[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] "NoAddingComponents"= 0x0000000001 (1) "NoComponents"= 0x0000000001 (1) [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\run] (No values found) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDriveTypeAutoRun"= 0x0000000091 (145) "NoDrives"= 0x0000000000 (0) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32Info.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cqw32.exe] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DllNXOptions] "mscoree.dll"= 0x0000000001 (1) "mscorwks.dll"= 0x0000000001 (1) "mso.dll"= 0x0000000001 (1) "msjava.dll"= 0x0000000001 (1) "msci_uno.dll"= 0x0000000001 (1) "jvm.dll"= 0x0000000001 (1) "jvm_g.dll"= 0x0000000001 (1) "javai.dll"= 0x0000000001 (1) "vb40032.dll"= 0x0000000001 (1) "vbe6.dll"= 0x0000000001 (1) "ums.dll"= 0x0000000001 (1) "main123w.dll"= 0x0000000001 (1) "udtapi.dll"= 0x0000000001 (1) "mscorsvr.dll"= 0x0000000001 (1) "eMigrationmmc.dll"= 0x0000000001 (1) "eProcedureMMC.dll"= 0x0000000001 (1) "eQueryMMC.dll"= 0x0000000001 (1) "EncryptPatchVer.dll"= 0x0000000001 (1) "Cleanup.dll"= 0x0000000001 (1) "divx.dll"= 0x0000000001 (1) "divxdec.ax"= 0x0000000001 (1) "fullsoft.dll"= 0x0000000001 (1) "NSWSTE.dll"= 0x0000000001 (1) "ASSTE.dll"= 0x0000000001 (1) "NPMLIC.dll"= 0x0000000001 (1) "PMSTE.dll"= 0x0000000001 (1) "AVSTE.dll"= 0x0000000001 (1) "NAVOPTRF.dll"= 0x0000000001 (1) "DRMINST.dll"= 0x0000000001 (1) "TFDTCTT8.dll"= 0x0000000001 (1) "DJSMAR00.dll"= 0x0000000001 (1) "xlmlEN.dll"= 0x0000000001 (1) "ISSTE.dll"= 0x0000000001 (1) "symlcnet.dll"= 0x0000000001 (1) "ppw32hlp.dll"= 0x0000000001 (1) "Apitrap.dll"= 0x0000000001 (1) "Vegas60k.dll"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerApp.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerPlugin_24_0_0_194.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerUpdateService.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_24_0_0_194_ActiveX.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_24_0_0_194_Plugin.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_24_0_0_194_ActiveX.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_24_0_0_194_Plugin.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IEInstal.exe] "ExecuteOptions"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wpwin8.EXE] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "ReportBootOk"="1" "Shell"="Explorer.exe" "PreCreateKnownFolders"="{A520A1A4-1780-4FF6-BD18-167343C5AF16}" "Userinit"="C:\Windows\system32\userinit.exe," "VMApplet"="SystemPropertiesPerformance.exe /pagefile" "AutoRestartShell"= 0x0000000001 (1) "Background"="0 0 0" "CachedLogonsCount"="10" "DebugServerCommand"="no" "ForceUnlockLogon"= 0x0000000000 (0) "LegalNoticeCaption"="" "LegalNoticeText"="" "PasswordExpiryWarning"= 0x0000000005 (5) "PowerdownAfterShutdown"="0" "ShutdownWithoutLogon"="0" "WinStationsDisabled"="0" "DisableCAD"= 0x0000000001 (1) "scremoveoption"="0" "ShutdownFlags"= 0x000000002b (43) "AutoAdminLogon"="0" "DefaultUserName"="Siegmund" "LegalNotice Text"="" "SFCDisable"= 0x0000000000 (0) "System"="" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] @="Wireless Group Policy" "DisplayName"="@wlgpclnt.dll,-100" "ProcessGroupPolicyEx"="ProcessWLANPolicyEx" "GenerateGroupPolicy"="GenerateWLANPolicy" "DllName"="wlgpclnt.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861}] @="Folder Redirection" "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "DllName"="fdeploy.dll" "NoMachinePolicy"= 0x0000000001 (1) "NoSlowLink"= 0x0000000001 (1) "PerUserLocalSettings"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000000 (0) "NoBackgroundPolicy"= 0x0000000000 (0) "GenerateGroupPolicy"="GenerateGroupPolicy" "EventSources"="(Folder Redirection,Application)" "DisplayName"="@fdeploy.dll,-261" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66}] @="Microsoft Disk Quota" "DisplayName"="@%SystemRoot%\System32\dskquota.dll,-100" "NoMachinePolicy"= 0x0000000000 (0) "NoUserPolicy"= 0x0000000001 (1) "NoSlowLink"= 0x0000000001 (1) "NoBackgroundPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "PerUserLocalSettings"= 0x0000000000 (0) "RequiresSuccessfulRegistry"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000000 (0) "DllName"="%SystemRoot%\System32\dskquota.dll" "ProcessGroupPolicy"="ProcessGroupPolicy" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] @="QoS Packet Scheduler" "DisplayName"="@gptext.dll,-201" "ProcessGroupPolicy"="ProcessPSCHEDPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d}] @="Remote Desktop USB Redirection" "DllName"="%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "NoGPOListChanges"= 0x0000000001 (1) "NoUserPolicy"= 0x0000000001 (1) "DisplayName"="@%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100" "NoBackgroundPolicy"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3}] @="Internet Explorer Zonemapping" "ProcessGroupPolicy"="ProcessGroupPolicyForZoneMap" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93}] @="Windows Search Group Policy Extension" "ProcessGroupPolicy"="ProcessGroupPolicy" "DllName"="%SystemRoot%\System32\srchadmin.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "NoSlowLink"= 0x0000000000 (0) "NoGPOListChanges"= 0x0000000001 (1) "NoUserPolicy"= 0x0000000000 (0) "NoMachinePolicy"= 0x0000000000 (0) "PerUserLocalSettings"= 0x0000000000 (0) "EnableAsynchronousProcessing"= 0x0000000001 (1) "NoBackgroundPolicy"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE}] @="Internet Explorer User Accelerators" "ProcessGroupPolicy"="ProcessGroupPolicyForActivities" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyForActivitiesEx" "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] @="Security" "DisplayName"="@(runtime.system32)\scecli.dll,-7650" "ProcessGroupPolicy"="SceProcessSecurityPolicyGPO" "GenerateGroupPolicy"="SceGenerateGroupPolicy" "ExtensionRsopPlanningDebugLevel"= 0x0000000001 (1) "ProcessGroupPolicyEx"="SceProcessSecurityPolicyGPOEx" "ExtensionDebugLevel"= 0x0000000001 (1) "DllName"="scecli.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000001 (1) "MaxNoGPOListChangesInterval"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17}] @="Deployed Printer Connections" "DisplayName"="@%systemroot%\system32\gpprnext.dll,-1" "DllName"="%systemroot%\system32\gpprnext.dll" "EnableAsynchronousProcessing"= 0x0000000001 (1) "ExtensionEventSource"="" "GenerateGroupPolicy"="PrinterGenerateGroupPolicy" "MaxNoGPOListChangesInterval"= 0x0000000000 (0) "NoBackgroundPolicy"= 0x0000000000 (0) "NoGPOListChanges"= 0x0000000000 (0) "NoMachinePolicy"= 0x0000000000 (0) "NoSlowLink"= 0x0000000001 (1) "NotifyLinkTransition"= 0x0000000000 (0) "NoUserPolicy"= 0x0000000000 (0) "PerUserLocalSettings"= 0x0000000000 (0) "ProcessGroupPolicy"="PrinterProcessGroupPolicy" "ProcessGroupPolicyEx"="PrinterProcessGroupPolicyEx" "RequiresSuccessfulRegistry"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] @="802.3 Group Policy" "DisplayName"="@dot3gpclnt.dll,-100" "ProcessGroupPolicyEx"="ProcessLANPolicyEx" "GenerateGroupPolicy"="GenerateLANPolicy" "DllName"="dot3gpclnt.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] @="TCPIP" "DisplayName"="@gptext.dll,-204" "ProcessGroupPolicy"="ProcessTCPIPPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}] @="Internet Explorer Machine Accelerators" "ProcessGroupPolicy"="ProcessGroupPolicyForActivities" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyForActivitiesEx" "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27}] @="IP Security" "ProcessGroupPolicyEx"="ProcessIPSECPolicyEx" "GenerateGroupPolicy"="GenerateIPSECPolicy" "DllName"="%SystemRoot%\System32\polstore.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000000 (0) "DisplayName"="@C:\Windows\system32\polstore.dll,-5012" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a}] @="Audit Policy Configuration" "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "GenerateGroupPolicy"="GenerateGroupPolicy" "DllName"="auditcse.dll" "NoUserPolicy"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000001 (1) "MaxNoGPOListChangesInterval"= 0x00000003c0 (960) "ForceRefreshFG"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C}] @="Enterprise QoS" "DisplayName"="@gptext.dll,-203" "ProcessGroupPolicy"="ProcessEQoSPolicy" "DllName"="gptext.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] @="CP" "DisplayName"="@gptext.dll,-205" "ProcessGroupPolicy"="ProcessConnectivityPlatformPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] @="" "DLLName"="igfxdev.dll" "Asynchronous"= 0x0000000001 (1) "Impersonate"= 0x0000000001 (1) "Unlock"="WinlogonUnlockEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts\UserList] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoLogonChecked] (No values found) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "!Do not use this registry key"="Use the SHGetFolderPath or SHGetKnownFolderPath function instead" "AppData"="C:\Users\Administrator\AppData\Roaming" "Local AppData"="C:\Users\Administrator\AppData\Local" "My Video"="C:\Users\Administrator\Videos" "{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Libraries" "My Pictures"="C:\Users\Administrator\Pictures" "Desktop"="C:\Users\Administrator\Desktop" "History"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\History" "NetHood"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "{56784854-C6CB-462B-8169-88E350ACB882}"="C:\Users\Administrator\Contacts" "Cookies"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies" "Favorites"="C:\Users\Administrator\Favorites" "SendTo"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo" "Start Menu"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu" "My Music"="C:\Users\Administrator\Music" "Programs"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Recent" "CD Burning"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\Burn\Burn1" "PrintHood"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" "{7D1D3A04-DEBB-4115-95CF-2F29DA2920DA}"="C:\Users\Administrator\Searches" "{374DE290-123F-4565-9164-39C4925E467B}"="C:\Users\Administrator\Downloads" "{A520A1A4-1780-4FF6-BD18-167343C5AF16}"="C:\Users\Administrator\AppData\LocalLow" "Startup"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Administrative Tools"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Personal"="C:\Users\Administrator\Documents" "{BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968}"="C:\Users\Administrator\Links" "Cache"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Templates"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Templates" "{4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4}"="C:\Users\Administrator\Saved Games" "Fonts"="C:\Windows\Fonts" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "AppData"="%USERPROFILE%\AppData\Roaming" "Cache"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Cookies"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies" "Desktop"="%USERPROFILE%\Desktop" "Favorites"="%USERPROFILE%\Favorites" "History"="%USERPROFILE%\AppData\Local\Microsoft\Windows\History" "Local AppData"="%USERPROFILE%\AppData\Local" "My Music"="%USERPROFILE%\Music" "My Pictures"="%USERPROFILE%\Pictures" "My Video"="%USERPROFILE%\Videos" "NetHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "Personal"="%USERPROFILE%\Documents" "Programs"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent" "SendTo"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo" "Startup"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Start Menu"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu" "Templates"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates" "{374DE290-123F-4565-9164-39C4925E467B}"="%USERPROFILE%\Downloads" "PrintHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" "CD Burning"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Burn\Burn1" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] (No values found) [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "AppData"="%USERPROFILE%\AppData\Roaming" "Desktop"="%USERPROFILE%\Desktop" "Favorites"="%USERPROFILE%\Favorites" "NetHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "Personal"="%USERPROFILE%\Documents" "My Pictures"="%USERPROFILE%\Pictures" "My Music"="%USERPROFILE%\Music" "My Video"="%USERPROFILE%\Videos" "{374DE290-123F-4565-9164-39C4925E467B}"="%USERPROFILE%\Downloads" "Programs"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent" "SendTo"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo" "Start Menu"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu" "Startup"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Templates"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates" "Cookies"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies" "Local AppData"="%USERPROFILE%\AppData\Local" "Cache"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files" "History"="%USERPROFILE%\AppData\Local\Microsoft\Windows\History" "PrintHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" [HKEY_USERS\S-1-5-21-zmienne numerki\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] (Unable to open key - key not found) [HKEY_USERS\S-1-5-21-zmienne numerki\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] (Unable to open key - key not found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "Common Desktop"="C:\Users\Public\Desktop" "Common Start Menu"="C:\ProgramData\Microsoft\Windows\Start Menu" "CommonVideo"="C:\Users\Public\Videos" "CommonPictures"="C:\Users\Public\Pictures" "Common Programs"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs" "CommonMusic"="C:\Users\Public\Music" "Common Administrative Tools"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Common Startup"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "Common Documents"="C:\Users\Public\Documents" "OEM Links"="C:\ProgramData\OEM Links" "Common Templates"="C:\ProgramData\Microsoft\Windows\Templates" "Common AppData"="C:\ProgramData" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "Common Desktop"="%PUBLIC%\Desktop" "Common Documents"="%PUBLIC%\Documents" "CommonPictures"="%PUBLIC%\Pictures" "CommonMusic"="%PUBLIC%\Music" "CommonVideo"="%PUBLIC%\Videos" "{3D644C9B-1FB8-4f30-9B45-F670235F79C0}"="%PUBLIC%\Downloads" "Common Start Menu"="%ProgramData%\Microsoft\Windows\Start Menu" "Common Programs"="%ProgramData%\Microsoft\Windows\Start Menu\Programs" "Common Startup"="%ProgramData%\Microsoft\Windows\Start Menu\Programs\Startup" "Common AppData"="%ProgramData%" "Common Templates"="%ProgramData%\Microsoft\Windows\Templates" -= EOF =- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] "NoAddingComponents"= 0x0000000001 (1) "NoComponents"= 0x0000000001 (1) [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\run] (No values found) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDriveTypeAutoRun"= 0x0000000091 (145) "NoDrives"= 0x0000000000 (0) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32Info.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cqw32.exe] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DllNXOptions] "mscoree.dll"= 0x0000000001 (1) "mscorwks.dll"= 0x0000000001 (1) "mso.dll"= 0x0000000001 (1) "msjava.dll"= 0x0000000001 (1) "msci_uno.dll"= 0x0000000001 (1) "jvm.dll"= 0x0000000001 (1) "jvm_g.dll"= 0x0000000001 (1) "javai.dll"= 0x0000000001 (1) "vb40032.dll"= 0x0000000001 (1) "vbe6.dll"= 0x0000000001 (1) "ums.dll"= 0x0000000001 (1) "main123w.dll"= 0x0000000001 (1) "udtapi.dll"= 0x0000000001 (1) "mscorsvr.dll"= 0x0000000001 (1) "eMigrationmmc.dll"= 0x0000000001 (1) "eProcedureMMC.dll"= 0x0000000001 (1) "eQueryMMC.dll"= 0x0000000001 (1) "EncryptPatchVer.dll"= 0x0000000001 (1) "Cleanup.dll"= 0x0000000001 (1) "divx.dll"= 0x0000000001 (1) "divxdec.ax"= 0x0000000001 (1) "fullsoft.dll"= 0x0000000001 (1) "NSWSTE.dll"= 0x0000000001 (1) "ASSTE.dll"= 0x0000000001 (1) "NPMLIC.dll"= 0x0000000001 (1) "PMSTE.dll"= 0x0000000001 (1) "AVSTE.dll"= 0x0000000001 (1) "NAVOPTRF.dll"= 0x0000000001 (1) "DRMINST.dll"= 0x0000000001 (1) "TFDTCTT8.dll"= 0x0000000001 (1) "DJSMAR00.dll"= 0x0000000001 (1) "xlmlEN.dll"= 0x0000000001 (1) "ISSTE.dll"= 0x0000000001 (1) "symlcnet.dll"= 0x0000000001 (1) "ppw32hlp.dll"= 0x0000000001 (1) "Apitrap.dll"= 0x0000000001 (1) "Vegas60k.dll"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerApp.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerPlugin_24_0_0_194.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerUpdateService.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_24_0_0_194_ActiveX.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_24_0_0_194_Plugin.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_24_0_0_194_ActiveX.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_24_0_0_194_Plugin.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe] "DisableExceptionChainValidation"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IEInstal.exe] "ExecuteOptions"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wpwin8.EXE] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "ReportBootOk"="1" "Shell"="Explorer.exe" "PreCreateKnownFolders"="{A520A1A4-1780-4FF6-BD18-167343C5AF16}" "Userinit"="C:\Windows\system32\userinit.exe," "VMApplet"="SystemPropertiesPerformance.exe /pagefile" "AutoRestartShell"= 0x0000000001 (1) "Background"="0 0 0" "CachedLogonsCount"="10" "DebugServerCommand"="no" "ForceUnlockLogon"= 0x0000000000 (0) "LegalNoticeCaption"="" "LegalNoticeText"="" "PasswordExpiryWarning"= 0x0000000005 (5) "PowerdownAfterShutdown"="0" "ShutdownWithoutLogon"="0" "WinStationsDisabled"="0" "DisableCAD"= 0x0000000001 (1) "scremoveoption"="0" "ShutdownFlags"= 0x000000002b (43) "AutoAdminLogon"="0" "DefaultUserName"="Siegmund" "LegalNotice Text"="" "SFCDisable"= 0x0000000000 (0) "System"="" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] @="Wireless Group Policy" "DisplayName"="@wlgpclnt.dll,-100" "ProcessGroupPolicyEx"="ProcessWLANPolicyEx" "GenerateGroupPolicy"="GenerateWLANPolicy" "DllName"="wlgpclnt.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861}] @="Folder Redirection" "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "DllName"="fdeploy.dll" "NoMachinePolicy"= 0x0000000001 (1) "NoSlowLink"= 0x0000000001 (1) "PerUserLocalSettings"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000000 (0) "NoBackgroundPolicy"= 0x0000000000 (0) "GenerateGroupPolicy"="GenerateGroupPolicy" "EventSources"="(Folder Redirection,Application)" "DisplayName"="@fdeploy.dll,-261" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{35378EAC-683F-11D2-A89A-00C04FBBCFA2}] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66}] @="Microsoft Disk Quota" "DisplayName"="@%SystemRoot%\System32\dskquota.dll,-100" "NoMachinePolicy"= 0x0000000000 (0) "NoUserPolicy"= 0x0000000001 (1) "NoSlowLink"= 0x0000000001 (1) "NoBackgroundPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "PerUserLocalSettings"= 0x0000000000 (0) "RequiresSuccessfulRegistry"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000000 (0) "DllName"="%SystemRoot%\System32\dskquota.dll" "ProcessGroupPolicy"="ProcessGroupPolicy" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] @="QoS Packet Scheduler" "DisplayName"="@gptext.dll,-201" "ProcessGroupPolicy"="ProcessPSCHEDPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d}] @="Remote Desktop USB Redirection" "DllName"="%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "NoGPOListChanges"= 0x0000000001 (1) "NoUserPolicy"= 0x0000000001 (1) "DisplayName"="@%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100" "NoBackgroundPolicy"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3}] @="Internet Explorer Zonemapping" "ProcessGroupPolicy"="ProcessGroupPolicyForZoneMap" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93}] @="Windows Search Group Policy Extension" "ProcessGroupPolicy"="ProcessGroupPolicy" "DllName"="%SystemRoot%\System32\srchadmin.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "NoSlowLink"= 0x0000000000 (0) "NoGPOListChanges"= 0x0000000001 (1) "NoUserPolicy"= 0x0000000000 (0) "NoMachinePolicy"= 0x0000000000 (0) "PerUserLocalSettings"= 0x0000000000 (0) "EnableAsynchronousProcessing"= 0x0000000001 (1) "NoBackgroundPolicy"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE}] @="Internet Explorer User Accelerators" "ProcessGroupPolicy"="ProcessGroupPolicyForActivities" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyForActivitiesEx" "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] @="Security" "DisplayName"="@(runtime.system32)\scecli.dll,-7650" "ProcessGroupPolicy"="SceProcessSecurityPolicyGPO" "GenerateGroupPolicy"="SceGenerateGroupPolicy" "ExtensionRsopPlanningDebugLevel"= 0x0000000001 (1) "ProcessGroupPolicyEx"="SceProcessSecurityPolicyGPOEx" "ExtensionDebugLevel"= 0x0000000001 (1) "DllName"="scecli.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000001 (1) "MaxNoGPOListChangesInterval"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17}] @="Deployed Printer Connections" "DisplayName"="@%systemroot%\system32\gpprnext.dll,-1" "DllName"="%systemroot%\system32\gpprnext.dll" "EnableAsynchronousProcessing"= 0x0000000001 (1) "ExtensionEventSource"="" "GenerateGroupPolicy"="PrinterGenerateGroupPolicy" "MaxNoGPOListChangesInterval"= 0x0000000000 (0) "NoBackgroundPolicy"= 0x0000000000 (0) "NoGPOListChanges"= 0x0000000000 (0) "NoMachinePolicy"= 0x0000000000 (0) "NoSlowLink"= 0x0000000001 (1) "NotifyLinkTransition"= 0x0000000000 (0) "NoUserPolicy"= 0x0000000000 (0) "PerUserLocalSettings"= 0x0000000000 (0) "ProcessGroupPolicy"="PrinterProcessGroupPolicy" "ProcessGroupPolicyEx"="PrinterProcessGroupPolicyEx" "RequiresSuccessfulRegistry"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] @="802.3 Group Policy" "DisplayName"="@dot3gpclnt.dll,-100" "ProcessGroupPolicyEx"="ProcessLANPolicyEx" "GenerateGroupPolicy"="GenerateLANPolicy" "DllName"="dot3gpclnt.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] @="TCPIP" "DisplayName"="@gptext.dll,-204" "ProcessGroupPolicy"="ProcessTCPIPPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}] @="Internet Explorer Machine Accelerators" "ProcessGroupPolicy"="ProcessGroupPolicyForActivities" "DllName"="C:\Windows\System32\iedkcs32.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) "ProcessGroupPolicyEx"="ProcessGroupPolicyForActivitiesEx" "NoGPOListChanges"= 0x0000000001 (1) "DisplayName"="@C:\Windows\System32\iedkcs32.dll,-3051" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27}] @="IP Security" "ProcessGroupPolicyEx"="ProcessIPSECPolicyEx" "GenerateGroupPolicy"="GenerateIPSECPolicy" "DllName"="%SystemRoot%\System32\polstore.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000000 (0) "DisplayName"="@C:\Windows\system32\polstore.dll,-5012" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a}] @="Audit Policy Configuration" "ProcessGroupPolicyEx"="ProcessGroupPolicyEx" "GenerateGroupPolicy"="GenerateGroupPolicy" "DllName"="auditcse.dll" "NoUserPolicy"= 0x0000000001 (1) "EnableAsynchronousProcessing"= 0x0000000001 (1) "MaxNoGPOListChangesInterval"= 0x00000003c0 (960) "ForceRefreshFG"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C}] @="Enterprise QoS" "DisplayName"="@gptext.dll,-203" "ProcessGroupPolicy"="ProcessEQoSPolicy" "DllName"="gptext.dll" "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] @="CP" "DisplayName"="@gptext.dll,-205" "ProcessGroupPolicy"="ProcessConnectivityPlatformPolicy" "DllName"="gptext.dll" "NoUserPolicy"= 0x0000000001 (1) "NoGPOListChanges"= 0x0000000001 (1) "RequiresSuccessfulRegistry"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] @="" "DLLName"="igfxdev.dll" "Asynchronous"= 0x0000000001 (1) "Impersonate"= 0x0000000001 (1) "Unlock"="WinlogonUnlockEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts\UserList] (No values found) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoLogonChecked] (No values found) [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "!Do not use this registry key"="Use the SHGetFolderPath or SHGetKnownFolderPath function instead" "AppData"="C:\Users\Administrator\AppData\Roaming" "Local AppData"="C:\Users\Administrator\AppData\Local" "My Video"="C:\Users\Administrator\Videos" "{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Libraries" "My Pictures"="C:\Users\Administrator\Pictures" "Desktop"="C:\Users\Administrator\Desktop" "History"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\History" "NetHood"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "{56784854-C6CB-462B-8169-88E350ACB882}"="C:\Users\Administrator\Contacts" "Cookies"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies" "Favorites"="C:\Users\Administrator\Favorites" "SendTo"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo" "Start Menu"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu" "My Music"="C:\Users\Administrator\Music" "Programs"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Recent" "CD Burning"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\Burn\Burn1" "PrintHood"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" "{7D1D3A04-DEBB-4115-95CF-2F29DA2920DA}"="C:\Users\Administrator\Searches" "{374DE290-123F-4565-9164-39C4925E467B}"="C:\Users\Administrator\Downloads" "{A520A1A4-1780-4FF6-BD18-167343C5AF16}"="C:\Users\Administrator\AppData\LocalLow" "Startup"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Administrative Tools"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Personal"="C:\Users\Administrator\Documents" "{BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968}"="C:\Users\Administrator\Links" "Cache"="C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Templates"="C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Templates" "{4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4}"="C:\Users\Administrator\Saved Games" "Fonts"="C:\Windows\Fonts" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "AppData"="%USERPROFILE%\AppData\Roaming" "Cache"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files" "Cookies"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies" "Desktop"="%USERPROFILE%\Desktop" "Favorites"="%USERPROFILE%\Favorites" "History"="%USERPROFILE%\AppData\Local\Microsoft\Windows\History" "Local AppData"="%USERPROFILE%\AppData\Local" "My Music"="%USERPROFILE%\Music" "My Pictures"="%USERPROFILE%\Pictures" "My Video"="%USERPROFILE%\Videos" "NetHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "Personal"="%USERPROFILE%\Documents" "Programs"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent" "SendTo"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo" "Startup"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Start Menu"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu" "Templates"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates" "{374DE290-123F-4565-9164-39C4925E467B}"="%USERPROFILE%\Downloads" "PrintHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" "CD Burning"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Burn\Burn1" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] (No values found) [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "AppData"="%USERPROFILE%\AppData\Roaming" "Desktop"="%USERPROFILE%\Desktop" "Favorites"="%USERPROFILE%\Favorites" "NetHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts" "Personal"="%USERPROFILE%\Documents" "My Pictures"="%USERPROFILE%\Pictures" "My Music"="%USERPROFILE%\Music" "My Video"="%USERPROFILE%\Videos" "{374DE290-123F-4565-9164-39C4925E467B}"="%USERPROFILE%\Downloads" "Programs"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs" "Recent"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent" "SendTo"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo" "Start Menu"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu" "Startup"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "Templates"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates" "Cookies"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies" "Local AppData"="%USERPROFILE%\AppData\Local" "Cache"="%USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files" "History"="%USERPROFILE%\AppData\Local\Microsoft\Windows\History" "PrintHood"="%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts" [HKEY_USERS\S-1-5-21-zmienne numerki\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] (Unable to open key - key not found) [HKEY_USERS\S-1-5-21-zmienne numerki\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] (Unable to open key - key not found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders] "Common Desktop"="C:\Users\Public\Desktop" "Common Start Menu"="C:\ProgramData\Microsoft\Windows\Start Menu" "CommonVideo"="C:\Users\Public\Videos" "CommonPictures"="C:\Users\Public\Pictures" "Common Programs"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs" "CommonMusic"="C:\Users\Public\Music" "Common Administrative Tools"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools" "Common Startup"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "Common Documents"="C:\Users\Public\Documents" "OEM Links"="C:\ProgramData\OEM Links" "Common Templates"="C:\ProgramData\Microsoft\Windows\Templates" "Common AppData"="C:\ProgramData" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders] "Common Desktop"="%PUBLIC%\Desktop" "Common Documents"="%PUBLIC%\Documents" "CommonPictures"="%PUBLIC%\Pictures" "CommonMusic"="%PUBLIC%\Music" "CommonVideo"="%PUBLIC%\Videos" "{3D644C9B-1FB8-4f30-9B45-F670235F79C0}"="%PUBLIC%\Downloads" "Common Start Menu"="%ProgramData%\Microsoft\Windows\Start Menu" "Common Programs"="%ProgramData%\Microsoft\Windows\Start Menu\Programs" "Common Startup"="%ProgramData%\Microsoft\Windows\Start Menu\Programs\Startup" "Common AppData"="%ProgramData%" "Common Templates"="%ProgramData%\Microsoft\Windows\Templates" -= EOF =-