Solved Can't install any virus protection software

[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\onlyrandom.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\onlysecuretools.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ontoon.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\oopsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\open-searching.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\openhomevideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\opensourcefirewall.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\operanabuco.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\opine-editorials.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\opqgrin.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\opsex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\optimedias.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\optimwares.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\orbitexplorer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\order4search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\oregoncharters.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\orzsystem.cn]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\other-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\otherhomepage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\othersearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\otrlives.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\outdoor-twinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\outrageousorgy.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\owensps.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\oxygensociety.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ozawamadoka.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\p2psharing.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\p2psoft.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pabiotech.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\page-ticket.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pageforyou.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pagestickets.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pageticket.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paigesummer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pakavan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pakras.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pamelacollections.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panamcup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantoneinkjet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantygirls4u.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantyhose--fetish.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantyhoserating.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantyhoserealm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pantyplace.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paperssearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\parenting-directory.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\parisvoyeur.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\partnershipforsolutions.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\partnersinpeace.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\partokrat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\party-drunk-girl.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\party-find.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\passthison.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\passtosites.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pastubes.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\patchyoursystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paulapage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paulhoover.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\payfortraffic.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\payfoundation.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\payment-process-server.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paypopup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\paysitespreview.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\payvirusmelt.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pbkjh.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-anti-virus-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-antispy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-antispywarescanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-cleanpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-security-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pc-security-scanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcdefender2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcpolisher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcprivacycleanerpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcsecuresystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcsecuretools.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pcsecurityupdates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pdatalks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pdavies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\peanutco.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pearlteens.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pedo.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pedroferreiro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pee-girls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pentameter.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\people.1gb.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\peppermom.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfect-cleaner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfect-search.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectcleaner2007.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectedsecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectnav.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectseeker.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\perfectups.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\personal-defender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\personalantispy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\personaldefender2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pervertbot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pervertedmature.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pervertedolders.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pestsweeper.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\petite-porn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\petrovdaniil.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pharma-diet-pills.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pharmacy2003.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pharmainstant.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pharmalocator.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\phendimetrazine-tenuate-adipex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\phillymama.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\photospool.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pics-videos.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pics4host.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\picsdir.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\picsforbucks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\picsofgirls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\picsofseductiveladies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pictures1.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\piderast.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pills-birth-control.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pillsbook.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pillsmall.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pillsshop.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pilotronix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pincodes.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pinkresult.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pinoystuff.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pix4all.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pixelphysics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pixpox.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pizdato.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pizdets-search.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pkbsolution.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\placeforsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plak.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\planemusic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\planetofmp3.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\platinum-vip.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\platinumsecurityupdate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playcodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playcodecs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\player-codec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playercodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playerscodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playhardmovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playingboy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playingmatures.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playminigolf.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playtable.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playxvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\playxxxvideo.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pluginaccess.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumpersclub.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumpmatures.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumpolders.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumprank.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumptoplist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plumptraffic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pluscount.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\plushysearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pmffprogram.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pmpay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poap02.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pocketiq.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poeticnonsense.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poiska.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poiskatnada.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poker-casino-free.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poker-games-free.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\polepositionrp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\poliblog.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\polradiologia.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pooi.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popcodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popka.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popsearches.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\popuptoast.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porcosnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-mix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-play.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-star-news.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-teacher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-tube-2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porn-tube-v5.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornboard.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porncamz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornclon.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porncross.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porndebug.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornforumadult.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornfree.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornissex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornjoy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornlicense.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornmagpass.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornmoviestube.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornnewsdaily.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornnightdreams.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porno-kuba.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornokopec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornowomenpictures.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porntetris.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porntubenew.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\porntwist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornxxxfilm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pornxxxsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\portulote.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\potsofgold.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\power-find.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\power-search.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerantivirus-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerantivirus.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerantivirus2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerfullantivirusproduct.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerfulvirusremover2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\powerwebsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pp03.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\praxispost.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\praxisremarketing.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prblitz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\premieresg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\premium-search.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\premiumads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\premiumlivescanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\premiumworldpayments.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prettyfatties.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pretypics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pribalt.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacidadconductor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacidadeprotegida.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacidadgarantizada.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacidadplus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacidadyseguridad.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacy-support.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacy-tower.com]
"*"=dword:00000004
.
 
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacy-tower.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacy-watcher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacyconductor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privacycontrol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privaetprotectedupdates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privatediet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privatelesbo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privateporn.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privatetube2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\privatewebsystemupdate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prn.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pro-antispyware2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pro-market.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\product-updateindex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\productupdate-index.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\programmi-approvati.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\projectarise.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\projectone.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\promotelocalbusiness.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\promotionsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\propayments.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prosecureexpertcleaner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prosecureexpertcleanerpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prostactive.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prostol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\proteccionasegurada.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\proteccioncompleta.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protect-yourself.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectalerts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectedsystemupdates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectedupdatesystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectgates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protecthips.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protection-livescan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionalerts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionassuree.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionclick.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionconue.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectiondedriver.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectiondenetsurfage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionshere.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionssoft.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionstack.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectiontoolbars.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectionways.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectmanual.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectnotice.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protectsonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\protezionefidata.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\providesite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\prsainlandempire.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\psa-ae.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\psn.cn]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\psoriaasi.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\psoriaasi.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ptamerica.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\punat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\puntodefuga.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\purescans.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\put-your-link-here.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pwrantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pyroantispy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pyrocorp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qaz-codec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qazcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qazplayer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qiweroqw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qualitaetips.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qualitycodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quantumgap.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quertysearch123.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qufo.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quick-search.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quick-searcher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quicklaunch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quickmetasearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quickreplies.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quiksearchgenealogy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\quotre.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qwehost.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qwertypages.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\qwertysearch123.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\radfrall.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\radiomillon.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\railwatch.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ramgo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ramrod.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ranafrog.ne]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rape-cool-video.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rape-toplist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapegate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapepatrol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapid-antivir.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapid-antivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapidantivir.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapidantivirus-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapidantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapidantivirus2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rapidblaster.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rbcnew.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rccsc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rchase.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rdpoint.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\reachsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\readagreement.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\real-adult-vids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\real-yellow-page.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realantispyware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realmp3top.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realphx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realpicmov.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realsexcash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realsexpass.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realtimegay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realvids.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\realxz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rebecca-romijn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\red-codec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\redbudbmx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\redcoats2005.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\redcodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\redsheriff.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\refinance-help.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\refinance-mortgage-now.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\regi.lolso.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\registrymighty.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\registryscan.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\regsweep.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\regters.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\relatedfind.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\relatedfind.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\releasedvideo.com]
"*"=dword:00000004
.
 
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\remb.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\removeearthkeepers.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\renamehomepage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\renewfiles.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\renus2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\reportsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\resonext.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\restorehomesite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\resultsofyours.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\resultsyoursearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\returnhomepage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\revenue.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rew01.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rheumatologyhss.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ricge.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rich-partners.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\richmondconsultinggroup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rightfinder.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rightonadz.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\riviera.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ro2cn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\roadteens.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\robbsproshop.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\robertferencz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rodexcom.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rogerjoslin.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\roings.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rompl.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\romsoftware.cn]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rootio.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rotocasters.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\roundonemartialarts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\royalprotectionplan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\royalsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rpts.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rr03.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rrgak.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rubberea.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rudepornlinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rugbydoctors.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rulerdns.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\running-pages.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\runsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rusibank.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\russianerofoto.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\russiansponsor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\russoc.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\russogay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rx-online-order.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rx-white.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rxforbettercare.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\rytisstechnologies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\s0ftvvareportal08.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\s0ftwarep0rtal08.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sacitylife.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safebrowsenow.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safehomesite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safeinformservice.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safepageplace.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safeshortcuts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safesurfingpage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safetybargoal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\safetyhomepage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sakcpas.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\salemnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\salestaxsimplification.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sama.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\samchampion.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\samplegals.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\samz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sanspelo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\saoe.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sapsapphire-emea.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sassysearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\satis****tion.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sav2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\savanna-samson.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\savehits.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\savvysecretary.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sbjr.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sbnl.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sbnt.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sbssurvivor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sbvr.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scan-search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scan4ever.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scan4mega.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scan6new.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scandalmature.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scanmain4.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scanner-antivirus360.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scanner-pc-toolz.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scansguard.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scanspywareonline.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scanthenet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scarypix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scbm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sccdnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scdesktopicons.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sceauxbasket.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scents4centsonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scholarstones.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\school-****.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\schoolforest.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scienceserver.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scienceweek-tas.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scin-care-drugs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sckr.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\screenlinkz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\screenshortcuts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\scrk.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sdry.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\se-cash.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-1.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-2003.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-about.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-access.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-act.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-aid.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-and-find.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-and-go.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-click.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-company.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-direct.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-dot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-explorer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-explorer.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-findall.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-for-you.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-hawk.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-ing.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-internet.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-log.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-meta.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-play.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-safe.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-seek.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-soft.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-space.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-to-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-top.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-town.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-town.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search-web.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search.scourweb.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search163.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search2004.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search2k.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search42.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search47.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\search4free.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchable-sex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchadultweb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchall.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchallhere.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchbarcash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchbestprice.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchbutler.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchbutler.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchbuttler.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchcentral.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchchink.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchclicked.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchclicker.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchclub.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchcm.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchcomplete.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchcork.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchdesire.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchdot.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searched.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchem.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchengine2000.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchenough.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searcher-laboratory.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchersmart.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searcheslink.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchesmove.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchesportal.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchessnap.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchexpander.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchfastnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchfeed.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchfind.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchforge.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchhh.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchhtg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searching-the-net.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchinggate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchinn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchlayer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchlol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmadesafe.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmaniacs.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeta.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeta.md]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeta.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeta.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeta.webhost.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmeweb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmiracle.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmouse.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmove.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchmyrequest.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchnow.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchonfly.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchoutlaw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchpage.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchpedia.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchproject.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchreply.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchscore.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchscreens.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchsnap.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchsuccessusa.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchterror.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchthisnow.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchthruweb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchtons.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchv.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchvisit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchvph.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchweb.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchxl.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\searchxp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sebot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secondscam.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secure-online-antivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secure-plus-payments.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securealertbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secured-antivirus-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secured-software-order.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedigitalpayments.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedliveclicks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedownloadsoftware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedserverdownload.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedupdatetransfer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedupdateupdatesoftware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securedwwwclicks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureexpertcleaner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securefires.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securefreelinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureharley.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureinfotool.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securenp.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureonlinetags.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureprior.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\secureservicepack.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securesponsorship.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securesurface.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securetoolbars.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securewarn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securewebnews.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security-center-scanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security-check-center.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security-look.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security-warning.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\security2k.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitybulletin.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitycaution.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitydeliversystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityerror.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityindex.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitylist.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityprecaution.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityscannersite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitysolutionsnetworks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securitysteps.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityuptodate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sedbalaw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seehardcore.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seek-all.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seekaround.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settin
 
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\securityuptodate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sedbalaw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seehardcore.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seek-all.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seekaround.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seekmuch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seekwell.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seksdialer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seld.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selectedtoolbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selevitenterprises.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selfbookmark.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selfbookmark.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selfbookmark.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sellantispyware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\selltraff.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\semtool.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seobastards.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seolize.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seoplus.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seoxnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seresult.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sergepics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\serials.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\serialsam.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\series.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\serverserror.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\serving-sys.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sesupport.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\seventop.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\severina-vuckovic-video.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sevlg.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-all.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-coach.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-everyday.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-explorer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-festival.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-melody.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-true.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sex-video-galleries.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexdialer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexfilms.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexgalleries4all.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexhornyparty.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexinside.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexjc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexlookupworld.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexmoviesisland.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexmoviesnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexodial.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexodial2.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexpatriot.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexpornonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sextonicvids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexual-women-big-titsd.eu]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexy-lesbian-video.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexy18.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexyamateurclips.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexybabesx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexydrunk.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexyrapepics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sexysgirls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sfbayfolkboats.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sfux.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sfwinstrument.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sgirls.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sgproductm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sgscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sguard2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sguardscan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shakira-pictures.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shamelesscouple.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sharedsource.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sharedupdates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sharempeg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shareownfiles.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sheat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shemaletop100.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shiratski.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shockbabetv.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shocking-movies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shockingboysites.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shopcards.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shopknights.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shopping4gifts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shortcutclicks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\showconz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\showebway.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\shredder-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sic02.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\silvercodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\simplestart2healthyheart.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\simpletraffic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sinfullegs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\singtaotor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sintrader.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sipo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\site-entrance.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\site-ticket.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\site1.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\siteentrances.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sites-entrance.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sites-entrance.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sites-in-web.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sitesentrance.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\siteticket.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sitetracking.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sitevictoria.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sixroads.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skakalka.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skoobidoo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sky-find.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skyblueads.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skycolder.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skymaids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\skymp3s.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slawsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sleazydream.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slimfind.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slot.md]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slotch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slotchbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slutmania.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\slutsandhorses.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smart-finder.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smart-se.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smart-search.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smartbotpro.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smartsalesgroup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smartsearch.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smartsearchpage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smartsumo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smds.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smilesteen.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smtsurvey.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\smutarchive.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\snappyads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soft-free-updates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soft-gateway.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soft-traffic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soft4funportal.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soft4youupdat.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softbest-08.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softforme2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softlayerdll.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softportalforfun.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softportalforfun08.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softsellout.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softspydelete.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softtrail.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softupdat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softupdate09.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\software-for-me-08.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\software-traff.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\software-traffic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\software666.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecheapdiscount.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarecoins.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwareforsciences.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarepayments.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwaresecuredbilling.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\softwarewarning.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sohurando.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\solads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\solongas.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\somesearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sonomacountybookfair.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sonomaevents.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sotfo.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soul-killer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soundnetworking.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\southernstarclothingco.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\soveroste.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sp-protect2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sp2****ed.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sp2msupdateresearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\space-player.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spacekeys.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spamking.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spamkings.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sparklediamond.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\specific911.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\specific911.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\specific911.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\specific911.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\specificclick.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\speedy-tube.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\speedyfinder.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spermatrix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spice2000.com]
"*"=dword:00000004
 
HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spicyebonysex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spinbox.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\splitinfinity.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spootie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sportbooks-free4you.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sportdanas.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spros.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sputnikbook.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sputtered-films.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spw-fight.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spw-fighter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spwfight.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spwfighter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spwprotect2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spy-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spy-find.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spy-rid.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyanalyst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyass.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyaway2007.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spydawn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spydefence.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyfind.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyguard-scanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyguarder.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyhazard.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyhome.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spymaxx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyofficer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyorgy.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyprotect2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyprotector.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spysexvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyshredderscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyware-bot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyware-fighter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spyware-quick-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarebot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarebot.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywaredestructor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarefighter2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarefighter2k9.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareiso.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareiso2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareisodownload.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareisolator.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareisolator2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareisopro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareisoscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarekick.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywareonlinescanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarepreventer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywaresfighter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywarestop.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywatche.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywprotect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\spywprotect2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sqwire.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\srib.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\srilankatsunamifund.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\srox.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\srsf.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ss03.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ssaw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ssby.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stabilityaudit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stableclick.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stableclick2.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stableclickz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stableclickz1.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\staceyowens.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stacistaxx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stacystaxx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stardialer.de]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stardomthemovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\starsofmp3.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\start-find.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\start-page.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\start-search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\start-space.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\startedwebsite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\startravelsnp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stat-prof.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\statclick.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stationfoundation.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\statscash.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\steamtubesoftware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\steamycock.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stephieporn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stepsofsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sterling-silver-earrings.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sterva.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stevecashdollar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stickylist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stmarkgreatbend.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stockingspassion.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stockingstoplist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stocktradeshop.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stop-tracking.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stopbadware2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stopvotefraud.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stopxxxpics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\storageprotector.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stormcodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stpaulpioneers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\strcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\streamadultvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\strekoza.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\strongesthosting.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\studiothirteen.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stuffstore.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stunningbabes.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stuphome.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\stvfirm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\styleclickink.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suburbancars.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\subwayfreshresolution.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suchki.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suckitnow1.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suggested-sites.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suggestsnow.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\summer-romance.de]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\summercollins.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\summervids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\summitcross.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sunburstonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\super-softwaredownload.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\super-spider.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\super-websearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superadultfriend.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superbigsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superbookmark.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supercodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superconvertingads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superiorads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superjpg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supermandy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supernoob3.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superporncity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supersalesonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supersexmachine.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supersexplayer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superstarved.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\superwebsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\supret.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sureadult.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\surfast.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\surfwebsafely.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\surj.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\suzannebrecht.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\svideocodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweathomepage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweet-girls.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweetasiansex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweeteenz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweeticings.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sweetpornfantasies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\swfapplication.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\swfutility.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\swift-look.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\swiftsafetyexamine.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\swwelch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sys-scanner.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysantivirus2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysav-download.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysav-storage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\syserrors.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysmergerer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\syspage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysprocedure.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysprotect.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysreport1.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sysreport2.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\system-cleanerpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\system-processes.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\systemdoctor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\systemsecurityindex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\systemsecurityonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\systemtrigger.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\t-imgs.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\t.rack.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\t34rulit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\taalkzforum.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tabi-tv.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tabletsnet.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\taboo2000.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tacil.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tadstore.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\talkme.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tamiamitomorrow.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tamquangtemple.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tangounion.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tanya-james.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tastethemusic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tax-refund4you.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tbvg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tdak.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tdko.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tdsvassarium.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teadis.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tech-jobs.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\technology-related.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teeens.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teen-biz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teen-pic-post.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teen4kiss.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenagepic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenagesecrets.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenhotspot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenhqpics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenkidporn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenpornosex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teens-in-porn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teens4free.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teens4porn.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensact.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensamateurvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensaround.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensfestival.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensgate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teensguru.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenssex.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenstouch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenswamp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teentitts.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenysexx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teenzporno.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tefs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tehranzamin.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teirkmm.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telaquente.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tepp.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\teramedix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\terra.es]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\terrorist-prep-info.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\testosterone-birth-control.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\testsecurityonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tfil.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tgp-lover.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tgppornlinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thatindianthing.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thatissearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\the-ad-lab.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\the-exit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\the-huns-yellow-pages.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\the-right-start.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theadulteye.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theadultgate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thebestfreexxxporn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thebestporndump.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thebesttoolbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thecaty.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thechappy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theclubgolf.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thecoolermovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thecoupondiscount.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thedownloadvid.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thedraft2004.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theeren.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thefakejournal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thegaschoice.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thegoneoverseas.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theguardservices.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thehuy.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thelocatemissing.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\themusic-08portal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\themymoviessite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thenewamsterdams.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thenewsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thephoenixfoundation.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theplumpers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thepopcop.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theproxy.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\therealsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\therealtone.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thesearchmall.com]
"*"=dword:00000004
 
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thesecuretransfer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thespybot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thestas.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thesten.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thestex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thethumbsite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theuptodatesecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thevalentinelovers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thevalentineparty.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thewebit.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\theyourlife.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\think-adz.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thinkoctopus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thiraorkney.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thisfreemovies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thko.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thornleygroup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thresholdofvisibility.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\thumbex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ticketlight.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ticketmoon.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\timesynchronize.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tings.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tinybar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tipssearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tit-x.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\titanvision.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\titsianna.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tiu07.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tjar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tjaw.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tjdo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tjem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tjgo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tmptmpservvv.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tnecns.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tntbreakingnews.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tobiasjenny.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\todaywarnings.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toddhayes.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tokiodrift.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tones4phone.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tool4scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbar.push.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbaractivity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarbest.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarbucks.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarcool.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbardollars.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarfornew.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarmoney.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarnew.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarpartner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarsale.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarset.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarunit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarusage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toolbarweb.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toon-comics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toonarea.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tooncomics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toopp.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\top-best-software-area.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topadult10.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topadwareremovers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topauto10.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topcitymp3.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topfivesearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topheavygirls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topmobile10.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topnetsearch.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topotun.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toprankingsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toprankingsearch.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toprefsys.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topsearcher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\topsecuritypage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\torc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\torturetoplist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tot-eurovisio.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\total-defender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\totalantivirusonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\totalprotect2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\toteen.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trackerbargain.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\traffcash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafffive.cn]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafficback.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafficinc.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafficrotator.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafficswitcher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafficsyndicate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trafic.ro]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trans4u.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\transparty.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\transsexxxual.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\travel-find.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\travel.picture-posters.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\travelersweblog.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trb-portland-05.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trefuel.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\treyparker.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tribalfusion.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\triplexlist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trisexual.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trojansafe.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\troop5.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tropicboys.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tropotun.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\troyanov.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\true-counter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\true-portal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\truehomecams.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trumble-trumbull.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal01.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal03.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal04.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal05.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal06.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal07.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal10.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trustedsoftportal2008.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\try-count.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tryoutietool.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trysearchhere.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trytechnical.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\trytofind.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tsaclan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tsboy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tscash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tscodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tsgay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tsmfirm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tt02.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tt03.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-4-free-center.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-777.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-911.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-chick.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-de-ferm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-free-4-adult.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-hu.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube-sixnine.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tube8.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubecollections.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubegalleries.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubeger.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubemov.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubeporn08.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tubeporn09.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\turbo-player.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\turbocodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tuttoavolonta.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tv-codec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tvcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tvs-codec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tvscodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\tvtvmg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\twinkszone.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\twinkthewonderkid.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\twopgoslyso.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\txiframe.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u-software-online.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u-tube-verse.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u45.cx]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u46.cx]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u47.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\u48.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uav2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\udefender.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uhlawalumni.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uincodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uk-adultcash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uksearchinfo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ulovesex2.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ultimatefinder.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ultraantivirus2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ultradialer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ultrahqcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ultralinks.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\umaxsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\une-autre-france.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uni-porn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uni-tube-911.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\unigays.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\unipages.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\unlimitedrape.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\up2you.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\upads.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updatehost.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updatescenter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updateserverdirect.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updatesystemcenter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updatesystempage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updateyoursystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updatez.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\updvms.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\upgm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\upgrade-your-software.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uptodatefiles.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uptodateprotect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uptodateprotection.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uralitel.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\urgentwindowsupdate.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\urlsofdnserrors.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\urlstat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\urlstat.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ursie.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\usatodayradionews.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uscmchicago2005.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\use-porn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\usearch.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\usnewnews.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uspninternet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\usrbf.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\utahsweet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\utopicportal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uu02.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\uusocialjustice.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\v-codec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\v2bestcount.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\v2count.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\v2statscount.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\v61.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vaginpics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\valdiserereservations.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\valmyers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\valuesdeals.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Se
 
HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\valuevids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vassariumbig.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vassariumpromo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vaulimited.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vav-2008.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vav2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vaxcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vaxobject.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vbrstream.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vcodec2007.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vcodecreceive.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vdmjl.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vegas-free.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vegbuy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\veloventures.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\verzeih.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\verzila.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vetpool.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vexsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vfdsa.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vfyte.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vgdes.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vicodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\victoria-knight.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\victoriaadam.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vida-guerra-video.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vidaccess.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vidcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\video-blaster.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoactivexpage.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoactivexsoft.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videocardcodecs.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videocategories.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videocodecs.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videocodecupdate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoexternal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoforgays.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videogaysite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoobjectmedia.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videosaccess.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoscash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videosfan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videosgalleries.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videosoftonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videoxcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\videsee.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vids-access.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vidscodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vietnamtheband.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viewdevice.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viewpornkey.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viewutility.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\villaliving.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vioclicks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vipantispy.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vipantispyware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vipdb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vipentertainment.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vippif.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viresponselab.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virginplumpers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virgins-****.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virtrigger.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virtriggersupport.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virtual-ticket.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virtualnoob3.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-eraser.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-eraser.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-isolator.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-labs2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-response.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-scanonline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-trigger.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-triggers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus-webscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virus9-webscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusbestscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusblast.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusbuster.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusheal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusisolator.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viruslocker.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusmelt.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusmeltpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusranger.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusresplab.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virusresponse2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\virustrigger2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\viruswebprotect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\visit-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\visit-search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\visitez-islande.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vistamicrozsoft.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vistastar.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vitamins-for-each.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vivamovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vivart.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vivid-girls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vizit.us]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vizitus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vjhdo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vjope.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vnb01.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\volleysearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vombasavers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vombashots.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\votehowe.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\voyeur-fotos.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vplprocedure.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2archery.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2boxing.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2cycling.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2hockey.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2polo.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2skateboarding.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2surfing.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs2volleyball.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs4montblanc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vs4panerai.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vsvs.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vsvs6.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vtbmovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vulgarmovies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vvexe.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vxebony.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\vxiframe.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wabq.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wabu.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wakeupdick.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\want-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\warningurls.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\warnomore.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\warriorswayar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\watcher-scan.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\watchersweb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\watchfree.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\watersport-specialties.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\waverevenue.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wawatoolbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\waysofsecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wazzupnet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wbkb.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\we-learn.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web-1000.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web-4-design.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web-cams-chat.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web-homepage.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web-search.tk]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web1inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web2inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web3inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web4inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web5inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\web6inst.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webacedialer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webads.nl]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webbestlink.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcoolsearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcounter.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webdnserror.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webeasyfind.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webforhumans.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webmanaged.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webmaster-porno.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webraing.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websafenotice.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webscanneronline.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websclinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearch4u.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearch4u.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearchchannel.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearchdot.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearchnetwork.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearchpath.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websearchup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websecurebar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websecurelinks.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\websecurityexamine.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webserach4u.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webtracer.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wedrugtest.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\weekend-movies.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\weekly-teens.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\weeklytop.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\welcomepage.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wertionase.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wet-sex-lips.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wet-teenie.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wetfatties.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wethere.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wetplumpers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wetpornostars.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wetsearch.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wfix.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wflu.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\what2find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whathomepagez.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whatsyoursearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whazit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\white-pages.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whitecodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whitecodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whiteslave.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whitetrack.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whittierblvd.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wholeworldmarket.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whopass.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whyisdnserror.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wideareawireless.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wildarcade.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wildmaturesex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wildolders.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wildsearch.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-antivirus-protect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-defender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-in-casino.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-pc-defender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-security-scanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win-security.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\win9987.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winantispyware2008.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winantiviruspro.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windefender-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windefender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windefender2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windefensa.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windfiresearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Setti
 
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windifesavirale.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windows-av.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowsafesurf.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowscentersite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowsspywaredefender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowstowallstreet.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowws.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windowzscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\windupdates.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winfixmaster.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winfixtools.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winflashmedia.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winfoundation.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winifixer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winifixer.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winifixer.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winmediacodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winpcdoctor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winprotections.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winqfixer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsafesurf.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecureav.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecuredisc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecuredisc.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecuredisk.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecuredisk.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecureexpertcleaner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsecurite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winshow.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsikkerantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsikretav.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsoftpc.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winspycontrol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winspykiller.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winspywareprotect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winspywarescanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winsurffilter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winwebsecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winxdefender.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winxpperformance.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winxprotector.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\winxpspeedup.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wirelessvalentineday.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wiresearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wishwesternpa.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wista-antivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wistascanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\witenterprises.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmadirection.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmmse.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmpltools.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmptools.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmtop100.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmvassistant.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmvcompressor.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmvmedialease.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wmvtool.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wofldsex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wolfpacracing.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\womensphil.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\woodoosearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wordlist.jps.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\world-legs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\world-trusted-payments.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldbestadult.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worlddrunk.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldebony.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldfatties.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldgaypics.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldmoviegay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldmpeg.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldplumpers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldstockings.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\worldwide-websearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wowclipz.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wowweb.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wpc2001.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wsmamusic.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wspscanner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wsxhost.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwvyoutube.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\www55.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwbet.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwbetting.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwfinder.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwhellomoto.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwinfoclick.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwpokergames.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwpokerplayers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwroulette.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\wwwsearch.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\x-family.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\x-library.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\x-orgasm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\x-traffic.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\x-webdesign.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xbeta69.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xcnn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xcomics4u.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xdfreeporn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xdtraffic.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xerocodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xh-codec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xhcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xhlist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xic-bs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xjupiter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xldr.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xlsites.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xmlsucker.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-antispyware-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-antispyware2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-as-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-guard.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-police-09.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-police-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-police-av.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-police-engine.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-registration.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp-shield.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xp18.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpantispyware-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpantivirussecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpas-2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpas2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpassgenerator.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpcleanerpro.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpdownloadcenter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpertantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpire.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xponlinescanner9.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpprotectionsoftware.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpsecuritycenter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpvirusprotection.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xpvirusprotection2009.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xrandom.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xrenoder.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xrenosearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xsites.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xspy-shredder.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xtragay.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xu.xu.pl]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xupiter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xwebsearch.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxl-tube.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxllab.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxlmp3.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxx-mom.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxx-teens-xxx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxx4pleasure.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxallvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxcategories.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxemailxxx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxhardcore.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxmoms.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxmovieshare.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxmovietour.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxspyfun.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxteenfilm.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxtera.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxviewerfilesx.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxxxx.com.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xxxzonevideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xyesearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xyzsolution.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\xyztogo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\y-e-l-l-o-w.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yahoo-analytics.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yandex.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ycafcsc.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ydaproject.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yeah.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yeasearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yellow500.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yezol.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ygvtf.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yhgames.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yinyanghealthcenter.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yl18.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yosemitevisit.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\you-phoric.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\you-search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\you-search.com.ru]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youblognews.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youcangetitdone.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youfindall.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youfindall.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youfreetube.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\younewsblog.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\young-devils.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\young-plumpers.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\young96.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youngboysmovie.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youngboystop.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youngboyvideo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-codec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-counter.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-find.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-finder.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-prescriptions.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your-search.cc]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\your.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youradore.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourblognews.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourbookmarks.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourbookmarks.ws]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourbreakingnew.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourcollectorcar.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourcountycoupon.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourebonysex.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourfreevids.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourgreatlove.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourieprotect.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youriesafety.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youripment.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yournewsblog.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yournewvideo.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youronlinesecurity.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourpc.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursearch247.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursearchbar.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursearcher.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursearchresults.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursecureexpertcleaner.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursecuritysystem.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursexportal.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yoursystemupdate.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourvalentineday.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yourvalentinepoems.com]
"*"=dword:00000004
 
HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youthpassagenet.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\youtube-see.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ypir.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ypsss.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ysa-info.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yudacollege.org]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yukohamano.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yuor-new-video.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ywebsearch.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\yyepp.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\z-quest.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zadolbali.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zalupendra.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zambeel.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zangcodec.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zango.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zangocash.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zapros.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zaxar.net]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zbv08.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zcodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zedo.biz]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zedo.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zerocodec.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zesearch.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zestyfind.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zetta-search.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zeusantivirus.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zinaps.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ziportal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zipportal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zllin.info]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\znext.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonadialer.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zone-searching.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonebest.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoneoffreeporn.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoodrawings.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoomegasite.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoompegs.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoosexart.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zoosexmania.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zootoplist.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zsvcompany.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zvimigdal.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zxchost.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zxcsolution.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zyban-zocor-levitra.com]
"*"=dword:00000004
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
@SACL=
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
@SACL=
@=""
"http"=dword:00000003
"https"=dword:00000003
"ftp"=dword:00000003
"file"=dword:00000003
"@ivt"=dword:00000001
"shell"=dword:00000000
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
@SACL=
@=""
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Policies]
@Denied: (C D) (Everyone)
@SACL=
"Allow Programmatic Cut_Copy_Paste"=dword:00000000
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
@SACL=
"NoDriveTypeAutoRun"=dword:00000143
"NoDriveAutoRun"=dword:03ffffff
"NoDrives"=dword:00000000
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
@Denied: (C D) (Everyone)
@SACL=
"ParseAutoexec"="1"
"ExcludeProfileDirs"="Local Settings;Temporary Internet Files;History;Temp"
"BuildNumber"=dword:00000a28
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Policies]
@Denied: (C D) (Everyone)
@SACL=
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Policies\Microsoft]
@SACL=
.
[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher]
@SACL=
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@DACL=(02 0012)
@Denied: (Full) (Everyone)
"scansk"=hex(0):17,cd,a5,46,da,bf,1f,59,29,b0,67,82,d8,ae,b8,b2,70,13,c5,17,60,
e4,d5,12,8c,e5,8f,ad,b3,cc,d3,be,04,b7,d3,a2,04,34,60,8b,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{b9d3f874-0156-41d9-99d5-2de9c09ee451}]
@DACL=(02 0012)
@Denied: (Full) (Everyone)
"Model"=dword:0000004b
"Therad"=dword:0000001e
"MData"=hex(0):2b,8f,78,29,5a,0c,ce,ec,48,d4,68,e5,9f,6a,96,3e,ab,de,c5,81,26,
38,95,44,87,99,61,30,49,a9,cf,85,e2,34,27,97,27,fe,2f,d6,46,8f,3c,f2,5c,68,\
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Environment*]
"v5Setup"="06-3KN2-7NDF-6RC5-Y6T8-J6AW-BT55XED"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main]
@Denied: (C D) (Everyone)
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Enable_Disk_Cache"="yes"
"Cache_Percent_of_Disk"=hex:0a,00,00,00
"Delete_Temp_Files_On_Exit"="yes"
"Local Page"="c:\\WINDOWS\\system32\\blank.htm"
"Anchor_Visitation_Horizon"=hex:01,00,00,00
"Use_Async_DNS"="yes"
"Placeholder_Width"=hex:1a,00,00,00
"Placeholder_Height"=hex:1a,00,00,00
"Start Page"="http://www.google.com"
"CompanyName"="Microsoft Corporation"
"Custom_Key"="MICROSO"
"Wizard_Version"="6.0.2600.0000"
"Default_Secondary_Page_URL"=multi:"\00"
"Extensions Off Page"="about:NoAdd-ons"
"Security Risk Page"="about:SecurityRisk"
"Check_Associations"="yes"
"StatusBarWeb"=dword:00000001
"SearchControlWidth"=dword:0000012c
"NewTabAction"=dword:00000002
"ForceGDIPlus"=dword:00000000
"DEPOff"=dword:00000000
"MaxRenderLine"=dword:00000fa0
"UseClearType"="yes"
"Page_Transitions"=dword:00000001
"Use_DlgBox_Colors"="yes"
"Anchor Underline"="yes"
"Display Inline Images"="yes"
"Display Inline Videos"=dword:00000001
"Play_Background_Sounds"="yes"
"Play_Animations"="yes"
"Print_Background"="no"
"SmoothScroll"=dword:00000001
"XMLHTTP"=dword:00000001
"Show image placeholders"=dword:00000000
"Disable Script Debugger"="yes"
"Enable AutoImageResize"="yes"
"XDomainRequest"=dword:00000001
"DOMStorage"=dword:00000001
"IE8RunOnceLastShown"=dword:00000000
"IE8RunOncePerInstallCompleted"=dword:00000000
"IE8TourNoShow"=dword:00000000
"IE8TourShown"=dword:00000000
"FrameTabWindow"=dword:00000001
"AdminTabProcs"=dword:00000001
"SessionMerging"=dword:00000001
"FrameMerging"=dword:00000001
"HangResistantFrame"=dword:00000000
"TabShutdownDelay"=dword:0000ea60
"FrameShutdownDelay"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\ErrorThresholds]
"400"=dword:00000200
"403"=dword:00000100
"404"=dword:00000200
"405"=dword:00000100
"406"=dword:00000200
"408"=dword:00000200
"409"=dword:00000200
"410"=dword:00000100
"500"=dword:00000200
"501"=dword:00000200
"505"=dword:00000200
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]
@SACL=
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]
@SACL=
"ieuser.exe"=dword:00000001
"iexplore.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]
@SACL=
"YahooMusicEngine.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]
@SACL=
"devenv.exe"=dword:00000001
"dexplore.exe"=dword:00000001
"helppane.exe"=dword:00000001
"sllauncher.exe"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]
"msfeedssync.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]
@SACL=
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]
@SACL=
"msiexec.exe"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]
@SACL=
@=""
"waol.exe"=dword:00000001
"cs.exe"=dword:00000001
"wm.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]
@SACL=
"iexplore.exe"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]
@SACL=
"helppane.exe"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]
"wlmail.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]
"mshta.exe"=dword:00000001
"outlook.exe"=dword:00000001
"sidebar.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]
"communicator.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]
@SACL=
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]
@SACL=
"msimn.exe"=dword:00000001
"winmail.exe"=dword:00000001
"wlmail.exe"=dword:00000001
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]
@SACL=
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]
@SACL=
"msimn.exe"=dword:00000001
"outlook.exe"=dword:00000001
"winmail.exe"=dword:00000001
"wlmail.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]
@SACL=
"WMPlayer.exe"=dword:00000001
"clview.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]
@SACL=
"excel.exe"=dword:00000001
"infopath.exe"=dword:00000001
"powerpnt.exe"=dword:00000001
"winword.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]
@SACL=
"WMPlayer.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]
@SACL=
"msn.exe"=dword:00000001
"msn6.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]
"iexplore.exe"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Main\WindowsSearch]
"Disabled"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\SearchScopes]
@Denied: (C D 2 3) (Everyone)
@SACL=
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Internet Explorer\Toolbar]
@Denied: (C D 2 3) (Everyone)
"{10921475-03CE-4E04-90CE-E2E7EF20C814}"=""
"Locked"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
@Denied: (C D 2 3) (Everyone)
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings]
@Denied: (C D) (Everyone)
"MinorVersion"="0"
"CodeBaseSearchPath"="CODEBASE"
"UrlEncoding"=dword:00000000
"ActiveXCache"="c:\\WINDOWS\\Downloaded Program Files"
"EnablePunycode"=dword:00000001
"WarnOnIntranet"=dword:00000001
"SecureProtocols"=dword:000000a0
"EnableHttp1_1"=dword:00000001
"ProxyHttp1.1"=dword:00000001
"ShowPunycode"=dword:00000000
"CreateUriCacheSize"=dword:00000050
"CoInternetCombineIUriCacheSize"=dword:00000050
"SecurityIdIUriCacheSize"=dword:0000001e
"SpecialFoldersCacheSize"=dword:00000008
"DisableCachingOfSSLPages"=dword:00000000
"WarnOnPost"=hex:01,00,00,00
"WarnonBadCertRecving"=dword:00000001
"WarnOnPostRedirect"=dword:00000000
"WarnOnZoneCrossing"=dword:00000001
"WarnOnHTTPSToHTTPRedirect"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0]
@Class="REG_SZ"
"SpecialDomains"="lp. rg."
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents]
"0"="image/gif"
"1"="image/jpeg"
"2"="image/pjpeg"
"3"="image/pjpeg"
"flash"="application/x-shockwave-flash"
"**"="application/vnd.ms-excel"
"***"="application/vnd.ms-powerpoint"
"*"="application/msword"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\ActiveX Cache]
"0"="c:\\WINDOWS\\Downloaded Program Files"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\AllowedBehaviors]
"#default#VML"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\AllowedDragImageExts]
".aif"=dword:00000001
".aifc"=dword:00000001
".aiff"=dword:00000001
".art"=dword:00000001
".asf"=dword:00000001
".asx"=dword:00000001
".au"=dword:00000001
".avi"=dword:00000001
".bm"=dword:00000001
".bmp"=dword:00000001
".dib"=dword:00000001
".dvr-ms"=dword:00000001
".emf"=dword:00000001
".gif"=dword:00000001
".ico"=dword:00000001
".jfif"=dword:00000001
".jpe"=dword:00000001
".jpeg"=dword:00000001
".jpg"=dword:00000001
".m1v"=dword:00000001
".m3u"=dword:00000001
".mid"=dword:00000001
".midi"=dword:00000001
".mp2"=dword:00000001
".mp2v"=dword:00000001
".mp3"=dword:00000001
".mpa"=dword:00000001
".mpe"=dword:00000001
".mpeg"=dword:00000001
".mpg"=dword:00000001
".mpv"=dword:00000001
".mpv2"=dword:00000001
".png"=dword:00000001
".rmi"=dword:00000001
".snd"=dword:00000001
".tif"=dword:00000001
".tiff"=dword:00000001
".wav"=dword:00000001
".wax"=dword:00000001
".wm"=dword:00000001
".wma"=dword:00000001
".wmf"=dword:00000001
".wmp"=dword:00000001
".wmv"=dword:00000001
".wmx"=dword:00000001
".wvx"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Cache]
"FreshnessInterval"=hex:80,f4,03,00
"CleanupFactor"=hex:19,00,00,00
"CleanupTime"=hex:00,00,00,00
"Persistent"=hex:01,00,00,00
"CleanupInterval"=hex:80,51,01,00
"DebugFlag"=hex:ff,ff,00,00
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"WinHttpSettings"=hex:18,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,00,00,00,
00
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\NoFileLifetimeExtension]
@SACL=
".pub"=""
".vsi"=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\PluggableProtocols]
"ms-help"=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SafeSites]
"ie.search.msn.com"="http://ie.search.msn.com/*"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Secure Mime Handlers]
@=""
"bootstrap.application.1"=""
"bootstrap.xaml.1"=""
"bootstrap.xbap.1"=""
"bootstrap.xps.1"=""
"CorTransientLoader.CorLoad.1"=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\ACTIVEX_OPTIN]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4897"
"Text"="Allow previously unused ActiveX controls to run without prompt"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\ACTIVEX_OVERRIDE_DOMAINLIST]
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4900"
"Text"="Only allow approved domains to use ActiveX without prompt"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\ALLOW_DYNSRC_VIDEO]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4899"
 
"Text"="Display video and animation on a webpage that does not use external media player"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\ACTIVE_CONTENT\SCRIPTLETRUN]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4780"
"Text"="Allow Scriptlets"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\MISC\FORCE_ADDRESS_BAR]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4898"
"Text"="Allow web sites to open windows without address or status bars"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\MISC\INC_UPLOAD_FILEPATH]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4911"
"Text"="Include local directory path when uploading files to a server"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\MISC\PHISHINGFILTER]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-5368"
"Text"="Use Phishing Filter"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\MISC\SHELLEXEC]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4864"
"Text"="Launching programs and unsafe files"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\MISC\SOFTDIST]
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"HelpID"="iexplore.hlp#50282"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4830"
"Text"="Software channel permissions"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\SCRIPTING\SCRIPTPROMPT]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4485"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4912"
"Text"="Allow websites to prompt for information using scripted windows"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\SCRIPTING\SCRIPTSTATUS]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4485"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4867"
"Text"="Allow status bar updates via script"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\SCRIPTING\XSSFilter]
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4485"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-4901"
"Text"="XSSFilter"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\WINFX]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4486"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-6400"
"Text"=".NET Framework"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SO\WinFXSetup]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4486"
"PlugUIText"="@c:\\WINDOWS\\system32\\inetcpl.cpl,-5440"
"Text"="Enable .NET Framework setup"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\ACTIVE_CONTENT\ACTIVEX_OPTIN]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@inetcpl.cpl,-4897"
"Text"="Allow previously unused ActiveX controls to run without prompt"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\ACTIVE_CONTENT\ALLOW_DYNSRC_VIDEO]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@inetcpl.cpl,-4899"
"Text"="Display video and animation on a webpage that does not use external media player"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\ACTIVE_CONTENT\SCRIPTLETRUN]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,1321"
"PlugUIText"="@inetcpl.cpl,-4780"
"Text"="Allow Scriptlets"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\MISC\FORCE_ADDRESS_BAR]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@inetcpl.cpl,-4898"
"Text"="Allow script-opened windows without an address bar"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\MISC\SHELLEXEC]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4443"
"PlugUIText"="@inetcpl.cpl,-4864"
"Text"="Launching programs and unsafe files"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\SCRIPTING\SCRIPTSTATUS]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4485"
"PlugUIText"="@inetcpl.cpl,-4867"
"Text"="Allow status bar updates via script"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\WINFX]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4486"
"PlugUIText"="@inetcpl.cpl,-6400"
"Text"="WinFX"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\SOIEAK\WinFXSetup]
@SACL=
"Bitmap"="c:\\WINDOWS\\system32\\inetcpl.cpl,4486"
"PlugUIText"="@inetcpl.cpl,-5440"
"Text"="Enable WinFX Runtime Components Setup"
"Type"="group"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\TemplatePolicies\MedHigh]
@SACL=
"1001"=dword:00000001
"1004"=dword:00000003
"1200"=dword:00000000
"1201"=dword:00000003
"1206"=dword:00000003
"1207"=dword:00000003
"1208"=dword:00000003
"1209"=dword:00000003
"120A"=dword:00000003
"1400"=dword:00000000
"1402"=dword:00000000
"1405"=dword:00000000
"1406"=dword:00000003
"1407"=dword:00000001
"1408"=dword:00000003
"1601"=dword:00000000
"1604"=dword:00000000
"1605"=dword:00000000
"1606"=dword:00000000
"1607"=dword:00000003
"1608"=dword:00000000
"1609"=dword:00000001
"160A"=dword:00000003
"1800"=dword:00000001
"1802"=dword:00000000
"1803"=dword:00000000
"1804"=dword:00000001
"1809"=dword:00000000
"1A00"=dword:00020000
"1A02"=dword:00000000
"1A03"=dword:00000000
"1A04"=dword:00000003
"1A05"=dword:00000001
"1A06"=dword:00000000
"1C00"=dword:00010000
"2000"=dword:00000000
"2100"=dword:00000000
"2101"=dword:00000000
"2102"=dword:00000003
"2103"=dword:00000003
"2104"=dword:00000003
"2105"=dword:00000003
"2200"=dword:00000003
"2201"=dword:00000003
"2300"=dword:00000001
"2301"=dword:00000000
"2400"=dword:00000000
"2401"=dword:00000000
"2402"=dword:00000000
"2600"=dword:00000000
"Description"="Help prevent malware from accessing your computer."
"DisplayName"="Internet recommended safety (medium high security)"
"Icon"="wininet.dll#00001206"
"TemplateIndex"=dword:00011500
"2107"=dword:00000003
"2708"=dword:00000000
"2709"=dword:00000000
"120B"=dword:00000003
"1409"=dword:00000000
"2005"=dword:00000003
"2106"=dword:00000000
"2700"=dword:00000000
"1812"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History]
"DaysToKeep"=dword:00000014
"CacheLimit"=hex:00,02,00,00
"CachePrefix"="Visited: "
"Directory"="c:\\WINDOWS\\History"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyByPass"=dword:00000000
"IntranetName"=dword:00000000
"UNCAsIntranet"=dword:00000000
"AutoDetect"=dword:00000001
"IEHarden"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones]
@=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\policies]
@Denied: (C D) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveAutoRun"=dword:03ffffff
"NoDriveTypeAutoRun"=dword:00000143
"NoDrives"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\policies\NonEnum]
"{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"=dword:00000001
"{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}"=dword:40000021
"{0DF44EAA-FF21-4412-828E-260A8728E7F1}"=dword:00000020
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"DisableRegistryTools"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Winlogon]
@Denied: (C D) (Everyone)
"AutoRestartShell"=dword:00000001
"DefaultDomainName"="YOUR-57LZLOQG7R"
"DefaultUserName"="jjjj"
"LegalNoticeCaption"=""
"LegalNoticeText"=""
"PowerdownAfterShutdown"="0"
"ReportBootOk"="1"
"Shell"="Explorer.exe"
"ShutdownWithoutLogon"="0"
"System"=""
"Userinit"="c:\\WINDOWS\\system32\\userinit.exe,"
"VmApplet"="rundll32 shell32,Control_RunDLL \"sysdm.cpl\""
"SfcQuota"=dword:ffffffff
"allocatecdroms"="0"
"allocatedasd"="0"
"allocatefloppies"="0"
"cachedlogonscount"="10"
"forceunlocklogon"=dword:00000000
"passwordexpirywarning"=dword:0000000e
"scremoveoption"="0"
"AllowMultipleTSSessions"=dword:00000001
"UIHost"=expand:"logonui.exe"
"LogonType"=dword:00000001
"Background"="0 0 0"
"DebugServerCommand"="no"
"SFCDisable"=dword:00000000
"WinStationsDisabled"="0"
"DefaultPassword"=""
"HibernationPreviouslyEnabled"=dword:00000001
"ShowLogonOptions"=dword:00000000
"AltDefaultUserName"="jjjj"
"AltDefaultDomainName"="YOUR-57LZLOQG7R"
"LegalNotice Text"=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
@=""
"DLLName"="igfxdev.dll"
"Asynchronous"=dword:00000001
"Impersonate"=dword:00000001
"Unlock"="WinlogonUnlockEvent"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
@SACL=
"Logon"="WLEventLogon"
"Logoff"="WLEventLogoff"
"Startup"="WLEventStartup"
"Shutdown"="WLEventShutdown"
"StartScreenSaver"="WLEventStartScreenSaver"
"StopScreenSaver"="WLEventStopScreenSaver"
"Lock"="WLEventLock"
"Unlock"="WLEventUnlock"
"StartShell"="WLEventStartShell"
"PostShell"="WLEventPostShell"
"Disconnect"="WLEventDisconnect"
"Reconnect"="WLEventReconnect"
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000000
"SafeMode"=dword:00000001
"MaxWait"=dword:ffffffff
"DllName"=expand:"WgaLogon.dll"
"Event"=dword:00000000
"InstallEvent"="1.9.0040.0"
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon\Settings]
@DACL=(02 0016)
@SACL=
@=""
"Data"=hex:01,00,00,00,d0,8c,9d,df,01,15,d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,
00,00,b9,61,a2,fa,78,5f,6c,4a,ac,00,3f,ed,96,84,2c,13,04,00,00,00,04,00,00,\
.
[HKEY_LOCAL_MACHINE\software\Policies]
@Denied: (C D) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Policies\Microsoft\SystemCertificates\TrustedPublisher]
@SACL=
.
[HKEY_LOCAL_MACHINE\software\Policies\Microsoft\Windows\DriverSearching]
"DontSearchWindowsUpdate"=dword:00000000
"DontPromptForWindowsUpdate"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Policies\Microsoft\Windows\Psched]
"NonBestEffortLimit"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Policies\Microsoft\Windows NT\Windows File Protection]
"SFCDisable"=dword:00000000
.
[HKEY_LOCAL_MACHINE\software\Policies\Microsoft\WindowsMediaPlayer]
"DisableAutoUpdate"=dword:00000001
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\SecurityProviders]
@Denied: (C D) (Everyone)
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, credssp.dll"
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\SecurityProviders\SaslProfiles]
"GSSAPI"="Kerberos"
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\SecurityProviders\SCHANNEL]
"EventLogging"=dword:00000001
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\SecurityProviders\WDigest]
"Lifetime"=dword:00008ca0
"Negotiate"=dword:00000000
"UTF8HTTP"=dword:00000001
"UTF8SASL"=dword:00000001
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3448)
c:\windows\system32\WININET.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\MSVCR80.dll
c:\program files\ASUS\Eee Storage\XPClient.dll
c:\program files\ASUS\Eee Storage\LogicNP.EZShellExtensions.dll
c:\program files\ASUS\Eee Storage\EcaremeDLL.dll
c:\windows\assembly\GAC_MSIL\SqliteShared\1.0.3390.31024__0d0f4b69e50e559b\SqliteShared.dll
c:\windows\assembly\GAC_32\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll
c:\windows\system32\msi.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
.
Completion time: 2014-04-08 14:24:52
ComboFix-quarantined-files.txt 2014-04-08 19:24
.
Pre-Run: 44,004,507,648 bytes free
Post-Run: 44,130,471,936 bytes free
.
WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
.
- - End Of File - - 2BF64B3505076C4988D29B09F30805C5
8F558EB6672622401DA993E1E865C861
 
Looks good.

redtarget.gif
Running from: c:\documents and settings\jjjj\My Documents\Downloads\ComboFix.exe
Please move Combofix file to proper location - Desktop.

redtarget.gif
Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

redtarget.gif
Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

redtarget.gif
I can see some Avast and Comodo leftovers.
Run following tools to remove them:
http://www.avast.com/uninstall-utility
http://forums.comodo.com/install-se...taller-tool-for-comodo-products-t71897.0.html

redtarget.gif
Download OTL to your Desktop.
Alternate download: http://www.itxassociates.com/OT-Tools/OTL.exe
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Click the Scan All Users checkbox.
  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows: OTL.txt and Extras.txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them back here.
 
# AdwCleaner v3.023 - Report created 11/04/2014 at 10:08:49
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : jjjj - YOUR-57LZLOQG7R
# Running from : C:\Documents and Settings\jjjj\My Documents\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : Application Updater

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Application Data\AVG Secure Search
Folder Deleted : C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Deleted : C:\Program Files\Application Updater
Folder Deleted : C:\Program Files\GreenTree Applications
Folder Deleted : C:\Program Files\Red Sky
Folder Deleted : C:\Program Files\Common Files\Spigot
Folder Deleted : C:\Documents and Settings\jjjj\Local Settings\Application Data\Conduit
Folder Deleted : C:\Documents and Settings\jjjj\Local Settings\Application Data\DownTango
Folder Deleted : C:\Documents and Settings\jjjj\Local Settings\Application Data\NativeMessaging
Folder Deleted : C:\Documents and Settings\jjjj\Local Settings\Application Data\visi_coupon
Folder Deleted : C:\Documents and Settings\jjjj\Application Data\DriverCure
Folder Deleted : C:\Documents and Settings\jjjj\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\jjjj\Application Data\Search Settings
File Deleted : C:\Documents and Settings\jjjj\Application Data\Mozilla\Firefox\Profiles\zjsa5ogq.default\user.js
File Deleted : C:\Program Files\Mozilla Firefox\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\IGearSettings
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKCU\Software\ProtectedSearch
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\wecarereminder
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKLM\Software\Application Updater
Key Deleted : HKLM\Software\OpenCandy
Key Deleted : HKLM\Software\ParetoLogic
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v24.0 (en-US)

-\\ Google Chrome v34.0.1847.92

[ File : C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [8959 octets] - [07/03/2014 06:15:24]
AdwCleaner[R1].txt - [9823 octets] - [13/03/2014 10:46:18]
AdwCleaner[R2].txt - [5991 octets] - [11/04/2014 10:06:19]
AdwCleaner[S0].txt - [409 octets] - [07/03/2014 06:26:25]
AdwCleaner[S1].txt - [333 octets] - [13/03/2014 10:50:33]
AdwCleaner[S2].txt - [5604 octets] - [11/04/2014 10:08:49]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [5664 octets] ##########
 
OTL Extras logfile created on: 4/11/2014 2:20:04 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\jjjj\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1.99 Gb Total Physical Memory | 1.27 Gb Available Physical Memory | 63.55% Memory free
3.33 Gb Paging File | 2.69 Gb Available in Paging File | 80.71% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72.06 Gb Total Space | 41.69 Gb Free Space | 57.86% Space Free | Partition Type: NTFS
Drive D: | 72.05 Gb Total Space | 71.40 Gb Free Space | 99.09% Space Free | Partition Type: NTFS

Computer Name: YOUR-57LZLOQG7R | User Name: jjjj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Force Delete] -- "C:\Program Files\UVK - Ultra Virus Killer\UVK_en.exe" "%1" (Carifred)
Directory [OneNote.Open] -- C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE "%L"
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"FirewallOverride" = 0

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"3587:TCP" = 3587:TCP:*:Enabled:Windows Peer-to-Peer Grouping
"3540:UDP" = 3540:UDP:*:Enabled:peer Name Resolution Protocol (PNRP)
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"3587:TCP" = 3587:TCP:*:Enabled:Windows Peer-to-Peer Grouping
"3540:UDP" = 3540:UDP:*:Enabled:peer Name Resolution Protocol (PNRP)
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe" = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin -- (Google)
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Enabled:Microsoft Management Console -- (Microsoft Corporation)
"C:\Program Files\UVK - Ultra Virus Killer\UVK_en.exe" = C:\Program Files\UVK - Ultra Virus Killer\UVK_en.exe:*:Enabled:Ultra virus killer -- (Carifred)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0A5825FD-0FB7-4e45-9037-858D463F2943}" = BPDSoftware
"{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox
"{19F5658D-92E8-4A08-8657-D38ABB1574B2}" = Asus ACPI Driver
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.7.4
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{2951A232-69BA-4925-BB9A-CEEB72B18B4F}" = BPDSoftware_Ini
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{38E5A3B1-ADF1-47E0-8024-76310A30EB36}" = LiveUpdate
"{398E8625-6F3A-4C54-B54C-28F0ABB89774}" = BPD_HPSU
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3C52E7DA-C431-4239-B66B-1BF703D5B194}" = Windows Live Photo Gallery
"{3FB39BED-37C8-4E60-8E02-315B8C2B07E3}" = USB2.0 UVC Camera Device
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{47BACF74-5A07-48BD-BADB-A769550F0F5A}" = FontResizer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}" = Junk Mail filter update
"{55E61709-D7D4-43C0-B45D-BFAF5C09A02D}" = OpenOffice 4.0.0
"{572F2A62-70CD-4429-8758-6D4D6DC696E1}" = 4500_Help
"{5BB4D7C1-52F2-4BFD-9E40-0D419E2E3021}" = bpd_scan
"{63C1109E-D977-49ED-BCE3-D00D0BF187D6}" = Windows Live Mail
"{64C118AC-FA2A-4E9C-A76E-DC22CA4FC20D}" = Dr.Eee EN
"{6697D99E-E550-4498-B793-4A8DD8A1821F}" = ProductContext
"{6A92E5C5-0578-443D-91F3-92ECE5F2CAE2}" = Windows Live Writer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{76CD2979-09C0-493A-84B3-8FD97EF4BCEA}" = Windows Live Family Safety
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{80533B67-C407-485D-8B5D-63BB8ED9D878}" = Scan
"{84814E6B-2581-46EC-926A-823BD1C670F6}" = WIDCOMM Bluetooth Software
"{88F08F98-12BC-4613-81A2-8F9B88CFC73E}" = Super Hybrid Engine
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}" = Ralink RT2860 Wireless LAN Card
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A1BF9950-8CDB-468E-83FA-EACFB00EA7D5}" = Windows Live Sync
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{ABA00898-9467-4689-9F40-DE7F58C8429C}" = Fax
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.9)
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C6CA8874-5F22-4AF0-9BE3-016BF299C536}" = Windows Live Essentials
"{C72CA49A-9237-4810-8449-45DA3BD26D64}" = EzMessenger
"{C8B24B83-920A-446E-B027-38F72C9D8898}_is1" = File Viewer version 1.0.2
"{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}" = RealDownloader
"{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg
"{CD0773D5-C18E-495c-B39B-21A96415EDD5}" = HP Officejet J4500 Series
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D806E63B-0C11-4061-8DA9-1E980FB9A9EB}" = Data Sync
"{DDB824DA-C431-3A3E-B997-F4B5539838FC}" = Google Talk Plugin
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F65FE983-80F2-4418-83C6-18440818A579}" = SAPI for Windows XP
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FDEC11CC-4BD6-4a8c-A398-3CCD8E43EACA}" = J4500
"Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin
"AsusVibeCheckUpdate_is1" = AsusVibeCheckUpdate
"CCleaner" = CCleaner
"Eee Storage" = Eee Storage
"File Identifier_is1" = File Identifier version 1.0.3
"Flash Player Pro_is1" = Flash Player Pro V5.4
"Google Chrome" = Google Chrome
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie8" = Windows Internet Explorer 8
"InstallShield_{64C118AC-FA2A-4E9C-A76E-DC22CA4FC20D}" = Dr.Eee EN
"IObit Unlocker_is1" = IObit Unlocker
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.1.1004
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 24.0 (x86 en-US)" = Mozilla Firefox 24.0 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Protected Folder_is1" = Protected Folder
"RealPlayer 16.0" = RealPlayer
"Revo Uninstaller" = Revo Uninstaller 1.95
"SearchProtect" = Search Protect
"Smart Defrag 3_is1" = Smart Defrag 3
"Startup_Manager_is1" = Startup Manager 2.4.2
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"UVK - Ultra virus killer" = UVK - Ultra Virus Killer
"VLC media player" = VLC media player 2.0.8
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"PDF Reader" = PDF Reader

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 4/9/2014 10:06:14 PM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 10:38:34 AM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 11:11:36 AM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 12:04:48 PM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 12:23:33 PM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 12:38:19 PM | Computer Name = YOUR-57LZLOQG7R | Source = .NET Runtime Optimization Service | ID = 1110
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Service Manager returned a fatal error (0x80004002). Will stop service

Error - 4/11/2014 12:59:08 PM | Computer Name = YOUR-57LZLOQG7R | Source = WinMgmt | ID = 4
Description = Failed to load MOF C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\ASPNET.MOF
while recovering repository file.

Error - 4/11/2014 12:59:08 PM | Computer Name = YOUR-57LZLOQG7R | Source = WinMgmt | ID = 4
Description = Failed to load MOF C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\CLR.MOF
while recovering repository file.

Error - 4/11/2014 12:59:08 PM | Computer Name = YOUR-57LZLOQG7R | Source = WinMgmt | ID = 4
Description = Failed to load MOF C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.0\WINDOWS
COMMUNICATION FOUNDATION\SERVICEMODEL.MOF while recovering repository file.

Error - 4/11/2014 12:59:10 PM | Computer Name = YOUR-57LZLOQG7R | Source = WinMgmt | ID = 4
Description = Failed to load MOF C:\WINDOWS\SYSTEM32\WBEM\WSMAUTO.MOF while recovering
repository file.

[ System Events ]
Error - 4/11/2014 12:19:09 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4/11/2014 12:19:22 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service netman with
arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 4/11/2014 12:19:34 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4/11/2014 12:22:24 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service netman with
arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 4/11/2014 12:22:39 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4/11/2014 12:23:33 PM | Computer Name = YOUR-57LZLOQG7R | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000034'
while processing the file '_filelst.cfg' on the volume 'HarddiskVolume1'. It has
stopped monitoring the volume.

Error - 4/11/2014 12:34:03 PM | Computer Name = YOUR-57LZLOQG7R | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000034'
while processing the file '_filelst.cfg' on the volume 'HarddiskVolume1'. It has
stopped monitoring the volume.

Error - 4/11/2014 12:34:14 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4/11/2014 12:37:31 PM | Computer Name = YOUR-57LZLOQG7R | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4/11/2014 12:38:24 PM | Computer Name = YOUR-57LZLOQG7R | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000034'
while processing the file '_filelst.cfg' on the volume 'HarddiskVolume1'. It has
stopped monitoring the volume.


< End of report >
 
OTL logfile created on: 4/11/2014 2:20:04 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\jjjj\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1.99 Gb Total Physical Memory | 1.27 Gb Available Physical Memory | 63.55% Memory free
3.33 Gb Paging File | 2.69 Gb Available in Paging File | 80.71% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72.06 Gb Total Space | 41.69 Gb Free Space | 57.86% Space Free | Partition Type: NTFS
Drive D: | 72.05 Gb Total Space | 71.40 Gb Free Space | 99.09% Space Free | Partition Type: NTFS

Computer Name: YOUR-57LZLOQG7R | User Name: jjjj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/04/11 14:19:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\jjjj\My Documents\Downloads\OTL.exe
PRC - [2014/03/30 06:05:16 | 004,672,288 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
PRC - [2014/03/30 06:05:12 | 003,027,232 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
PRC - [2014/03/30 06:05:12 | 002,466,080 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
PRC - [2014/03/25 21:59:52 | 000,841,032 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2013/12/17 15:02:58 | 000,209,736 | ---- | M] (Comfort Software Group) -- C:\Documents and Settings\jjjj\My Documents\Downloads\FreeVK.exe
PRC - [2013/10/11 09:30:47 | 000,295,512 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe
PRC - [2009/03/13 18:15:02 | 000,098,304 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
PRC - [2008/04/14 07:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2014/03/25 21:59:49 | 000,390,472 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\34.0.1847.92\ppgooglenaclpluginchrome.dll
MOD - [2014/03/25 21:59:45 | 004,081,480 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\34.0.1847.92\pdf.dll
MOD - [2014/03/25 21:59:38 | 001,647,432 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\34.0.1847.92\ffmpegsumo.dll
MOD - [2014/03/25 21:59:36 | 000,065,352 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\34.0.1847.92\chrome_elf.dll
MOD - [2010/02/04 02:10:22 | 000,147,968 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lxdxdrpp.dll
MOD - [2009/06/22 23:06:06 | 000,839,680 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.DLL
MOD - [2009/06/22 23:06:06 | 000,029,968 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\SqliteShared\1.0.3390.31024__0d0f4b69e50e559b\SqliteShared.dll
MOD - [2009/04/13 11:08:40 | 000,136,464 | ---- | M] () -- C:\Program Files\ASUS\Eee Storage\EcaremeDLL.dll
MOD - [2008/04/14 07:00:00 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
MOD - [2008/04/14 07:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll


========== Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014/04/02 13:28:29 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/03/30 06:05:12 | 002,466,080 | ---- | M] (Conduit) [Auto | Running] -- C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe -- (CltMngSvc)
SRV - [2013/12/03 17:10:24 | 002,151,200 | ---- | M] (IObit) [Disabled | Stopped] -- C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2013/10/01 11:58:09 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/08/27 13:25:30 | 000,511,256 | ---- | M] (Tanuki Software, Ltd.) [Disabled | Stopped] -- C:\ManageEngine\ServiceDesk\bin\wrapper.exe -- (servicedesk)
SRV - [2013/08/14 15:19:24 | 000,039,056 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/09/12 17:26:54 | 000,224,960 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Macrium\Reflect\ReflectService.exe -- (ReflectService.exe)
SRV - [2011/06/13 22:09:22 | 000,267,568 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe -- (MatSvc)
SRV - [2010/02/04 01:43:56 | 000,589,824 | ---- | M] ( ) [Disabled | Stopped] -- C:\WINDOWS\system32\lxdxcoms.exe -- (lxdx_device)
SRV - [2009/10/16 18:00:52 | 000,094,208 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdxserv.exe -- (lxdxCATSCustConnectService)
SRV - [2008/04/14 07:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\skeys.exe -- (SerialKeys)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\jjjj\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2014/03/04 12:54:32 | 000,029,600 | ---- | M] (IObit) [Kernel | Disabled | Stopped] -- C:\Program Files\IObit\IObit Unlocker\IObitUnlocker.sys -- (IObitUnlocker)
DRV - [2013/12/24 11:40:32 | 000,015,808 | ---- | M] (IObit) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV - [2013/10/07 00:17:38 | 000,014,272 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\hmd.sys -- (HMD)
DRV - [2013/08/21 23:21:39 | 000,934,312 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL)
DRV - [2013/08/21 23:21:39 | 000,118,440 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS)
DRV - [2013/08/21 23:21:39 | 000,052,984 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB)
DRV - [2013/08/21 23:21:39 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver)
DRV - [2013/08/21 23:21:38 | 000,556,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio)
DRV - [2013/08/21 23:17:40 | 000,098,504 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2013/08/21 23:09:18 | 005,444,680 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2013/08/21 23:09:08 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2013/08/21 23:09:05 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2013/04/03 16:22:58 | 000,142,128 | ---- | M] (IObit Information Technology) [File_System | Auto | Running] -- C:\Program Files\IObit\Protected Folder\pffilter.sys -- (PfFilter)
DRV - [2010/02/11 07:02:15 | 000,226,880 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2009/03/14 01:05:26 | 001,528,928 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2009/02/06 20:08:42 | 000,055,152 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2008/11/18 20:21:28 | 000,039,040 | ---- | M] (GenesysLogic Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\uvclf.sys -- (uvclf)
DRV - [2008/04/08 17:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2008/03/10 05:18:42 | 000,057,384 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwhid.sys -- (btwhid)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\SearchScopes,DefaultScope = {327F3CE9-5A9E-4286-886F-52FA95682C31}
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\SearchScopes\{AC2A1F03-A38E-4AB8-BE91-38D6F28DC2C2}: "URL" = http://www.google.com/search?q={searchTerms}&meta=
IE - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: ""
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8064.0206: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.6.14: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.6.14: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51: c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)


[2014/04/11 14:09:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\jjjj\Application Data\Mozilla\Firefox\Profiles\zjsa5ogq.default\extensions
[2013/09/05 16:41:43 | 000,000,904 | ---- | M] () -- C:\Documents and Settings\jjjj\Application Data\Mozilla\Firefox\Profiles\zjsa5ogq.default\searchplugins\yahoo.xml
[2014/03/07 01:58:15 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2013/11/16 14:00:48 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\updated\browser\extensions
[2013/11/16 14:01:25 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\updated\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JJJJ\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZJSA5OGQ.DEFAULT\EXTENSIONS\OUTFOX@OUTFOX.TV

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:eek:riginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:eek:mniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://search.conduit.com/?gd=&ctid...=SP470B8775-9E8A-4E43-913C-D9607EC88688&SSPV=
CHR - plugin: Error reading preferences file
CHR - Extension: Google Docs = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Google Wallet = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Documents and Settings\jjjj\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

Hosts file not found
O2 - BHO: (no name) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (no name) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (no name) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\ShellBrowser: (no name) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\real\realplayer\update\realsched.exe (RealNetworks, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Main present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Main present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Main present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Main present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Policies\Microsoft\Internet Explorer\Main present
O7 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Value error. File not found
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll File not found
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL File not found
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1343356335125 (MUWebControl Class)
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx (Reg Error: Value error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 208.180.42.68 208.180.42.100
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E1642D21-538A-439D-96A3-20579A9D2FB2}: DhcpNameServer = 208.180.42.68 208.180.42.100
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E1642D21-538A-439D-96A3-20579A9D2FB2}: NameServer = 8.26.56.26,8.20.247.20
O18 - Protocol\Handler\about - No CLSID value found
O18 - Protocol\Handler\dvd - No CLSID value found
O18 - Protocol\Handler\javascript - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\mailto - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O18 - Protocol\Handler\res - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\vbscript - No CLSID value found
O18 - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Filter\application/octet-stream - No CLSID value found
O18 - Protocol\Filter\application/x-complus - No CLSID value found
O18 - Protocol\Filter\application/x-msdownload - No CLSID value found
O20 - AppInit_DLLs: (C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll) - C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll (Conduit)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/05/20 14:19:37 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk /k:C *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2014/04/11 14:12:09 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2014/04/11 13:12:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Local Settings\Application Data\SearchProtect
[2014/04/11 13:12:39 | 001,016,261 | ---- | C] (Thisisu) -- C:\Documents and Settings\jjjj\Desktop\JRT_NEW.exe
[2014/04/11 13:12:29 | 000,000,000 | ---D | C] -- C:\Program Files\SearchProtect
[2014/04/11 11:56:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Application Data\Uninstaller Tool(Comodo Forums)
[2014/04/11 11:12:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\UVK - Ultra Virus Killer
[2014/04/09 20:47:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2014/04/08 14:25:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2014/04/08 14:03:32 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2014/04/08 14:00:28 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2014/04/08 14:00:28 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2014/04/08 14:00:28 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2014/04/08 14:00:28 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2014/04/08 14:00:11 | 000,000,000 | ---D | C] -- C:\ComboFix
[2014/04/08 13:59:56 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/04/08 13:59:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2014/04/07 08:04:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
[2014/04/07 08:00:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Desktop\mbar
[2014/04/07 07:40:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Desktop\RK_Quarantine
[2014/04/06 10:38:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Desktop\Unused Desktop Shortcuts.{5858A72C-C2B4-4DD7-B2BF-B76DB1BD9F6C}
[2014/04/06 10:38:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Desktop\Unused Desktop Shortcuts.{11016101-E366-4D22-BC06-4ADA335C892B}
[2014/04/05 00:04:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2014/04/04 22:48:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Local Settings\Application Data\MFAData
[2014/04/04 22:48:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2014/04/04 22:31:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2014/04/04 14:31:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\IObit Unlocker
[2014/04/02 13:42:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\MATS
[2014/04/02 13:42:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Fix it Center
[2014/04/02 12:42:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/04/02 12:42:46 | 000,052,312 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/04/02 12:42:46 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/04/02 12:42:46 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014/04/02 11:11:07 | 000,000,000 | ---D | C] -- C:\Program Files\UVK - Ultra Virus Killer
[2014/03/28 16:10:07 | 000,000,000 | ---D | C] -- C:\Diag-Advisor
[2014/03/28 15:13:51 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft
[2014/03/28 15:13:51 | 000,000,000 | ---D | C] -- C:\Program Files\Adware-Removal-Tool
[2014/03/28 11:27:15 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/03/27 12:03:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\jumpshot.com
[2014/03/26 22:30:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Application Data\SUPERAntiSpyware.com
[2014/03/26 21:51:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2014/03/26 20:13:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Package Cache
[2014/03/26 19:58:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2014/03/26 16:23:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Start Menu\Programs\Revo Uninstaller
[2014/03/26 16:23:00 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2014/03/26 14:15:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\iolo
[2014/03/26 14:14:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Application Data\ioloGovernor
[2014/03/26 13:45:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\PC HealthBoost
[2014/03/26 13:45:39 | 000,000,000 | ---D | C] -- C:\Program Files\PC HealthBoost
[2014/03/26 13:45:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BoostSoftware
[2014/03/26 13:25:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ErrorEND
[2014/03/26 11:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO
[2014/03/26 11:18:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\jjjj\Local Settings\Application Data\AdTrustMedia
[2014/03/26 11:15:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adtrustmedia
[2014/03/26 11:13:57 | 000,000,000 | ---D | C] -- C:\first_launch
[2014/03/26 11:13:30 | 000,000,000 | ---D | C] -- C:\Program Files\Comodo
[2014/03/25 00:13:57 | 000,000,000 | R--D | C] -- C:\Documents and Settings\jjjj\Recent
[2014/03/13 12:45:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Licenses
[2014/03/13 12:45:07 | 000,000,000 | ---D | C] -- C:\Program Files\SpywareBlaster
[2014/03/13 12:28:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Anvisoft
[2014/03/13 12:14:25 | 000,000,000 | ---D | C] -- C:\Program Files\Anvisoft
[2014/03/13 11:36:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Tasks
[2014/03/12 19:18:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014/03/12 16:04:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Java
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014/04/11 12:01:58 | 000,501,540 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014/04/11 12:01:58 | 000,090,596 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014/04/11 11:38:20 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014/04/11 11:38:05 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014/04/11 11:35:02 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2014/04/11 11:34:14 | 000,000,327 | -H-- | M] () -- C:\boot.ini
[2014/04/11 11:24:13 | 000,107,736 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/04/11 10:04:34 | 000,000,657 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\Shortcut to ComboFix.exe.lnk
[2014/04/09 20:53:06 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2014/04/08 14:28:12 | 000,913,118 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\combofix log
[2014/04/08 13:29:14 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2014/04/07 08:00:10 | 000,052,312 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/04/06 01:36:06 | 001,016,261 | ---- | M] (Thisisu) -- C:\Documents and Settings\jjjj\Desktop\JRT_NEW.exe
[2014/04/05 09:56:12 | 000,003,724 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\2nd dds zip.zip
[2014/04/05 09:55:44 | 000,003,775 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\ddstextzip.zip
[2014/04/05 09:50:13 | 000,011,407 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\dds.pif
[2014/04/04 22:54:47 | 000,573,929 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\AVGInstLog.cab
[2014/04/04 11:20:47 | 000,074,703 | ---- | M] () -- C:\WINDOWS\System32\mfc45.dat
[2014/04/03 09:50:56 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014/04/02 14:43:11 | 000,277,352 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2014/04/02 14:40:15 | 000,020,670 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (12).htm
[2014/04/02 14:38:06 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2014/04/02 14:37:21 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2014/04/02 14:37:21 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2014/04/02 12:29:41 | 000,003,579 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (11).htm
[2014/03/28 15:29:43 | 000,003,627 | ---- | M] () -- C:\WINDOWS\System32\profile.out
[2014/03/28 11:20:15 | 000,004,716 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (10).htm
[2014/03/27 11:46:09 | 000,001,864 | ---- | M] () -- C:\Documents and Settings\jjjj\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 7.lnk
[2014/03/26 23:15:19 | 000,003,286 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (9).htm
[2014/03/26 21:23:36 | 000,016,273 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (8).htm
[2014/03/26 19:25:17 | 000,001,954 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2014/03/26 18:01:43 | 000,000,890 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\Shortcut to FreeVK.lnk
[2014/03/26 16:52:25 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2014/03/26 16:23:01 | 000,000,917 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\Revo Uninstaller.lnk
[2014/03/26 14:16:44 | 000,000,406 | ---- | M] () -- C:\WINDOWS\System32\ioloBootDefrag.cfg
[2014/03/26 13:45:47 | 000,001,715 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\PC HealthBoost.lnk
[2014/03/24 23:32:14 | 000,003,981 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (7).htm
[2014/03/24 22:01:55 | 000,003,832 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (6).htm
[2014/03/16 15:19:14 | 000,000,942 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\YTD Video Downloader.lnk
[2014/03/13 12:58:40 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2014/03/13 11:32:00 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/13 11:32:00 | 000,000,878 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/13 11:30:25 | 000,004,169 | ---- | M] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (5).htm
[2014/03/13 11:24:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014/03/13 11:09:00 | 000,000,364 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2014/03/13 10:59:04 | 000,000,266 | ---- | M] () -- C:\WINDOWS\tasks\ASC7_PerformanceMonitor.job
[2014/03/13 10:59:02 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-4228500084-4231796197-1596153674-1005.job
[2014/03/13 10:59:02 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-4228500084-4231796197-1596153674-1005.job
[2014/03/12 20:22:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-4228500084-4231796197-1596153674-1005.job
[2014/03/12 16:37:43 | 000,001,831 | ---- | M] () -- C:\Documents and Settings\jjjj\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014/04/11 13:14:28 | 000,000,665 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\index.html
[2014/04/11 11:11:55 | 000,003,438 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer.htm
[2014/04/11 10:04:34 | 000,000,657 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\Shortcut to ComboFix.exe.lnk
[2014/04/08 14:28:11 | 000,913,118 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\combofix log
[2014/04/08 14:03:38 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2014/04/08 14:03:34 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2014/04/08 14:00:28 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014/04/08 14:00:28 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014/04/08 14:00:28 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014/04/08 14:00:28 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014/04/08 14:00:28 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014/04/05 09:56:12 | 000,003,724 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\2nd dds zip.zip
[2014/04/05 09:55:44 | 000,003,775 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\ddstextzip.zip
[2014/04/05 09:50:13 | 000,011,407 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\dds.pif
[2014/04/04 22:54:47 | 000,573,929 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\AVGInstLog.cab
[2014/04/04 14:49:23 | 000,020,241 | ---- | C] () -- C:\Documents and Settings\jjjj\My Documents\UVK - Ultra Virus Killer report (2).htm
[2014/04/04 14:49:01 | 000,003,579 | ---- | C] () -- C:\Documents and Settings\jjjj\My Documents\UVK - Ultra Virus Killer report.htm
[2014/04/02 12:39:47 | 000,020,670 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (12).htm
[2014/04/02 12:29:14 | 000,003,579 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (11).htm
[2014/03/28 11:18:04 | 000,004,716 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (10).htm
[2014/03/26 22:28:44 | 000,003,286 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (9).htm
[2014/03/26 19:50:41 | 000,016,273 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (8).htm
[2014/03/26 19:25:17 | 000,001,954 | ---- | C] () -- C:\WINDOWS\epplauncher.mif
[2014/03/26 16:23:01 | 000,000,917 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\Revo Uninstaller.lnk
[2014/03/26 14:16:44 | 000,000,406 | ---- | C] () -- C:\WINDOWS\System32\ioloBootDefrag.cfg
[2014/03/26 14:03:19 | 000,074,703 | ---- | C] () -- C:\WINDOWS\System32\mfc45.dat
[2014/03/26 13:45:47 | 000,001,715 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\PC HealthBoost.lnk
[2014/03/25 00:27:06 | 000,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2014/03/24 22:05:59 | 000,003,981 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (7).htm
[2014/03/24 22:01:00 | 000,003,832 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (6).htm
[2014/03/17 07:07:03 | 000,003,627 | ---- | C] () -- C:\WINDOWS\System32\profile.out
[2014/03/16 15:19:13 | 000,000,942 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\YTD Video Downloader.lnk
[2014/03/13 11:03:42 | 000,004,169 | ---- | C] () -- C:\Documents and Settings\jjjj\Desktop\UVK - Ultra Virus Killer report (5).htm
[2014/03/12 12:21:51 | 000,145,816 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2014/02/25 02:18:31 | 000,277,352 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013/10/07 00:17:38 | 000,014,272 | ---- | C] () -- C:\WINDOWS\System32\drivers\hmd.sys
[2013/10/02 22:02:15 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2013/08/26 11:22:08 | 000,003,723 | ---- | C] () -- C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml
[2013/08/07 16:46:59 | 000,268,968 | ---- | C] () -- C:\WINDOWS\System32\sqlite3.dll
[2013/06/14 19:06:53 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2013/02/04 13:19:44 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxdxvs.dll
[2013/02/04 13:19:40 | 000,409,600 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxcoin.dll
[2013/02/04 13:18:47 | 000,782,336 | ---- | C] () -- C:\WINDOWS\System32\lxdxdrs.dll
[2013/02/04 13:18:47 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\lxdxcaps.dll
[2013/02/04 13:18:47 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxdxcnv4.dll
[2013/02/04 13:18:07 | 001,105,920 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxserv.dll
[2013/02/04 13:18:07 | 000,843,776 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxusb1.dll
[2013/02/04 13:18:07 | 000,438,272 | ---- | C] ( ) -- C:\WINDOWS\System32\LXDXhcp.dll
[2013/02/04 13:18:07 | 000,364,544 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxinpa.dll
[2013/02/04 13:18:07 | 000,348,160 | ---- | C] () -- C:\WINDOWS\System32\LXDXinst.dll
[2013/02/04 13:18:07 | 000,339,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxiesc.dll
[2013/02/04 13:18:06 | 000,663,552 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxhbn3.dll
[2013/02/04 13:18:06 | 000,647,168 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxpmui.dll
[2013/02/04 13:18:06 | 000,569,344 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxlmpm.dll
[2013/02/04 13:18:06 | 000,315,392 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxih.exe
[2013/02/04 13:18:06 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxprox.dll
[2013/02/04 13:18:05 | 000,589,824 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxcoms.exe
[2013/02/04 13:18:05 | 000,376,832 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxcomm.dll
[2013/02/04 13:18:05 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lxdxgrd.dll
[2013/02/04 13:18:04 | 000,851,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxcomc.dll
[2013/02/04 13:18:04 | 000,360,448 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdxcfg.exe
[2012/11/03 18:47:41 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2012/11/03 18:37:02 | 000,025,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2012/10/27 20:24:20 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\jjjj\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/10/12 21:24:02 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/09/12 17:27:12 | 000,054,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\psmounterex.sys
[2012/08/25 01:26:09 | 000,027,520 | ---- | C] () -- C:\Documents and Settings\jjjj\Local Settings\Application Data\dt.dat
[2012/08/08 22:15:16 | 000,010,709 | ---- | C] () -- C:\WINDOWS\hpwscr19.dat
[2012/08/08 22:11:49 | 000,176,496 | ---- | C] () -- C:\WINDOWS\hpwins19.dat
[2012/08/08 22:11:48 | 000,000,997 | ---- | C] () -- C:\WINDOWS\hpwmdl19.dat
[2012/08/08 13:34:38 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
[2012/08/08 13:34:38 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
[2012/06/16 13:48:30 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll

========== ZeroAccess Check ==========

[2009/06/22 22:59:57 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009/03/02 18:04:03 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/02/09 07:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008/04/14 07:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013/05/12 08:43:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\TuneUp Software
[2014/03/26 11:15:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Adtrustmedia
[2014/03/13 12:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Anvisoft
[2014/02/24 23:26:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG
[2014/03/26 13:45:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BoostSoftware
[2012/06/20 17:25:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2014/03/26 13:25:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ErrorEND
[2013/06/10 18:40:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HitmanPro
[2013/02/16 14:14:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IDM
[2014/04/04 14:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2014/03/13 12:45:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Licenses
[2012/09/18 16:51:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Macrium
[2014/04/04 22:54:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2014/03/26 21:23:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Package Cache
[2014/03/24 11:47:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ProductData
[2009/06/22 22:47:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ralink Driver
[2012/11/09 13:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Startup Manager
[2013/08/31 14:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\surdoc
[2013/08/27 01:05:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SVG_Client
[2013/10/11 08:27:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2014/03/07 02:03:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UVK
[2013/12/11 08:00:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WavFrag
[2014/04/06 08:03:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YTD Video Downloader
[2014/02/24 23:42:27 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
[2013/12/05 08:25:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
[2013/09/01 14:45:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{5A85B23A-4B58-47D1-9B9C-DFBD7866099F}
[2013/02/11 11:59:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
[2013/09/01 14:46:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{D76294E6-03B8-4971-AF2E-3F846161A690}
[2013/10/11 09:58:47 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
[2013/05/12 08:43:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\TuneUp Software
[2014/02/24 22:51:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\5307769ae56da16226007293
[2012/08/10 01:17:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\Asus
[2014/02/24 23:25:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\AVG
[2013/04/22 21:22:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\DMCache
[2012/10/15 23:39:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\EeeStorageUploader
[2013/02/11 13:48:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\ElevatedDiagnostics
[2013/11/16 15:04:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\Freesr
[2013/04/27 19:19:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\IDM
[2014/03/26 22:32:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\IObit
[2012/06/27 20:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\IObit(2)
[2014/03/26 14:14:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\ioloGovernor
[2014/04/04 13:31:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\OpenDNS Updater
[2013/08/18 17:51:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\OpenOffice
[2014/02/27 14:53:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\Oracle
[2012/08/25 19:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\SumatraPDF
[2013/09/05 21:22:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\SurDoc
[2013/10/11 08:26:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\TuneUp Software
[2014/04/11 11:56:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\Uninstaller Tool(Comodo Forums)
[2014/02/21 10:57:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\jjjj\Application Data\viddyhddownload
[2014/02/26 20:14:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\AVG
[2014/03/26 14:15:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\iolo
[2013/10/12 09:55:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
[2014/02/24 21:27:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\IObit

========== Purity Check ==========



< End of report >
 
redtarget.gif

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following
Code:
:OTL
[2014/03/26 11:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO
[2014/03/26 11:13:30 | 000,000,000 | ---D | C] -- C:\Program Files\Comodo
[2014/03/13 11:09:00 | 000,000,364 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
PRC - [2014/03/30 06:05:16 | 004,672,288 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
PRC - [2014/03/30 06:05:12 | 003,027,232 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
PRC - [2014/03/30 06:05:12 | 002,466,080 | ---- | M] (Conduit) -- C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
SRV - File not found [Auto | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014/03/30 06:05:12 | 002,466,080 | ---- | M] (Conduit) [Auto | Running] -- C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe -- (CltMngSvc)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\jjjj\LOCALS~1\Temp\catchme.sys -- (catchme)
CHR - homepage: http://search.conduit.com/?gd=&ctid...=SP470B8775-9E8A-4E43-913C-D9607EC88688&SSPV=
O2 - BHO: (no name) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - No CLSID value found.
O2 - BHO: (no name) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\ShellBrowser: (no name) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-4228500084-4231796197-1596153674-1005\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Value error. File not found
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll File not found
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL File not found
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx (Reg Error: Value error.)
O20 - AppInit_DLLs: (C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll) - C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll (Conduit)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - No CLSID value found.
[2014/02/24 23:26:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG


:Services

:Reg

:Files
C:\FRST
C:\Program Files\SearchProtect

:Commands
[purity]
[emptytemp]
[emptyjava]
[emptyflash]
[resethosts]
[Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • You will get a log that shows the results of the fix. Please post it.

NOTE. If for any reason OTL stalls (most likely at "killing processes..." step) run the fix from safe mode.

redtarget.gif
See if you can install one of these after running OTL fix:

- Avast! free antivirus: http://www.avast.com/eng/download-avast-home.html

- free Microsoft Security Essentials: http://windows.microsoft.com/en-GB/windows/products/security-essentials
Note for Windows 8 users: Microsoft Security Essentials comes preinstalled and renamed as Windows Defender.
You can keep it or you have to disable it before installing another AV program. How to...

- free Comodo Antivirus: http://www.comodo.com/home/internet-security/antivirus.php
 
All processes killed
========== OTL ==========
C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO\Dragon\User Data folder moved successfully.
C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO\Dragon folder moved successfully.
C:\Documents and Settings\LocalService\Local Settings\Application Data\COMODO folder moved successfully.
C:\Program Files\Comodo folder moved successfully.
File C:\WINDOWS\tasks\avast! Emergency Update.job not found.
No active process named cltmng.exe was found!
No active process named cltmngui.exe was found!
No active process named CltMngSvc.exe was found!
Service AppMgmt stopped successfully!
Service AppMgmt deleted successfully!
File %SystemRoot%\System32\appmgmts.dll not found.
Service CltMngSvc stopped successfully!
Service CltMngSvc deleted successfully!
File C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe not found.
Service WDICA stopped successfully!
Service WDICA deleted successfully!
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
Service Changer stopped successfully!
Service Changer deleted successfully!
Service catchme stopped successfully!
Service catchme deleted successfully!
File C:\DOCUME~1\jjjj\LOCALS~1\Temp\catchme.sys not found.
Use Chrome's Settings page to change the HomePage.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3049C3E9-B461-4BC5-8870-4C09146192CA}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\ not found.
Registry value HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-4228500084-4231796197-1596153674-1005\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92780B25-18CC-41C8-B9BE-3C9C571A8263}\ not found.
Starting removal of ActiveX control {C345E174-3E87-4F41-A01C-B066A90A49B4}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C345E174-3E87-4F41-A01C-B066A90A49B4}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C345E174-3E87-4F41-A01C-B066A90A49B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C345E174-3E87-4F41-A01C-B066A90A49B4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{C345E174-3E87-4F41-A01C-B066A90A49B4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C345E174-3E87-4F41-A01C-B066A90A49B4}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls not found.
File C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}\ not found.
C:\Documents and Settings\All Users\Application Data\AVG\AWL2014 folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG\AWL\Program Statistics folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG\AWL folder moved successfully.
C:\Documents and Settings\All Users\Application Data\AVG folder moved successfully.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
File\Folder C:\FRST not found.
C:\Program Files\SearchProtect\Main\rep folder moved successfully.
C:\Program Files\SearchProtect\Main folder moved successfully.
C:\Program Files\SearchProtect folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: jjjj
->Temp folder emptied: 50199442 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 71790503 bytes
->Flash cache emptied: 636 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 78991 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Google Chrome cache emptied: 6774034 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 28783 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 85266916 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 519209 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 205.00 mb


[EMPTYJAVA]

User: Administrator

User: All Users

User: Default User

User: jjjj

User: LocalService

User: NetworkService

Total Java Files Cleaned = 0.00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: Default User

User: jjjj
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0.00 mb

Error: Unble to create default HOSTS file!
Error: Unable to interpret <Then click the Run Fix button at the top> in the current context!
Error: Unable to interpret <Let the program run unhindered, reboot the PC when it is done> in the current context!

OTL by OldTimer - Version 3.2.69.0 log created on 04132014_092120

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
 
Cool! overall, everything is running much better. microsoft updates are working. installed comodo, seems to be running fine.

Would you keep/use the privdog that came with comodo?

Thanks for all of your hard work.
 
Privdog is fine.

Disable updates for now.

Good news so far...

redtarget.gif
Download Security Check from here or here and save it to your Desktop.
  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.
NOTE 2 SecurityCheck may produce some false warning(s), so leave the results reading to me.


redtarget.gif
Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

redtarget.gif
Download Temp File Cleaner (TFC)
Alternate download: http://www.itxassociates.com/OT-Tools/TFC.exe
  • Double click on TFC.exe to run the program.
  • Click on Start button to begin cleaning process.
  • TFC will close all running programs, and it may ask you to restart computer.

redtarget.gif
Please run a free online scan with the ESET Online Scanner

  • Disable your antivirus program
  • Click on "Run ESET Online Scanner" button.
  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • Accept any security warnings from your browser.
  • Check Scan archives
  • Click Start
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click on List of found threats
  • Click on Export to text file , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • NOTE. If Eset won't find any threats, it won't produce any log.
 
Results of screen317's Security Check version 0.99.81
Windows XP Service Pack 3 x86
Internet Explorer 8
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Disabled!
COMODO Internet Security Premium
UVK - Ultra Virus Killer
`````````Anti-malware/Other Utilities Check:`````````
CCleaner
Java 7 Update 51
Adobe Flash Player 12.0.0.77
Adobe Reader 10.1.9 Adobe Reader out of Date!
Mozilla Firefox 24.0 Firefox out of Date!
Google Chrome 34.0.1847.76
Google Chrome 34.0.1847.92
````````Process Check: objlist.exe by Laurent````````
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
 
Farbar Service Scanner Version: 25-02-2014
Ran by jjjj (administrator) on 14-04-2014 at 13:27:04
Running from "C:\Documents and Settings\jjjj\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is unreachable
Attempt to access Google.com returned error: Google.com is unreachable
Attempt to access Yahoo.com returned error: Yahoo.com is unreachable


Windows Firewall:
=============

Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0


System Restore:
============

System Restore Disabled Policy:
========================


Security Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Other Services:
==============


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit

Extra List:
=======
cmdHlp(16) fssfltr(8) Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3) Tcpip6(14)
0x0B0000000400000001000000020000000300000010000000090000000B0000000E0000000D0000000C00000005000000
IpSec Tag value is correct.

**** End of log ****
 
redtarget.gif
Update Firefox to the latest 28.0 version.

redtarget.gif
Update Adobe Reader

You can download it from https://www.techspot.com/downloads/2083-adobe-reader-dc.html
After installing the latest Adobe Reader, uninstall all previous versions (if present).
Note. If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.

====================================

Your computer is clean

1. This step will remove all cleaning tools we used, it'll reset restore points (so you won't get reinfected by accidentally using some older restore point) and it'll make some other minor adjustments...
This is a very crucial step so make sure you don't skip it.
Download
51a5ce45263de-delfix.png
DelFix by Xplode to your desktop. Delfix will delete all the used tools and logfiles.

Double-click Delfix.exe to start the tool.
Make sure the following items are checked:
  • Activate UAC (optional; some users prefer to keep it off)
  • Remove disinfection tools
  • Create registry backup
  • Purge System Restore
  • Reset system settings
Now click "Run" and wait patiently.
Once finished a logfile will be created. You don't have to attach it to your next reply.

2. Make sure Windows Updates are current.

3. If any trojans, rootkits or bootkits were listed among your infection(s), make sure, you change all of your on-line important passwords (bank account(s), secured web sites, etc.) immediately!

4. Check if your browser plugins are up to date.
Firefox - https://www.mozilla.org/en-US/plugincheck/
other browsers: https://browsercheck.qualys.com/ (click on "Launch a quick scan now" link)

5. Download, and install WOT (Web OF Trust): http://www.mywot.com/. It'll warn you (in most cases) about dangerous web sites.

6. Run Malwarebytes "Quick scan" once in a while to assure safety of your computer.

7. Run Temporary File Cleaner (TFC), AdwCleaner and Junkware Removal Tool (JRT) weekly (you need to redownload these tools since they were removed by DelFix).

8. Download and install Secunia Personal Software Inspector (PSI): https://www.techspot.com/downloads/4898-secunia-personal-software-inspector-psi.html. The Secunia PSI is a FREE security tool designed to detect vulnerable and out-dated programs and plug-ins which expose your PC to attacks. Run it weekly.

9. (optional) If you want to keep all your programs up to date, download and install FileHippo Update Checker.
The Update Checker will scan your computer for installed software, check the versions and then send this information to FileHippo.com to see if there are any newer releases.

10. When installing\updating ANY program, make sure you always select "Custom " installation, so you can UN-check any possible "drive-by-install" (foistware), like toolbars etc., which may try to install along with the legitimate program. Do NOT click "Next" button without looking at any given page.

11. Read:
How did I get infected?, With steps so it does not happen again!: http://www.bleepingcomputer.com/forums/topic2520.html
Simple and easy ways to keep your computer safe and secure on the Internet: http://www.bleepingcomputer.com/tutorials/keep-your-computer-safe-online/
About those Toolbars and Add-ons - Potentially Unwanted Programs (PUPs) which change your browser settings: http://www.bleepingcomputer.com/for...curity-questions-best-practices/#entry3187642

12. Please, let me know, how your computer is doing.
 
Back