[Version]
Signature=”$plenuk$”
Provider=it’s not crime!
[DefaultInstall]
AddReg=UnhookRegKey
DelReg=del
[UnhookRegKey]
HKLM, Software\CLASSES\batfile\shell\open\command,,,”””% 1″” %*”
HKLM, Software\CLASSES\comfile\shell\open\command,,,”””% 1″” %*”
HKLM, Software\CLASSES\exefile\shell\open\command,,,”””% 1″” %*”
HKLM, Software\CLASSES\piffile\shell\open\command,,,”””% 1″” %*”
HKLM, Software\CLASSES\regfile\shell\open\command,,,”reg edit.exe “%1″”
HKLM, Software\CLASSES\scrfile\shell\open\command,,,”””% 1″” %*”
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon, Shell,0, “Explorer.exe”
HKLM, SYSTEM\ControlSet001\Control\SafeBoot, AlternateShell,0, “cmd.exe”
HKLM, SYSTEM\ControlSet002\Control\SafeBoot, AlternateShell,0, “cmd.exe”
HKLM, SYSTEM\CurrentControlSet\Control\SafeBoot, AlternateShell,0, “cmd.exe”
HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer \Advanced\Folder\SuperHidden, UncheckedValue,0×00010001,1
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\RegisteredOwner,0, “Owner”
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\RegisteredOrganization,0, “Organization”
[del]
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \System, DisableRegistriTools
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \System, DisableTaskMgr
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, NoFolderOptions
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, NOFind
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, NORun
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\Advanced, hidden
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies \WinOldApp
HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Run, r4n694-24y
HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ms32dll
CKCR, VBSFile, DefaultIcon
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Msconfig.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\install.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit32.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegistriEditor.exe
HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe