|
Key
|
Name
|
Value
|
Times
|
| HKLM\SOFTWARE\CLASSES\CLSID\{00021401-0000-0000-C000-000000000046}\INPROCSERVER32
|
|
shell32.dll
|
2 |
| HKLM\SOFTWARE\CLASSES\CLSID\{00021401-0000-0000-C000-000000000046}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\INPROCSERVER32
|
|
C:\WINDOWS\system32\mshtml.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\PROGID
|
|
htmlfile
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}\INPROCSERVER32
|
|
C:\WINDOWS\system32\mshtml.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3050F406-98B5-11CF-BB82-00AA00BDCE0B}\INPROCSERVER32
|
|
C:\WINDOWS\system32\mshtml.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3050F406-98B5-11CF-BB82-00AA00BDCE0B}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3CE74DE4-53D3-4D74-8B83-431B3828BA53}\INPROCSERVER32
|
|
C:\WINDOWS\system32\msctf.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{3CE74DE4-53D3-4D74-8B83-431B3828BA53}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\INPROCSERVER32
|
|
C:\WINDOWS\system32\msimtf.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\INPROCSERVER32
|
|
C:\WINDOWS\system32\urlmon.dll
|
2 |
| HKLM\SOFTWARE\CLASSES\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\INPROCSERVER32
|
ThreadingModel |
Both
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\INPROCSERVER32
|
|
C:\WINDOWS\system32\ieframe.dll
|
32 |
| HKLM\SOFTWARE\CLASSES\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELLFOLDER
|
WantsParseDisplayName |
|
5 |
| HKLM\SOFTWARE\CLASSES\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}\INPROCSERVER32
|
|
C:\WINDOWS\system32\ieframe.dll
|
2 |
| HKLM\SOFTWARE\CLASSES\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{A4B544A1-438D-4B41-9325-869523E2D6C7}\INPROCSERVER32
|
|
C:\WINDOWS\system32\msctf.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{A4B544A1-438D-4B41-9325-869523E2D6C7}\INPROCSERVER32
|
ThreadingModel |
Apartment
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{DF2FCE13-25EC-45BB-9D4C-CECD47C2430C}\INPROCSERVER32
|
|
C:\WINDOWS\system32\urlmon.dll
|
1 |
| HKLM\SOFTWARE\CLASSES\CLSID\{DF2FCE13-25EC-45BB-9D4C-CECD47C2430C}\INPROCSERVER32
|
ThreadingModel |
Both
|
1 |
| HKLM\SOFTWARE\CLASSES\INTERFACE\{000214E6-0000-0000-C000-000000000046}\PROXYSTUBCLSID32
|
|
{bf50b68e-29b8-4386-ae9c-9734d5117cd5}
|
1 |
| HKLM\SOFTWARE\CLASSES\INTERFACE\{79EAC9C4-BAF9-11CE-8C82-00AA004BA90B}\PROXYSTUBCLSID32
|
|
{B8DA6310-E19B-11D0-933C-00A0C90DCAA9}
|
1 |
| HKLM\SOFTWARE\CLASSES\INTERFACE\{93F2F68C-1D1B-11D3-A30E-00C04F79ABD1}\PROXYSTUBCLSID32
|
|
{bf50b68e-29b8-4386-ae9c-9734d5117cd5}
|
1 |
| HKLM\SOFTWARE\CLASSES\INTERFACE\{B722BCCB-4E68-101B-A2BC-00AA00404770}\PROXYSTUBCLSID32
|
|
{B8DA6310-E19B-11D0-933C-00A0C90DCAA9}
|
1 |
| HKLM\SOFTWARE\CLASSES\INTERFACE\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TYPELIB
|
|
{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
|
1 |
| HKLM\SOFTWARE\CLASSES\MIME\DATABASE\CONTENT TYPE\TEXT/HTML
|
Extension |
.htm
|
2 |
| HKLM\SOFTWARE\CLASSES\TYPELIB\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\WIN32
|
|
C:\WINDOWS\system32\ieframe.dll
|
1 |
| HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\about
|
CLSID |
{3050F406-98B5-11CF-BB82-00AA00BDCE0B}
|
24 |
| HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\res
|
CLSID |
{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
|
2 |
| HKLM\SOFTWARE\Microsoft\CTF\SystemShared
|
CUAS |
0
|
1 |
| HKLM\SOFTWARE\Microsoft\CTF\SystemShared\
|
CUAS |
0
|
1 |
| HKLM\SOFTWARE\Microsoft\CTF\TIP\\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Item\{5130A009-5540-4FCF-97EB-AAD33FC0EE09}
|
Description |
Proofing
|
1 |
| HKLM\SOFTWARE\Microsoft\CTF\TIP\\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Item\{7AE86BB7-262C-431E-9111-C974B6B7CAC3}
|
Description |
Smart Tag
|
1 |
| HKLM\SOFTWARE\Microsoft\CTF\TIP\\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Item\{C6DEBC0A-F2B2-4F17-930E-CA9FAFF4CD04}
|
Description |
Reference
|
1 |
| HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs
|
blank |
res://mshtml.dll/blank.htm
|
1 |
| HKLM\SOFTWARE\Microsoft\Internet Explorer\Setup
|
IExploreLastModifiedHigh |
29887276
|
1 |
| HKLM\SOFTWARE\Microsoft\Internet Explorer\Setup
|
IExploreLastModifiedLow |
2933474304
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE
|
|
C:\Program Files\Internet Explorer\IEXPLORE.EXE
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\OUTLOOK.EXE
|
Path |
C:\Program Files\Microsoft Office\OFFICE11\
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
EnablePunycode |
1
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
UrlEncoding |
0x00000000
|
2 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
|
.NET CLR 1.1.4322 |
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
|
.NET CLR 2.0.50727 |
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
|
.NET CLR 3.0.04506.30 |
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
|
InfoPath.1 |
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\UA Tokens
|
|
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\UA Tokens
|
MSN 2.0 |
|
1 |
| HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\UA Tokens
|
MSN 2.5 |
|
1 |
| HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters
|
Transports |
0x5400630070006900700000004e0065007400420049004f00530000000000
|
2 |
| HKLM\SYSTEM\WPA\MediaCenter
|
Installed |
0
|
2 |
| HKLM\Software\Classes\CLSID\{00021401-0000-0000-c000-000000000046}\InProcServer32
|
|
shell32.dll
|
1 |
| HKLM\Software\Classes\CLSID\{871c5380-42a0-1069-a2ea-08002b30309d}\InProcServer32
|
|
C:\WINDOWS\system32\ieframe.dll
|
31 |
| HKLM\Software\Microsoft\COM3
|
Com+Enabled |
1
|
2 |
| HKLM\Software\Microsoft\COM3
|
REGDBVersion |
0x0f00000000000000
|
26 |
| HKLM\Software\Microsoft\CTF\SystemShared
|
CUAS |
0
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
|
MenuText |
Sun Java Console
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
|
clsid |
{1FBA04EE-3024-11d2-8F1F-0000F87ABD16}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
|
BandCLSID |
{FF059E31-CC5A-4E2E-BF3B-96E929D65503}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
|
ButtonText |
Research
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
|
Default Visible |
Yes
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
|
Icon |
C:\PROGRA~1\MICROS~2\OFFICE11\REFBAR.ICO
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
|
clsid |
{E0DD6CAB-2D10-11D2-8F1A-0000F87ABD16}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E2E2DD38-D088-4134-82B7-F2BA38496583}
|
Exec |
%windir%\Network Diagnostic\xpnetdiag.exe
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E2E2DD38-D088-4134-82B7-F2BA38496583}
|
MenuText |
@xpsp3res.dll,-20001
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
ButtonText |
ICQ6
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
Default Visible |
YES
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
Exec |
C:\Program Files\ICQ6\ICQ.exe
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
Icon |
C:\Program Files\ICQ6\ICQ.exe,1040
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
MenuText |
ICQ6
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{E59EB121-F339-4851-A3BA-FE49C35617C2}
|
clsid |
{1FBA04EE-3024-11d2-8F1F-0000F87ABD16}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11D2-BB9E-00C04F795683}
|
ButtonText |
Messenger
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11D2-BB9E-00C04F795683}
|
Default Visible |
Yes
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11D2-BB9E-00C04F795683}
|
Exec |
C:\Program Files\Messenger\msmsgs.exe
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11D2-BB9E-00C04F795683}
|
Icon |
C:\Program Files\Messenger\msmsgs.exe,301
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11D2-BB9E-00C04F795683}
|
MenuText |
Windows Messenger
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}
|
clsid |
{1FBA04EE-3024-11D2-8F1F-0000F87ABD16}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583}
|
clsid |
{1FBA04EE-3024-11d2-8F1F-0000F87ABD16}
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Feed Discovery\
|
Type0 |
application/rss+xml
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Feed Discovery\
|
Type1 |
application/atom+xml
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS
|
* |
1
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL
|
* |
1
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\URL Compatibility\~/CONNWIZ.HTM
|
Compatibility Flags |
4
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\URL Compatibility\~/CWIZINTR.HTM
|
Compatibility Flags |
4
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Version Vector
|
IE |
7.0000
|
1 |
| HKLM\Software\Microsoft\Internet Explorer\Version Vector
|
VML |
1.0
|
1 |
| HKLM\Software\Microsoft\Rpc\SecurityService
|
10 |
secur32.dll
|
1 |
| HKLM\Software\Microsoft\Tracing
|
EnableConsoleTracing |
0
|
1 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
ConsoleTracingMask |
4294901760
|
2 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
EnableConsoleTracing |
0
|
2 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
EnableFileTracing |
0
|
2 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
FileDirectory |
%windir%\tracing
|
4 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
FileTracingMask |
4294901760
|
2 |
| HKLM\Software\Microsoft\Tracing\RASAPI32
|
MaxFileSize |
1048576
|
2 |
| HKLM\Software\Microsoft\Windows NT\CurrentVersion\IMM
|
Ime File |
msctfime.ime
|
1 |
| HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
|
AllUsersProfile |
All Users
|
4 |
| HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
|
DefaultUserProfile |
Default User
|
4 |
| HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
|
ProfilesDirectory |
%SystemDrive%\Documents and Settings
|
8 |
| HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1229272821-1004336348-527237240-1003
|
ProfileImagePath |
%SystemDrive%\Documents and Settings\user
|
4 |
| HKLM\Software\Microsoft\Windows\CurrentVersion
|
CommonFilesDir |
C:\Program Files\Common Files
|
4 |
| HKLM\Software\Microsoft\Windows\CurrentVersion
|
ProgramFilesDir |
C:\Program Files
|
4 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\ICWCONN1.EXE
|
Path |
C:\Program Files\Internet Explorer\Connection Wizard;
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
Common AppData |
%ALLUSERSPROFILE%\Application Data
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\
|
WarnOnIntranet |
1
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
|
PerUserItem |
1
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
|
PerUserItem |
1
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
|
PerUserItem |
1
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
* |
application/msword
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
** |
application/vnd.ms-excel
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
*** |
application/vnd.ms-powerpoint
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
0 |
image/gif
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
1 |
image/x-xbitmap
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
2 |
image/jpeg
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
3 |
image/pjpeg
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
application |
application/x-ms-application
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
flash |
application/x-shockwave-flash
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
xaml |
application/xaml+xml
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
xbap |
application/x-ms-xbap
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
|
xps |
application/vnd.ms-xpsdocument
|
3 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
|
DaysToKeep |
20
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\msn.com
|
|
|
1 |
| HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\msn.com\related
|
http |
4
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
|
AuthenticodeEnabled |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
|
DefaultLevel |
262144
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
|
PolicyScope |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
|
TransparentEnabled |
1
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}
|
HashAlg |
32771
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}
|
ItemData |
0x5eab304f957a49896a006c1c31154015
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}
|
ItemSize |
779
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}
|
SaferFlags |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}
|
HashAlg |
32771
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}
|
ItemData |
0x67b0d48b343a3fd3bce9dc646704f394
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}
|
ItemSize |
517
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}
|
SaferFlags |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}
|
HashAlg |
32771
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}
|
ItemData |
0x327802dcfef8c893dc8ab006dd847d1d
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}
|
ItemSize |
918
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}
|
SaferFlags |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}
|
HashAlg |
32771
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}
|
ItemData |
0xbd9a2adb42ebd8560e250e4df8162f67
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}
|
ItemSize |
229
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}
|
SaferFlags |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}
|
HashAlg |
32771
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}
|
ItemData |
0x386b085f84ecf669d36b956a22c01e80
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}
|
ItemSize |
370
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}
|
SaferFlags |
0
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}
|
ItemData |
%HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache%OLK*
|
1 |
| HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}
|
SaferFlags |
0
|
1 |
| HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName
|
ComputerName |
USER
|
6 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
Capabilities |
16464
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
Comment |
Digest SSPI Authentication Package
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
Name |
Digest
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
RpcId |
65535
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
TokenSize |
65535
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
Type |
49
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\digest.dll
|
Version |
1
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
Capabilities |
55
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
Comment |
DPA Security Package
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
Name |
DPA
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
RpcId |
17
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
TokenSize |
768
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
Type |
49
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll
|
Version |
1
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
Capabilities |
55
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
Comment |
MSN Security Package
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
Name |
MSN
|
2 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
RpcId |
18
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
TokenSize |
768
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
Type |
49
|
1 |
| HKLM\System\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll
|
Version |
1
|
1 |
| HKLM\System\CurrentControlSet\Control\Nls\CodePage
|
950 |
c_950.nls
|
1 |
| HKLM\System\CurrentControlSet\Control\ProductOptions
|
ProductType |
WinNT
|
1 |
| HKLM\System\CurrentControlSet\Control\SecurityProviders
|
SecurityProviders |
msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll
|
2 |
| HKLM\System\CurrentControlSet\Control\SecurityProviders\SaslProfiles
|
GSSAPI |
Kerberos
|
1 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
ComSpec |
%SystemRoot%\system32\cmd.exe
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
FP_NO_HOST_CHECK |
NO
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
NUMBER_OF_PROCESSORS |
1
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
OS |
Windows_NT
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
PATHEXT |
.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
PROCESSOR_ARCHITECTURE |
x86
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
PROCESSOR_IDENTIFIER |
x86 Family 6 Model 3 Stepping 3, GenuineIntel
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
PROCESSOR_LEVEL |
6
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
PROCESSOR_REVISION |
0303
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
Path |
%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
TEMP |
%SystemRoot%\TEMP
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
TMP |
%SystemRoot%\TEMP
|
8 |
| HKLM\System\CurrentControlSet\Control\Session Manager\Environment
|
windir |
%SystemRoot%
|
8 |
| HKLM\System\CurrentControlSet\Services\LDAP
|
LdapClientIntegrity |
1
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters
|
Domain |
|
2 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters
|
Hostname |
user
|
2 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters
|
UseDomainNameDevolution |
1
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock
|
HelperDllName |
%SystemRoot%\System32\wshtcpip.dll
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock
|
Mapping |
0x0b0000000300000002000000010000000600000002000000010000000000
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock
|
MaxSockaddrLength |
16
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock
|
MinSockaddrLength |
16
|
1 |
| HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock
|
UseDelayedAcceptance |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters
|
WinSock_Registry_Version |
2.0
|
4 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5
|
Num_Catalog_Entries |
3
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5
|
Serial_Access_Num |
4
|
2 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
DisplayString |
Tcpip
|
4 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
Enabled |
1
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
LibraryPath |
%SystemRoot%\System32\mswsock.dll
|
2 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
ProviderId |
0x409d05229e7ecf11ae5a00aa00a7112b
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
StoresServiceClassInfo |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
SupportedNameSpace |
12
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
|
Version |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
DisplayString |
NTDS
|
4 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
Enabled |
1
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
LibraryPath |
%SystemRoot%\System32\winrnr.dll
|
2 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
ProviderId |
0xee37263b80e5cf11a55500c04fd8d4ac
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
StoresServiceClassInfo |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
SupportedNameSpace |
32
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
|
Version |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
DisplayString |
Network Location Awareness (NLA) Namespace
|
4 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
Enabled |
1
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
LibraryPath |
%SystemRoot%\System32\mswsock.dll
|
2 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
ProviderId |
0x3a244266a83ba64abaa52e0bd71fdd83
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
StoresServiceClassInfo |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
SupportedNameSpace |
15
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
|
Version |
0
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9
|
Next_Catalog_Entry_ID |
1012
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9
|
Num_Catalog_Entries |
11
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9
|
Serial_Access_Num |
4
|
2 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004
|
PackedCatalogItem |
%SystemRoot%\system32\rsvpsp.d
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005
|
PackedCatalogItem |
%SystemRoot%\system32\rsvpsp.d
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011
|
PackedCatalogItem |
%SystemRoot%\system32\mswsock.
|
1 |
| HKLM\System\Setup
|
SystemSetupInProgress |
0
|
3 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Control Panel\International
|
NumShape |
1
|
4 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Environment
|
TEMP |
%USERPROFILE%\Local Settings\Temp
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Environment
|
TMP |
%USERPROFILE%\Local Settings\Temp
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
CertificateRevocation |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
DisableCachingOfSSLPages |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
EnableHttp1_1 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
EnableNegotiate |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
MimeExclusionListForCache |
multipart/mixed multipart/x-mixed-replace multipart/x-byteranges
|
4 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
SecureProtocols |
160
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
User Agent |
Mozilla/4.0 (compatible; MSIE 7.0; Win32)
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
WarnOnPost |
0x01000000
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
|
WarnOnZoneCrossing |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\International
|
AcceptLanguage |
en-us
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\International\Scripts\3
|
IEFixedFontName |
Courier New
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\International\Scripts\3
|
IEPropFontName |
Times New Roman
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
|
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} |
8195
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
|
{92780B25-18CC-41C8-B9BE-3C9C571A8263} |
8193
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
|
{E59EB121-F339-4851-A3BA-FE49C35617C2} |
8194
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
|
{FB5F1910-F110-11d2-BB9E-00C04F795683} |
8192
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
|
{e2e2dd38-d088-4134-82b7-f2ba38496583} |
8196
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Anchor Underline |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Disable Script Debugger |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Display Inline Images |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Play_Animations |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Play_Background_Sounds |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
UseClearType |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
Use_DlgBox_Colors |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Main
|
XMLHTTP |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel
|
|
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel
|
Contexts |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\New Windows
|
PopupMgr |
yes
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\PhishingFilter
|
Enabled |
2
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Security\P3Global
|
Enabled |
1
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Settings
|
Anchor Color |
0,0,255
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Settings
|
Anchor Color Visited |
128,0,128
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Internet Explorer\Settings
|
Use Anchor Hover Color |
No
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
|
ParseAutoexec |
1
|
4 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
|
Cache |
C:\Documents and Settings\user\Local Settings\Temporary Internet Files
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
AppData |
%USERPROFILE%\Application Data
|
3 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
Cache |
%USERPROFILE%\Local Settings\Temporary Internet Files
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
Cookies |
%USERPROFILE%\Cookies
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
History |
%USERPROFILE%\Local Settings\History
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
Local Settings |
%USERPROFILE%\Local Settings
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
|
Personal |
%USERPROFILE%\My Documents
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings
|
DisableCachingOfSSLPages |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings
|
ProxyEnable |
0
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings
|
UrlEncoding |
0
|
3 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
|
Signature |
Client UrlCache MMF Ver 5.2
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
|
CacheLimit |
163410
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
|
CachePrefix |
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
|
CacheLimit |
8192
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
|
CachePrefix |
Cookie:
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012008051620080517
|
CacheLimit |
8192
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012008051620080517
|
CacheOptions |
11
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012008051620080517
|
CachePath |
%USERPROFILE%\Local Settings\History\History.IE5\MSHist012008051620080517
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012008051620080517
|
CachePrefix |
:2008051620080517:
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012008051620080517
|
CacheRepair |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
|
CacheLimit |
1000
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
|
CacheOptions |
8
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
|
CachePath |
%USERPROFILE%\UserData
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
|
CachePrefix |
UserData
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
|
CacheRepair |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
|
CacheLimit |
8192
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
|
CacheOptions |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
|
CachePath |
%USERPROFILE%\Local Settings\Application Data\Microsoft\Feeds Cache
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
|
CachePrefix |
feedplat:
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
|
CacheRepair |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
|
CacheLimit |
8192
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
|
CachePrefix |
Visited:
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
|
AutoDetect |
1
|
4 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
|
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
@ivt |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
file |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
ftp |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
http |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
https |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\\ProtocolDefaults\
|
shell |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
|
Flags |
33
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
|
Flags |
475
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
|
Flags |
71
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1001 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1004 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1201 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1800 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1804 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1806 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1809 |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1A10 |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
1E05 |
131072
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
|
Flags |
1
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1001 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1004 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1200 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1201 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1405 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1800 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1803 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1804 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1806 |
3
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
1E05 |
65536
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
|
Flags |
3
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached
|
{871C5380-42A0-1069-A2EA-08002B30309D} {000214E6-0000-0000-C000-000000000046} 0x401 |
0x01000000310032003a893fef1312c801
|
31 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\windows\CurrentVersion\Internet Settings
|
MigrateProxy |
1
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\windows\CurrentVersion\Internet Settings
|
ProxyEnable |
0
|
1 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
|
DefaultConnectionSettings |
0x3c0000000200000001000000000000000000000000000000040000000000
|
2 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
|
SavedLegacySettings |
0x460000006700000001000000000000000000000000000000040000000000
|
4 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
APPDATA |
C:\Documents and Settings\user\Application Data
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
CLIENTNAME |
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
HOMEDRIVE |
C:
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
HOMEPATH |
\Documents and Settings\user
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
HOMESHARE |
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
LOGONSERVER |
\\USER
|
8 |
| HKU\S-1-5-21-1229272821-1004336348-527237240-1003\Volatile Environment
|
SESSIONNAME |
Console
|
8 |