll CRE c:\Program Files\SpySheriff\heur002.dll CRE c:\Program Files\SpySheriff\heur003.dll CRE c:\Program Files\SpySheriff\notfound.wav CRE c:\Program Files\SpySheriff\removed.wav CRE c:\Program\Delade filer\Uninstall Information CRE c:\Program\Delade filer\Uninstall Information\RemoveWebDP.exe CRE c:\Program\Delade filer\wmfk CRE c:\Program\Delade filer\wmfk\wmfka.exe CRE c:\Program\Delade filer\wmfk\wmfka.lck CRE c:\Program\Delade filer\wmfk\wmfkd CRE c:\Program\Delade filer\wmfk\wmfkd\class-barrel CRE c:\Program\Delade filer\wmfk\wmfkd\vocabulary CRE c:\Program\Delade filer\wmfk\wmfkd\wmfkc.dll CRE c:\Program\Delade filer\wmfk\wmfkl.exe CRE c:\Program\Delade filer\wmfk\wmfkl.lck CRE c:\Program\Delade filer\wmfk\wmfkm.exe CRE c:\Program\Delade filer\wmfk\wmfkm.lck CRE c:\Program\Delade filer\wmfk\wmfkp.exe CRE c:\Program\Ethereal\network-log-plain.txt CRE c:\Program\Ethereal\network-log.txt CRE c:\Program\systemsherlock\before.dat CRE c:\Program\systemsherlock\network-log-urls.txt CRE c:\WINDOWS\IEMonitor.ocx CRE c:\WINDOWS\Prefetch\1.EXE-36DF0015.pf CRE c:\WINDOWS\Prefetch\1.EXE-39626414.pf CRE c:\WINDOWS\Prefetch\2.EXE-159C799E.pf CRE c:\WINDOWS\Prefetch\3.EXE-242F14A2.pf CRE c:\WINDOWS\Prefetch\ADTECH2005.EXE-24347366.pf CRE c:\WINDOWS\Prefetch\ALG.EXE-34C3BDA7.pf CRE c:\WINDOWS\Prefetch\C.TMP-2F218754.pf CRE c:\WINDOWS\Prefetch\CMDINST.EXE-21F166D4.pf CRE c:\WINDOWS\Prefetch\COMMAND.EXE-317A7385.pf CRE c:\WINDOWS\Prefetch\D.TMP-1FDD565E.pf CRE c:\WINDOWS\Prefetch\DRSMARTLOAD1.EXE-04DD9FC7.pf CRE c:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf CRE c:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf CRE c:\WINDOWS\Prefetch\E.TMP-19EE37E2.pf CRE c:\WINDOWS\Prefetch\ECSIIN.EXE-2101A0A2.pf CRE c:\WINDOWS\Prefetch\ECSIIN.STUB.EXE-00A99C76.pf CRE c:\WINDOWS\Prefetch\ELOS.EXE-2B8B4FC1.pf CRE c:\WINDOWS\Prefetch\EXEHA2.EXE-3279AD50.pf CRE c:\WINDOWS\Prefetch\EXEHA3.EXE-1C853062.pf CRE c:\WINDOWS\Prefetch\EXPLORER.EXE-3A3F7918.pf CRE c:\WINDOWS\Prefetch\HAMMER.EXE-061B8F50.pf CRE c:\WINDOWS\Prefetch\INSTALLER.EXE-1BA629DD.pf CRE c:\WINDOWS\Prefetch\IS-72LS8.TMP-05E0A86D.pf CRE c:\WINDOWS\Prefetch\KILLER.EXE-1AA0C689.pf CRE c:\WINDOWS\Prefetch\KL.EXE-152C5F16.pf CRE c:\WINDOWS\Prefetch\LL.EXE-1931788D.pf CRE c:\WINDOWS\Prefetch\LOADCLEAN.EXE-00BE291A.pf CRE c:\WINDOWS\Prefetch\MDMS.EXE-19631554.pf CRE c:\WINDOWS\Prefetch\MMXOURGUYZ.EXE-049A6B3B.pf CRE c:\WINDOWS\Prefetch\MRJJ.EXE-2E244257.pf CRE c:\WINDOWS\Prefetch\MS1.EXE-13CC3572.pf CRE c:\WINDOWS\Prefetch\MSPAINT.EXE-11CBB631.pf CRE c:\WINDOWS\Prefetch\MTE3NDI6ODOXNG.EXE-0C5660D8.pf CRE c:\WINDOWS\Prefetch\NFOMON.EXE-1A757D76.pf CRE c:\WINDOWS\Prefetch\OPTIMIZE.EXE-0BEF8F3E.pf CRE c:\WINDOWS\Prefetch\OPTIMIZE.EXE-15C88E5A.pf CRE c:\WINDOWS\Prefetch\PAYTIME.EXE-326BBEE6.pf CRE c:\WINDOWS\Prefetch\PMFOIADK.EXE-12B4B5A7.pf CRE c:\WINDOWS\Prefetch\RUNDLL32.EXE-183241A4.pf CRE c:\WINDOWS\Prefetch\RUNDLL32.EXE-28A9EA24.pf CRE c:\WINDOWS\Prefetch\RUNDLL32.EXE-492F8754.pf CRE c:\WINDOWS\Prefetch\SERVICES.EXE-1760D46A.pf CRE c:\WINDOWS\Prefetch\STUB_113_4_0_4_0.EXE-32891155.pf CRE c:\WINDOWS\Prefetch\SYSVCS.EXE-150905C2.pf CRE c:\WINDOWS\Prefetch\TIMESSQUARE.EXE-36CB5458.pf CRE c:\WINDOWS\Prefetch\TOOL1.EXE-0CD23B85.pf CRE c:\WINDOWS\Prefetch\TOOL2.EXE-2CF952BB.pf CRE c:\WINDOWS\Prefetch\TOOL3.EXE-22058AF7.pf CRE c:\WINDOWS\Prefetch\TOOL4.EXE-17C60349.pf CRE c:\WINDOWS\Prefetch\TOOL5.EXE-3738DA69.pf CRE c:\WINDOWS\Prefetch\TOOLBAR.EXE-12053F3F.pf CRE c:\WINDOWS\Prefetch\TSINSTALL_4_0_4_0_B4.EXE-38D4C66A.pf CRE c:\WINDOWS\Prefetch\VCTRLIN.EXE-029E9CED.pf CRE c:\WINDOWS\Prefetch\VIDMON.EXE-1585EF1F.pf CRE c:\WINDOWS\Prefetch\WFWALL1.EXE-2A271CD2.pf CRE c:\WINDOWS\Prefetch\WINEXT.EXE-1037DB94.pf CRE c:\WINDOWS\Prefetch\WMFKA.EXE-061BE6A5.pf CRE c:\WINDOWS\Prefetch\WMFKL.EXE-3650E59F.pf CRE c:\WINDOWS\Prefetch\WMFKM.EXE-037AA8A1.pf CRE c:\WINDOWS\Prefetch\XXX.EXE-1864A93A.pf CRE c:\WINDOWS\Prefetch\Z11.EXE-00E4C2E2.pf CRE c:\WINDOWS\Prefetch\Z12.EXE-127F50C9.pf CRE c:\WINDOWS\Prefetch\Z14.EXE-27B2A03B.pf CRE c:\WINDOWS\Prefetch\Z15.EXE-1218EE05.pf CRE c:\WINDOWS\Prefetch\Z16.EXE-014B25A6.pf CRE c:\WINDOWS\Prefetch\~UPDATE.EXE-03BEB2D6.pf CRE c:\WINDOWS\SK@J CRE c:\WINDOWS\Temp\$_2341234.TMP CRE c:\WINDOWS\VGVzdA CRE c:\WINDOWS\VGVzdA\asappsrv.dll CRE c:\WINDOWS\VGVzdA\command.exe CRE c:\WINDOWS\VGVzdA\p3pWxE.vbs CRE c:\WINDOWS\adtech2005.exe CRE c:\WINDOWS\affbun.txt CRE c:\WINDOWS\desktop.html CRE c:\WINDOWS\drsmartload.dat CRE c:\WINDOWS\elos.exe CRE c:\WINDOWS\hammer.exe CRE c:\WINDOWS\hosts CRE c:\WINDOWS\inet20099 CRE c:\WINDOWS\inet20099\alg.exe CRE c:\WINDOWS\inet20099\cron.ini CRE c:\WINDOWS\inet20099\explorer.exe CRE c:\WINDOWS\inet20099\killer.exe CRE c:\WINDOWS\inet20099\mm.pid CRE c:\WINDOWS\inet20099\services.exe CRE c:\WINDOWS\inet20099\socks.exe CRE c:\WINDOWS\inet20099\tmp.req CRE c:\WINDOWS\inf\mvskey.PNF CRE c:\WINDOWS\kl.exe CRE c:\WINDOWS\loadclean.exe CRE c:\WINDOWS\mm83.ocx CRE c:\WINDOWS\mrjj.exe CRE c:\WINDOWS\ms1.exe CRE c:\WINDOWS\nem220.dll CRE c:\WINDOWS\optimize.exe CRE c:\WINDOWS\secure32.html CRE c:\WINDOWS\system32\1.exe CRE c:\WINDOWS\system32\2.exe CRE c:\WINDOWS\system32\3.exe CRE c:\WINDOWS\system32\SkyAffiliate.exe CRE c:\WINDOWS\system32\atmtd.dll CRE c:\WINDOWS\system32\atmtd.dll._ CRE c:\WINDOWS\system32\child.dll CRE c:\WINDOWS\system32\chke.dll CRE c:\WINDOWS\system32\cmd32.exe CRE c:\WINDOWS\system32\dcbfpbim.dll CRE c:\WINDOWS\system32\efsdfgxg.exe CRE c:\WINDOWS\system32\exeha2.exe CRE c:\WINDOWS\system32\exeha3.exe CRE c:\WINDOWS\system32\guard.tmp CRE c:\WINDOWS\system32\ide21201.vxd CRE c:\WINDOWS\system32\ll.exe CRE c:\WINDOWS\system32\mdms.exe CRE c:\WINDOWS\system32\nfomon CRE c:\WINDOWS\system32\nfomon\License.txt CRE c:\WINDOWS\system32\nfomon\nfo.ocx CRE c:\WINDOWS\system32\nfomon\nfom.dll CRE c:\WINDOWS\system32\nfomon\nfomon.exe CRE c:\WINDOWS\system32\paytime.exe CRE c:\WINDOWS\system32\pmfoiadk.exe CRE c:\WINDOWS\system32\rIsppp.dll CRE c:\WINDOWS\system32\search.html CRE c:\WINDOWS\system32\svcp.csv CRE c:\WINDOWS\system32\sysvcs.exe CRE c:\WINDOWS\system32\tsuninst.exe CRE c:\WINDOWS\system32\vidmon CRE c:\WINDOWS\system32\vidmon\vidmon.exe CRE c:\WINDOWS\system32\wfwall1.dat CRE c:\WINDOWS\system32\wfwall1.exe CRE c:\WINDOWS\system32\winacpi.dll CRE c:\WINDOWS\system32\winsub.xml CRE c:\WINDOWS\system32\z11.exe CRE c:\WINDOWS\system32\z12.exe CRE c:\WINDOWS\system32\z13.exe CRE c:\WINDOWS\system32\z14.exe CRE c:\WINDOWS\system32\z15.exe CRE c:\WINDOWS\system32\z16.exe CRE c:\WINDOWS\system32\zlbw.dll CRE c:\WINDOWS\system32\~update.exe CRE c:\WINDOWS\teller2.chk CRE c:\WINDOWS\tempf.txt CRE c:\WINDOWS\timessquare.exe CRE c:\WINDOWS\timessquare1.dat CRE c:\WINDOWS\tool2.exe CRE c:\WINDOWS\tool3.exe CRE c:\WINDOWS\tool4.exe CRE c:\WINDOWS\tool5.exe CRE c:\WINDOWS\toolbar.exe CRE c:\WINDOWS\uniq CRE c:\WINDOWS\unstall.exe CRE c:\WINDOWS\winext.exe CRE c:\WINDOWS\wmfk CRE c:\WINDOWS\wmfk\wmfk.dat CRE c:\WINDOWS\wmfk\wu CRE c:\a.bmp CRE c:\asdf.txt CRE c:\drsmartload1.exe CRE c:\ecsiin.stub.exe CRE c:\installer.exe CRE c:\mte3ndi6odoxng.exe CRE c:\secure32.html CRE c:\stub_113_4_0_4_0.exe CRE c:\winstall.exe CRE c:\xxx.exe DEL HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497} DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613 DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheLimit DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheOptions DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CachePath DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CachePrefix DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheRepair DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614 DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheLimit DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheOptions DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CachePath DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CachePrefix DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheRepair DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619 DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheLimit DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheOptions DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CachePath DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CachePrefix DEL HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheRepair DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497} DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613 DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheLimit DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheOptions DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CachePath DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CachePrefix DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005060620050613\CacheRepair DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614 DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheLimit DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheOptions DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CachePath DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CachePrefix DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061320050614\CacheRepair DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619 DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheLimit DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheOptions DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CachePath DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CachePrefix DEL HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012005061820050619\CacheRepair DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005060620050613 DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005060620050613\index.dat DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005061320050614 DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005061320050614\index.dat DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005061820050619 DEL c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\MSHist012005061820050619\index.dat MOD HKEY_CURRENT_USER\SessionInformation\ProgramCount MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\CurrentState MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\Flags MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\FriendlyName MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\OriginalStateInfo MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\Position MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\RestoredStateInfo MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\Source MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0\SubscribedURL MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\General\ComponentsPositioned MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperFileTime MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperLocalFileTime MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page MOD HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Placement MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\a MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\e MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\f MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\g MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\h MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\i MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\j MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz\Last used time MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Discardable\PostSetup\Component Categories\{00021493-0000-0000-C000-000000000046}\Enum\Implementing MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Discardable\PostSetup\Component Categories\{00021494-0000-0000-C000-000000000046}\Enum\Implementing MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FaultCount MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FaultTime MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\OpenWithList\MRUList MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\MRUListEx MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\MRUListEx MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\StartMenu_Balloon_Time MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Streams\Desktop\TaskbarWinXP MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\TrayNotify\IconStreams MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\TrayNotify\PastIconsStream MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_PGYFRFFVBA MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\Rgurerny\_ehargu.ong MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\Vagrearg Rkcybere\vrkcyber.rkr MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\uwg\UvwnpxGuvf.rkr MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Traiät gvyy UvwnpxGuvf.rkr.yax MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:::{2559N1S4-21Q7-11Q4-OQNS-00P04S60O9S0} MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHAPCY MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHAPCY:"P:\JVAQBJF\Flfgrz32\nccjvm.pcy",Yätt gvyy ryyre gn obeg cebtenz MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_HVFPHG MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_PGYFRFFVBA MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\MRUListEx MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\MRUListEx MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\MRUListEx MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\NodeSlots MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\3\Shell\MinPos800x600(1).x MOD HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\3\Shell\MinPos800x600(1).y MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\RNG\Seed MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Default_Page_URL MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Default_Search_URL MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\ErrorThresholds\403 MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\ErrorThresholds\404 MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\ErrorThresholds\410 MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\ErrorThresholds\500 MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Local Page MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Search Page MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\SearchAssistant MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\LastTraceFailure MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed MOD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ServiceCurrent\ MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\PendingFileRenameOperations MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\ActiveTimeBias MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dhcp\Parameters\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F} MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Sources MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\LeaseObtainedTime MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\LeaseTerminatesTime MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\T1 MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\T2 MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\LeaseObtainedTime MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\LeaseTerminatesTime MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\T1 MOD HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\T2 MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ServiceCurrent\ MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\PendingFileRenameOperations MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\TimeZoneInformation\ActiveTimeBias MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dhcp\Parameters\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F} MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Sources MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\LeaseObtainedTime MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\LeaseTerminatesTime MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\T1 MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\T2 MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\LeaseObtainedTime MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\LeaseTerminatesTime MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\T1 MOD HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{BC24B697-4C1E-4D3C-89B7-B171BA2A583F}\Parameters\Tcpip\T2 MOD HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache MOD HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cookies MOD HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\History MOD HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache MOD HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cookies MOD HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\History MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\SessionInformation\ProgramCount MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\CurrentState MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\Flags MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\FriendlyName MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\OriginalStateInfo MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\Position MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\RestoredStateInfo MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\Source MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\Components\0\SubscribedURL MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\General\ComponentsPositioned MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperFileTime MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Desktop\General\WallpaperLocalFileTime MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Local Page MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Search Page MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Start Page MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Internet Explorer\Main\Window_Placement MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\a MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\e MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\f MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\g MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\h MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\i MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\j MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz\Last used time MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Discardable\PostSetup\Component Categories\{00021493-0000-0000-C000-000000000046}\Enum\Implementing MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Discardable\PostSetup\Component Categories\{00021494-0000-0000-C000-000000000046}\Enum\Implementing MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FaultCount MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FaultTime MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\OpenWithList\MRUList MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\MRUListEx MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\MRUListEx MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\StartMenu_Balloon_Time MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Streams\Desktop\TaskbarWinXP MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\TrayNotify\IconStreams MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\TrayNotify\PastIconsStream MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_PGYFRFFVBA MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\Rgurerny\_ehargu.ong MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\Vagrearg Rkcybere\vrkcyber.rkr MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\Cebtenz\uwg\UvwnpxGuvf.rkr MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Traiät gvyy UvwnpxGuvf.rkr.yax MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACVQY:::{2559N1S4-21Q7-11Q4-OQNS-00P04S60O9S0} MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHAPCY MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHAPCY:"P:\JVAQBJF\Flfgrz32\nccjvm.pcy",Yätt gvyy ryyre gn obeg cebtenz MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_HVFPHG MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_PGYFRFFVBA MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\MRUListEx MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\MRUListEx MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\MRUListEx MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\BagMRU\NodeSlots MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\3\Shell\MinPos800x600(1).x MOD HKEY_USERS\S-1-5-21-1229272821-413027322-839522115-1003\Software\Microsoft\Windows\ShellNoRoam\Bags\3\Shell\MinPos800x600(1).y MOD c:\ MOD c:\Documents and Settings\All Users\Application Data MOD c:\Documents and Settings\All Users\Dokument\Mina bilder\Exempelbilder MOD c:\Documents and Settings\All Users\Start-meny\Program\Tillbehör\Paint.lnk MOD c:\Documents and Settings\Roger MOD c:\Documents and Settings\Roger\Application Data MOD c:\Documents and Settings\Roger\Application Data\Ethereal\recent MOD c:\Documents and Settings\Roger\Application Data\Microsoft MOD c:\Documents and Settings\Roger\Application Data\Microsoft\Internet Explorer\Desktop.htt MOD c:\Documents and Settings\Roger\Application Data\Microsoft\Protect MOD c:\Documents and Settings\Roger\Cookies MOD c:\Documents and Settings\Roger\Cookies\index.dat MOD c:\Documents and Settings\Roger\Lokala inställningar\Application Data\Identities\{33866AE5-4D35-49BC-993A-B7D29B1503DB}\Microsoft\Outlook Express\Folders.dbx MOD c:\Documents and Settings\Roger\Lokala inställningar\Application Data\Identities\{33866AE5-4D35-49BC-993A-B7D29B1503DB}\Microsoft\Outlook Express\Inkorgen.dbx MOD c:\Documents and Settings\Roger\Lokala inställningar\Application Data\Identities\{33866AE5-4D35-49BC-993A-B7D29B1503DB}\Microsoft\Outlook Express\Offline.dbx MOD c:\Documents and Settings\Roger\Lokala inställningar\Application Data\Identities\{33866AE5-4D35-49BC-993A-B7D29B1503DB}\Microsoft\Outlook Express\cleanup.log MOD c:\Documents and Settings\Roger\Lokala inställningar\Application Data\Microsoft\Windows\UsrClass.dat.LOG MOD c:\Documents and Settings\Roger\Lokala inställningar\Temp MOD c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\492F49EJ MOD c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\8XMJGLIZ MOD c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\C12FS9AV MOD c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\KHYB4HUB MOD c:\Documents and Settings\Roger\Lokala inställningar\Temporary Internet Files\Content.IE5\index.dat MOD c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5 MOD c:\Documents and Settings\Roger\Lokala inställningar\Tidigare\History.IE5\index.dat MOD c:\Documents and Settings\Roger\Mina dokument MOD c:\Documents and Settings\Roger\Mina dokument\Mina bilder MOD c:\Documents and Settings\Roger\NTUSER.DAT MOD c:\Documents and Settings\Roger\NTUSER.DAT.LOG MOD c:\Documents and Settings\Roger\Recent MOD c:\Documents and Settings\Roger\Skrivbord MOD c:\Program\Delade filer MOD c:\Program\Ethereal MOD c:\Program\Ethereal\snmp\mibs\.index MOD c:\Program\hjt MOD c:\Program\systemsherlock MOD c:\RECYCLER\S-1-5-21-1229272821-413027322-839522115-1003\INFO2 MOD c:\WINDOWS MOD c:\WINDOWS\Prefetch MOD c:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf MOD c:\WINDOWS\Prefetch\ETHEREAL.EXE-0D6AF674.pf MOD c:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf MOD c:\WINDOWS\Prefetch\HIJACKTHIS.EXE-06DDFE72.pf MOD c:\WINDOWS\Prefetch\IEXPLORE.EXE-350E1020.pf MOD c:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf MOD c:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf MOD c:\WINDOWS\Prefetch\REGSVR32.EXE-25EEFE2F.pf MOD c:\WINDOWS\Prefetch\RUNDLL32.EXE-27AF91C9.pf MOD c:\WINDOWS\Prefetch\SED.EXE-07C7F123.pf MOD c:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf MOD c:\WINDOWS\Prefetch\SYSTEMSHERLOCK.EXE-3ABE9B82.pf MOD c:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf MOD c:\WINDOWS\Temp MOD c:\WINDOWS\inf MOD c:\WINDOWS\system.ini MOD c:\WINDOWS\system32 MOD c:\WINDOWS\system32\config\default.LOG MOD c:\WINDOWS\system32\config\software MOD c:\WINDOWS\system32\config\software.LOG MOD c:\WINDOWS\system32\config\system MOD c:\WINDOWS\system32\config\system.LOG MOD c:\WINDOWS\system32\drivers MOD c:\WINDOWS\system32\wbem\Logs\wbemess.log MOD c:\WINDOWS\wiadebug.log MOD c:\WINDOWS\wiaservc.log Compare finished.