Then it should have found this: Microsoft\Internet Explorer\Low Rights\ElevationPolicy{7825CFB6-490A-436B-9F26-4A7B5CFC01A9}
Some software installation programs register themselves under this key (each with its own subkey GUID) to manage Protected Mode behavior.
On the same hand, if Microsoft determines that an application has a vulnerability and presents a danger to end users, Microsoft reserves the right to remove that application at any time from the elevation policy. N.B. Here that did not happen…
See: http://www.threatexpert.com/report.aspx?md5=a984b488679cf04ec6930b0865d0125a
How to kill it, see: http://www.windowsvc.com/bbs/board.php?bo_table=windowsvc&wr_id=57316
Sometimes Junkware Removal Tool by Thisisu can be used in the removal routine by a qualified removal expert, together with AdwCleaner.

polonus