Sunday, October 6, 2013

POST 12: HKC Rootcmdfile

Key Name:          HKEY_CLASSES_ROOT\cmdfile
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            Windows Command Script
Value 1
  Name:            EditFlags
  Type:            REG_BINARY
  Data:           
00000000   30 04 00 00                                        0...
Value 2
  Name:            FriendlyTypeName
  Type:            REG_EXPAND_SZ
  Data:            @%SystemRoot%\System32\acppage.dll,-6003

Key Name:          HKEY_CLASSES_ROOT\cmdfile\DefaultIcon
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_EXPAND_SZ
  Data:            %SystemRoot%\System32\imageres.dll,-68

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\edit
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\edit\command
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_EXPAND_SZ
  Data:            %SystemRoot%\System32\NOTEPAD.EXE %1

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\open
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            EditFlags
  Type:            REG_BINARY
  Data:           
00000000   00 00 00 00                                        ....

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\open\command
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            "%1" %*

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\print
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\print\command
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_EXPAND_SZ
  Data:            %SystemRoot%\System32\NOTEPAD.EXE /p %1

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\runas
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            HasLUAShield
  Type:            REG_SZ
  Data:           

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\runas\command
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_EXPAND_SZ
  Data:            %SystemRoot%\System32\cmd.exe /C "%1" %*

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\runasuser
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            @shell32.dll,-50944
Value 1
  Name:            Extended
  Type:            REG_SZ
  Data:           
Value 2
  Name:            SuppressionPolicyEx
  Type:            REG_SZ
  Data:            {F211AA05-D4DF-4370-A2A0-9F19C09756A7}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\shell\runasuser\command
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            DelegateExecute
  Type:            REG_SZ
  Data:            {ea72d00e-4960-42fa-ba92-7792a7944c1d}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\ContextMenuHandlers
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            Compatibility

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\ContextMenuHandlers\Compatibility
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            {1d27f844-3a1f-4410-85ac-14651078412d}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\DropHandler
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            {86C86720-42A0-1069-A2E8-08002B30309D}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\PropertySheetHandlers
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\PropertySheetHandlers\PifProps
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            {86F19A00-42A0-1069-A2E9-08002B30309D}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\PropertySheetHandlers\ShimLayer Property Page
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}

Key Name:          HKEY_CLASSES_ROOT\cmdfile\ShellEx\{8895b1c6-b41f-4c1c-a562-0d564250836f}
Class Name:        <NO CLASS>
Last Write Time:   7/13/2009 - 9:41 PM
Value 0
  Name:            <NO NAME>
  Type:            REG_SZ
  Data:            {1531d583-8375-4d3f-b5fb-d23bbd169f22}

No comments:

Post a Comment