وهذا الـ Text كاملاً
Type Name
ALPC Port \RPC Control\OLE233D1E8482BB383766E4F98D57E7
ALPC Port \RPC Control\webcache_{7329ea82-0845-4e4c-bd18-02b67ac065cc}_S-1-5-21-576971403-2143491368-1395837954-1001
Desktop \Default
Directory \KnownDlls
Directory \Sessions\1\BaseNamedObjects
Event \KernelObjects\MaximumCommitCondition
Event \KernelObjects\LowMemoryCondition
File C:\Windows\System32
File \Device\CNG
File C:\Windows\Registration\R000000000001.clb
File C:\Users\kfupm\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
File C:\Users\kfupm\AppData\Local\Microsoft\Windows\WebCacheLock.dat
File \Device\Harddisk0\DR0
File C:\Windows\System32\en-US\ESENT.dll.mui
File C:\Users\kfupm\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm
File \Device\KsecDD
File C:\Users\kfupm\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
File C:\Users\kfupm\AppData\Local\Microsoft\Windows\WebCache\V01.log
Key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Key HKLM\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions
Key HKLM
Key HKLM
Key HKLM\SOFTWARE\Microsoft\Ole
Key HKCU\Software\Classes\Local Settings\Software\Microsoft
Key HKCU\Software\Classes\Local Settings
Key HKCU\Software\Classes
Key HKCU\Software\Classes
Key HKCU\Software\Classes
Key HKLM\SYSTEM\ControlSet001\Control\Nls\CustomLocale
Key HKLM\SYSTEM\ControlSet001\Control\Session Manager
Key HKCU
Key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
Key HKU
Key HKLM\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids
Key HKCU\SOFTWARE\Microsoft\Internet Explorer\Main
Key HKLM\SOFTWARE\Microsoft\Internet Explorer\Main
Key HKCU\SOFTWARE\Microsoft\Internet Explorer\Security
Key HKLM\SOFTWARE\Microsoft\Internet Explorer\Security
Key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
Key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
Mutant \Sessions\1\BaseNamedObjects\SM0:2648:304:WilStaging_02
Mutant \Sessions\1\BaseNamedObjects\SM0:2648:120:WilError_03
Section \BaseNamedObjects\__ComCatalogCache__
Section \BaseNamedObjects\__ComCatalogCache__
Section \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Section \Sessions\1\BaseNamedObjects\windows_webcache_counters_{9B6AB5B3-91BC-4097-835C-EA2DEC95E9CC}_S-1-5-21-576971403-2143491368-1395837954-1001
Semaphore \Sessions\1\BaseNamedObjects\SM0:2648:304:WilStaging_02_p0
Semaphore \Sessions\1\BaseNamedObjects\SM0:2648:304:WilStaging_02_p0h
Semaphore \Sessions\1\BaseNamedObjects\SM0:2648:120:WilError_03_p0
Semaphore \Sessions\1\BaseNamedObjects\SM0:2648:120:WilError_03_p0h
Thread dllhost.exe(2648): 2652
Thread dllhost.exe(2648): 1720
Thread dllhost.exe(2648): 3960
Thread dllhost.exe(2648): 2676
Thread dllhost.exe(2648): 1720
Thread dllhost.exe(2648): 2672
Thread dllhost.exe(2648): 2692
Thread dllhost.exe(2648): 2692
Thread dllhost.exe(2648): 2672
Thread dllhost.exe(2648): 2736
Thread dllhost.exe(2648): 2736
Thread dllhost.exe(2648): 1496
Thread dllhost.exe(2648): 2668
Thread dllhost.exe(2648): 2788
Thread dllhost.exe(2648): 2668
Thread dllhost.exe(2648): 3036
Thread dllhost.exe(2648): 3036
Thread dllhost.exe(2648): 1720
WindowStation \Sessions\1\Windows\WindowStations\WinSta0
WindowStation \Sessions\1\Windows\WindowStations\WinSta0