mystart.incredibar.com/?loc=CH_NT malware

Status
Not open for further replies.
# AdwCleaner v2.005 - Logfile created 10/21/2012 at 10:11:23
# Updated 14/10/2012 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : YR - YR-PC
# Boot Mode : Normal
# Running from : C:\Users\YR\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\user.js
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\ProgramData\Tarma Installer

***** [Registry] *****

Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Deleted : HKLM\SOFTWARE\Tarma Installer
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Registry is clean.

-\\ Google Chrome v22.0.1229.94

File : C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [2329 octets] - [21/10/2012 10:11:23]

########## EOF - C:\AdwCleaner[S1].txt - [2389 octets] ##########


Problems still there
 
Looks like it got most of it, let me check into this further, be back soon.

IE and FF are fine ? Its just Chrome ?
 
See if you can do this now


1. Open Google Chrome.
2. Click on the Wrench icon on top right corner of the browser.
3. Choose “Settings” from the drop down list.
4. Select “Basics.”
5. Click on “Manage search engines” under SEARCH settings area.
6. Hover your mouse to a preferred search engine and click “Make default.”
7. You can now remove MyStart by Incredibar search by clicking on the X mark.
 
See if you can do this now


1. Open Google Chrome.
2. Click on the Wrench icon on top right corner of the browser.
3. Choose “Settings” from the drop down list.
4. Select “Basics.”
5. Click on “Manage search engines” under SEARCH settings area.
6. Hover your mouse to a preferred search engine and click “Make default.”
7. You can now remove MyStart by Incredibar search by clicking on the X mark.

Already done above and still no luck
 
Make sure windows is enabled to show all files and folders


Follow this path and go to the cache folder, open it and delete all inside but not the cache folder itself
C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Cache\
 
I have been at this for over 12 years, what happens is about every few weeks or a month or so a new infection shows up and the people in the malware removal community that target these infections write programs and create tools to remove them, we have been dealing with a rash of infected Master boot Records, cleanable but real hard to remove it the user is not computer savvy, we are dealing with infections that will steal all your personal data from your hard drive, banking account numbers, log on passwords for sites you frequent, credit card numbers and passwords, your lucky you dont have any of these although Incredibar is a real annoyance but is somewhat the the new kid on the block and a thorough fix for it has not come up yet, but where getting there. Incredibar just did not show up, it was installed when you download software and installed it without reading the EULA ( End User Licence Agreement ) and just clicked though and accepted all the defaults. We got rid of it on IE and still working on how to remove it from Chrome. Its just been the past week or so that people are posting about removing this, so just hang on, we will get there in the end

The YouTube Video may give you some tips to perform that we have not done yet.


Open OTL.exe
  • Copy/paste the following text written inside of the code box into the Custom Scans/Fixes box located at the bottom of OTL

    Code:
    :processes
    killallprocesses
    
    :OTL
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}
    IE:64bit: - HKLM\..\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}: "URL" = http://www.google.com/search?q={searchTerm...amp;rlz=1I7FTSF
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\..\SearchScopes,DefaultScope = {E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}
    IE - HKLM\..\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}: "URL" = http://www.google.com/search?q={searchTerm...amp;rlz=1I7FTSF
    
    
    :Services
    
    :Reg
    
    :Files
    ipconfig /flushdns /c
    
    
    :Commands
    [purity]
    [resethosts]
    [emptytemp]
    [start explorer]
    [Reboot]
  • Then click the Run Fix button at the top. <--Not run Scan
  • Let the program run unhindered, reboot when it is done
  • Then post the results of the log it produces
 
Hi,

Uninstall Chrome via Programs and Features in the Control Panel

Go to Start > Run and copy and paste each of these in one at a time and click OK. When the page loads delete any reference to Google

%appdata%
%programdata%
%temp%

Take a peak and make sure this is gone, if not delete Google
C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Preferences


Reboot your system, do not reinstall Chrome just yet

Run these through System Look and post the log please


Code:
:filefind
Google
MyStart
Incredibar

:folderfind
Google
MyStart
Incredibar

:Regfind
Google
MyStart
Incredibar
 
Still with me ?

Are your rude, no, not at all, just frustrated like i am trying to remove this garbage.
 
Make sure windows is enabled to show all files and folders


Follow this path and go to the cache folder, open it and delete all inside but not the cache folder itself
C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Cache\


Done above
 
I have been at this for over 12 years, what happens is about every few weeks or a month or so a new infection shows up and the people in the malware removal community that target these infections write programs and create tools to remove them, we have been dealing with a rash of infected Master boot Records, cleanable but real hard to remove it the user is not computer savvy, we are dealing with infections that will steal all your personal data from your hard drive, banking account numbers, log on passwords for sites you frequent, credit card numbers and passwords, your lucky you dont have any of these although Incredibar is a real annoyance but is somewhat the the new kid on the block and a thorough fix for it has not come up yet, but where getting there. Incredibar just did not show up, it was installed when you download software and installed it without reading the EULA ( End User Licence Agreement ) and just clicked though and accepted all the defaults. We got rid of it on IE and still working on how to remove it from Chrome. Its just been the past week or so that people are posting about removing this, so just hang on, we will get there in the end

The YouTube Video may give you some tips to perform that we have not done yet.


Open OTL.exe
  • Copy/paste the following text written inside of the code box into the Custom Scans/Fixes box located at the bottom of OTL

    Code:
    :processes
    killallprocesses
    
    :OTL
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}
    IE:64bit: - HKLM\..\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}: "URL" = http://www.google.com/search?q={searchTerm...amp;rlz=1I7FTSF
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\..\SearchScopes,DefaultScope = {E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}
    IE - HKLM\..\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}: "URL" = http://www.google.com/search?q={searchTerm...amp;rlz=1I7FTSF
    
    
    :Services
    
    :Reg
    
    :Files
    ipconfig /flushdns /c
    
    
    :Commands
    [purity]
    [resethosts]
    [emptytemp]
    [start explorer]
    [Reboot]
  • Then click the Run Fix button at the top. <--Not run Scan
  • Let the program run unhindered, reboot when it is done
  • Then post the results of the log it produces

All processes killed
========== PROCESSES ==========
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}\ not found.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\YR\Desktop\Safer Networking\cmd.bat deleted successfully.
C:\Users\YR\Desktop\Safer Networking\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Administrator

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

User: YR
->Temp folder emptied: 37574 bytes
->Temporary Internet Files folder emptied: 33242 bytes
->Google Chrome cache emptied: 49532903 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 7420 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 47.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 10242012_190431

Files\Folders moved on Reboot...
C:\Users\YR\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
 
Hi,

Uninstall Chrome via Programs and Features in the Control Panel

Go to Start > Run and copy and paste each of these in one at a time and click OK. When the page loads delete any reference to Google

%appdata%
%programdata%
%temp%

Take a peak and make sure this is gone, if not delete Google
C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Preferences


Reboot your system, do not reinstall Chrome just yet

Run these through System Look and post the log please



Code:
:filefind
Google
MyStart
Incredibar

:folderfind
Google
MyStart
Incredibar

:Regfind
Google
MyStart
Incredibar

SystemLook 30.07.11 by jpshortstuff
Log created at 19:22 on 24/10/2012 by YR
Administrator - Elevation successful
WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results.

========== filefind ==========

Searching for "Google"
No files found.

Searching for "MyStart"
No files found.

Searching for "Incredibar"
No files found.

========== folderfind ==========

Searching for "Google"
C:\Fujitsu\Programs\Google d------ [10:44 06/05/2011]
C:\Program Files\Google d------ [20:00 20/09/2012]
C:\Program Files (x86)\Google d------ [20:00 20/09/2012]
C:\Users\YR\AppData\Local\Google d------ [20:17 20/09/2012]
C:\Windows\System32\config\systemprofile\AppData\Local\Google d------ [20:00 20/09/2012]
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google d------ [20:00 20/09/2012]

Searching for "MyStart"
No folders found.

Searching for "Incredibar"
C:\_OTL\MovedFiles\10192012_222128\C_Users\YR\AppData\Local\Temp\mt_ffx\Incredibar.com\incredibar d------ [19:58 15/10/2012]

========== Regfind ==========

Searching for "Google"
[HKEY_CURRENT_USER\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://support.google.com/chrome/bi..._type=uninstall2&rd=1&crversion=22.0.1229.94]
[HKEY_CURRENT_USER\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.com/intl/en/chrome]
[HKEY_CURRENT_USER\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.com/support/chrom...uninstall&crversion=22.0.1229.94&os=6.1.7601]
[HKEY_CURRENT_USER\Software\Google]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://google.com/]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://services.google.com/helpcenter/forms/universal_survey]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://support.google.com/chrome/bi..._type=uninstall2&rd=1&crversion=22.0.1229.94]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.co.uk/]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\fastweb.it]
"url"="^http\:\/\/www\.fastweb\.it\/portale\/google\/.+"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\google.com]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\google.com]
"url"="^http(s)?\:\/\/((www|encrypted)\.)?google\.(com?\.[a-z]{2}|[a-z]{2,})\/.*"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\interia.pl]
"url"="^http\:\/\/(www\.)?google\.interia\.pl\/szukaj\/.+"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\plus.google.com]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\plus.google.com]
"url"="^http(s)?\\:\\/\\/plus\\.?google\\.(com?\\.[a-z]{2}|[a-z]{2,})\\/.*"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\d82876eb_0]
@="{0.0.0.00000000}.{307baf76-9ba8-4999-ad0a-93f87077f89e}|\Device\HarddiskVolume2\Users\YR\AppData\Local\Google\Chrome\Application\chrome.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\google.co.uk]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.co.uk/"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Secondary_Page_URL"="http://www.google.com/ig/redirectdomain?brand=FTSG&bmod=FTSG"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"DisplayName"="Google"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"URL"="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7FTSG_enGB502"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"SuggestionsURLFallback"="http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"FaviconURLFallback"="http://www.google.com/favicon.ico"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"SuggestionsURL"="http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU]
"c"="C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Cache\\1"
[HKEY_CURRENT_USER\Software\Classes\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_CURRENT_USER\Software\Classes\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_CURRENT_USER\Software\Classes\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\YR\AppData\Local\Google\Chrome\Application\chrome.exe"="Google Chrome"
[HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google]
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\0]
"ph"="clients1.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\0]
"trx"="^http://www\.google\.[^/]+/ig\?.*brand=FTSG"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\1]
"ph"="clients1.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\1]
"trx"="^http://www\.google\.[^/]+/search\?.*(rls)|(source)=ig"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\2]
"ph"="clients1.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Common\Partner\FTSG\IE\2]
"trx"="^http://www\.google\.[^/]+/search\?.*sourceid=ie7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update]
"path"="C:\Program Files (x86)\Google\Update\GoogleUpdate.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update]
"UninstallCmdLine"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /uninstall"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\Clients\{430FD4D0-B729-4F61-AA34-91526481799D}]
"name"="Google Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
"DllName"="googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{AA58ED58-01DD-4D91-8333-CF10577473F7}]
"DllName"="googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll;googletoolbar*.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}]
"AppName"="GoogleUpdateBroker.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}]
"AppPath"="C:\Program Files (x86)\Google\Update\1.3.21.123"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}]
"AppName"="GoogleUpdate.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}]
"AppPath"="C:\Program Files (x86)\Google\Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarInstaller_updater_signed_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarInstaller_updater_signed_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarManager_E6C807F38EB64284_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarManager_E6C807F38EB64284_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarNotifier_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\GoogleToolbarNotifier_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}]
"InstallSource"="C:\Program Files (x86)\Google\Update\1.3.21.123\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}]
"Publisher"="Google Inc."
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}]
"DisplayName"="Google Update Helper"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Path"="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"="Google Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"ProductName"="Google Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Vendor"="Google Inc."
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3\MimeTypes\application/x-vnd.google.update3webcontrol.3]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Path"="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"="Google Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"ProductName"="Google Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Vendor"="Google Inc."
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9\MimeTypes\application/x-vnd.google.oneclickctrl.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\Google]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\GoogleUpdate.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}]
@="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise can"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}]
@="GoogleUpdate CredentialDialog"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\ProgID]
@="GoogleUpdate.CredentialDialogMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\VersionIndependentProgID]
@="GoogleUpdate.CredentialDialogMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{457BC604-48ED-451E-8051-A46EA7B611C4}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AD5D8BA-976D-42BE-A47F-ADBC15F82D3C}\InprocHandler32]
@="C:\Program Files (x86)\Google\Update\1.3.21.111\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EB61BAC-A3B6-4760-9581-655041EF4D69}\ProgID]
@="GoogleUpdate.Update3COMClassService.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EB61BAC-A3B6-4760-9581-655041EF4D69}\VersionIndependentProgID]
@="GoogleUpdate.Update3COMClassService"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}\ProgID]
@="GoogleUpdate.Update3WebSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\ProgID]
@="GoogleUpdate.Update3WebMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebMachineFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\ProgID]
@="GoogleUpdate.OnDemandCOMClassMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\ProgID]
@="GoogleUpdate.CoCreateAsync.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\VersionIndependentProgID]
@="GoogleUpdate.CoCreateAsync"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\ProgID]
@="GoogleUpdate.Update3WebMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}\ProgID]
@="GoogleUpdate.OnDemandCOMClassSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\ProgID]
@="GoogleUpdate.CoreMachineClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\VersionIndependentProgID]
@="GoogleUpdate.CoreMachineClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D6AA569-9F30-41AD-885A-346685C74928}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}]
@="Google.OneClickProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\ProgID]
@="Google.OneClickProcessLauncherMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\VersionIndependentProgID]
@="Google.OneClickProcessLauncherMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\ProgID]
@="GoogleUpdate.ProcessLauncher.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\VersionIndependentProgID]
@="GoogleUpdate.ProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\ProgID]
@="GoogleUpdate.OnDemandCOMClassMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassMachineFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6827B84-2F5E-41CF-A11B-50A0BE741815}\InprocHandler32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\ProgID]
@="Google.Update3WebControl.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\ProgID]
@="Google.OneClickCtrl.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E0730E95-4D82-4716-BF23-4F3AB3EF790D}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.111\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}\ProgID]
@="GoogleUpdate.CoreClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}\VersionIndependentProgID]
@="GoogleUpdate.CoreClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickCtrl.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickCtrl.9]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickProcessLauncherMachine]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickProcessLauncherMachine]
@="Google.OneClickProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickProcessLauncherMachine\CurVer]
@="Google.OneClickProcessLauncherMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickProcessLauncherMachine.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.OneClickProcessLauncherMachine.1.0]
@="Google.OneClickProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.Update3WebControl.3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Google.Update3WebControl.3]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoCreateAsync]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoCreateAsync\CurVer]
@="GoogleUpdate.CoCreateAsync.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoCreateAsync.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreClass]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreClass]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreClass\CurVer]
@="GoogleUpdate.CoreClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreClass.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreClass.1]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreMachineClass]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreMachineClass]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreMachineClass\CurVer]
@="GoogleUpdate.CoreMachineClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreMachineClass.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CoreMachineClass.1]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CredentialDialogMachine]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CredentialDialogMachine]
@="GoogleUpdate CredentialDialog"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CredentialDialogMachine\CurVer]
@="GoogleUpdate.CredentialDialogMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CredentialDialogMachine.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.CredentialDialogMachine.1.0]
@="GoogleUpdate CredentialDialog"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachine]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachine]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachine\CurVer]
@="GoogleUpdate.OnDemandCOMClassMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachine.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachine.1.0]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachineFallback]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachineFallback]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachineFallback\CurVer]
@="GoogleUpdate.OnDemandCOMClassMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachineFallback.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassMachineFallback.1.0]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassSvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassSvc]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassSvc\CurVer]
@="GoogleUpdate.OnDemandCOMClassSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassSvc.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.OnDemandCOMClassSvc.1.0]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.ProcessLauncher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.ProcessLauncher]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.ProcessLauncher\CurVer]
@="GoogleUpdate.ProcessLauncher.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.ProcessLauncher.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.ProcessLauncher.1.0]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3COMClassService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3COMClassService\CurVer]
@="GoogleUpdate.Update3COMClassService.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3COMClassService.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachine]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachine]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachine\CurVer]
@="GoogleUpdate.Update3WebMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachine.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachine.1.0]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachineFallback]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachineFallback]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachineFallback\CurVer]
@="GoogleUpdate.Update3WebMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachineFallback.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebMachineFallback.1.0]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebSvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebSvc]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebSvc\CurVer]
@="GoogleUpdate.Update3WebSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebSvc.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdate.Update3WebSvc.1.0]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdateProcessLauncher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdateProcessLauncher]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdateProcessLauncher\CurVer]
@="GoogleUpdateProcessLauncher.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdateProcessLauncher.1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\GoogleUpdateProcessLauncher.1.0]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E]
"ProductName"="Google Update Helper"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E\SourceList]
"PackageName"="GoogleUpdateHelper.msi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E\SourceList]
"LastUsedSource"="n;3;C:\Program Files (x86)\Google\Update\1.3.21.123\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E\SourceList\Net]
"1"="C:\Program Files (x86)\Google\Update\1.2.183.39\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E\SourceList\Net]
"2"="C:\Program Files (x86)\Google\Update\1.3.21.111\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E\SourceList\Net]
"3"="C:\Program Files (x86)\Google\Update\1.3.21.123\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2D363682-561D-4C3A-81C6-F2F82107562A}]
@="IGoogleUpdate3WebSecurity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{31AC3F11-E5EA-4A85-8A3D-8E095A39C27B}]
@="IGoogleUpdate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{494B20CF-282E-4BDD-9F5D-B70CB09D351E}]
@="IGoogleUpdate3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6DB17455-4E85-46E7-9D23-E555E4B005AF}]
@="IGoogleUpdate3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{909489C2-85A6-4322-AA56-D25278649D67}]
@="IGoogleUpdateCore"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.google.oneclickctrl.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.google.update3webcontrol.3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C7CB459A-7261-4AE6-A87A-17041EE98A40}\17.0\0\win32]
@="C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}]
@="GoogleUpdate CredentialDialog"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\ProgID]
@="GoogleUpdate.CredentialDialogMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{25461599-633D-42B1-84FB-7CD68D026E53}\VersionIndependentProgID]
@="GoogleUpdate.CredentialDialogMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{457BC604-48ED-451E-8051-A46EA7B611C4}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4AD5D8BA-976D-42BE-A47F-ADBC15F82D3C}\InprocHandler32]
@="C:\Program Files (x86)\Google\Update\1.3.21.111\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4EB61BAC-A3B6-4760-9581-655041EF4D69}\ProgID]
@="GoogleUpdate.Update3COMClassService.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4EB61BAC-A3B6-4760-9581-655041EF4D69}\VersionIndependentProgID]
@="GoogleUpdate.Update3COMClassService"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}\ProgID]
@="GoogleUpdate.Update3WebSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{534F5323-3569-4F42-919D-1E1CF93E5BF6}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}]
@="GoogleUpdate Update3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\ProgID]
@="GoogleUpdate.Update3WebMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{598FE0E5-E02D-465D-9A9D-37974A28FD42}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebMachineFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\ProgID]
@="GoogleUpdate.OnDemandCOMClassMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6F8BD55B-E83D-4A47-85BE-81FFA8057A69}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\ProgID]
@="GoogleUpdate.CoCreateAsync.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7DE94008-8AFD-4C70-9728-C6FBFFF6A73E}\VersionIndependentProgID]
@="GoogleUpdate.CoCreateAsync"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}]
@="Google Update Broker Class Factory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\ProgID]
@="GoogleUpdate.Update3WebMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8A1D4361-2C08-4700-A351-3EAA9CBFF5E4}\VersionIndependentProgID]
@="GoogleUpdate.Update3WebMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}\ProgID]
@="GoogleUpdate.OnDemandCOMClassSvc.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9465B4B4-5216-4042-9A2C-754D3BCDC410}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassSvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\ProgID]
@="GoogleUpdate.CoreMachineClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9B2340A0-4068-43D6-B404-32E27217859D}\VersionIndependentProgID]
@="GoogleUpdate.CoreMachineClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9D6AA569-9F30-41AD-885A-346685C74928}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}]
@="Google.OneClickProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateBroker.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\ProgID]
@="Google.OneClickProcessLauncherMachine.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\VersionIndependentProgID]
@="Google.OneClickProcessLauncherMachine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}]
@="Google Update Process Launcher Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\ProgID]
@="GoogleUpdate.ProcessLauncher.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{ABC01078-F197-4B0B-ADBC-CFE684B39C82}\VersionIndependentProgID]
@="GoogleUpdate.ProcessLauncher"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}]
@="Google Update Legacy On Demand"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}]
"LocalizedString"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\Elevation]
"IconReference"="@C:\Program Files (x86)\Google\Update\1.3.21.123\goopdate.dll,-1004"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\LocalServer32]
@=""C:\Program Files (x86)\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\ProgID]
@="GoogleUpdate.OnDemandCOMClassMachineFallback.1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B3D28DBD-0DFA-40E4-8071-520767BADC7E}\VersionIndependentProgID]
@="GoogleUpdate.OnDemandCOMClassMachineFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B6827B84-2F5E-41CF-A11B-50A0BE741815}\InprocHandler32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\ProgID]
@="Google.Update3WebControl.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}]
@="Google Update Plugin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\ProgID]
@="Google.OneClickCtrl.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E0730E95-4D82-4716-BF23-4F3AB3EF790D}\InProcServer32]
@="C:\Program Files (x86)\Google\Update\1.3.21.111\psmachine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}]
@="Google Update Core Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}\ProgID]
@="GoogleUpdate.CoreClass.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}\VersionIndependentProgID]
@="GoogleUpdate.CoreClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2D363682-561D-4C3A-81C6-F2F82107562A}]
@="IGoogleUpdate3WebSecurity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{31AC3F11-E5EA-4A85-8A3D-8E095A39C27B}]
@="IGoogleUpdate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{494B20CF-282E-4BDD-9F5D-B70CB09D351E}]
@="IGoogleUpdate3Web"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6DB17455-4E85-46E7-9D23-E555E4B005AF}]
@="IGoogleUpdate3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{909489C2-85A6-4322-AA56-D25278649D67}]
@="IGoogleUpdateCore"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\Google]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\GoogleUpdate.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\{E225E692-4B47-4777-9BED-4FD7FE257F0E}]
@="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise can"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{C7CB459A-7261-4AE6-A87A-17041EE98A40}\17.0\0\win32]
@="C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdate]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdate]
"DisplayName"="Google Update Service (gupdate)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdate]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdatem]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdatem]
"DisplayName"="Google Update Service (gupdatem)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gupdatem]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdate]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdate]
"DisplayName"="Google Update Service (gupdate)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdate]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdatem]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdatem]
"DisplayName"="Google Update Service (gupdatem)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\gupdatem]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdate]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdate]
"DisplayName"="Google Update Service (gupdate)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdate]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdatem]
"ImagePath"=""C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdatem]
"DisplayName"="Google Update Service (gupdatem)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gupdatem]
"Description"="Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."
[HKEY_USERS\.DEFAULT\Software\Google]
[HKEY_USERS\.DEFAULT\Software\Google\Google Toolbar]
[HKEY_USERS\.DEFAULT\Software\Google\GoogleToolbarNotifier]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://support.google.com/chrome/bi..._type=uninstall2&rd=1&crversion=22.0.1229.94]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.com/intl/en/chrome]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.com/support/chrom...uninstall&crversion=22.0.1229.94&os=6.1.7601]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Google]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://google.com/]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://services.google.com/helpcenter/forms/universal_survey]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://support.google.com/chrome/bi..._type=uninstall2&rd=1&crversion=22.0.1229.94]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://www.google.co.uk/]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\fastweb.it]
"url"="^http\:\/\/www\.fastweb\.it\/portale\/google\/.+"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\google.com]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\google.com]
"url"="^http(s)?\:\/\/((www|encrypted)\.)?google\.(com?\.[a-z]{2}|[a-z]{2,})\/.*"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\interia.pl]
"url"="^http\:\/\/(www\.)?google\.interia\.pl\/szukaj\/.+"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\plus.google.com]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\SearchRules\plus.google.com]
"url"="^http(s)?\\:\\/\\/plus\\.?google\\.(com?\\.[a-z]{2}|[a-z]{2,})\\/.*"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\d82876eb_0]
@="{0.0.0.00000000}.{307baf76-9ba8-4999-ad0a-93f87077f89e}|\Device\HarddiskVolume2\Users\YR\AppData\Local\Google\Chrome\Application\chrome.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\google.co.uk]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.co.uk/"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\Main]
"Default_Secondary_Page_URL"="http://www.google.com/ig/redirectdomain?brand=FTSG&bmod=FTSG"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"DisplayName"="Google"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"URL"="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7FTSG_enGB502"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"SuggestionsURLFallback"="http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"FaviconURLFallback"="http://www.google.com/favicon.ico"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E4AEF8C0-A9D6-4817-BFE4-A5D7E266114E}]
"SuggestionsURL"="http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU]
"c"="C:\Users\YR\AppData\Local\Google\Chrome\User Data\Default\Cache\\1"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\YR\AppData\Local\Google\Chrome\Application\chrome.exe"="Google Chrome"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\Wow6432Node\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\Wow6432Node\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Classes\Wow6432Node\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\YR\AppData\Local\Google\Chrome\Application\chrome.exe"="Google Chrome"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\Wow6432Node\CLSID\{29A96789-9595-4947-BEDB-0FCC776F7DB8}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.2.183.39\goopdate.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\Wow6432Node\CLSID\{CD221623-4F9A-4FA5-A9EE-A77EC8F0E7BD}\InprocHandler32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000_Classes\Wow6432Node\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InProcServer32]
@="C:\Users\YR\AppData\Local\Google\Update\1.3.21.111\psuser.dll"
[HKEY_USERS\S-1-5-18\Software\Google]
[HKEY_USERS\S-1-5-18\Software\Google\Google Toolbar]
[HKEY_USERS\S-1-5-18\Software\Google\GoogleToolbarNotifier]

Searching for "MyStart"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://mystart.incredibar.com/mb128?a=6PQMJIR3uD&i=26]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://mystart.incredibar.com/mb128?a=6PQMJIR3uD&i=26]

Searching for "Incredibar"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://mystart.incredibar.com/mb128?a=6PQMJIR3uD&i=26]
[HKEY_USERS\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-288869447-1382899389-2484242644-1000\Software\Avast Software\WRC\RatingStorage\<|prefix|>http://mystart.incredibar.com/mb128?a=6PQMJIR3uD&i=26]

-= EOF =-
 
Status
Not open for further replies.
Back
Top