przez riva 15 Lip 2008, 22:03
plik raportu
[code]
[b]SDFix: Version 1.205 [/b]
Run by Administrator on 2008-07-15 at 21:24
Microsoft Windows XP [Wersja 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
No Trojan Files Found
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-15 21:39:03
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0009dd600c57]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\BTHPORT\Parameters\Keys\0009dd600c57]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\BTHPORT\Parameters\Keys\0009dd600c57]
scanning hidden registry entries ...
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Warcraft III Demo]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,90,f5,06,00,00,00,00,54,ab,94,a0,82,..
"Changed"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer]
"WebFindBandHook"="{68F2D3FC-8366-4a46-8224-58EFA2749425}"
"FileFindBandHook"="{FFAC7A18-EDF9-40de-BA3F-49FC2269855E}"
"CleanShutdown"=dword:00000000
"IconUnderline"=hex(0):03,00,00,00
"Browse For Folder Width"=dword:0000013e
"Browse For Folder Height"=dword:00000120
"SearchSystemDirs"=dword:00000001
"SearchHidden"=dword:00000000
"IncludeSubFolders"=dword:00000001
"CaseSensitive"=dword:00000000
"SearchSlowFiles"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
"ListviewAlphaSelect"=dword:00000001
"ListviewShadow"=dword:00000001
"ListviewWatermark"=dword:00000001
"TaskbarAnimations"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\EventHandlersDefaultSelection]
"ShowPicturesOnArrival"="MSOpenFolder"
"PlayVideoFilesOnArrival"="MSPlayMediaOnArrival"
"PlayCDAudioOnArrival"="MSPlayCDAudioOnArrival"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CabinetState]
"FullPath"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CD Burning]
"CD Recorder Drive"="\\?\Volume{9421e349-18a3-11d9-bcf4-806d6172696f}\"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CD Burning\Current Media]
"TotalBytes"=hex:00,68,1c,02,00,00,00,00
"FreeBytes"=hex:00,00,00,00,00,00,00,00
"Media Type"=dword:00000002
"UDF"=dword:00000000
"Disc Label"="Chily My"
"Set"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CD Burning\Drives\Volume{9421e349-18a3-11d9-bcf4-806d6172696f}]
"Drive Type"=dword:00000002
"CurrentCDWriteSpeed"=dword:ffffffff
"MaxCDWriteSpeed"=dword:00000018
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\DefaultIcon]
@=str(2):"%SystemRoot%\SYSTEM32\shell32.dll,17"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\DefaultIcon]
@=str(2):"%SystemRoot%\explorer.exe,0"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU]
"MRUList"="adcb"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*]
"a"="C:\Installs\NBR63125PLK.exe"
"MRUList"="hjigfedcba"
"b"="C:\Installs\aawsepersonal.exe"
"c"="C:\Program Files\Adobe\Photoshop 7.0\ImageReady.exe"
"d"="C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe"
"e"="C:\Documents and Settings\Jerzy\Moje dokumenty\bzbg1.mp3"
"f"="C:\Documents and Settings\Jerzy\Moje dokumenty\bzbg2.mp3"
"g"="C:\Documents and Settings\Jerzy\Moje dokumenty\PIT\aktywny PIT 5 2004.xlt"
"h"="C:\Installs\Lexmark\cj201100se.exe"
"i"="C:\Installs\Lexmark\cjwn1mlp_dlaStaregoWindowsa.exe"
"j"="C:\Installs\LXK1000\lxzusdrv.inf"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe]
"a"="C:\Installs\NBR63125PLK.exe"
"MRUList"="efdcba"
"c"="C:\Program Files\Adobe\Photoshop 7.0\ImageReady.exe"
"d"="C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe"
"e"="C:\Installs\Lexmark\cj201100se.exe"
"f"="C:\Installs\Lexmark\cjwn1mlp_dlaStaregoWindowsa.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\inf]
"a"="C:\Installs\LXK1000\lxzusdrv.inf"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\mp3]
"a"="C:\Documents and Settings\Jerzy\Moje dokumenty\bzbg1.mp3"
"MRUList"="ba"
"b"="C:\Documents and Settings\Jerzy\Moje dokumenty\bzbg2.mp3"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\xlt]
"a"="C:\Documents and Settings\Jerzy\Moje dokumenty\PIT\aktywny PIT 5 2004.xlt"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComputerDescriptions]
"mr"=""
"ADAMW"="Adam WawiDski"
"AGNIESZKAW"="Agnieszka Witkowska"
"ANDRZEJB"="Andrzej BiaBy"
"ANDRZEJK"="Andrzej KoBodziejuk"
"ANETAB"="Aneta Biel"
"ANNAB"=""
"ANNABR"="Anna BrzeziDska"
"ANNAD"="Anna DbiDska"
"ANNAM"="Ania M Ksiegowosc"
"ARTURM"="Artur Marcinkiewicz"
"AXIS"="AXIS StorPoint NAS 100, Storage Server, V1."
"BOGDAN"="Bogdan Maczewski"
"CALLCENTER2"="Call Center MagdaB"
"CRM_SERWER"="Samba 2.2.8"
"DAREKT"="Darek Trudnowski"
"DOMINIKK"="Domonik KudBa"
"DOROTAW"="Dorota Walerysiak"
"EDYTAG"="EdytaG"
"EDYTAPO"="Edyta PomykaBa Kadry"
"EWA"="Adamek"
"GRZEGORZM"="Grzegorz MechliDski"
"IWONAB"="Iwona BihaBowicz"
"IWONAJ"="Iwona Jesionek"
"JACEKS"="Jacek Sobkowski"
"JAREKS"="Jarek Szadkowski"
"JUSTYNAP"="Justyna PBudowska"
"KALIWODA"="Magda Machaj DH"
"KASA"="Kasia Szysz"
"KASIAG"="Katarzyna GardziDska"
"KASIAR"="Kasia RuciDska"
"KONRADP"="Konrad PszczóBkowski"
"KRZYSZTOFB"="Krzysztof BiaBy"
"KRZYSZTOFK"="Krzysztof Kotowski"
"JERZYR"="laptop"
"C2400"=""
"ADMIN"="M. Pliszkiewicz"
"ANESTEZJOLODZY"=""
"BLOK_OPER"=""
"DDISM_KD"=""
"GINEKOLOGIA-L1"=""
"GINEKOLOGIA-L2"=""
"GINEKOLOGIA-P1"="Ginekologia - Konsola"
"ISO-ZSJ"=""
"IZBA-N1"=""
"IZBA2"=""
"IZBA3"=""
"KOMASZYNSKA"=""
"LABORATORIUM-01"=""
"LABORATORIUM02"=""
"PON-WYPISY"=""
"POA_APT"=""
"SALA_PORODOWA_1"=""
"SEKRETARIAT"="Sekretariat"
"SERWER2000"=""
"ZAST_GL_KSIEG"=""
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz]
"Last used time"=hex(0):60,2b,66,db,33,89,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.20/]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.20/\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\OpenWithList]
"a"="shimgvw.dll"
"MRUList"="ba"
"b"="Photoshop.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.de/languages/]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.de/languages/\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.de/languages/NBR/]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.de/languages/NBR/\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ini\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp3\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg\OpenWithList]
"a"="wmplayer.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppt\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rar\OpenWithList]
"a"="WinRAR.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xls\OpenWithList]
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xlt\OpenWithList]
"MRUList"="ba"
"b"="iexplore.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\Nero\Nero 6 Demo]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\mks_vir]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\A]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0ad05785-17c5-11d9-a1b3-806d6172696f}]
"BaseClass"="Drive"
"_AutorunStatus"=hex:01,00,01,00,00,01,00,df,df,5f,cf,5f,5f,5f,5f,cf,cf,5f,5f,cf,cf,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c54f508-6cb4-11d9-bb6e-806d6172696f}]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c54f509-6cb4-11d9-bb6e-806d6172696f}]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{64c4c065-1909-11d9-bcf9-00030d08aa13}]
"BaseClass"="Drive"
"_AutorunStatus"=hex:01,00,01,00,00,01,00,df,df,5f,df,5f,5f,5f,5f,df,df,5f,5f,df,df,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{64c4c065-1909-11d9-bcf9-00030d08aa13}\shell]
@="None"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{64c4c065-1909-11d9-bcf9-00030d08aa13}\shell\Autoplay]
"MUIVerb"="@shell32.dll,-8504"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{64c4c065-1909-11d9-bcf9-00030d08aa13}\shell\Autoplay\DropTarget]
"CLSID"="{f26a669a-bcbb-4e37-abf9-7325da15f931}"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8dafca5e-f367-11d8-98c2-806d6172696f}]
"BaseClass"="Drive"
"_AutorunStatus"=hex:01,00,01,00,00,01,00,df,df,5f,cf,5f,5f,5f,5f,cf,cf,5f,5f,cf,cf,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8dafca60-f367-11d8-98c2-806d6172696f}]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8dafca61-f367-11d8-98c2-806d6172696f}]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9421e348-18a3-11d9-bcf4-806d6172696f}]
"BaseClass"="Drive"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9421e349-18a3-11d9-bcf4-806d6172696f}]
"BaseClass"="Drive"
"_AutorunStatus"=hex:01,00,01,00,00,01,00,df,df,5f,cf,5f,5f,5f,5f,01,01,00,5f,ee,ff,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9421e349-18a3-11d9-bcf4-806d6172696f}\shell]
@="None"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9421e349-18a3-11d9-bcf4-806d6172696f}\shell\Autoplay]
"MUIVerb"="@shell32.dll,-8504"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9421e349-18a3-11d9-bcf4-806d6172696f}\shell\Autoplay\DropTarget]
"CLSID"="{f26a669a-bcbb-4e37-abf9-7325da15f931}"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a35307c1-f35f-11d8-b10a-806d6172696f}]
"BaseClass"="Drive"
"_AutorunStatus"=hex:01,00,01,00,00,01,00,df,df,5f,df,5f,5f,5f,5f,df,df,5f,5f,df,df,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{BDEADF00-C265-11d0-BCED-00A0C90AB50F}]
@="Foldery sieci Web"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.bmp]
"0"=hex:63,00,6f,00,72,00,65,00,63,00,7a,00,6b,00,61,00,31,00,2e,00,62,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.DOC]
"MRUListEx"=hex:04,00,00,00,03,00,00,00,02,00,00,00,00,00,00,00,ff,ff,ff,ff
"0"=hex:50,00,6c,00,61,00,6e,00,20,00,6f,00,70,00,65,00,72,00,61,00,63,..
"2"=hex:5a,00,67,00,61,00,64,00,7a,00,61,00,6d,00,20,00,73,00,69,00,19,..
"3"=hex:42,00,6f,00,6a,00,6f,00,77,00,6e,00,69,00,6b,00,2e,00,64,00,6f,..
"4"=hex:4c,00,61,00,62,00,69,00,72,00,79,00,6e,00,74,00,6f,00,77,00,61,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.inf]
"0"=hex:6c,00,78,00,7a,00,75,00,73,00,64,00,72,00,76,00,2e,00,69,00,6e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.jpg]
"0"=hex:50,00,54,00,43,00,20,00,32,00,20,00,50,00,53,00,4e,00,4e,00,4e,..
"MRUListEx"=hex:03,00,00,00,02,00,00,00,01,00,00,00,00,00,00,00,ff,ff,ff,ff
"1"=hex:64,00,7a,00,69,00,65,00,63,00,6b,00,6f,00,20,00,77,00,20,00,6b,..
"2"=hex:4a,00,65,00,72,00,7a,00,79,00,20,00,52,00,6f,00,64,00,7a,00,65,..
"3"=hex:72,00,6f,00,64,00,7a,00,69,00,6e,00,61,00,2d,00,7a,00,61,00,73,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.mp3]
"0"=hex:62,00,7a,00,62,00,67,00,31,00,2e,00,6d,00,70,00,33,00,00,00,42,..
"MRUListEx"=hex:01,00,00,00,00,00,00,00,ff,ff,ff,ff
"1"=hex:62,00,7a,00,62,00,67,00,32,00,2e,00,6d,00,70,00,33,00,00,00,42,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.ppt]
"0"=hex:66,00,73,00,64,00,67,00,6a,00,2e,00,70,00,70,00,74,00,00,00,42,..
"MRUListEx"=hex:02,00,00,00,00,00,00,00,ff,ff,ff,ff
"2"=hex:4e,00,6f,00,77,00,6f,00,63,00,7a,00,65,00,73,00,6e,00,61,00,20,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.rar]
"0"=hex:77,00,69,00,6e,00,72,00,61,00,72,00,5f,00,63,00,72,00,61,00,63,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt]
"0"=hex:73,00,65,00,72,00,69,00,61,00,6c,00,2e,00,74,00,78,00,74,00,00,..
"MRUListEx"=hex:03,00,00,00,02,00,00,00,00,00,00,00,ff,ff,ff,ff
"2"=hex:4e,00,65,00,72,00,6f,00,20,00,36,00,2e,00,33,00,2e,00,31,00,2e,..
"3"=hex:53,00,4e,00,2e,00,74,00,78,00,74,00,00,00,3a,00,32,00,00,00,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.xls]
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:61,00,6b,00,74,00,79,00,77,00,6e,00,79,00,20,00,50,00,49,00,54,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.xlt]
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:61,00,6b,00,74,00,79,00,77,00,6e,00,79,00,20,00,50,00,49,00,54,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\NetHood]
"0"=hex:5c,00,5c,00,47,00,69,00,6e,00,65,00,6b,00,6f,00,6c,00,6f,00,67,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Startup"="C:\Documents and Settings\Jerzy\Menu Start\Programy\Autostart"
"My Video"=""
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage]
"FavoritesChanges"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders]
"Recent"=str(2):"%USERPROFILE%\Recent"
"Startup"=str(2):"%USERPROFILE%\Menu Start\Programy\Autostart"
"My Pictures"=str(2):"%USERPROFILE%\Moje dokumenty\Moje obrazy"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Printers]
"a"="\\ANESTEZJOLODZY\AGFA-ACCUSET"
"MRUList"="ljihgfedcbak"
"b"="\\BLOK_OPER\HP"
"c"="\\DDISM_KD\OKI"
"d"="\\DDISM_KD\OKIDATA"
"e"="\\DDISM_KD\HP"
"f"="\\GINEKOLOGIA-L1\HP"
"g"="\\KOMASZYNSKA\HP1000"
"h"="\\LABORATORIUM-01\HP"
"i"="\\LABORATORIUM-01\LASER JET 6L"
"j"="\\PON-WYPISY\HP"
"k"="\\JERZYR\Drukarka"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/C]
"Filename"="c na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/CD-ROM]
"Filename"="cd-rom na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/DOKUMENT]
"Filename"="dokument na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/DOWNLOADS]
"Filename"="downloads na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/E]
"Filename"="e na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/INSTALL]
"Filename"="install na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/PWRCHUTE]
"Filename"="pwrchute na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/Q]
"Filename"="q na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ADMIN/VIRUSDEFS]
"Filename"="virusdefs na M. Pliszkiewicz (Admin)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/ANDRZEJ SZYM]
"Filename"="andrzej szym na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/ANTYBIOTYKOT]
"Filename"="antybiotykot na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/DIABLO]
"Filename"="diablo na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/EDITH]
"Filename"="edith na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/EWA-ZALEGAJ]
"Filename"="ewa-zalegaj na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/JACEK LENART]
"Filename"="jacek lenart na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/JACEK NOWICK]
"Filename"="jacek nowick na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/RAPORTPP]
"Filename"="raportpp na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ANESTEZJOLODZY/ZESZYT ZN]
"Filename"="zeszyt zn na Anestezjolodzy"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\BLOK_OPER/D]
"Filename"="d na Blok_oper"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\BLOK_OPER/KASIA]
"Filename"="kasia na Blok_oper"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\C2400/Kocur]
"Filename"="Kocur na C2400"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\C2400/Tools (E)]
"Filename"="Tools (E) na C2400"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\C2400/Turcja 2004]
"Filename"="Turcja 2004 na C2400"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\DDISM_KD/INSTALLS]
"Filename"="installs na Ddism_kd"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\DDISM_KD/PROGRAM PAAT]
"Filename"="program pBat na Ddism_kd"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\DDISM_KD/ROBOCZY]
"Filename"="roboczy na Ddism_kd"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/C]
"Filename"="c na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/DOKUMENTY]
"Filename"="dokumenty na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/HISTEROSKOPI]
"Filename"="histeroskopi na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/OPERACJE]
"Filename"="operacje na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/R_MAKO~1]
"Filename"="r_mako~1 na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-L1/VIRUSDEFS]
"Filename"="virusdefs na Ginekologia-l1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-P1/PANASONIC]
"Filename"="panasonic na Ginekologia - Konsola (Ginekologia-p1)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\GINEKOLOGIA-P1/VIRUSDEFS]
"Filename"="virusdefs na Ginekologia - Konsola (Ginekologia-p1)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ISO-ZSJ/PROGRAM]
"Filename"="program na Iso-zsj"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\IZBA2/VIRUSDEFS]
"Filename"="virusdefs na Izba2"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\IZBA3/C]
"Filename"="c na Izba3"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\JERZYR/SharedDocs]
"Filename"="SharedDocs na laptop (Jerzyr)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\KOMASZYNSKA/APTEKA SZPIT]
"Filename"="apteka szpit na Komaszynska"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\KOMASZYNSKA/IZA]
"Filename"="iza na Komaszynska"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\KOMASZYNSKA/POWIKAANIA/]
"Filename"="powikBania na Komaszynska"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\KOMASZYNSKA/RW]
"Filename"="rw na Komaszynska"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\LABORATORIUM-01/CENTRUM]
"Filename"="centrum na Laboratorium-01"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\LABORATORIUM-01/VIRUSDEFS]
"Filename"="virusdefs na Laboratorium-01"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\LABORATORIUM02/MOJE DOKUMEN]
"Filename"="moje dokumen na Laboratorium02"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\POA_APT/C]
"Filename"="c na PoB_apt"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\SALA_PORODOWA_1/C]
"Filename"="c na Sala_porodowa_1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\SALA_PORODOWA_1/MOJE DOKUMEN]
"Filename"="moje dokumen na Sala_porodowa_1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\SALA_PORODOWA_1/PP{}]
"Filename"="pp{} na Sala_porodowa_1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\SALA_PORODOWA_1/VIRUSDEFS]
"Filename"="virusdefs na Sala_porodowa_1"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\SEKRETARIAT/PWRCHUTE]
"Filename"="pwrchute na Sekretariat (Sekretariat)"
"DateLastVisited"=hex:a2,88,bf,61,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WorkgroupCrawler\Shares\ZAST_GL_KSIEG/C]
"Filename"="c na Zast_gl_ksieg"
"DateLastVisited"=hex:32,8b,de,69,f8,ae,c4,01
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\GrpConv\MapGroups]
"Gry"="Akcesoria\Gry"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 6.0; Win32)"
"NoNetAutodial"=dword:00000000
"SyncMode5"=dword:00000004
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"PerUserItem"=dword:00000001
"CacheLimit"=dword:0000c800
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"PerUserItem"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012004100420041011]
"CachePath"=str(2):"%USERPROFILE%\Ustawienia lokalne\Historia\History.IE5\MSHist012004100420041011\"
"CachePrefix"=":2004100420041011: "
"CacheLimit"=dword:00002000
"CacheOptions"=dword:0000000b
"CacheRepair"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012004101120041012]
"CachePath"=str(2):"%USERPROFILE%\Ustawienia lokalne\Historia\History.IE5\MSHist012004101120041012\"
"CachePrefix"=":2004101120041012: "
"CacheLimit"=dword:00002000
"CacheOptions"=dword:0000000b
"CacheRepair"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"PerUserItem"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Content]
"CacheLimit"=dword:0000c800
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport]
@=""
"NumRegistrationRuns"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\DAMap]
@=""
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History]
"DaysToKeep"=dword:00000014
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0]
"DisplayName"="Mój komputer"
"Description"="Ten komputer"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1]
"Flags"=dword:000000db
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2]
"1001"=dword:00000000
"1004"=dword:00000001
"1201"=dword:00000001
"1406"=dword:00000000
"1407"=dword:00000000
"1607"=dword:00000000
"1800"=dword:00000000
"1804"=dword:00000000
"1805"=dword:00000000
"1A00"=dword:00000000
"1A04"=dword:00000000
"1A05"=dword:00000000
"1C00"=dword:00030000
"1E05"=dword:00030000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3]
"1407"=dword:00000000
"1607"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4]
"Description"="Ta strefa zawiera witryny sieci Web, które mog potencjalnie uszkodzi komputer lub dane."
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe"
"MSMSGS"=""C:\Program Files\Messenger\msmsgs.exe" /background"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings\ZoneMap]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings\ZoneMap\ProtocolDefaults]
"tv"=dword:00000003
"dvd"=dword:00000003
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BDEADF00-C265-11d0-BCED-00A0C90AB50F}]
@="Foldery sieci Web"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Syncmgr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Syncmgr\Handlers]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\ThemeManager]
"WCreatedUser"="1"
"LoadedBefore"="1"
"ThemeActive"="1"
"LastUserLangID"="1045"
"DllName"=str(2):"%SystemRoot%\resources\Themes\luna\luna.msstyles"
"ColorName"="NormalColor"
"SizeName"="NormalSize"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Themes\LastTheme]
"Wallpaper"=str(2):"%SystemRoot%\Web\Wallpaper\Stonehenge.jpg"
"DisplayName of Modified"="Windows XP (zmodyfikowano)"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Warcraft III Demo]
"DisplayName"="Warcraft III Demo"
"UninstallString"="C:\WINDOWS\W3DemoUnin.exe C:\WINDOWS\W3DemoUnin.dat"
"DisplayIcon"="C:\WINDOWS\W3DemoUnin.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Webcheck\Store.1\{08F412A6-8766-01C4-0000-0000E5E850AA}]
"~SubsInfo"=hex:2c,00,00,00,10,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,..
"URL"=hex:4d,4f,43,4b,08,00,f4,08,66,87,c4,01,fc,48,09,00,e5,e8,50,aa,16,..
@="Moja bie|ca strona gBówna"
"Name"=hex:4d,4f,43,4b,08,00,f4,08,66,87,c4,01,04,4b,09,00,e5,e8,50,aa,36,..
"DesktopComponent"=hex:4d,4f,43,4b,03,00,00,00,00,00,06,00,01,00,00,00,04,4b,09,00
"RecurseFlags"=hex:4d,4f,43,4b,03,00,00,00,00,00,af,74,32,00,00,00,14,c4,08,00
"ActualSizeKB"=hex:4d,4f,43,4b,03,00,00,00,00,00,af,74,00,00,00,00,14,c4,08,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\BagMRU\0\1]
"0"=hex:48,00,31,00,00,00,00,00,32,2c,e4,b1,13,00,4a,45,52,5a,59,52,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\BagMRU\0\1\0]
"NodeSlot"=dword:00000004
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Bags\1\Desktop]
"Col"=dword:ffffffff
"ScrollPos1152x864(1).x"=dword:00000000
"ScrollPos1152x864(1).y"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Bags\2\Shell]
"ScrollPos1024x768(1).y"=dword:00000002
"MinPos1024x768(1).x"=dword:ffffffff
"MinPos1024x768(1).y"=dword:ffffffff
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Address"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Bags\3\Shell]
"MinPos1024x768(1).y"=dword:ffffffff
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Address"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Bags\4\Shell]
"WinPos1024x768(1).left"=dword:00000084
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:000003a4
"WinPos1024x768(1).bottom"=dword:000002e2
"Address"=dword:ffffffff
"ScrollPos1024x768(1).y"=dword:0000002d
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam]
@="JERZYR"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0]
"NodeSlot"=dword:00000003
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\0\0]
"NodeSlot"=dword:00000010
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\0\1]
"NodeSlot"=dword:00000019
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\0\2]
"NodeSlot"=dword:0000002e
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1]
"NodeSlot"=dword:00000004
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\0]
"NodeSlot"=dword:00000005
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\0\0]
"NodeSlot"=dword:0000002c
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\0\1]
"NodeSlot"=dword:0000002d
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\0]
"0"=hex:54,00,31,00,00,00,00,00,48,31,15,4c,11,00,50,72,6f,67,72,61,6d,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\0\0]
"NodeSlot"=dword:0000000a
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:3a,00,31,00,00,00,00,00,00,00,00,00,10,00,57,69,6e,52,41,52,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\0\0\0]
"NodeSlot"=dword:0000000f
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\1]
"NodeSlot"=dword:00000011
"MRUListEx"=hex:00,00,00,00,01,00,00,00,ff,ff,ff,ff
"0"=hex:5c,00,31,00,00,00,00,00,48,31,16,79,11,00,4d,4f,4a,45,4f,42,7e,..
"1"=hex:3e,00,31,00,00,00,00,00,4a,31,1a,8d,11,00,5a,44,4a,43,49,41,7e,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\1\0]
"NodeSlot"=dword:00000012
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\0\1\1]
"NodeSlot"=dword:00000031
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\1\0]
"0"=hex:5a,00,31,00,00,00,00,00,15,31,04,4f,11,00,4d,4f,4a,45,4f,42,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\1\0\0]
"0"=hex:54,00,31,00,00,00,00,00,15,31,16,4f,11,00,50,52,5a,59,4b,41,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\1\1\0\0\0]
"NodeSlot"=dword:00000014
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2]
"NodeSlot"=dword:0000000b
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2\0]
"NodeSlot"=dword:0000000c
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:4c,00,31,00,00,00,00,00,48,31,32,52,10,00,50,48,4f,54,4f,53,7e,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2\0\0]
"NodeSlot"=dword:0000000d
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2\1]
"0"=hex:42,00,31,00,00,00,00,00,48,31,c3,45,10,00,54,45,4d,50,4c,41,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2\1\0]
"0"=hex:58,00,31,00,00,00,00,00,48,31,b7,45,10,00,50,52,45,53,45,4e,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\1\2\1\0\0]
"NodeSlot"=dword:00000015
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\0]
"NodeSlot"=dword:0000000e
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\1]
"NodeSlot"=dword:0000001b
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\1\0]
"NodeSlot"=dword:0000001c
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:5c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4a,00,31,00,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\1\0\0]
"NodeSlot"=dword:0000001d
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:5c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4a,00,31,00,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\1\0\0\0]
"NodeSlot"=dword:0000001e
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:60,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4e,00,31,00,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\2\1\0\0\0\0]
"NodeSlot"=dword:0000001f
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\3\0\0]
"NodeSlot"=dword:00000013
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\4]
"NodeSlot"=dword:00000017
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0\4\0]
"NodeSlot"=dword:00000030
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1]
"NodeSlot"=dword:00000002
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\0]
"NodeSlot"=dword:00000006
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2]
"NodeSlot"=dword:00000016
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\0]
"NodeSlot"=dword:00000025
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\0\0]
"NodeSlot"=dword:00000026
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\1]
"NodeSlot"=dword:00000027
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\2]
"NodeSlot"=dword:00000028
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:5c,00,31,00,00,00,00,00,4a,31,05,8d,11,00,44,4f,53,4c,41,4a,7e,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\2\0]
"NodeSlot"=dword:00000029
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\3]
"NodeSlot"=dword:0000002a
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:3a,00,31,00,00,00,00,00,4a,31,0a,8d,10,00,50,49,54,2d,31,31,00,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\3\0]
"NodeSlot"=dword:0000002b
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\2\4]
"NodeSlot"=dword:00000032
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3]
"NodeSlot"=dword:00000018
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\0\0]
"NodeSlot"=dword:0000001a
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\0\1\0]
"0"=hex:35,00,c3,01,c5,5c,5c,47,69,6e,65,6b,6f,6c,6f,67,69,61,2d,6c,31,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\0\1\0\0]
"0"=hex:48,00,31,00,00,00,00,00,32,2c,e4,b1,13,00,4a,45,52,5a,59,52,7e,..
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\0\1\0\0\0]
"NodeSlot"=dword:00000022
"MRUListEx"=hex:00,00,00,00,ff,ff,ff,ff
"0"=hex:36,00,31,00,00,00,00,00,3b,30,77,2d,10,00,4c,49,53,54,59,00,22,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\0\0\1\0\0\0\0]
"NodeSlot"=dword:00000023
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\1]
"NodeSlot"=dword:00000020
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\3\1\0]
"NodeSlot"=dword:00000024
"MRUListEx"=hex:ff,ff,ff,ff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\4]
"NodeSlot"=dword:00000021
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\BagMRU\5]
"NodeSlot"=dword:0000002f
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\1\Shell]
"WinPos1024x768(1).left"=dword:00000000
"WinPos1024x768(1).top"=dword:00000000
"WinPos1024x768(1).right"=dword:00000320
"WinPos1024x768(1).bottom"=dword:0000023a
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"Status"=dword:00000000
"Address"=dword:ffffffff
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
"Sort"=dword:00000000
"Col"=dword:ffffffff
"WinPos800x600(1).left"=dword:00000000
"WinPos800x600(1).top"=dword:00000000
"WinPos800x600(1).right"=dword:00000320
"WinPos800x600(1).bottom"=dword:0000023a
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\10\Shell]
"WinPos1024x768(1).left"=dword:00000084
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:000003a4
"WinPos1024x768(1).bottom"=dword:000002e2
"Status"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\11\Shell]
"FolderType"="Documents"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\12\Shell]
"FolderType"="Documents"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\14\Shell]
"MinPos1024x768(1).x"=dword:ffff8300
"MinPos1024x768(1).y"=dword:ffff8300
"MaxPos1024x768(1).x"=dword:ffffffff
"MaxPos1024x768(1).y"=dword:ffffffff
"WinPos1024x768(1).left"=dword:00000033
"WinPos1024x768(1).top"=dword:0000003a
"WinPos1024x768(1).right"=dword:00000353
"WinPos1024x768(1).bottom"=dword:00000292
"Rev"=dword:00000000
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"HotKey"=dword:00000000
"Buttons"=dword:ffffffff
"Status"=dword:00000000
"Links"=dword:00000000
"Address"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"ScrollPos1024x768(1).x"=dword:00000000
"ScrollPos1024x768(1).y"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\15\Shell]
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).bottom"=dword:000002e2
"Status"=dword:00000000
"Vid"="{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
"Mode"=dword:00000006
"ScrollPos1024x768(1).x"=dword:00000000
"Sort"=dword:00000000
"Col"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\16\Shell]
"WinPos1024x768(1).left"=dword:00000000
"WinPos1024x768(1).top"=dword:00000000
"WinPos1024x768(1).right"=dword:00000320
"WinPos1024x768(1).bottom"=dword:0000023a
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Status"=dword:00000000
"Vid"="{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
"Mode"=dword:00000006
"ScrollPos1024x768(1).y"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\17\Shell]
"FolderType"="MyDocuments"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\18\Shell]
"FolderType"="MyPictures"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\19\Shell]
"FolderType"="PhotoAlbum"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\2\Shell]
"MinPos1024x768(1).x"=dword:ffff8300
"MinPos1024x768(1).y"=dword:ffff8300
"WinPos1024x768(1).left"=dword:00000075
"WinPos1024x768(1).top"=dword:00000000
"WinPos1024x768(1).right"=dword:00000395
"WinPos1024x768(1).bottom"=dword:00000258
"WFlags"=dword:00000002
"ShowCmd"=dword:00000003
"FFlags"=dword:00000000
"Status"=dword:ffffffff
"Links"=dword:ffffffff
"Address"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\20\Shell]
"FolderType"="PhotoAlbum"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\22\Shell]
"FolderType"="MyDocuments"
"WinPos1024x768(1).left"=dword:0000006e
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:0000038e
"WinPos1024x768(1).bottom"=dword:000002e2
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Status"=dword:00000000
"Address"=dword:ffffffff
"Vid"="{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
"Mode"=dword:00000006
"ScrollPos1024x768(1).y"=dword:0000001f
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\23\Shell]
"FolderType"="MyDocuments"
"WinPos1024x768(1).left"=dword:00000033
"WinPos1024x768(1).top"=dword:0000003a
"WinPos1024x768(1).right"=dword:00000353
"WinPos1024x768(1).bottom"=dword:00000292
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Status"=dword:00000000
"Address"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\24\Shell]
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"Status"=dword:00000000
"Address"=dword:ffffffff
"Sort"=dword:00000003
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\25\Shell]
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"FFlags"=dword:00000000
"Status"=dword:00000000
"ScrollPos1024x768(1).y"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\26\Shell]
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"Status"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\27\Shell]
"WinPos1024x768(1).left"=dword:0000006e
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:0000038e
"WinPos1024x768(1).bottom"=dword:000002e2
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"Status"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\28\Shell]
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).bottom"=dword:000002e2
"FFlags"=dword:00000000
"Status"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\29\Shell]
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).bottom"=dword:000002e2
"FFlags"=dword:00000000
"Status"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\3\Shell]
"WinPos1024x768(1).left"=dword:00000033
"WinPos1024x768(1).top"=dword:0000003a
"WinPos1024x768(1).right"=dword:00000353
"WinPos1024x768(1).bottom"=dword:00000292
"FFlags"=dword:00000000
"Status"=dword:00000000
"Address"=dword:ffffffff
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\30\Shell]
"WinPos1024x768(1).left"=dword:0000006e
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:0000038e
"WinPos1024x768(1).bottom"=dword:000002e2
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"FFlags"=dword:00000000
"Status"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\31\Shell]
"WinPos1024x768(1).left"=dword:0000006e
"WinPos1024x768(1).top"=dword:0000008a
"WinPos1024x768(1).right"=dword:0000038e
"WinPos1024x768(1).bottom"=dword:000002e2
"FFlags"=dword:00000000
"Status"=dword:00000000
"Vid"="{0057D0E0-3573-11CF-AE69-08002B2E1262}"
"Mode"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\32\Shell]
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1).top"=dword:00000074
"WinPos1024x768(1).right"=dword:00000378
"WinPos1024x768(1).bottom"=dword:000002cc
"WFlags"=dword:00000000
"ShowCmd"=dword:00000001
"Status"=dword:00000000
"Address"=dword:ffffffff
"Vid"="{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
"Mode"=dword:00000006
"ScrollPos1024x768(1).y"=dword:00000002
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\Bags\33\Shell]
"Mode"=dword:00000004
"MinPos1024x768(1).x"=dword:ffffffff
"MinPos1024x768(1).y"=dword:ffffffff
"WinPos1024x768(1).left"=dword:00000058
"WinPos1024x768(1