\registry\machine\system\currentcontrolset\services\eventlog\application Type 1 Installer EventMessageFile = REG_EXPAND_SZ %SystemRoot%\System32\t1instal.dll TypesSupported = REG_DWORD 0x0007 \registry\machine\software\microsoft\windows nt\currentversion Type 1 Installer Log events = REG_DWORD 0 Copyrights EDXP22M?M[*$SM%R*P>S = REG_DWORD 1337 BEMB>C&/S4V!& = REG_DWORD 784 TX86%AS:_X[RE;H48[OC1 = REG_DWORD 1484 A:/IG0F&ZAP7