HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1801674531-688789844-1060284298-500
ProfileImagePath REG_EXPAND_SZ C:\Users\Administrator.CAGE
Flags REG_DWORD 0x0
State REG_DWORD 0x100
Sid REG_BINARY 010500000000000515000000235F636B54190E298AA7323FF4010000
Guid REG_SZ {39e735db-f1f1-4674-a781-475169b687b1}
ProfileAttemptedProfileDownloadTimeLow REG_DWORD 0x0
ProfileAttemptedProfileDownloadTimeHigh REG_DWORD 0x0
ProfileLoadTimeLow REG_DWORD 0x0
ProfileLoadTimeHigh REG_DWORD 0x0
RefCount REG_DWORD 0x1
RunLogonScriptSync REG_DWORD 0x0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4289036958-2044363472-1125642814-500
ProfileImagePath REG_EXPAND_SZ C:\Users\Administrator
Flags REG_DWORD 0x0
State REG_DWORD 0x304
Sid REG_BINARY 0105000000000005150000009E82A5FFD082DA793EF21743F4010000
ProfileAttemptedProfileDownloadTimeLow REG_DWORD 0x0
ProfileAttemptedProfileDownloadTimeHigh REG_DWORD 0x0
ProfileLoadTimeLow REG_DWORD 0x0
ProfileLoadTimeHigh REG_DWORD 0x0
RefCount REG_DWORD 0x0
RunLogonScriptSync REG_DWORD 0x0