[SDP 2][ 403a3217-cc80-40ac-80e7-73d2f1da152d] Windows Vista and Windows Server 2008 Internet Explorer 7, 8, 9


Summary


The Internet Explorer 7,8,9 Information Collector for Windows Vista and Windows Server 2008 was designed to collect information used in troubleshooting Internet Explorer common issues. 

More Information


This article describes the information that may be collected from a computer when running Windows Vista Internet Explorer Core 7,8,9.

 

Information Collected

Operating System
Description
Machine Name:

OS Name:

Last Reboot/Uptime:

AntiMalware:

User Account Control:

Username:


Computer System
Description
Computer Model:

Processor(s):

Machine Domain:

Role:


Environment Variables
DescriptionFile Name
Elevated User:{Computername}_EnvironmentVariables_MSDT.txt
Target User:{Computername}_EnvironmentVariables_{Username}.txt


Event Logs
DescriptionFile Name
Filtered Event Logs (.csv):{Computername}_ApplicationLog.csv
Filtered Event Logs (.csv):{Computername}_SystemLog.csv


Group Policy and IEAK
DescriptionFile Name
IEAK Logs (.zip):{Computername}_{Username}_IEAK_Brand.zip
HKU:{Computername}_{Username}_HKU_Policies.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Policies.TXT
HKLM:{Computername}_reg_HKLM_Policies.TXT
HKU:{Computername}_{Username}_HKU_GPHistory.TXT
HKLM:{Computername}_reg_HKLM_GPHistory.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow3264Node_GPHistory.TXT
HKLM:{Computername}_reg_HKLM_GPExtensions.TXT
HKLM:{Computername}_reg_HKLM_CurrentVersion_Polcies.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow3264Node_CurrentVersion_Polcies.TXT
SysVol Package:{Computername}_{Username}_IE_GP_SysVol.zip
SysVol Log:{Computername}_{Username}_IE_GP_SysVol.txt
GP User (.txt):{Computername}_GPResult_User_{Username}.txt
GP User (.htm):{Computername}_GPResult_User_{Username}.htm
GP Computer (.txt):{Computername}_GPResult_Computer.txt
GP Computer (.htm):{Computername}_GPResult_Computer.htm


Hardware:DXDiag
DescriptionFile Name
DXDiag: {Computername}_DXDiag.txt


IE Setup Log
DescriptionFile Name
IE Setup Log (.log):{Computername}_IE7_main.log
{Computername}_IE8_main.log
{Computername}_IE9_main.log


Installed updates/hotfixes
DescriptionFile Name
Update/Hotfix history:{Computername}_Hotfixes.CSV
Update/Hotfix history:{Computername}_Hotfixes.htm
Update/Hotfix history:{Computername}_Hotfixes.TXT


Internet Explorer Core
DescriptionFile Name
HKU:{Computername}_{Username}_HKU_InternetExplorer.txt
HKU:{Computername}_{Username}_HKU_InternetSettings.txt
HKU:{Computername}_{Username}_HKU_FTP.txt
HKU:{Computername}_{Username}_HKU_FeatureControl
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_InternetExplorer.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_InternetSettings.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_FeatureControl.TXT
HKLM:{Computername}_reg_HKLM_InternetSettings.TXT
HKLM:{Computername}_reg_HKLM_FeatureControl.TXT


Internet Explorer Zones
DescriptionFile Name
HKU:{Computername}_{Username}_HKU_Zones_ZoneMap.txt
HKU:{Computername}_{Username}_HKU_Zones_0_YourComputer.txt
HKU:{Computername}_{Username}_HKU_Zones_1_LocalIntranet.txt
HKU:{Computername}_{Username}_HKU_Zones_2_TrustedSites.txt
HKU:{Computername}_{Username}_HKU_Zones_3_Internet.txt
HKU:{Computername}_{Username}_HKU_Zones_4_RestrictedSites.txt
HKU:{Computername}_{Username}_HKU_LockedDown_Zones_0_YourComputer.txt
HKU:{Computername}_{Username}_HKU_LockedDown_Zones_1_LocalIntranet.txt
HKU:{Computername}_{Username}_HKU_LockedDown_Zones_2_TrustedSites.txt
HKU:{Computername}_{Username}_HKU_LockedDown_Zones_3_Internet.txt
HKU:{Computername}_{Username}_HKU_LockedDown_Zones_4_RestrictedSites.txt
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_ZoneMap.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_0_YourComputer.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_1_LocalIntranet.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_2_TrustedSites.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_3_Internet.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_Zones_4_RestrictedSites.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_LockedDown_Zones_0_YourComputer.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_LockedDown_Zones_1_LocalIntranet.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_LockedDown_Zones_2_TrustedSites.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_LockedDown_Zones_3_Internet.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_LockedDown_Zones_4_RestrictedSites.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_TemplatePolicies_High.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_TemplatePolicies_Low.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_TemplatePolicies_MedHigh.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_TemplatePolicies_Medium.TXT
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_TemplatePolicies_MedLow.TXT
HKLM:{Computername}_reg_HKLM_Zones_ZoneMap.TXT
HKLM:{Computername}_reg_HKLM_Zones_0_YourComputer.TXT
HKLM:{Computername}_reg_HKLM_Zones_1_LocalIntranet.TXT
HKLM:{Computername}_reg_HKLM_Zones_2_TrustedSites.TXT
HKLM:{Computername}_reg_HKLM_Zones_3_Internet.TXT
HKLM:{Computername}_reg_HKLM_Zones_4_RestrictedSites.TXT
HKLM:{Computername}_reg_HKLM_LockedDown_Zones_0_YourComputer.TXT
HKLM:{Computername}_reg_HKLM_LockedDown_Zones_1_LocalIntranet.TXT
HKLM:{Computername}_reg_HKLM_LockedDown_Zones_2_TrustedSites.TXT
HKLM:{Computername}_reg_HKLM_LockedDown_Zones_3_Internet.TXT
HKLM:{Computername}_reg_HKLM_LockedDown_Zones_4_RestrictedSites.TXT
HKLM:{Computername}_reg_HKLM_TemplatePolicies_High.TXT
HKLM:{Computername}_reg_HKLM_TemplatePolicies_Low.TXT
HKLM:{Computername}_reg_HKLM_TemplatePolicies_MedHigh.TXT
HKLM:{Computername}_reg_HKLM_TemplatePolicies_Medium.TXT
HKLM:{Computername}_reg_HKLM_TemplatePolicies_MedLow.TXT


Networking Information
DescriptionFile Name
Host File:{Computername}_hosts
TCP/IP Basic Information:{Computername}_TcpIp-Info.txt
SMB Basic Information:{Computername}_SMB-Info.txt


Operating System Registry
DescriptionFile Name
HKU:{Computername}_{Username}_HKU_ActiveSetup_All.txt
HKU Wow64:{Computername}_{Username}_HKU_ActiveSetup_ALL_Wow6432Node.txt
HKU:{Computername}_{Username}_HKU_Wintrust.txt
HKU:{Computername}_{Username}_HKU_Ext_Settings.txt
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_ActiveSetup_All.TXT
HKLM:{Computername}_reg_HKLM_Wow6432Node_ActiveX_Compatibility.TXT
HKLM:{Computername}_reg_HKLM_ActiveSetup_All.TXT
HKLM:{Computername}_reg_HKLM_ActiveX_Compatibility.TXT
HKLM:{Computername}_reg_HKLM_Wow6432Node_Classes_Protocols.TXT
HKLM:{Computername}_reg_HKLM_Wow6432Node_Code_Store_Database.TXT
HKLM:{Computername}_reg_HKLM_Wow6432Node_Ext_PreApproved.TXT
HKLM:{Computername}_reg_HKLM_Classes_Mime_Database_Content_Type.TXT
HKLM:{Computername}_reg_HKLM_Classes_Protocols.TXT
HKLM:{Computername}_reg_HKLM_SecurityProviders.TXT
HKLM:{Computername}_reg_HKLM_AEDebug.TXT
HKLM:{Computername}_reg_HKLM_Image_File_Execution_Options.TXT
HKLM:{Computername}_reg_HKLM_Fips_Algorithm_Policy.TXT
HKLM:{Computername}_reg_HKLM_KERB_MaxTokenSize.TXT
HKLM:{Computername}_reg_HKLM_SSL_Ciphers.TXT
HKLM:{Computername}_reg_HKLM_Code_Store_Database.TXT
HKLM:{Computername}_reg_HKLM_Ext_PreApproved.TXT


.REG Export
DescriptionFile Name
HKU:{Computername}_{Username}_HKU_Internet_Explorer.REG.txt
HKU:{Computername}_{Username}_HKU_Internet_Settings.REG.txt
HKU:{Computername}_{Username}_HKU_Policies.REG.txt
HKLM:{Computername}_{Username}_HKU_Classes.REG.txt
HKLM:{Computername}_HKLM_Internet_Explorer.REG.txt
HKLM:{Computername}_HKLM_Internet_Settings.REG.txt
HKLM:{Computername}_HKLM_Policies.REG.txt
HKLM Wow64:{Computername}_HKLM_Wow6432Node_Internet_Explorer.REG.txt
HKLM Wow64:{Computername}_HKLM_Wow6432Node_Internet_Settings.REG.txt
HKLM Wow64:{Computername}_HKLM_Wow6432Node_Policies.REG.txt
HKLM Wow64:{Computername}_HKLM_Wow6432Node_Classes.REG.txt

Registry - IEAK
DescriptionFile Name
HKLM Wow64:{Computername}_reg_HKLM_Wow6432Node_IEAK.TXT


Windows Setup API Logs
DescriptionFile Name
Windows Setup API Log:{Computername}_SetupAPI.app.Log

Windows update log
DescriptionFile Name
Windows Update Log File:{Computername}_WindowsUpdate.log


File Version Information (ChkSym)
DescriptionFile Name
%programfiles%\*.sys{Computername}_sym_ProgramFiles_SYS.CSV
%programfiles%\*.sys{Computername}_sym_ProgramFiles_SYS.TXT
%windir%\system32\drivers\*.*{Computername}_sym_Drivers.CSV
%windir%\system32\drivers\*.*{Computername}_sym_Drivers.TXT
%windir%\system32\*.exe{Computername}_sym_System32_exe.CSV
%windir%\system32\*.exe{Computername}_sym_System32_exe.TXT
%windir%\system32\*.sys{Computername}_sym_System32_sys.CSV
%windir%\system32\*.sys{Computername}_sym_System32_sys.TXT
%windir%\system32\spool\*.*{Computername}_sym_PrintSpool.CSV
%windir%\system32\spool\*.*{Computername}_sym_PrintSpool.TXT
%windir%\system32\iscsi*.*{Computername}_sym_MS_iSCSI.CSV
%windir%\system32\iscsi*.*{Computername}_sym_MS_iSCSI.TXT
Running Processes{Computername}_sym_Process.CSV
Running Processes{Computername}_sym_Process.TXT
%windir%\system32\*.dll{Computername}_sym_System32_dll.CSV
%windir%\system32\*.dll{Computername}_sym_System32_dll.TXT
Running Drivers{Computername}_sym_RunningDrivers.CSV
Running Drivers{Computername}_sym_RunningDrivers.TXT

Important Information
DescriptionFile Name
IE FYI Info{Computername}_IE_FYI_INFO.txt


Installed Addons
DescriptionFile Name
IE Addons (.csv){Computername}_Autoruns_IE_Addons.csv
Shell Addons (.csv){Computername}_Autoruns_Shell_addons.csv


Processes Hosting IE Components
DescriptionFile Name
WININET{Computername}_{Username}_Processes_Hosting_Wininet.txt
URLMON{Computername}_{Username}_Processes_Hosting_Urlmon.txt
MSHTML{Computername}_{Username}_Processes_Hosting_mshtml.txt