Regshot 1.9.0 x64 Unicode Comments: Datetime: 2020/10/13 07:59:53 , 2020/10/13 08:00:18 Computer: SRVHMI01 , SRVHMI01 Username: admin , admin ---------------------------------- Keys added: 6 ---------------------------------- HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ApplicationViewManagement\W32:00000000000907E2 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ApplicationViewManagement\W32:0000000000270804 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F} HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7} HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7} ---------------------------------- Values added: 29 ---------------------------------- HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShowRecent: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ApplicationViewManagement\W32:00000000000907E2\VirtualDesktop: 10 00 00 00 30 30 44 56 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ApplicationViewManagement\W32:0000000000270804\VirtualDesktop: 10 00 00 00 30 30 44 56 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\JumplistData\Microsoft.Windows.Explorer: ED 5F 36 E1 36 A1 D6 01 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F}\Type: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F}\Path: "C:\Users\admin\Desktop\Script SRVHMI" HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F}\DisplayName: "Script SRVHMI" HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F}\LastAccessedTime: 00 00 00 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{1B3D2024-B89B-40BC-A696-132FED0F4554}\RecentItems\{2565A28A-23C9-453F-907C-8C36A6B9B16F}\Points: 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\Mode: 0x00000004 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\LogicalViewMode: 0x00000001 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\FFlags: 0x41200001 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\IconSize: 0x00000010 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\Sort: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0A 00 00 00 01 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 10 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00 18 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0A 00 00 00 10 01 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0E 00 00 00 78 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 04 00 00 00 78 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0C 00 00 00 50 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupView: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByKey:FMTID: "{00000000-0000-0000-0000-000000000000}" HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByKey:PID: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByDirection: 0x00000001 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\Mode: 0x00000004 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\LogicalViewMode: 0x00000001 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\FFlags: 0x41200001 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\IconSize: 0x00000010 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\Sort: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0A 00 00 00 01 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 10 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00 18 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0A 00 00 00 10 01 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0E 00 00 00 78 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 04 00 00 00 78 00 00 00 30 F1 25 B7 EF 47 1A 10 A5 F1 02 60 8C 9E EB AC 0C 00 00 00 50 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupView: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByKey:FMTID: "{00000000-0000-0000-0000-000000000000}" HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByKey:PID: 0x00000000 HKU\S-1-5-21-236887692-3666527468-1055828070-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\75\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\GroupByDirection: 0x00000001 ---------------------------------- Values modified: 8 ---------------------------------- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{33967F1F-606F-440E-8503-630278A85455}\DynamicInfo: 03 00 00 00 ED 22 65 C7 EA 1D D4 01 30 48 DA C8 36 A1 D6 01 00 00 00 00 00 00 00 00 4E 8E D6 CB 36 A1 D6 01 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{33967F1F-606F-440E-8503-630278A85455}\DynamicInfo: 03 00 00 00 ED 22 65 C7 EA 1D D4 01 ED 5F 36 E1 36 A1 D6 01 00 00 00 00 00 00 00 00 E5 1C 36 E4 36 A1 D6 01 HKLM\SYSTEM\ControlSet001\Services\lfsvc\Components\PdcDb\32779: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKLM\SYSTEM\ControlSet001\Services\lfsvc\Components\PdcDb\32779: 01 00 00 00 00 00 00 00 5D C2 38 E1 36 A1 D6 01 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKLM\SYSTEM\CurrentControlSet\Services\lfsvc\Components\PdcDb\32779: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKLM\SYSTEM\CurrentControlSet\Services\lfsvc\Components\PdcDb\32779: 01 00 00 00 00 00 00 00 5D C2 38 E1 36 A1 D6 01 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\HRZR_PGYFRFFVBA: 00 00 00 00 3F 00 00 00 E8 00 00 00 2E BA BF 00 0E 00 00 00 15 00 00 00 A0 68 06 00 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 53 00 6E 00 69 00 70 00 70 00 69 00 6E 00 67 00 54 00 6F 00 6F 00 6C 00 2E 00 65 00 78 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 38 00 00 00 0C 41 2E 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2E 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2E 00 45 00 78 00 70 00 6C 00 6F 00 72 00 6 5 00 72 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 09 00 00 00 26 00 00 00 F1 5F 37 00 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 50 00 6F 00 77 00 65 00 72 00 53 00 68 00 65 00 6C 00 6C 00 5C 00 76 00 31 00 2E 00 30 00 5C 00 70 00 6F 00 77 00 65 00 72 00 73 00 68 00 65 00 6C 00 6C 00 2E 00 65 00 78 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0 0 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\HRZR_PGYFRFFVBA: 00 00 00 00 3F 00 00 00 EA 00 00 00 51 87 C0 00 0E 00 00 00 15 00 00 00 A0 68 06 00 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 53 00 6E 00 69 00 70 00 70 00 69 00 6E 00 67 00 54 00 6F 00 6F 00 6C 00 2E 00 65 00 78 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 39 00 00 00 E8 60 2E 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2E 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2E 00 45 00 78 00 70 00 6C 00 6F 00 72 00 6 5 00 72 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 09 00 00 00 26 00 00 00 F1 5F 37 00 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 50 00 6F 00 77 00 65 00 72 00 53 00 68 00 65 00 6C 00 6C 00 5C 00 76 00 31 00 2E 00 30 00 5C 00 70 00 6F 00 77 00 65 00 72 00 73 00 68 00 65 00 6C 00 6C 00 2E 00 65 00 78 00 65 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0 0 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.Jvaqbjf.Rkcybere: 00 00 00 00 02 00 00 00 38 00 00 00 0C 41 2E 00 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF FF FF FF FF C0 2B DA 05 2E A1 D6 01 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.Jvaqbjf.Rkcybere: 00 00 00 00 02 00 00 00 39 00 00 00 E8 60 2E 00 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF FF FF FF FF C0 2B DA 05 2E A1 D6 01 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\P:\Hfref\nqzva\Qrfxgbc\Fpevcg FEIUZV\vvv\Ertfubg-k64-Havpbqr.rkr: 00 00 00 00 01 00 00 00 01 00 00 00 00 00 00 00 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF FF FF FF FF 60 CC D7 C8 36 A1 D6 01 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\P:\Hfref\nqzva\Qrfxgbc\Fpevcg FEIUZV\vvv\Ertfubg-k64-Havpbqr.rkr: 00 00 00 00 01 00 00 00 02 00 00 00 47 AD 00 00 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF 00 00 80 BF FF FF FF FF 60 CC D7 C8 36 A1 D6 01 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\JumpListChangedAppIds: 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 6E 00 6F 00 74 00 65 00 70 00 61 00 64 00 2E 00 65 00 78 00 65 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\JumpListChangedAppIds: 7B 00 31 00 41 00 43 00 31 00 34 00 45 00 37 00 37 00 2D 00 30 00 32 00 45 00 37 00 2D 00 34 00 45 00 35 00 44 00 2D 00 42 00 37 00 34 00 34 00 2D 00 32 00 45 00 42 00 31 00 41 00 45 00 35 00 31 00 39 00 38 00 42 00 37 00 7D 00 5C 00 6E 00 6F 00 74 00 65 00 70 00 61 00 64 00 2E 00 65 00 78 00 65 00 00 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2E 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2E 00 45 00 78 00 70 00 6C 00 6F 00 72 00 65 00 72 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\Shell\Bags\1\Desktop\ItemPos1920x1080x96(1): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0E 00 00 00 02 00 00 00 14 00 1F 78 40 F0 5F 64 81 50 1B 10 9F 08 00 AA 00 2F 95 4E D6 01 00 00 42 03 00 00 64 00 31 00 00 00 00 00 4D 51 0B 3A 10 00 53 43 52 49 50 54 7E 31 00 00 4C 00 09 00 04 00 EF BE 4D 51 84 38 4D 51 0B 3A 2E 00 00 00 C9 09 00 00 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4E CD 42 00 53 00 63 00 72 00 69 00 70 00 74 00 20 00 53 00 52 00 56 00 48 00 4D 00 49 00 00 00 18 00 0E 00 00 00 6A 00 00 00 6A 00 32 00 F3 05 00 00 74 44 03 57 20 00 52 45 41 44 4D 45 7E 31 2E 4C 4E 4B 00 00 4E 00 09 00 04 00 EF BE 49 51 14 4F 49 51 14 4F 2E 00 00 00 9E F3 02 00 00 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 52 00 65 00 61 00 64 00 4D 00 65 00 5F 00 4F 00 53 00 53 00 2E 00 6C 00 6E 00 6B 00 00 00 1C 00 0E 00 00 00 6A 00 00 00 00 00 00 00 HKU\S-1-5-21-236887692-3666527468-1055828070-1001\SOFTWARE\Microsoft\Windows\Shell\Bags\1\Desktop\ItemPos1920x1080x96(1): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0E 00 00 00 02 00 00 00 14 00 1F 78 40 F0 5F 64 81 50 1B 10 9F 08 00 AA 00 2F 95 4E D6 01 00 00 42 03 00 00 64 00 31 00 00 00 00 00 4D 51 6A 3F 10 00 53 43 52 49 50 54 7E 31 00 00 4C 00 09 00 04 00 EF BE 4D 51 84 38 4D 51 6A 3F 2E 00 00 00 C9 09 00 00 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 BC D9 5F 00 53 00 63 00 72 00 69 00 70 00 74 00 20 00 53 00 52 00 56 00 48 00 4D 00 49 00 00 00 18 00 0E 00 00 00 6A 00 00 00 6A 00 32 00 F3 05 00 00 74 44 03 57 20 00 52 45 41 44 4D 45 7E 31 2E 4C 4E 4B 00 00 4E 00 09 00 04 00 EF BE 49 51 14 4F 49 51 14 4F 2E 00 00 00 9E F3 02 00 00 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 52 00 65 00 61 00 64 00 4D 00 65 00 5F 00 4F 00 53 00 53 00 2E 00 6C 00 6E 00 6B 00 00 00 1C 00 0E 00 00 00 6A 00 00 00 00 00 00 00 ---------------------------------- Total changes: 43 ----------------------------------