Difference between revisions of "RegyValue"
(added info box) |
(→Usage: added var types, updated example) |
||
Line 12: | Line 12: | ||
==Usage== | ==Usage== | ||
− | RegyValue:<description>,<rootkey>,<keypath>,< | + | RegyValue:<description(string)>,<rootkey(enum)>,<keypath(string)>,<value(string)>[,advanced registry parameters] |
===Examples=== | ===Examples=== | ||
− | RegyValue:" | + | RegyValue:"<$REG_SETTINGS>",HKEY_LOCAL_MACHINE,"\Software\Microsoft\Windows\CurrentVersion\","HidingSpywareValue" |
===Description=== | ===Description=== |
Revision as of 16:37, 22 February 2008
RegyValue | |
Group | Registry |
Main Application | Version 0.95 or later |
Required Update | n/a |
File Parameters | no |
Registry Parameters | yes (fifth) |
Build Parameters | yes (fifth) |
Special Parameters | no |
Searches for the defined registry value and adds it to the results list, if found.
Usage
RegyValue:<description(string)>,<rootkey(enum)>,<keypath(string)>,<value(string)>[,advanced registry parameters]
Examples
RegyValue:"<$REG_SETTINGS>",HKEY_LOCAL_MACHINE,"\Software\Microsoft\Windows\CurrentVersion\","HidingSpywareValue"
Description
Detects a registry value and flags it for removal.
- First, a description. Using a description template instead of plain text is recommended so that the user will receive a localized version.
- The root key, where HKEY_CURRENT_USER stands for all users actually.
- The path to the value, starting with a backslash. PT
- The name of the value to detect. You may use a Algo-Prefix here. AP PT
- To refine detection, you can use advanced registry parameters to check the actual data of the value. You may use Algo-Prefixes here. AP PT
Scan Results
- The identified registry value(s).