Analysis

Category Package Started Completed Duration Options Log(s)
FILE exe 2025-06-12 16:25:39 2025-06-12 16:56:46 1867 seconds Show Options Show Analysis Log
procmemdump=1
import_reconstruction=1
unpacker=2
norefer=1
no-iat=1
2024-11-25 13:37:15,084 [root] INFO: Date set to: 20250611T17:31:06, timeout set to: 1800
2025-06-11 18:31:06,218 [root] DEBUG: Starting analyzer from: C:\tmpjeo7jmad
2025-06-11 18:31:06,218 [root] DEBUG: Storing results at: C:\uyHCokWh
2025-06-11 18:31:06,218 [root] DEBUG: Pipe server name: \\.\PIPE\IpEgLKC
2025-06-11 18:31:06,218 [root] DEBUG: Python path: C:\Users\Packager\AppData\Local\Programs\Python\Python310-32
2025-06-11 18:31:06,218 [root] INFO: analysis running as an admin
2025-06-11 18:31:06,218 [root] INFO: analysis package specified: "exe"
2025-06-11 18:31:06,218 [root] DEBUG: importing analysis package module: "modules.packages.exe"...
2025-06-11 18:31:07,170 [root] DEBUG: imported analysis package "exe"
2025-06-11 18:31:07,170 [root] DEBUG: initializing analysis package "exe"...
2025-06-11 18:31:07,170 [lib.common.common] INFO: wrapping
2025-06-11 18:31:07,170 [lib.core.compound] INFO: C:\Users\Packager\AppData\Local\Temp already exists, skipping creation
2025-06-11 18:31:07,186 [root] DEBUG: New location of moved file: C:\Users\Packager\AppData\Local\Temp\AppVStreamingUX.exe
2025-06-11 18:31:07,186 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL option
2025-06-11 18:31:07,186 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL_64 option
2025-06-11 18:31:07,186 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader option
2025-06-11 18:31:07,186 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader_64 option
2025-06-11 18:31:07,374 [root] DEBUG: Imported auxiliary module "modules.auxiliary.browser"
2025-06-11 18:31:07,389 [root] DEBUG: Imported auxiliary module "modules.auxiliary.digisig"
2025-06-11 18:31:07,420 [root] DEBUG: Imported auxiliary module "modules.auxiliary.disguise"
2025-06-11 18:31:07,499 [root] DEBUG: Imported auxiliary module "modules.auxiliary.human"
2025-06-11 18:31:07,514 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageChops'
2025-06-11 18:31:07,514 [lib.api.screenshot] ERROR: No module named 'PIL'
2025-06-11 18:31:07,514 [root] DEBUG: Imported auxiliary module "modules.auxiliary.screenshots"
2025-06-11 18:31:07,530 [root] DEBUG: Imported auxiliary module "modules.auxiliary.tlsdump"
2025-06-11 18:31:07,530 [root] DEBUG: Initialized auxiliary module "Browser"
2025-06-11 18:31:07,530 [root] DEBUG: attempting to configure 'Browser' from data
2025-06-11 18:31:07,530 [root] DEBUG: module Browser does not support data configuration, ignoring
2025-06-11 18:31:07,530 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.browser"...
2025-06-11 18:31:07,530 [root] DEBUG: Started auxiliary module modules.auxiliary.browser
2025-06-11 18:31:07,530 [root] DEBUG: Initialized auxiliary module "DigiSig"
2025-06-11 18:31:07,530 [root] DEBUG: attempting to configure 'DigiSig' from data
2025-06-11 18:31:07,530 [root] DEBUG: module DigiSig does not support data configuration, ignoring
2025-06-11 18:31:07,530 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.digisig"...
2025-06-11 18:31:07,530 [modules.auxiliary.digisig] DEBUG: Checking for a digital signature
2025-06-11 18:31:18,874 [modules.auxiliary.digisig] DEBUG: File has a valid signature
2025-06-11 18:31:18,874 [modules.auxiliary.digisig] INFO: Uploading signature results to aux/DigiSig.json
2025-06-11 18:31:18,874 [root] DEBUG: Started auxiliary module modules.auxiliary.digisig
2025-06-11 18:31:18,874 [root] DEBUG: Initialized auxiliary module "Disguise"
2025-06-11 18:31:18,874 [root] DEBUG: attempting to configure 'Disguise' from data
2025-06-11 18:31:18,874 [root] DEBUG: module Disguise does not support data configuration, ignoring
2025-06-11 18:31:18,874 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.disguise"...
2025-06-11 18:31:18,874 [modules.auxiliary.disguise] INFO: Disguising GUID to 9b7cdcea-e4d9-4c24-8a0c-bc615bd315ed
2025-06-11 18:31:18,874 [root] DEBUG: Started auxiliary module modules.auxiliary.disguise
2025-06-11 18:31:18,874 [root] DEBUG: Initialized auxiliary module "Human"
2025-06-11 18:31:18,874 [root] DEBUG: attempting to configure 'Human' from data
2025-06-11 18:31:18,874 [root] DEBUG: module Human does not support data configuration, ignoring
2025-06-11 18:31:18,874 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.human"...
2025-06-11 18:31:18,890 [root] DEBUG: Started auxiliary module modules.auxiliary.human
2025-06-11 18:31:18,890 [root] DEBUG: Initialized auxiliary module "Screenshots"
2025-06-11 18:31:18,890 [root] DEBUG: attempting to configure 'Screenshots' from data
2025-06-11 18:31:18,890 [root] DEBUG: module Screenshots does not support data configuration, ignoring
2025-06-11 18:31:18,890 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.screenshots"...
2025-06-11 18:31:18,890 [modules.auxiliary.screenshots] WARNING: Python Image Library is not installed, screenshots are disabled
2025-06-11 18:31:18,890 [root] DEBUG: Started auxiliary module modules.auxiliary.screenshots
2025-06-11 18:31:18,890 [root] DEBUG: Initialized auxiliary module "TLSDumpMasterSecrets"
2025-06-11 18:31:18,890 [root] DEBUG: attempting to configure 'TLSDumpMasterSecrets' from data
2025-06-11 18:31:18,890 [root] DEBUG: module TLSDumpMasterSecrets does not support data configuration, ignoring
2025-06-11 18:31:18,890 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.tlsdump"...
2025-06-11 18:31:18,890 [modules.auxiliary.tlsdump] INFO: lsass.exe found, pid 696
2025-06-11 18:31:18,920 [lib.api.process] INFO: Monitor config for <Process 696 lsass.exe>: C:\tmpjeo7jmad\dll\696.ini
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'procmemdump' with value '1' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'import_reconstruction' with value '1' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'unpacker' with value '2' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'norefer' with value '1' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'no-iat' with value '1' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: Option 'tlsdump' with value '1' sent to monitor
2025-06-11 18:31:18,920 [lib.api.process] INFO: 64-bit DLL to inject is C:\tmpjeo7jmad\dll\pQxbIz.dll, loader C:\tmpjeo7jmad\bin\EPCPTrhb.exe
2025-06-11 18:31:18,999 [root] DEBUG: Loader: IAT patching disabled.
2025-06-11 18:31:18,999 [root] DEBUG: Loader: Injecting process 696 with C:\tmpjeo7jmad\dll\pQxbIz.dll.
2025-06-11 18:31:19,045 [root] DEBUG: 696: Python path set to 'C:\Users\Packager\AppData\Local\Programs\Python\Python310-32'.
2025-06-11 18:31:19,045 [root] INFO: Disabling sleep skipping.
2025-06-11 18:31:19,045 [root] DEBUG: 696: Full process memory dumps enabled.
2025-06-11 18:31:19,045 [root] DEBUG: 696: Import reconstruction of process dumps enabled.
2025-06-11 18:31:19,045 [root] DEBUG: 696: Active unpacking of payloads enabled
2025-06-11 18:31:19,045 [root] DEBUG: 696: CAPE debug - unrecognised key norefer.
2025-06-11 18:31:19,045 [root] DEBUG: 696: TLS secret dump mode enabled.
2025-06-11 18:31:19,061 [root] DEBUG: 696: InternalYaraScan: Scanning 0x00007FF84A790000, size 0x1f4542
2025-06-11 18:31:19,061 [root] DEBUG: 696: InternalYaraScan hit: RtlInsertInvertedFunctionTable
2025-06-11 18:31:19,061 [root] DEBUG: 696: RtlInsertInvertedFunctionTable 0x00007FF84A7A090E, LdrpInvertedFunctionTableSRWLock 0x00007FF84A8FB4F0
2025-06-11 18:31:19,077 [root] DEBUG: 696: Monitor initialised: 64-bit capemon loaded in process 696 at 0x00007FF8234D0000, thread 3732, image base 0x00007FF60D500000, stack from 0x0000008EFAA74000-0x0000008EFAA80000
2025-06-11 18:31:19,077 [root] DEBUG: 696: Commandline: C:\Windows\system32\lsass.exe
2025-06-11 18:31:19,093 [root] DEBUG: 696: Hooked 5 out of 5 functions
2025-06-11 18:31:19,093 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2025-06-11 18:31:19,093 [root] DEBUG: Successfully injected DLL C:\tmpjeo7jmad\dll\pQxbIz.dll.
2025-06-11 18:31:19,108 [lib.api.process] INFO: Injected into 64-bit <Process 696 lsass.exe>
2025-06-11 18:31:19 <truncated>

    

    

    

Machine

Name Label Manager Started On Shutdown On Route
win10-2 win10-2 KVM 2025-06-12 16:25:39 2025-06-12 16:56:25 none

File Details

File Name
AppVStreamingUX.exe
File Type PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
File Size 294416 bytes
MD5 17028ee25adaf871e45bab091c93554e
SHA1 cd02b996ed8a3e8fe57cc40080fdf1e1d5659f2e
SHA256 588a12edac02c93a449e9570bfff0d9dfd6c297841eb593b2001ef9ae75bf5eb [VT] [MWDB] [Bazaar]
SHA3-384 443680a22b26b5dd288274ae06b7529e26b149dec6c429927b9affe59db4ab474f0ef7f8a7c2a306db7e23381ab45dfd
CRC32 7C230B2D
TLSH T131548E06A7F51610E5EF0E384C218A329E39E65524AE87D73D9074DFE85E38D4B633A3
Ssdeep 3072:wyIen7ExTWZTSddxYkEmIjy+pjMqVVdmabWcONiHNp6ei/EzoHMqVVdmabWcONiN:X7ExKZUdgCaqg6RcKCaqg6Rhu
File BinGraph Vba2Graph VirusTotal

Binding
OnPackageLaunchPreventedDueToCost
Write_APPV_CLIENT_Evt_ProcessAlreadyBelongsToJob
Write_APPV_CLIENT_Evt_MountPackageFailedUserLoggedOff
defaultInstance
targetType
set_ThrowOnInvalidPropertyName
Write_APPV_CLIENT_Evt_BackgroundLoadQueueCreationFailed
mscorlib
Matrix
Marshal
TemplateTEMPLATE_GUID_GUID_RC
System.Collections.Specialized
Write_APPV_CLIENT_Evt_ConfigurePackageFailedDeploymentConfigIDMismatch
get_Count
62P* D
Reserved
Write_APPV_CLIENT_Evt_APILogonFailed
Write_APPV_CLIENT_Evt_BackgroundLoadManagerRequiresStore
Write_APPV_CLIENT_Evt_ConfigurePackageFailedFolderAlreadyExists
<OnStartup>b__2_8
Write_APPV_CLIENT_Evt_ServiceShutdown
PublishingRefreshDeployingPackages
YXQyC
yPh&eY
:]=F5:
get_Y
Contains
3RHR*
Write_APPV_CLIENT_Evt_PowerNotificationUnregistrationFailure
SkipVerification
Write_APPV_CLIENT_Evt_PowerShellInvokeError
The Application is not functioning properly because a software upgrade is in progress. The following applications should be closed and may be re-opened in few minutes once the update is complete. To continue, save your work and click Close Applications.
IsEnabled
UpdateDisplayNamePadding
TaskDialogNotifications
MutexAccessRule
TypeDescriptor
GetEnumerator
WS_CAPTION
ABM_QUERYPOS
4.0.0.0
hFooterIcon
remove_CanExecuteChanged
GetWindowTextLength
Thales TSS ESN:C0F4-3086-DEF81%0#
TaskDialogCallbackProc
OnVirtualProcessCreated
#FF525354$
ValueCount+
=F=FR
TlP0X
mU`{4K
TDF_CAN_BE_MINIMIZED
Write_APPV_CLIENT_Evt_GivingBackExtensionPointsTo46
<>c__DisplayClass2_0
LengthOfProgressBarUpdateAnimation
get_Capacity
5%SFL)5
Write_APPV_CLIENT_Evt_refreshHttpRequestInitializeFailed
> ~`W
get_Bottom
S_FALSE
,d0lvpsoyPW9K35A9IuhFTx0jsomEBMcFh9/vex1XQCM=0Z
AccessControlType
20180915045646.584Z0
hwndChildAfter
Write_APPV_CLIENT_Evt_ErrorReadingOldManagingAuthorityPolicy
Write_APPV_CLIENT_Evt_ConfigurePackageFailedDeploymentConfigNotFound
HwndTarget
fnFindWindowEx
d3'3d>%g
<asmv1:assembly manifestVersion="1.0" xmlns="urn:schemas-microsoft-com:asm.v1" xmlns:asmv1="urn:schemas-microsoft-com:asm.v1" xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">
Combine
get_X
O0M0K
Microsoft Corporation
WriteRegisterApplicationRestartFailed
get_VirtualEnvironmentBlockedDuringUpgrade_ScenarioDescription
<>c__DisplayClass17_0
_timer
Action`1
fnObservablePublishingActivityCollectionFactory
TemplateTEMPLATE_CLIENT_SCRIPTINGSCOPE_STRINGS_ULONG
LaunchSuspendedDueToCostWarning_buttonOk
<get_BarStyle>b__15_0
streamingUxMainWindow
WriteEvent
T@P k
3System.Resources.Tools.StronglyTypedResourceBuilder
OnPublishingRefreshStatusChanged
get_Result
AppVStreamingUX_
IsLong
InitializeComponent
PublishingRefreshEventArgs
XYQdM
\;C5:I
VirtualEnvironmentBlocked_ButtonCancel
get_Transparent
Write_APPV_CLIENT_Evt_CoImpersonateFailed
AddPublishingRefresh
PrimaryFeatureBlockPercentDownloaded
dwMessage
get_VirtualApplications
FromIntPtr
I9M5k
ElementName$
TDCBF_CANCEL_BUTTON
type="win32"
set_VersionId
d3cd^& qv
EndsWith
ObservableCollection`1
Text_ApplicationCouldNotBeLoaded
System.Runtime.CompilerServices
_displayNamePaddingCount
GetFileNameWithoutExtension
Write_APPV_CLIENT_Evt_RestoreToDeimpersonatedFailed
dwNewLong
Write_APPV_CLIENT_Evt_UserPublishRunningConnectionGroupFailed
Write_APPV_CLIENT_Evt_refreshConfigServerInvalidIntervalUnit
WriteGetFormattedCounterArrayFailed
get_Target
Write_APPV_CLIENT_Evt_VirtualServicesCreateServiceIsNotVirtual
TDF_SHOW_PROGRESS_BAR
Hresult
System.Configuration
Write_APPV_CLIENT_Evt_refreshConfigServerIdOutOfRange
<UpdatePublishingRefreshProgress>b__0
set_DisplayName
Write_APPV_CLIENT_Evt_PackageUnpublished
add_SizeChanged
get_TransformToDevice
get_TotalProgressBarCount
Write_APPV_CLIENT_Evt_refreshCreateDefaultMachinePolicyDocumentFailed
GroupVersion
PackageGroup
Center=
get_VirtualEnvironmentId
Write_APPV_CLIENT_Evt_RemoveGroupBlockedByPendingTask
RemovePublishingActivity
CompilationRelaxationsAttribute
add_UserPreferenceChanged
TemplateTEMPLATE_CLIENT_STRING_APPVERROR
XamlGeneratedNamespace
StreamingUXEventSink
remove_StreamFaultFailedCalled
IValueConverter
<>9__2_6
TemplateTEMPLATE_STRING_BOOLEAN_RC
System.Drawing.Size
Write_APPV_CLIENT_Evt_PendingUnpublishTaskVECannotStartPackageUser
get_VirtualEnvironmentBlocked_ScenarioDescription
Write_APPV_CLIENT_Evt_VobjEnableConflict
pRadioButtons
<PackageId>k__BackingField
Write_APPV_CLIENT_Evt_PublishPackageNotAvailable
get_Right
%F@4FXB
MutexRights
get_VersionId
TotalProgressBarCount
Write_APPV_CLIENT_Evt_CouldNotGetCatalogFolder
Topmost
TDF_NO_DEFAULT_RADIO_BUTTON
EqYgq
publicKeyToken="6595b64144ccf1df"
Guid3
_eventSink
Legal_Policy_Statement
G!v`v
rectangle
WS_THICKFRAME
System.Windows.Shapes
<Create>b__0
Write_APPV_CLIENT_Evt_UnpublishPackageGroupGloballyFailedInsufficientRights
PropertyChanged=
<Module>
ResizeMode$
TaskDialogCommonButtonFlags
set_ValueCount
Text_ErrorCode
</asmv1:assembly>
get_GroupCount
#O7hU
<PreferenceEventHandler>k__BackingField
shell32.dll
WM_XBUTTONDOWN
Write_APPV_CLIENT_Evt_refreshPartialOrNonePackagesPublished
Write_APPV_CLIENT_Evt_UserCowStateDeleted
GetValue
TDF_VERIFICATION_FLAG_CHECKED
Write_APPV_CLIENT_Evt_PublishPackageGroupFailedPackageNotPublished
Write_APPV_CLIENT_Evt_EnableAppVFailed
Write_APPV_CLIENT_Evt_MigrateCatalogFolderFailed
FromVisual
System.Windows.Markup
<OnStartup>b__2_5
0,0,0,0q
ArgumentNullException
TemplateTEMPLATE_SUBSYSTEM_STARTUP_FAILURE
FromMilliseconds
V*T~b
AppVStreamingUX
LaunchSuspendedDueToCostWarning
WriteSetSecurityOnMutexFailed
Microsoft Time-Stamp PCA 20100
WriteGetRawCounterValueFailed
Write_APPV_CLIENT_Evt_AppVErrorConnectingToServiceShuttingDown
;]e]6
NotifyCollectionChangedEventHandler
Controller
_displayNamePaddings
packageId
System.Windows.VisualState
RowDefinitions
BcTFQ0d^@
# $:=;
<IsThisOnlyInstance>b__0
10.0.0.0
TemplateTEMPLATE_STRING_PID_SID
OnVirtualProcessCreateFailed
TemplateTEMPLATE_CLIENT_SCRIPTINGSCOPE_STRINGS_WIN32ERROR
PADPADP
111019184142Z
<set_PackageName>b__0
LaunchFailureNotificationDialog
FreeHGlobal
Write_APPV_CLIENT_Evt_CorruptPackageDetectedAndRemoved
ABM_ACTIVATE
fnCreateUserNotification
WS_EX_WINDOWEDGE
/AppVStreamingUX;component/mainwindow.xaml
G+e~0$
VirtualEnvironmentBlockedDuringUpgradeNoApps_ScenarioDescription
type="win32"
DisplayName+
SetWindowLong
%Microsoft Windows Production PCA 2011
fnGetNotifyAreaButtonRectangle
TDCBF_NO_BUTTON
set_Text
System.Security.AccessControl
<set_BarStyle>b__0
<get_PackageName>b__9_0
get_RunningVeId
<>9__2_9
0,0.5&
Microsoft Corporation1
Write_APPV_CLIENT_Evt_refreshPartialOrNoneGroupsUnPublished
>h0B*5
mainInstruction
security
Microsoft Operations Puerto Rico1&0$
pfCallback
column
:CLU^
Button
Write_APPV_CLIENT_Evt_PublishPackageGroupFailedPackageGroupNotConfigured
lM.>c
us^>3
Microsoft Time-Stamp PCA 2010
CreateForUpgradeInProgress
EventInfo
m%YPR
4Microsoft.AppV.Client.StreamingUX.ProgressBarControl
Write_APPV_CLIENT_Evt_RepairPackageGroupFailedPackageGroupNotConfigured
get_Handle
10,0,0,0q
CultureInfo
packageFailed
NoWrap=
<OnStartup>b__2
Value#
Boolean
IsConst
yo?>Z;
<OnButtonClicked>b__0
pfVerificationFlagChecked
_virtualApplications
Write_APPV_CLIENT_Evt_MigrateCatalogFolderTargetExists
&$PrimaryFeatureBlockPercentDownloaded+
PublishingRefreshPackageCount
TemplateTEMPLATE_CLIENT_APPVERROR
LayoutRoot
DoubleAnimation
message
WindowInteropHelper
TDN_EXPANDO_BUTTON_CLICKED
PublishingRefreshes
TemplatePublishingRefreshStatusChangedT
EnumChildWindows
WS_EX_NOPARENTNOTIFY
RestartRestrictions
set_Culture
TemplateTEMPLATE_CLIENT_STRING_STRING_APPVERROR
WS_TILED
Write_APPV_CLIENT_Evt_ReportingBadReportCacheFile
PresentationBuildTasks
WS_CLIPCHILDREN
"Set the value of the progress bar.
MARGINS
StringBuilder
Horizontal=
VirtualApplications
UserPreferenceChangedEventHandler
Write_APPV_CLIENT_Evt_VirtualServicesDependentServiceStartFailed
Concat
Point
(ProgressBar.IsIndeterminate)
100701213655Z
Value1
TemplateTEMPLATE_UINT_APPVRC
SystemEvents
Write_APPV_CLIENT_Evt_GetConfigurationPropertiesError
!The application failed to launch.
g1yhU
MuxUo~
Write_APPV_CLIENT_Evt_refreshSettingsSyncFailed
Write_APPV_CLIENT_Evt_publishPackageFailedVcomSettingsMismatch
WS_CLIPSIBLINGS
MSBAML
name="Microsoft.AppV.StreamingUX"
Write_APPV_CLIENT_Evt_PublishPackageFailedDueToErrorInitializingIntegrationSettings
OeAIv
N1HSn
HandlePublishingRefreshStatusChanged
System.Drawing.Icon
set_PreferenceEventHandler
Write_APPV_CLIENT_Evt_ReportingRecordProcessingAborted
StreamingUXDebugEventsLoggerHandler
add_VirtualEnvironmentBlockedCalled
<IsGlobal>k__BackingField
<.ctor>b__13_3
_pnButtonPtr
Microsoft.AppV.Client.Tracing
0.996Q
pnVerificationFlagChecked
WriteCreateStreamingUXProcessFailed
remove_PropertyChanged
get_PublishingRefreshPackageCount
Microsoft Windows0
Write_APPV_CLIENT_Evt_PackageConfigurationFailed
Write_APPV_CLIENT_Evt_refreshSettingsSynced
get_OutOfSequenceStreamingRate
Write_APPV_CLIENT_Evt_PendingPublishFailedNoNetwork
OnVirtualEnvironmentTerminated
<OnStartup>b__2_6
TemplateTEMPLATE_GUID_STRING_ERROR
lpEnumFunc
Text_ApplicationLaunchFailedScriptFailure
Write_APPV_CLIENT_Evt_refreshRefreshStop
packageSucceeded
add_LocationChanged
Write_APPV_CLIENT_Evt_PackageGroupConfigurationFailed
FrameworkElement
R!s4Z
IDAT"
Write_APPV_CLIENT_Evt_UserPublishRunningPackageGroupScheduled
runningVeId
pMarInset
Write_APPV_CLIENT_Evt_refreshInvalidXmlContentFromServer
publishingActivityItemsControl
get_Top
<.ctor>b__13_0
SecurityAction
TemplateTEMPLATE_CLIENT_GUID_RC
Write_APPV_CLIENT_Evt_VirtualServicesDeleteServiceFailed
LaunchSuspendedDueToCostWarning_buttonOka
%This may be due to a network failure.
Write_APPV_CLIENT_Evt_PowerNotificationRegistrationFailure
<get_ValueCount>b__10_0
E_INVALIDARGS
TDN_BUTTON_CLICKED
IFormatProvider
WriteKickoffThreadForDataRetrievalFailed
tGuid
RegisterForEvents
remove_PreferenceEvent
set_DataContext
ICommand
unint64
_properties
Write_APPV_CLIENT_Evt_BackgroundStreamingSuspendedCS
height
Write_APPV_CLIENT_Evt_refreshHttpRequestSendRequestFailed
_contentLoaded
Write_APPV_CLIENT_Evt_publishConnectionGroupFailedVCOMSettingsMismatch
WS_EX_TOPMOST
.?1zl6(
TemplatePrimaryFeatureBlockPercentageChangedT
Double
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
pButtons
get_ActualWidth
System.Collections
PackageName
$Microsoft Ireland Operations Limited1
_controller
Duration
<>c__DisplayClass0_0
IconSize
IEnumerator
GWL_HWNDPARENT
!u\Y(
Write_APPV_CLIENT_Evt_PackageGroupRemoved
get_Default
TemplateTEMPLATE_CLIENT_CONFIGURE_PACKAGE_FAILURE
{0} of {1}
Write_APPV_CLIENT_Evt_PublishPackageWarningDueToGlobalHybridGroup
mw` xUm
dwFlags
TDF_ALLOW_DIALOG_CANCELLATION
Write_APPV_CLIENT_Evt_ReportingCacheRollover
add_PublishingActivityStatusChangedCalled
BarStyleChanged
Format
buttonText
get_Text_ErrorCode
ClientDefinitions
EnumWindowProc
get_Dispatcher
Write_APPV_CLIENT_Evt_UpdateDriverMappingsOnPackageAddFailed
Gh*-
pointer
TemplateTEMPLATE_CLIENT_SCRIPTINGSCOPE_GUID_STRING_MULT
PackageNameChanged
z.9Wv
Write_APPV_CLIENT_Evt_VirtualServicesChangeServiceConfigFailed
width
grdProgressMsg
version="1.0.0.0"
EasingFunctionBase
VirtualEnvironmentBlocked_ScenarioAction
WS_GROUP
#Strings
mEt6WM
AssemblyDelaySignAttribute
ABM_GETTASKBARPOS
WS_ICONIC
AddPublishingActivity
TDN_TIMER
&<P.w
pszExpandedControlText
/AppVStreamingUX;component/publishingactivityprogressbarcontrol.xaml
WS_EX_MDICHILD
WS_MAXIMIZE
TDF_USE_HICON_MAIN
get_DisplayName
<dependency>
E-qIF8W
Segoe UI)
Write_APPV_CLIENT_Evt_UserCowValidationFailed
set_ApplicationName
set_BarStyle
P'0K|
TaskDialogButton
C6!5$^
>o_jc
System.Windows.Data
.text
UserPreferenceCategory
HTCLIENT
add_CanExecuteChanged
IsChecked$
x<15g0<
,Microsoft Application Virtualization (App-V)
GetWindowRectDelegate
ExtendedWindowStyles
remove_PackageLaunchPreventedDueToCostCalled
UserPreferenceChangedEventArgs
VirtualEnvironmentBlockedNotificationDialog
hMainIcon
ABM_WINDOWPOSCHANGED
{~`2*
gp]Z@{
TemplateTEMPLATE_CLIENT_CATALOG_FOLDER_WIN32ERROR
activatewindow
qCxjy
WriteDeimpersonationForDataRetrievalFailed
windowheight
runningIsGroup
<assemblyIdentity
groupSucceeded
Write_APPV_CLIENT_Evt_CorruptPackageGroupDetectedAndRemoved
Write_APPV_CLIENT_Evt_AppLaunchFailedServiceNotRunning
get_PackageCount
WS_MINIMIZEBOX
RefreshStatusType
UpdateProgressBarsText
Path$
KeyTime$
InvalidCastException
_fnTaskDialogIndirect
TemplateTWUInt64
GetStatusTargetCode
Write_APPV_CLIENT_Evt_RemovePackageBlockedByPendingTask
IntegerToVisibilityConverter
ProgressBarStyle
WriteStopDataRetrievalFailed
Text_ReconnectAndRetry
AssemblyCompanyAttribute
suZk4
IEnumerator`1
_publishingActivities
Value2
IEnumerable`1
fSystem.Drawing.Icon, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a2
Kernel32.dll
Text_ApplicationLaunchFailedDiskFull
Write_APPV_CLIENT_Evt_PackageHasNotBeenMigrated
hWF"Zug
get_PublishingRefreshDeployingPackages
OnPrimaryFeatureBlockLoadFinished
Write_APPV_CLIENT_Evt_PublicApi_EnterComMethod
There is insufficient disk space to open the application. You should delete any unnecessary files using the Disk Cleanup Tool and then try again.
remove_VirtualEnvironmentTerminatedCalled
IAsyncResult
ProcessID
CompareExchange
Write_APPV_CLIENT_Evt_InvalidGatewayErrorInTransport
Write_APPV_CLIENT_Evt_ReportingSaveAfterCacheUpdateFailed
Write_APPV_CLIENT_Evt_MountPackageFailedConnectionTimeout
#&RwW
Write_APPV_CLIENT_Evt_refreshConfigServerDayOutOfRange
>Microsoft.AppV.Client.StreamingUX.IntegerToVisibilityConverter
callback
Colors
Write_APPV_CLIENT_Evt_PackageConfigured
PresentationCore
$g7)&
TemplateTWUInt32
ABM_GETSTATE
,Check your network connection and try again.
AddAccessRule
TemplateTEMPLATE_GROUP_AND_VERSION
Write_APPV_CLIENT_Evt_StreamFaultFailed
MonitorFromRect
Title$
lpWindowName
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshOnGroupPublishFailed
Write_APPV_CLIENT_Evt_VirtualServicesServiceAutostartFailed
System.Collections.ObjectModel
Microsoft.AppV.Client.StreamingUX.Properties.Resources.resources
TemplateTEMPLATE_UINT
ComVisibleAttribute
get_Text
MulticastDelegate
WrapNonExceptionThrows
get_Text_ApplicationCouldNotBeLoaded
"Set the name to appear in the bar.
fnGetWorkingArea
remove_UserPreferenceChanged
WS_OVERLAPPED
CanExecute
get_M22
LastFolder
PublishCounter
TemplateTEMPLATE_CLIENT_ID_VERSION_PATH
TDCBF_CLOSE_BUTTON
Write_APPV_CLIENT_Evt_AppLaunchFailedUserNotEntitled
IClientComConsumerEventSink
Write_APPV_CLIENT_Evt_BackgroundStreamingResumedDueToIdle
332=v
get_Assembly
CLOSE_APPS_BUTTON_ID
DependencyObject
fnCreateBlockedForUpgradeNotification
hWndParent
set_Left
TDF_ENABLE_HYPERLINKS
Write_APPV_CLIENT_Evt_VirtualServicesGetServicesFromManifestFailed
ToUpperInvariant
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
TemplateTEMPLATE_CLIENT_STRING_HRESULT
)Ke? V
add_PublishingRefreshStatusChangedCalled
TDF_SHOW_MARQUEE_PROGRESS_BAR
WS_EX_APPWINDOW
WritePublishingRefreshStatusChanged
get_Text_ReconnectAndRetry
get_NotificationDialogDefaultParent
US>,!l
<StatusType>k__BackingField
_CreateDelegate
Write_APPV_CLIENT_Evt_UpdateDriverMappingsOnPackagePublishFailed
xO;hr
Microsoft Corporation1)0'
Write_APPV_CLIENT_Evt_TimedoutWaitingForSFTMIMECommand
BarStyleProperty
9{'@6|
<>9__2_4
TargetName$
set_EasingMode
TemplateTEMPLATE_APPV_ERROR
Write_APPV_CLIENT_Evt_UnpublishPackageGloballyFailedInsufficientRights
CommonEventArgs
Write_APPV_CLIENT_Evt_ErrorGettingExitCodeForSFTMIMECommand
TDF_EXPAND_FOOTER_AREA
PropertyChangedCallback
3nrrd3
TDN_RADIO_BUTTON_CLICKED
PublishingStatusType
get_LaunchSuspendedDueToCostWarning_labelMessage
comctl32.dll
WS_VSCROLL
unused
Write_APPV_CLIENT_Evt_VirtualServicesAttemptingAutoStart
TDF_EXPANDED_BY_DEFAULT
Write_APPV_CLIENT_Evt_GetApplicationPropertiesError
spRefreshProgress
Loading your applications.
Convert
Write_APPV_CLIENT_Evt_PackageGroupConfigured
<>9__2_5
Converter#
get_Text_ApplicationLaunchFailurePrimary
TaskBarAlignment
System.Core
WS_EX_LEFT
U/clr-namespace:Microsoft.AppV.Client.StreamingUX!Microsoft.AppV.Client.StreamingUX
nDefaultRadioButton
ApplicationSettingsBase
System.Timers
Write_APPV_CLIENT_Evt_ConfigurePackageFailedOSMismatch
pszMainInstruction
set_PackageName
TDF_CALLBACK_TIMER
dqsi^&cqvtq]%jv
0,3,0,0q
Write_APPV_CLIENT_Evt_VFSFolderACLModified
txtMessage
e4f68870-5ae8-4e5b-9ce7-ca9ed75b0245
pszExpandedInformation
pszCollapsedControlText
TaskDialogCallback
SnapsToDevicePixels
PresentationSource
ProgressBarDataRepositoryViewModel
Write_APPV_CLIENT_Evt_PublishNoMandatoryPackagesInConnectionGroupDocument
<.ctor>b__12_0
TDF_RTL_LAYOUT
<dependentAssembly>
M0K0I
get_UserName
get_NewValue
Write_APPV_CLIENT_Evt_StreamFilterInitFailed
#Blob
Utilities
delegateType
Write_APPV_CLIENT_Evt_RemovePackageGroupFailedInsufficientRights
gL9/~
Write_APPV_CLIENT_Evt_ConfigurePackageFailedIncompatibleArchitecture
get_PackageName
TDN_DESTROYED
Write_APPV_CLIENT_Evt_GlobalPublishRunningConnectionGroupFailed
Text_ApplicationLaunchFailedNetwork
SHAppBarMessage
<OnStartup>b__7
windowTitle
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
Write_APPV_CLIENT_Evt_ConfigurePackageFailedPackageCorrupt
get_Status
set_PrimaryFeatureBlockPercentDownloaded
`.rsrc
processorArchitecture="*"
Write_APPV_CLIENT_Evt_RepairPackageFailedPackageNotConfigured
DEBUG
WS_SIZEBOX
remove_VirtualProcessCreatedCalled
Write_APPV_CLIENT_Evt_UnpublishPackageGroupFailedPackageGroupNotPublished
get_VirtualEnvironmentBlocked_ButtonCancel
Write_APPV_CLIENT_Evt_PackageGetApplicationsError
fnFindWindow
TemplateTEMPLATE_PACKAGE_VERSION_AND_HR
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshOnRemoveFailed
nIndex
Write_APPV_CLIENT_Evt_GlobalUnpublishRunningPackageFailed
uint642
Write_APPV_CLIENT_Evt_GlobalUnpublishRunningPackageGroupScheduled
Invalid property name:
WS_EX_LEFTSCROLLBAR
Write_APPV_CLIENT_Evt_FailedToHandleProcessLaunchFailure
propertyInfo
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshOnAddFailed
Write_APPV_CLIENT_Evt_VregEnabledSettingPolicyMismatch
get_ThrowOnInvalidPropertyName
Write_APPV_CLIENT_Evt_ScriptLauncherIgnoreElapsedTimeout
Write_APPV_CLIENT_Evt_PublishPackageFailedUserConfigIDMismatch
ActualHeight
5The application could not be loaded from the network.
value
%Microsoft Windows Production PCA 20110
X>CiO12g
MutexSecurity
Write_APPV_CLIENT_Evt_ManifestScriptParsingFailed
pTaskConfig
obaOTr
cRadioButtons
Item1
Write_APPV_CLIENT_Evt_UnpublishPackageInConnectionGroupFailed
IntToVisConverter
k+T!j
TemplateTEMPLATE_GROUP_VERSION_ACTIVITY
get_Text_ApplicationFailedToLaunch
Code_
m_provider
<.ctor>b__13_1
UpdateSourceTrigger$
WS_EX_LTRREADING
Interlocked
WS_EX_DLGMODALFRAME
Create
VEBlockedEventArgs
WM_MBUTTONDOWN
MONITOR_DEFAULTTONEAREST
NotifyCollectionChangedEventArgs
IUserNotification
Write_APPV_CLIENT_Evt_DisableAppVFailed
Write_APPV_CLIENT_Evt_ScriptingFailedToRevertToSelf
TemplateTEMPLATE_GUID_GUID_GUID
TemplateTEMPLATE_CLIENT_ITEM_WIN32ERROR
WS_EX_TRANSPARENT
Window_LocationChanged
<CreateForUpgradeInProgress>b__0
UriKind
@Nm]Am
EventProviderVersionTwo
SizeChangedEventHandler
get_Text_ApplicationLaunchFailedScriptFailure
Write_APPV_CLIENT_Evt_RestoreToImpersonatedFailed
Write_APPV_CLIENT_Evt_refreshReadPolicyIdsFailed
O&A0KjJ
Write_APPV_CLIENT_Evt_RemovePackageFailedInsufficientRights
Equals
System.Diagnostics.Eventing
IClientEventSinkRegistrator
Shield
ErrorLow
PWx_Z
261019185142Z0
Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z
NeutralResourcesLanguageAttribute
.cctor
<get_ValueCount>b__9_0
AddEventHandler
IconData
ConditionalAttribute
set_Value
WS_EX_COMPOSITED
WindowsBase
z;Y2E
ProductIcon
pszFooter
w4ab!
TemplateTEMPLATE_CLIENT_PUBLISH_PACKAGE_GROUP
"Microsoft Window
WS_EX_NOINHERITLAYOUT
Write_APPV_CLIENT_Evt_refreshGetServerDataFailed
percentageComplete
WindowEdgeOffset
GetFailureMessageContent
get_IsAllocated
grdProgressBar
<get_BarStyle>b__16_0
ExternalException
FMicrosoft.AppV.Client.StreamingUX.PublishingActivityProgressBarControl
Write_APPV_CLIENT_Evt_UserLogoffFailed
<>c__DisplayClass3_0
1http://www.microsoft.com/PKI/docs/CPS/default.htm0@
WS_MAXIMIZEBOX
ClientException
Write_APPV_CLIENT_Evt_ConfigurePackageFailedPackageNotFound
Write_APPV_CLIENT_Evt_refreshConfigServerNoUrl
cyTopHeight
get_RunningVeVersion
AppendLine
user32.dll
WM_NCHITTEST
Write_APPV_CLIENT_Evt_refreshShellRefreshFailed
/AppVStreamingUX;component/progressbarcontrol.xaml
WS_TABSTOP
set_IsGlobal
Bug in code: Unknown publishing refresh status type.
TemplateTEMPLATE_CLIENT_SCRIPTINGSCOPE_GUID_STRING
WidthAndHeight=
@333''3^3
>= 4]
get_ProductIcon
shutDownAction
awb}~'
LoadingPrimaryFeatureBlock
Activator
set_StatusType
Write_APPV_CLIENT_Evt_ReportingDataSaveFailed
<>9__0
Write_APPV_CLIENT_Evt_ConfigurePackageGroupFailedPackageNotConfigured
WM_DWMCOMPOSITIONCHANGED
pEEGv
&eGt.
Ehttp://crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z
Write_APPV_CLIENT_Evt_ClientErrorStoppingPackageOrGroup
GWL_EXSTYLE
Chttp://www.microsoft.com/pkiops/crl/MicWinProPCA2011_2011-10-19.crl0a
get_Title_AppVStreamingUXDialog
ToIntPtr
Microsoft.AppV.Client.StreamingUX.Properties
_publishingRefreshes
SecurityPermissionAttribute
yg;B5
'SS("YaaY
get_LoadingPrimaryFeatureBlock
OjpvM
op_Explicit
System.Text
get_VirtualEnvironmentBlockedDuringUpgradeNoApps_ScenarioDescription
<>4__this
WS_VISIBLE
txtPackageName
</dependency>
remove_PublishingActivityStatusChangedCalled
RESTART_NO_PATCH
ABMsg
<.ctor>b__0_1
get_PackageID
<OutOfSequenceStreamingRate>k__BackingField
get_Text_ApplicationLaunchFailedDiskFull
AddVirtualApplication
Loading this application may incur additional costs from your wireless provider. Wait until new network connections are available, or contact your administrator to suppress this dialog.
remove_VirtualProcessCreateFailedCalled
<>9__2_1
VisualStateGroups
zIwj)
WriteReimpersonationForDataRetrievalFailed
VirtualApplications+
cxRightWidth
add_VirtualProcessCreateFailedCalled
get_IsGlobal
i:http://schemas.microsoft.com/expression/2010/interactivity
WriteAppVStreamingUXAlreadyRunning
wLiod'
Text_ApplicationLaunchFailurePrimary
Timer
Write_APPV_CLIENT_Evt_GlobalPublishRunningPackageFailed
$`2X`F
Write_APPV_CLIENT_Evt_GetPackagePropertiesError
ND=SxM
nDefaultButton
RoutedEventHandler
TargetProperty$
uint64
packageTotal
UpdatePackagePrimaryFeatureBlockInfo
TemplateTEMPLATE_CLIENT_CATALOG_FOLDER
Write_APPV_CLIENT_Evt_PublishNoPackagesInConnectionGroupDocument
Write_APPV_CLIENT_Evt_CouldNotDeterminingLegacyAppVInstallPath
Write_APPV_CLIENT_Evt_RemovePackageGroupFailedPackageGroupNotConfigured
TDN_CREATED
get_ServerURL
get_PublishingRefreshes
<>9__2_3
RelayCommand
Triggers
lpszWindow
I @}0Y
SizeChangedEventArgs
G(WVQ
T/e5/
+hm/h8
Write_APPV_CLIENT_Evt_StreamRequestProcessedAsAltUser
Write_APPV_CLIENT_Evt_PackageGroupPublished
http://www.microsoft.com/windows0
handler
mainwindow.baml
OnPropertyChanged
ClientEventTypeFilter
TDF_USE_COMMAND_LINKS_NO_ICON
mainIcon
VirtualEnvironmentBlocked_TitleCloseApplications
Color$
EditorBrowsableState
RESTART_NO_HANG
NativeMethods
NEb<Y^2
9Copyright (c) Microsoft Corporation. All rights reserved.
add_StreamFaultFailedCalled
Window_Loaded
(M.:=
zQjPAU
recBackgrnd
op_Implicit
get_M11
WritePrimaryFeatureBlockLoadStarted
Func`1
HwndSource
<.ctor>b__13_2
VZ__
DependencyPropertyChangedEventArgs
get_Category
Write_APPV_CLIENT_Evt_UserUnpublishRunningPackageGroupScheduled
applicationName
Write_APPV_CLIENT_Evt_StreamRequestProcessedAsSystem
Write_APPV_CLIENT_Evt_PublishPackageGloballyFailedUserConfigSupplied
Write_APPV_CLIENT_Evt_GlobalUnpublishRunningPackageScheduled
Predicate`1
Write_APPV_CLIENT_Evt_UnpublishPackageFailedPackageNotPublished
txtPackageLoadingMessage
uint32
['"'&
Title_AppVStreamingUXDialog
WritePerformanceCounterQueryStateIsInvalid
Write_APPV_CLIENT_Evt_refreshSyncAppvPublishingServerPowerShellError
MessageTextChanged
sender
Write_APPV_CLIENT_Evt_ConfigurePackageGroupFailedDescriptorInvalid
add_Elapsed
_canExecute
Alloc
LaunchSuspendedDueToCostWarningHandler
1,0.496&
<>c__DisplayClass11_0
Write_APPV_CLIENT_Evt_UpdateDriverMappingsOnPackageUnpublishFailed
3;33rl'r
Write_APPV_CLIENT_Evt_PackageGroupCOWDataHasBeenDeleted
TemplateTEMPLATE_STRING_BOOLEAN_BOOLEAN_RC
resourceMan
RESTART_NO_REBOOT
System.Windows.Media.Animation
Microsoft.AppV.Client.StreamingUX.Properties.Resources
)Microsoft Root Certificate Authority 20100
TemplateTEMPLATE_STRING_PACKAGE_VERSION
GWL_WNDPROC
CompilerGeneratedAttribute
ThreadPool
uEdge
GCHandle Target could not be cast as List<IntPtr>
Write_APPV_CLIENT_Evt_SubsystemStartupError
WS_EX_CLIENTEDGE
txtWaitingMessage
Write_APPV_CLIENT_Evt_refreshShellRefreshSucceeded
(UIElement.Visibility)
OnStreamFaultFailed
X~V,G
<get_Text>b__4_0
dmoLFz\w{@
UpdateWindowDisplayIfOpen
get_PreferenceEventHandler
TDCBF_RETRY_BUTTON
Write_APPV_CLIENT_Evt_GlobalUnpublishRunningConnectionGroupFailed
Write_APPV_CLIENT_Evt_UserCowStateDeletionFailed
e|2p3
Write_APPV_CLIENT_Evt_ReportingSaveCachePathToRegistryFailed
AppVStreamingUX.g.resources
groupFailed
TemplateTEMPLATE_CLIENT_WIN32ERROR
|hK,_
wparam
List`1
!System.Windows.VisualStateManager
ValueCount
TDF_POSITION_RELATIVE_TO_WINDOW
Write_APPV_CLIENT_Evt_MountPackageFailedConnectionLost
Write_APPV_CLIENT_Evt_VirtualAppLaunchFailed
BarStyles
NWindowsBase, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
TemplateTEMPLATE_STRING_PID
DebuggerNonUserCodeAttribute
TemplateTEMPLATE_CLIENT_HRESULT
ValueCollection
WS_EX_OVERLAPPEDWINDOW
Dispose
191123202628Z0
Zddw^^
System.ComponentModel
*BSJB
Write_APPV_CLIENT_Evt_ScriptEnabledReadError
250701214655Z0|1
nMaxCount
UnverifiableCodeAttribute
OnStartup
GetUserVirtualProcesses
Width
Write_APPV_CLIENT_Evt_PackageUnpublishedGlobally
TemplateTEMPLATE_VALIDATE_XML_ERROR
WriteLaunchClientMgmtUXFailed
connectionId
cyBottomHeight
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshOnUnpublishFailed
xpMlk
get_RunningIsGroup
Write_APPV_CLIENT_Evt_AppLaunchFailedDependentServiceFailed
MONITOR_DEFAULTTONULL
IDATx
HResult
referenceData
eventInfo
add_RequerySuggested
ActivityBarStyle
Write_APPV_CLIENT_Evt_refreshWritePolicyIdsFailed
~{:8u
Segoe UI Light)
get_PackageVersionID
WriteStopStreamingUXProcessError
ABE_RIGHT
<.ctor>b__0_3
VisualStateGroup
229879+4379540
PackageCount
28cb46c7-4003-4e50-8bd9-442086762d12
name="Microsoft.Windows.Common-Controls"
TemplateTEMPLATE_PACKAGEMONIKER_PACKAGEGROUPMONIKER
Write_APPV_CLIENT_Evt_ReconfigureNonexistentPackage
GetWindowPosition
SystemException
handlerFactories
Write_APPV_CLIENT_Evt_VobjPackageGroupConflict
9Ce0;
VirtualEnvironmentBlocked_ScenarioDescription
Write_APPV_CLIENT_Evt_PowerShellInvokeWarning
pszWindowTitle
DataPointer
<VersionId>k__BackingField
PackageVersion
remove_PublishingRefreshStatusChangedCalled
KqZ1'
Write_APPV_CLIENT_Evt_refreshDeimpersonationFailed
ValueProperty
MONITORINFO
INotifyPropertyChanged
Write_APPV_CLIENT_Evt_refreshGetClientInfoFailed
windowwidth
Guid2
D5S^>)
Khg,E%
Storyboard.
ViewModelBase
add_VirtualEnvironmentTerminatedCalled
set_Height
right
GetWindowLong
SetHandlers
StringParam1
20180915073521Z
Write_APPV_CLIENT_Evt_PackageGroupUnpublishedGlobally
Write_APPV_CLIENT_Evt_ConnectionGroupGetPackagesError
get_Value
gO1EN"
bYdcS(
EventHandler`1
&dtuq35
BindingFlags
Dictionary`2
pszContent
AsyncCallback
yz'jX;
<.ctor>b__12_2
Write_APPV_CLIENT_Evt_ErrorTakingOverExtensionPointsFrom46
<ServerURL>k__BackingField
Z>B5Z
cButtons
onButtonClicked
txtPercentSign
ABM_SETSTATE
Write_APPV_CLIENT_Evt_APIRequiresMinimumImpersonateLevel
GetModuleAndCode
Write_APPV_CLIENT_Evt_FailedToDeleteUserPublishedGroup
<OnStartup>b__2_1
.NETFramework,Version=v4.5
DebuggableAttribute
System.Xaml
dwCommonButtons
SizeToContent$
set_PackageCount
get_ResourceManager
TB_GETITEMRECT
Write_APPV_CLIENT_Evt_MountPackageFailedInsufficientDiskSpace
A required script failed to run.
mc;http://schemas.openxmlformats.org/markup-compatibility/2006
PropertyChangedEventHandler
<.ctor>b__0_2
DispatcherOperationCallback
Continue
Write_APPV_CLIENT_Evt_ErrorGivingBackExtensionPointsTo46
WriteOpenLivePerformanceCounterQueryFailed
Write_APPV_CLIENT_Evt_ScriptDefinedButNotEnabled
groupTotal
WS_MINIMIZE
applicationProgress
pnRadioButton
IDisposable
gl.9l
BQPjp
Wrap=
Microsoft.AppV.AppvClientComConsumer
=TVU<
,6_<<
WM_LBUTTONDOWN
cxWidth
qq2W76
COMException
get_IsLoaded
Write_APPV_CLIENT_Evt_ConfigurePackageFailedDeploymentConfigInvalid
Write_APPV_CLIENT_Evt_RemovePackageFailedPackageNotConfigured
System.Security.Permissions
set_OutOfSequenceStreamingRate
serverURL
Gh|US &
Write_APPV_CLIENT_Evt_GlobalPublishRunningPackageScheduled
DispatcherOperation
Write_APPV_CLIENT_Evt_VirtualServicesServiceFailedToStop
_packageName
S T U V!W"X&
Write_APPV_CLIENT_Evt_PublishRoamingPackagesFailed
TrimEnd
Property
TrayNotifyWnd
{8?ED1
CategoryAttribute
user32
<!-- Copyright (c) Microsoft Corporation -->
Write_APPV_CLIENT_Evt_FailedToHandleVirtualEnvironmentTerminated
TemplateEventDescriptor
a49sHU
Write_APPV_CLIENT_Evt_JITVEnabledReadError
<OnStartup>b__2_4
([ebP
Enumerable
_registrator
AssemblyProductAttribute
Bottom=
Write_APPV_CLIENT_Evt_RemoveRunningPackageFailed
<>9__12_1
add_PropertyChanged
ToString
Write_APPV_CLIENT_Evt_refreshPartialOrNoneGroupsPublished
fnGetTaskBarInfo
System.Windows.Visibility
get_OffsetToStringData
Write_APPV_CLIENT_Evt_VEBlockedByPublishingPackage
WS_EX_ACCEPTFILES
rcWork
Write_APPV_CLIENT_Evt_PublishPackageGroupGloballyFailedInsufficientRights
ColumnDefinitions
<>9__2_8
Flag1
Write_APPV_CLIENT_Evt_AppLaunchFailedPackageNotPublished
UIPropertyMetadata
method
<>c__DisplayClass20_0
System.Runtime.Versioning
Binder
lparam
DwmExtendFrameIntoClientArea
TaskDialogConfig
_displayName
Write_APPV_CLIENT_Evt_BackgroundStreamingResumedCS
TargetFrameworkAttribute
ScriptScope
VirtualEnvironmentBlockedNotificationHandler
R9n`d
Write_APPV_CLIENT_Evt_LaunchSuspendedDueToCost
<?xml version="1.0" encoding="utf-8"?>
WriteCollectQueryDataFailed
APPBARDATA
StringParam2
RemoveVirtualApplication
DispatcherObject
fnObservableAppCollectionFactory
WM_SIZE
System.Linq
Write_APPV_CLIENT_Evt_refreshConfigServerHourOutOfRange
Write_APPV_CLIENT_Evt_PackageCOWDataHasBeenDeleted
&EKjLH
TDF_USE_COMMAND_LINKS
<ApplicationName>k__BackingField
5,0,0,0q
Microsoft Corporation1200
WS_EX_RTLREADING
EMicrosoft.AppV.Client.StreamingUX.PublishingRefreshProgressBarControl
YSystem.Int32, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089nSystem.Windows.Visibility, PresentationCore, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
get_ApplicationName
Write_APPV_CLIENT_Evt_VirtualServicesFailedToAcquireStartLock
System.Windows.Threading
Washington1
d2http://schemas.microsoft.com/expression/blend/2008
AppVStreamingUX.pdb
StringParam
GeneratedCodeAttribute
get_Values
Write_APPV_CLIENT_Evt_UpdateDriverMappingsOnPackageRemoveFailed
TDN_DIALOG_CONSTRUCTED
get_Left
x,http://schemas.microsoft.com/winfx/2006/xaml
OnPrimaryFeatureBlockLoadStarted
=~>8XOGG
*Microsoft (R) Windows (R) Operating System
#GUID
%X|1h
GWL_HINSTANCE
ToInt32
get_Width
get_UserDomainName
HlS8"
remove_PrimaryFeatureBlockPercentageChangedCalled
System.Windows.Interop
get_Keywords
HAIT[8rT
Write_APPV_CLIENT_Evt_PackageGroupHasNotBeenMigrated
GroupId
TemplateTWStringUInt64
ClearButtonStyle
<NotificationDialogDefaultParent>k__BackingField
ABM_SETAUTOHIDEBAR
VerifyPropertyName
wim.q
dS*Bl
Write_APPV_CLIENT_Evt_publishPackageFailedVfsSettingsMismatch
ActivityID
TemplateTEMPLATE_PACKAGE_VERSION_ACTIVITY
EditorBrowsableAttribute
180823202628Z
PWHQ"
DebuggingModes
WS_EX_CONTROLPARENT
TB_BUTTONCOUNT
TemplateTEMPLATE_GUID_STRING_HRESULT
<assemblyIdentity
CharacterEllipsis=
<>9__0_1
LoadComponent
Write_APPV_CLIENT_Evt_refreshHttpContentCannotCovertToUnicode
Reason
t;4;h
_displayNameBase
Disabled=
Where
CancelEventArgs
PublishingActivityEventArgs
TB_GETBUTTON
Item2
UpdateWindowDisplay
<.ctor>b__12_1
WriteCreatedStreamingUXProcess
Write_APPV_CLIENT_Evt_PackageRemoved
MoveNext
<>9__0_0
Write_APPV_CLIENT_Evt_FailedToAddProcessTerminationData
spacer
Write_APPV_CLIENT_Evt_PendingUnpublishTaskVECannotStartGroupUser
get_AppvErrorCodeLow
TDN_NAVIGATED
Write_APPV_CLIENT_Evt_VfsDeleteFailedForMergedDirectoryWithPath
Resources
The application cannot be opened because a software update is required. The following applications must be closed to complete the update. To continue, save your work and then click Close Applications.
get_Level
RemovePublishingRefresh
QueueUserWorkItem
StringComparison
TextBlock
StructureToPtr
get_ErrorCode
LaunchFailureNotificationHandler
OnRefreshCollectionChanged
PublishingActivities+
~+LKvD
x4B1ZA
T!#|/
Activate
MONITOR_DEFAULTTOPRIMARY
Write_APPV_CLIENT_Evt_ConfigurePackageFailedInvalidURI
publishingrefreshprogressbarcontrol.baml
AllocHGlobal
ErrorWarning
Microsoft Operations Puerto Rico1'0%
W[Y(0
Write_APPV_CLIENT_Evt_refreshRefreshStart
set_ServerURL
VisualState
IsItemsHost
!&U+G
WriteStoppedPollingDueToAllFullyLoadedPolicy
dockPanel
TemplateTEMPLATE_CLIENT_CONFIGURE_PACKAGE_GROUP_FAILURE
GetWindowSize
Write_APPV_CLIENT_Evt_GlobalPublishRunningPackageGroupScheduled
WriteCreateCommandLine
publishingActivityProgress
ABM_GETAUTOHIDEBAR
get_CurrentCulture
CreateInstance
TemplateTEMPLATE_PACKAGE_AND_VERSION
OnPublishingActivityStatusChanged
VirtualEnvironmentBlocked_ButtonCloseApplications
System.Reflection
TargetType
System.Drawing
>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
Write_APPV_CLIENT_Evt_AppLaunchFailedSubsystemInitFailed
#';'F
iSHp6
PropertyInfo
Microsoft.AppV.Client.StreamingUX.Tracing
<>9__0_2
TemplateTEMPLATE_LOAD_XML_ERROR
FpAB^;E
<set_ValueCount>b__0
TemplateTEMPLATE_GUID_GUID_ULONG_ULONG
Write_APPV_CLIENT_Evt_publishConnectionGroupFailedVobjSettingsMismatch
TDN_VERIFICATION_CLICKED
ET4x(2w
Write_APPV_CLIENT_Evt_ServiceStartFailedDueToDisabled
RSDSR
20180916073521Z0t0:
PublishingActivities
Collapsed
AppVStreamingUXPrefix
remove_PrimaryFeatureBlockLoadFinishedCalled
Write_APPV_CLIENT_Evt_ScriptExitErrorRollback
AssemblyFileVersionAttribute
ResultEventArgs
Write_APPV_CLIENT_Evt_PowershellProcessStartOrExitError
Common Properties
Write_APPV_CLIENT_Evt_PackageGroupPublishedGlobally
TDF_USE_HICON_FOOTER
AppvClientConnectionGroupImpl
GetObject
Text_ApplicationFailedToLaunch
Write_APPV_CLIENT_Evt_FailedToHandleVirtualEnvironmentCreated
WriteCreateDataRetrievalStopEventEventFailed
WS_POPUP
System.Windows.Controls.Primitives
Write_APPV_CLIENT_Evt_RepairPackageSucceededButIsConfiguredInGroup
ux/clr-namespace:Microsoft.AppV.Client.StreamingUX
Shell_TrayWnd
Write_APPV_CLIENT_Evt_publishPackageFailedVobjSettingsMismatch
<>c__DisplayClass4_0
GetProperties
Write_APPV_CLIENT_Evt_ConfigurePackageGroupFailedInsufficientRights
Write_APPV_CLIENT_Evt_VirtualServicesSetServiceSecurityFailed
U0S0Q
TemplateTEMPLATE_CLIENT_CONFIGURE_PACKAGE_GROUP
Microsoft Time-Stamp Service0
NoResize=
GWL_USERDATA
jFc/k
System.Diagnostics
SPresentationCore, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
Write_APPV_CLIENT_Evt_RemovePackageInConnectionGroupFailed
set_Width
remove_PrimaryFeatureBlockLoadStartedCalled
LaunchSuspendedDueToCostWarning_labelMessagec
TemplateTEMPLATE_COM_ERROR
Write_APPV_CLIENT_Evt_failedToRegisterAssembly
2Z]Y*
',RvXg
RuntimeTypeHandle
expandedInformation
TaskDialogIcons
get_PrimaryFeatureBlockPercentDownloaded
StartupEventArgs
BeginInvoke
None=
Microsoft.AppV.AppvClientFacade
ConvertBack
FnTaskDialogIndirectType
wx_P{0
Write_APPV_CLIENT_Evt_VfsDeleteFailedForMergedDirectory
Name$
content
TemplateTEMPLATE_CLIENT_STRING_GUID_PID_RC
WriteLaunchProcessInUserSessionFailed
ValueType
U~$d+R=BG
PropertyDescriptor
fnSinkFactory
get_Visibility
add_CollectionChanged
WM_RBUTTONDOWN
Write_APPV_CLIENT_Evt_VirtualServicesServiceStartFailed
Write_APPV_CLIENT_Evt_ScriptLauncherTimeoutElapsed
Write_APPV_CLIENT_Evt_PublicApi_ExitComMethod
spPercentComplete
nCipher NTS ESN:57F6-C1E0-554C1+0)
value__
set_BackgroundColor
SameRetcode
get_PublishingRefreshTimeEstimate
<.ctor>b__0
EnumButtonWindow
10,0,10,5q
RESTART_NO_CRASH
Write_APPV_CLIENT_Evt_LoadXMLError
Write_APPV_CLIENT_Evt_RegistrationForSystemIdlecallBackFailed
CLSCompliantAttribute
Synchronized
Write_APPV_CLIENT_Evt_InvalidPackageRootOwner
ZU?(:n0U
PackageNameProperty
Write_APPV_CLIENT_Evt_BackgroundStreamingResumed
Write_APPV_CLIENT_Evt_FailedToSendReportingData
Cy`N^
IsKeyboardFocused
Close Applications
WS_EX_RIGHTSCROLLBAR
Write_APPV_CLIENT_Evt_RegistrationForCostcallBackFailed
fnGetChildButtonWindows
System.Threading
CurrentImpersonationLevel
Write_APPV_CLIENT_Evt_ErrorWaitingForSFTMIMECommand
AssemblyCopyrightAttribute
Microsoft Corporation1.0,
GetWindowLongIndex
SubsystemName
TemplateTEMPLATE_CLIENT_IMPERSONATION_LEVEL
Write_APPV_CLIENT_Evt_SLAPIFailure
Vi,i"
_ensureSingleInstancePerUserMutex
Write_APPV_CLIENT_Evt_StreamFilter_SendMessageTimeout
StreamingManagerHighCostLaunchAborted
<.ctor>b__0_0
<.ctor>b__13_4
WS_EX_RIGHT
WS_EX_LAYERED
Microsoft Time-Stamp Service
runningVeVersion
Write_APPV_CLIENT_Evt_PackagePublishedGlobally
TemplateTEMPLATE_CLIENT_GUID
get_PublishingActivities
NSystem.Xaml, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
PublishingRefreshes+
_packageCountBase
set_Enabled
Write_APPV_CLIENT_Evt_VfsRenameFailedForMergedDirectory
VirtualizationPackageUpgradeInProgress
System.Windows
States.
get_InvariantCulture
language="*"
<>9__0_3
FormatErrorCode
Write_APPV_CLIENT_Evt_ConfigurePackageFailedInsufficientRights
"3bZRBk
;(YW'
The application could not be started properly because a software upgrade is in progress. Please try again in several minutes once the update is complete.
1,0*0
lpRect
TextProperty
Func`5
progressbarcontrol.baml
Microsoft Corporation1&0$
Write_APPV_CLIENT_Evt_FailedToAddProcessLaunchData
OnPrimaryFeatureBlockPercentageChanged
1(0&0
CommandManager
Write_APPV_CLIENT_Evt_UserPublishRunningPackageFailed
180703204550Z
DependencyProperty
Write_APPV_CLIENT_Evt_CreationOfIdleStateDetectorFailed
Value
get_CompositionTarget
RK?&V
DescriptionAttribute
StreamingUXDebugEvents
Window_SizeChanged
add_VirtualProcessCreatedCalled
VisualStateManager
TemplateTEMPLATE_GROUP_AND_VERSION_AND_RC_AND_SID
</dependentAssembly>
UIElement
GetPropertyValue
WriteStoppedPollingDueToDataUnchangedPolicy
_packageCount
WS_EX_TOOLWINDOW
vL`6;
Write_APPV_CLIENT_Evt_VEBlockedByPublishingGroup
System.Windows.VisualStateGroup
add_Closing
hMonitor
7Reconnect to your organization's network and try again.
v4.0.30319
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
Func`2
Write_APPV_CLIENT_Evt_SFTMIMECommandExitedWithCode
#ADADAD
Qy9]-
65,0,10,0q
Write_APPV_CLIENT_Evt_UserPublishRunningPackageScheduled
fnMutexSecurityFactory
Ehttp://www.microsoft.com/pkiops/certs/MicWinProPCA2011_2011-10-19.crt0
add_PreferenceEvent
<OnStartup>b__2_9
TemplateTEMPLATE_UINT_STRING
/>
System.Windows.Input
0?y\7~
Microsoft.Win32
set_Top
WS_DISABLED
PackageCount+
WriteStartDataRetrievalFailed
Write_APPV_CLIENT_Evt_ConfigurePackageGroupFailedDescriptorNotFound
ValueConversionAttribute
GetType
cxLeftWidth
commonButtons
OnAppCollectionChanged
PROVIDER_MICROSOFT_APPV_CLIENT
4s0VK:
PublishingRefreshTimeEstimate
UserControl
3crqd36
Write_APPV_CLIENT_Evt_EnumSessionsFailed
TDN_HYPERLINK_CLICKED
WS_EX_PALETTEWINDOW
eventDescriptor
Write_APPV_CLIENT_Evt_GetConnectionGroupPropertiesError
applicationItemsControl
WS_SYSMENU
InvokeMember
System.Windows.Markup.IComponentConnector.Connect
pwzCommandline
TemplateTEMPLATE_CLIENT_CONFIGURE_PACKAGE
Write_APPV_CLIENT_Evt_UserUnpublishRunningPackageScheduled
Write_APPV_CLIENT_Evt_PublishRoamingGroupsFailed
resultArgs
get_ValueCount
remove_RequerySuggested
CreateDelegate
lpClassName
Write_APPV_CLIENT_Evt_ScriptLauncherAboutToCreateProcess
Fua>>c
Write_APPV_CLIENT_Evt_SettingChangesWillRequireReboot
Write_APPV_CLIENT_Evt_refreshGetClientDataFailed
TemplateTEMPLATE_CLIENT_STRING_STRING
IDAT'wk
get_Length
ElapsedEventArgs
get_Name
ICON1
System.Windows.Media
lpCallbackData
WS_HSCROLL
AE#5c,
Write_APPV_CLIENT_Evt_refreshPartialOrNonePackagesUnPublished
Register
TBSTATE_HIDDEN
Write_APPV_CLIENT_Evt_TakingOverExtensionPointsFrom46
EventProvider
`gAI1
pxi-W
<>c__DisplayClass10_0
VirtualEnvironmentBlockedDuringUpgrade_ScenarioDescription
WS_EX_CONTEXTHELP
W,C2HH
Write_APPV_CLIENT_Evt_ActiveProcessingCouldNotBeShutdown
DebuggerStepThroughAttribute
resourceCulture
Write_APPV_CLIENT_Evt_PublishPackageFailedUserConfigInvalid
Guid1
add_Loaded
Write_APPV_CLIENT_Evt_refreshServerProtocolUnknown
IComponentConnector
DoNothing
GetClassName
TDN_HELP
Flag2
Write_APPV_CLIENT_Evt_refreshCreateUserPolicyDocumentFailed
%IepO
Write_APPV_CLIENT_Evt_UserUnpublishRunningPackageFailed
LaunchSuspendedDueToCostWarning_labelMessage
DisplayName
version="6.0.0.0"
<set_Text>b__0
RegisterApplicationRestart
&33' 5
EndPoint$
AppVStreamingUX.exe
StartPoint$
set_PackageId
get_StatusType
\SYSTEM
Y@jSSg p
execute
'(XS'1
<UpdatePackagePrimaryFeatureBlockInfo>b__0
SendOrPostCallback
DataContext
nturd^nv
<>9__2_0
Write_APPV_CLIENT_Evt_UserMaintenanceFailed
x5JH]
get_VirtualEnvironmentBlocked_ButtonCloseApplications
"Microsoft Time Source Master Clock0
SetValue
WriteStopStreamingUXProcess
target
buttons
I0G1-0+
ErrorHigh
get_Text_ApplicationLaunchFailedNetwork
Write_APPV_CLIENT_Evt_UserLogonFailed
get_VirtualEnvironmentVersion
'Set which mode the bar will display in.
TemplateTEMPLATE_CLIENT_PUBLISH_PACKAGE_FAILURE
Write_APPV_CLIENT_Evt_ServiceStarted
kv*(
get_Code_0200000516
>d:\os\public\amd64fre\internal\strongnamekeys\fake\windows.snk
yaNE'>
Offset$
get_LaunchSuspendedDueToCostWarning_buttonOk
OnPublishingActivityCollectionChanged
TemplatePrimaryFeatureBlockLoadStartedT
}b,i"
get_Culture
TemplateTEMPLATE_GUID_GUID
global
Bold"
Write_APPV_CLIENT_Evt_VirtualServicesUnsupportedServiceStartupType
txtPackageComplete
TemplateTEMPLATE_POWERSHELL_INVOKE_ERROR_WARNING
Write_APPV_CLIENT_Evt_refreshCreatePackageGroupDescriptorDocumentFailed
Write_APPV_CLIENT_Evt_ComErrorConnectingToServiceShuttingDown
Write_APPV_CLIENT_Evt_ErrorReadingManagingAuthorityPolicy
IEasingFunction
Write_APPV_CLIENT_Evt_refreshGroupFailedDueToPackageFailure
errorCode
Write_APPV_CLIENT_Evt_PublishPackageFailedUserConfigNotFound
GoToState
add_PackageLaunchPreventedDueToCostCalled
Left=
IconUnion
<>c__DisplayClass16_0
Write_APPV_CLIENT_Evt_UserUnpublishRunningConnectionGroupFailed
rcMonitor
KY-Z-
get_PackageId
trueY
!This program cannot be run in DOS mode.
handle
get_VirtualEnvironmentBlocked_TitleCloseApplications
65,0,10,3q
pnButton
X=3tr
Write_APPV_CLIENT_Evt_ScriptExitErrorIgnored
ReqFolder
GetTypeFromHandle
TemplateTEMPLATE_CLIENT_PUBLISH_PACKAGE
ValueChanged
Write_APPV_CLIENT_Evt_PublishPackageGloballyFailedInsufficientRights
defaultButton
QuadraticEase
System.Globalization
OnButtonClicked
ReleaseHandlers
AllowsTransparency
Microsoft.AppV.Client.StreamingUX
ei9http://schemas.microsoft.com/expression/2010/interactions
Write_APPV_CLIENT_Evt_CmpLoadFailed
STAThreadAttribute
Write_APPV_CLIENT_Evt_refreshConfigServerReadRegFailed
Write_APPV_CLIENT_Evt_ConfigurePackageFailedNonNTFSPackageStore
-',%?
Redmond1
>http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0
WS_DLGFRAME
System.Security
Write_APPV_CLIENT_Evt_GlobalMaintenanceFailed
TimeSpan
User32.dll
9http://schemas.microsoft.com/winfx/2006/xaml/presentation
Write_APPV_CLIENT_Evt_ValidateXMLError
ActualWidth
<>c__DisplayClass5_0
fnObservableRefreshCollectionFactory
StackPanel
WriteCreateAsUserCommandLine
GCHandle
Write_APPV_CLIENT_Evt_PublishGetPackageGroupListFailed
ElapsedEventHandler
add_PrimaryFeatureBlockLoadStartedCalled
_:ew!
get_ActualHeight
ConnectionGroup
%3^^3
Remove
TDCBF_OK_BUTTON
r~akow
j%&l~-
/\xD+
object
Write_APPV_CLIENT_Evt_RemoveRunningConnectionGroupFailed
TemplateTEMPLATE_UINT_UINT
culture
server
DispatcherPriority
Write_APPV_CLIENT_Evt_ServiceStartRebootRequired
TDCBF_YES_BUTTON
WriteDataRetrievalStartedSuccessfully
ABEdge
Write_APPV_CLIENT_Evt_PendingUnpublishTaskVECannotStartPackageGlobal
@Z~<,
IsThisOnlyInstance
BarStyle
Bug in code: Unknown publishing activity status type.
add_PrimaryFeatureBlockPercentageChangedCalled
Right=
oK0D$"<
CancelEventHandler
NotificationDialogProperties
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshOnPublishFailed
WS_EX_LAYOUTRTL
CloseApps
s@=Cs
DwmApi.dll
Write_APPV_CLIENT_Evt_ConfigurePackageFailedInsufficientDiskSpace
System.Resources
pbProgressBar
ABE_BOTTOM
E_FAIL
TemplateTEMPLATE_STRING_BOOLEAN
_primaryFeatureBlockPercentDownloaded
ABM_NEW
RangeBase
Func`3
"Set the text to appear in the bar.
Write_APPV_CLIENT_Evt_GetPublishingServerPropertiesError
set_NotificationDialogDefaultParent
Loading...@
DirectorySeparatorChar
WaitCallback
ABM_SETPOS
Write_APPV_CLIENT_Evt_APIAccessDenied
WM_SETCURSOR
EventType
'RXR'1
fnGetWindowRect
Write_APPV_CLIENT_Evt_BackgroundStreamingSuspended
prefix
set_EasingFunction
<>9__12_0
ABM_REMOVE
WritePrimaryFeatureBlockPercentageChanged
AssemblyKeyFileAttribute
Write_APPV_CLIENT_Evt_ConfigurePackageFailedInvalidPackageArchitecture
&bbb33^nnnd33qv
get_Item
RuntimeCompatibilityAttribute
.ctor
LKfZ0
WriteAddCounterFailed
Write_APPV_CLIENT_Evt_UserSIDImpersonationFailed
GeneratedInternalTypeHelper
WindowStyle$
DesktopPreferenceChangedHandler
txtPercentComplete
AppvClientPackageImpl
!DataContext.TotalProgressBarCount
Write_APPV_CLIENT_Evt_MigrateCatalogFolderWarning
statusType
e$F+2h
_execute
eventArgs
hwndParent
add_PrimaryFeatureBlockLoadFinishedCalled
parameter
Enter
PhaseOfLaunch+
{AEk]b
lpszClass
ShowInTaskbar
refreshProgress
op_Equality
UserSid
_=7sk
10.0.10011.16384
kk,,YT
p}6bs^ x
Ld$.^
pData
HandlePublishingActivityStatusChanged
Write_APPV_CLIENT_Evt_refreshCreateMachinePolicyDocumentFailed
astring
GWL_ID
GWL_STYLE
EndInvoke
Write_APPV_CLIENT_Evt_UnpublishGetPackageGroupListFailed
ABE_LEFT
Write_APPV_CLIENT_Evt_refreshSyncAppvPublishingServerComplete
refresh
PackageName+
uCallbackMessage
fnRegistratorFactory
TemplateTEMPLATE_GROUP_AND_VERSION_PACKAGE_AND_VERSION
publishingactivityprogressbarcontrol.baml
get_ProcessName
Write_APPV_CLIENT_Evt_MalformedRegistryPath
get_BarStyle
get_Height
Error code: {0}
SizeOf
PublishingActivityProgressBarControl
Write_APPV_CLIENT_Evt_PublishPackageGroupRefreshFailed
<OnStartup>b__2_0
#FF0080FF
<>9__12_2
Orientation$
IsValidUser
DisplayNameAttribute
Write_APPV_CLIENT_Evt_publishingServerBadURL
isGlobal
UpdatePublishingRefreshProgress
System.Windows.Controls
buttonId
ViewModelTextAnimationBase
fw 4Y
/AppVStreamingUX;component/publishingrefreshprogressbarcontrol.xaml
7s/(p}Z
Write_APPV_CLIENT_Evt_PowershellProcessExecutionError
Write_APPV_CLIENT_Evt_refreshConfigServerDuplicatedUrl
System.Runtime.InteropServices
RXX((`a`/
Write_APPV_CLIENT_Evt_PendingUnpublishTaskVECannotStartGroupGlobal
SetPropertyValue
190726204550Z0p1
propertyName
WS_CHILD
Environment
N0L0J
Write_APPV_CLIENT_Evt_SubsystemJITVInjectionFailed
pszVerificationText
get_AppvErrorCodeHigh
Write_APPV_CLIENT_Evt_ScriptLauncherCreateProcessFailed
System.CodeDom.Compiler
hInstance
TaskDialogFlags
offset
GetHashCode
get_MainIcon
<.ctor>b__13_5
]yUNKx
EventData
System.Collections.Generic
k7&`BNV
HAJ}#t
Write_APPV_CLIENT_Evt_PackagePublished
Write_APPV_CLIENT_Evt_BackgroundStreamingSuspendedDueToIdle
LOVp;
WindowPositioning
_The application belongs to a package or a connection group that is scheduled to be unpublished.
ABE_TOP
,Microsoft.AppV.Client.StreamingUX.MainWindow
WS_EX_NOACTIVATE
WS_BORDER
Name$
RuntimeHelpers
`@J0(V
AnimationTimeline
System.IO
remove_VirtualEnvironmentBlockedCalled
)0[WT
versionId
PresentationFramework
Insert
Code_0200000516
OnVirtualEnvironmentBlocked
Window_Closing
AppendRunningApps
Write_APPV_CLIENT_Evt_PublishPackageFailedPackageNotConfigured
<OnStartup>b__2_3
get_Current
lParam
GetMonitorInfo
SAppVStreamingUX, Version=10.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
0,6,0,0q
VirtualProcess
Write_APPV_CLIENT_Evt_FailedToUnpublishUserGroup
bottom
get_VirtualEnvironmentBlocked_ScenarioAction
cbSize
refreshItemsControl
Write_APPV_CLIENT_Evt_JITVIsDisabled
Write_APPV_CLIENT_Evt_PackageGroupUnpublished
spProgressBar
This may take a while...
W`z0X
ylTDM
XPresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
GetString
TemplateTWUInt64UInt64
WS_EX_STATICEDGE
PublishingRefreshProgressBarControl
Write_APPV_CLIENT_Evt_VirtualServicesHandlingControlMessageFailed
BeginAnimation
<ThrowOnInvalidPropertyName>k__BackingField
ActivityBar
PropertyDescriptorCollection
Write_APPV_CLIENT_Evt_AppLaunchFailedAmbiguousVE
IsNullOrEmpty
TemplateTEMPLATE_ERROR_PID_PACKAGE_VERSION
Filename
df5dc2ff0e3e5b6aee0454cd4c59c7c996b43f8458c1f65ee0ebe169c554f689
File Type PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
Associated Filenames
588a12edac02c93a449e9570bfff0d9dfd6c297841eb593b2001ef9ae75bf5eb
File Size 282624 bytes
MD5 34d7967230853256927bcc56068835af
SHA1 9878c84d2bb2facd41758913ae4b467c259f4c6b
SHA256 df5dc2ff0e3e5b6aee0454cd4c59c7c996b43f8458c1f65ee0ebe169c554f689 [VT] [MWDB] [Bazaar]
SHA3-384 0da3c3f379ebb9c91d032284750201f2abe46c1ae74f45c00a5424ab4daedfe9c9ceeba0d7fe10fac9f9716368531ada
CRC32 DD72EE5C
TLSH T14C548E06A7F51611E5EF0E384C2186369E39E65524AE8BD73DD034DFE86A34D4B233A3
Ssdeep 3072:xgyNUaGxzWZMpjMqVVdmabWcONiHNp6ei/EzVGdxYkEmIjyajMqVVdmabWcONiH3:oaGxqZKCaqg6Rc0dMCaqg6R0
File Strings Bingraph Vba2Graph VirusTotal

PE Information

Image Base Entry Point Reported Checksum Actual Checksum Minimum OS Version PDB Path Compile Time Icon Icon Exact Hash Icon Similarity Hash Icon DHash
0x140000000 0x00000000 0x00053149 0x00053149 4.0 AppVStreamingUX.pdb 2082-12-04 23:19:29 58106e1402be530c77018ee80b7e8866 c29f6ea3963c8866d289b6cc3e0201cc 00f0fedaded6f030

Sections

Name RAW Address Virtual Address Virtual Size Size of Raw Data Characteristics Entropy
.text 0x00000200 0x00002000 0x00033ecd 0x00034000 IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6.69
.rsrc 0x00034200 0x00036000 0x00011848 0x00011a00 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7.13

Overlay

Offset 0x00045c00
Size 0x00002210

Name Offset Size Language Sub-language Entropy File type
RT_ICON 0x00036250 0x00000668 LANG_ENGLISH SUBLANG_ENGLISH_US 3.21 None
RT_ICON 0x000368c8 0x000002e8 LANG_ENGLISH SUBLANG_ENGLISH_US 3.77 None
RT_ICON 0x00036bc0 0x000001e8 LANG_ENGLISH SUBLANG_ENGLISH_US 3.63 None
RT_ICON 0x00036db8 0x00000128 LANG_ENGLISH SUBLANG_ENGLISH_US 3.08 None
RT_ICON 0x00036ef0 0x00000ea8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.22 None
RT_ICON 0x00037da8 0x000008a8 LANG_ENGLISH SUBLANG_ENGLISH_US 6.27 None
RT_ICON 0x00038660 0x000006c8 LANG_ENGLISH SUBLANG_ENGLISH_US 6.17 None
RT_ICON 0x00038d38 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US 1.95 None
RT_ICON 0x000392b0 0x00009a2b LANG_ENGLISH SUBLANG_ENGLISH_US 7.98 None
RT_ICON 0x00042cec 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 4.76 None
RT_ICON 0x000452a4 0x000010a8 LANG_ENGLISH SUBLANG_ENGLISH_US 6.03 None
RT_ICON 0x0004635c 0x00000988 LANG_ENGLISH SUBLANG_ENGLISH_US 5.80 None
RT_ICON 0x00046cf4 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US 4.88 None
RT_GROUP_ICON 0x00047178 0x000000bc LANG_ENGLISH SUBLANG_ENGLISH_US 3.07 None
RT_MANIFEST 0x00047244 0x0000030c LANG_ENGLISH SUBLANG_ENGLISH_US 5.02 None
RT_MANIFEST 0x00047560 0x000002e1 LANG_ENGLISH SUBLANG_ENGLISH_US 5.01 None



Assembly Information

Name AppVStreamingUX
Version 10.0.0.0

Assembly References

Name Version
mscorlib 4.0.0.0
System 4.0.0.0
WindowsBase 4.0.0.0
System.Core 4.0.0.0
PresentationFramework 4.0.0.0
Microsoft.AppV.AppvClientComConsumer 10.0.0.0
System.Xaml 4.0.0.0
PresentationCore 4.0.0.0
System.Drawing 4.0.0.0

Custom Attributes

Type Name Value
Assembly [mscorlib]System.Runtime.Versioning.TargetFrameworkAttribute .NETFramework,Version=v4
Assembly [mscorlib]System.Resources.NeutralResourcesLanguageAttribute
Assembly [mscorlib]System.Reflection.AssemblyProductAttribute Microsoft (R) Windows (R) Operating Syst
Assembly [mscorlib]System.Reflection.AssemblyCopyrightAttribute Copyright (c) Microsoft Corporation. All rights reserve
Assembly [mscorlib]System.Reflection.AssemblyCompanyAttribute Microsoft Corporati
Assembly [mscorlib]System.Reflection.AssemblyFileVersionAttribute 10.0.10011.163
Assembly [mscorlib]System.Reflection.AssemblyKeyFileAttribute d:\os\public\amd64fre\internal\strongnamekeys\fake\windows.s
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set the text to appear in the ba
Property [System]System.ComponentModel.DisplayNameAttribute Te
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set the value of the progress ba
Property [System]System.ComponentModel.DisplayNameAttribute ValueCou
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set which mode the bar will display i
Property [System]System.ComponentModel.DisplayNameAttribute BarSty
Property [System]System.ComponentModel.DescriptionAttribute Set the text to appear in the ba
Property [System]System.ComponentModel.DisplayNameAttribute Te
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set the name to appear in the ba
Property [System]System.ComponentModel.DisplayNameAttribute PackageNa
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set which mode the bar will display i
Property [System]System.ComponentModel.DisplayNameAttribute BarSty
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set the text to appear in the ba
Property [System]System.ComponentModel.DisplayNameAttribute Te
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set the value of the progress ba
Property [System]System.ComponentModel.DisplayNameAttribute ValueCou
Property [System]System.ComponentModel.CategoryAttribute Common Properti
Property [System]System.ComponentModel.DescriptionAttribute Set which mode the bar will display i
Property [System]System.ComponentModel.DisplayNameAttribute BarSty
MethodDef [mscorlib]System.Diagnostics.ConditionalAttribute DEB

Type References

Assembly Type Name
mscorlib System.Runtime.CompilerServices.CompilationRelaxationsAttribute
mscorlib System.Runtime.CompilerServices.RuntimeCompatibilityAttribute
mscorlib System.Diagnostics.DebuggableAttribute
mscorlib System.Diagnostics.DebuggableAttribute/DebuggingModes
mscorlib System.Runtime.Versioning.TargetFrameworkAttribute
mscorlib System.Resources.NeutralResourcesLanguageAttribute
mscorlib System.CLSCompliantAttribute
mscorlib System.Runtime.InteropServices.ComVisibleAttribute
mscorlib System.Reflection.AssemblyProductAttribute
mscorlib System.Reflection.AssemblyCopyrightAttribute
mscorlib System.Reflection.AssemblyCompanyAttribute
mscorlib System.Reflection.AssemblyFileVersionAttribute
mscorlib System.Reflection.AssemblyKeyFileAttribute
mscorlib System.Reflection.AssemblyDelaySignAttribute
mscorlib System.Security.Permissions.SecurityAction
mscorlib System.Security.Permissions.SecurityPermissionAttribute
mscorlib System.Security.UnverifiableCodeAttribute
mscorlib System.Diagnostics.DebuggerNonUserCodeAttribute
System System.CodeDom.Compiler.GeneratedCodeAttribute
System System.ComponentModel.EditorBrowsableState
System System.ComponentModel.EditorBrowsableAttribute
WindowsBase System.Windows.Markup.InternalTypeHelper
mscorlib System.Object
mscorlib System.Type
mscorlib System.Globalization.CultureInfo
mscorlib System.Reflection.PropertyInfo
mscorlib System.Delegate
mscorlib System.Reflection.EventInfo
System.Core System.Diagnostics.Eventing.EventDescriptor
mscorlib System.Guid
System.Core System.Diagnostics.Eventing.EventProvider
mscorlib System.ValueType
PresentationFramework System.Windows.Application
mscorlib System.Runtime.CompilerServices.CompilerGeneratedAttribute
PresentationFramework System.Windows.Window
PresentationFramework System.Windows.StartupEventArgs
mscorlib System.STAThreadAttribute
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.IClientComConsumerEventSink
mscorlib System.Func`1
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.IClientEventSinkRegistrator
mscorlib System.Action`1
mscorlib System.Func`2
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.VEBlockedEventArgs
System.Xaml System.Windows.Markup.IComponentConnector
System Microsoft.Win32.UserPreferenceChangedEventHandler
PresentationFramework System.Windows.Controls.ItemsControl
WindowsBase System.Windows.Rect
WindowsBase System.Windows.Media.Matrix
WindowsBase System.Windows.Point
System Microsoft.Win32.UserPreferenceChangedEventArgs
System System.ComponentModel.CancelEventArgs
PresentationFramework System.Windows.SizeChangedEventArgs
mscorlib System.EventArgs
System System.Uri
mscorlib System.MulticastDelegate
mscorlib System.IAsyncResult
mscorlib System.AsyncCallback
PresentationCore System.Windows.Visibility
PresentationFramework System.Windows.Data.ValueConversionAttribute
PresentationFramework System.Windows.Data.IValueConverter
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ResultEventArgs
mscorlib System.Func`3
mscorlib System.Text.StringBuilder
mscorlib System.Collections.Generic.List`1
mscorlib System.Runtime.InteropServices.GCHandle
mscorlib System.Enum
mscorlib System.Collections.Generic.IEnumerable`1
mscorlib System.Collections.Generic.IEnumerator`1
PresentationFramework System.Windows.Controls.UserControl
WindowsBase System.Windows.DependencyProperty
PresentationFramework System.Windows.Controls.Grid
PresentationFramework System.Windows.VisualStateGroup
PresentationFramework System.Windows.VisualState
PresentationFramework System.Windows.Shapes.Rectangle
PresentationFramework System.Windows.Controls.StackPanel
PresentationFramework System.Windows.Controls.TextBlock
PresentationFramework System.Windows.Controls.ProgressBar
WindowsBase System.Windows.DependencyPropertyChangedEventArgs
PresentationCore System.Windows.Duration
PresentationCore System.Windows.Media.Animation.DoubleAnimation
PresentationCore System.Windows.Media.Animation.QuadraticEase
System System.ComponentModel.CategoryAttribute
System System.ComponentModel.DescriptionAttribute
System System.ComponentModel.DisplayNameAttribute
mscorlib System.Action
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ClientException
mscorlib System.Runtime.InteropServices.COMException
System System.Collections.ObjectModel.ObservableCollection`1
System System.Timers.Timer
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.PublishingRefreshEventArgs
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.PublishingRefreshEventArgs/RefreshStatusType
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.PublishingActivityEventArgs
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.PublishingActivityEventArgs/PublishingStatusType
System System.Collections.Specialized.NotifyCollectionChangedEventArgs
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.CommonEventArgs
System System.Timers.ElapsedEventArgs
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.PublishingRefreshEventArgs/PublishCounter
System System.Windows.Input.ICommand
mscorlib System.EventHandler
mscorlib System.Predicate`1
mscorlib System.Diagnostics.DebuggerStepThroughAttribute
mscorlib System.EventHandler`1
mscorlib System.Threading.Mutex
mscorlib System.Security.AccessControl.MutexAccessRule
mscorlib System.SystemException
mscorlib System.Security.AccessControl.MutexSecurity
System System.ComponentModel.INotifyPropertyChanged
System System.ComponentModel.PropertyChangedEventHandler
mscorlib System.Diagnostics.ConditionalAttribute
System System.ComponentModel.PropertyChangedEventArgs
mscorlib System.Collections.Generic.Dictionary`2
mscorlib System.Collections.Generic.Dictionary`2/ValueCollection
mscorlib System.Collections.Generic.Dictionary`2/ValueCollection/Enumerator
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.VirtualProcess
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.AppvClientPackageImpl
mscorlib System.Func`5
mscorlib System.Resources.ResourceManager
System.Drawing System.Drawing.Icon
System System.Configuration.ApplicationSettingsBase
mscorlib System.Activator
mscorlib System.Reflection.BindingFlags
mscorlib System.Reflection.Binder
mscorlib System.IntPtr
mscorlib System.String
mscorlib System.Runtime.CompilerServices.RuntimeHelpers
mscorlib System.Environment
mscorlib System.IO.Path
mscorlib System.Char
mscorlib System.Threading.Interlocked
PresentationCore System.Windows.UIElement
PresentationFramework System.Windows.FrameworkElement
PresentationCore System.Windows.PresentationSource
PresentationCore System.Windows.Media.Visual
PresentationCore System.Windows.Interop.HwndSource
PresentationCore System.Windows.Interop.HwndTarget
PresentationCore System.Windows.Media.CompositionTarget
PresentationCore System.Windows.Media.Colors
PresentationCore System.Windows.Media.Color
mscorlib System.Convert
System Microsoft.Win32.SystemEvents
System Microsoft.Win32.UserPreferenceCategory
PresentationFramework System.Windows.Interop.WindowInteropHelper
System System.UriKind
System System.ComponentModel.CancelEventHandler
PresentationFramework System.Windows.SizeChangedEventHandler
PresentationCore System.Windows.RoutedEventHandler
mscorlib System.Int32
PresentationFramework System.Windows.Data.Binding
mscorlib System.IFormatProvider
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ClientDefinitions
mscorlib System.UInt64
mscorlib System.ArgumentNullException
mscorlib System.InvalidCastException
mscorlib System.RuntimeTypeHandle
mscorlib System.Runtime.InteropServices.Marshal
System.Core System.Linq.Enumerable
mscorlib System.Collections.IEnumerator
mscorlib System.IDisposable
mscorlib System.UInt32
WindowsBase System.Windows.Threading.DispatcherObject
WindowsBase System.Windows.Threading.Dispatcher
WindowsBase System.Windows.Threading.DispatcherOperationCallback
WindowsBase System.Windows.Threading.DispatcherPriority
mscorlib System.Threading.SendOrPostCallback
WindowsBase System.Windows.Threading.DispatcherOperation
mscorlib System.Double
mscorlib System.TimeSpan
PresentationFramework System.Windows.Controls.Primitives.RangeBase
PresentationCore System.Windows.Media.Animation.EasingFunctionBase
PresentationCore System.Windows.Media.Animation.EasingMode
PresentationCore System.Windows.Media.Animation.IEasingFunction
PresentationCore System.Windows.Media.Animation.AnimationTimeline
PresentationFramework System.Windows.VisualStateManager
WindowsBase System.Windows.PropertyChangedCallback
PresentationCore System.Windows.UIPropertyMetadata
WindowsBase System.Windows.PropertyMetadata
WindowsBase System.Windows.DependencyObject
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ClientEventTypeFilter
mscorlib System.Runtime.InteropServices.ExternalException
mscorlib System.Collections.ObjectModel.Collection`1
System System.Collections.Specialized.NotifyCollectionChangedEventHandler
System System.Timers.ElapsedEventHandler
mscorlib System.Threading.Monitor
mscorlib System.Exception
mscorlib System.StringComparison
mscorlib System.Boolean
PresentationCore System.Windows.Input.CommandManager
mscorlib System.Security.AccessControl.MutexRights
mscorlib System.Security.AccessControl.AccessControlType
System System.ComponentModel.TypeDescriptor
System System.ComponentModel.PropertyDescriptorCollection
System System.ComponentModel.PropertyDescriptor
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ClientComConsumer
mscorlib System.Runtime.CompilerServices.IsLong
mscorlib System.Threading.WaitCallback
mscorlib System.Threading.ThreadPool
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.AppvClientConnectionGroupImpl
mscorlib System.Reflection.Assembly
System System.Configuration.SettingsBase
Microsoft.AppV.AppvClientComConsumer Microsoft.AppV.AppvClientFacade.ClientEventSinkRegistrator
mscorlib System.Runtime.CompilerServices.IsConst


Reports: JSON

Usage


Processing ( 391.73 seconds )

  • 347.385 ProcessMemory
  • 25.856 CAPE
  • 18.484 BehaviorAnalysis
  • 0.008 AnalysisInfo
  • 0.001 Debug

Signatures ( 0.42 seconds )

  • 0.046 antiav_detectreg
  • 0.046 masquerade_process_name
  • 0.041 ransomware_files
  • 0.03 ransomware_extensions
  • 0.025 antiav_detectfile
  • 0.023 infostealer_ftp
  • 0.019 territorial_disputes_sigs
  • 0.017 infostealer_bitcoin
  • 0.014 infostealer_im
  • 0.013 antianalysis_detectfile
  • 0.013 antidebug_devices
  • 0.01 antianalysis_detectreg
  • 0.01 antivm_vbox_files
  • 0.01 infostealer_mail
  • 0.007 poullight_files
  • 0.005 antivm_vbox_keys
  • 0.005 cryptbot_files
  • 0.003 antivm_vmware_files
  • 0.003 antivm_vmware_keys
  • 0.003 geodo_banking_trojan
  • 0.003 echelon_files
  • 0.003 rat_pcclient
  • 0.003 ursnif_behavior
  • 0.002 antivm_generic_diskreg
  • 0.002 antivm_parallels_keys
  • 0.002 antivm_vbox_devices
  • 0.002 antivm_vpc_keys
  • 0.002 antivm_xen_keys
  • 0.002 ketrican_regkeys
  • 0.002 browser_security
  • 0.002 darkcomet_regkeys
  • 0.002 driver_filtermanager
  • 0.002 qulab_files
  • 0.002 revil_mutexes
  • 0.002 modirat_behavior
  • 0.002 recon_fingerprint
  • 0.002 remcos_regkeys
  • 0.001 bot_drive
  • 0.001 accesses_netlogon_regkey
  • 0.001 accesses_sysvol
  • 0.001 antiemu_windefend
  • 0.001 antisandbox_fortinet_files
  • 0.001 antisandbox_sunbelt_files
  • 0.001 antisandbox_threattrack_files
  • 0.001 antivm_bochs_keys
  • 0.001 antivm_hyperv_keys
  • 0.001 antivm_vpc_files
  • 0.001 banker_cridex
  • 0.001 bitcoin_opencl
  • 0.001 bypass_firewall
  • 0.001 uac_bypass_cmstpcom
  • 0.001 file_credential_store_access
  • 0.001 file_credential_store_write
  • 0.001 registry_credential_store_access
  • 0.001 disables_backups
  • 0.001 disables_browser_warn
  • 0.001 disables_power_options
  • 0.001 downloader_cabby
  • 0.001 apocalypse_stealer_file_behavior
  • 0.001 arkei_files
  • 0.001 azorult_mutexes
  • 0.001 network_tor_service
  • 0.001 packer_armadillo_regkey
  • 0.001 persistence_ads
  • 0.001 persistence_shim_database
  • 0.001 medusalocker_regkeys
  • 0.001 dcrat_files
  • 0.001 limerat_regkeys
  • 0.001 obliquerat_files
  • 0.001 warzonerat_files
  • 0.001 warzonerat_regkeys
  • 0.001 remcos_files
  • 0.001 spicyhotpot_behavior
  • 0.001 sniffer_winpcap
  • 0.001 tampers_etw
  • 0.001 targeted_flame
  • 0.001 lokibot_mutexes
  • 0.001 web_shell_files
  • 0.001 suspicious_command_tools
  • 0.001 uses_windows_utilities

Reporting ( 12.00 seconds )

  • 11.059 CAPASummary
  • 0.937 JsonDump

Signatures

Checks available memory
Dynamic (imported) function loading detected
DynamicLoader: ntdll.dll/RtlWow64GetCurrentMachine
DynamicLoader: ntdll.dll/RtlWow64IsWowGuestMachineSupported
DynamicLoader: ntdll.dll/RtlWow64GetCurrentMachine
DynamicLoader: ntdll.dll/RtlWow64IsWowGuestMachineSupported
DynamicLoader: ntdll.dll/RtlWow64GetCurrentMachine
DynamicLoader: ntdll.dll/RtlWow64IsWowGuestMachineSupported
DynamicLoader: ntdll.dll/RtlWow64GetCurrentMachine
DynamicLoader: ntdll.dll/RtlWow64IsWowGuestMachineSupported
DynamicLoader: ntdll.dll/RtlWow64GetCurrentMachine
DynamicLoader: ntdll.dll/RtlWow64IsWowGuestMachineSupported
Queries the keyboard layout
The PE file contains a PDB path
pdbpath: AppVStreamingUX.pdb
SetUnhandledExceptionFilter detected (possible anti-debug)
At least one process apparently crashed during execution
Possible date expiration check, exits too soon after checking local time
process: FileCoAuth.exe, PID 4348
Guard pages use detected - possible anti-debugging.
A process attempted to delay the analysis task.
note: wermgr.exe tried to sleep 360.25 seconds, actually delayed analysis time by 0.0 seconds
Resumed a thread in another process
thread_resumed: Process appvstreamingux.exe with process ID 5136 resumed a thread in another process with the process ID 5136
thread_resumed: Process svchost.exe with process ID 808 resumed a thread in another process with the process ID 6580
thread_resumed: Process mousocoreworker.exe with process ID 756 resumed a thread in another process with the process ID 756
thread_resumed: Process svchost.exe with process ID 1348 resumed a thread in another process with the process ID 4724
thread_resumed: Process mousocoreworker.exe with process ID 2660 resumed a thread in another process with the process ID 2660
thread_resumed: Process taskhostw.exe with process ID 4156 resumed a thread in another process with the process ID 4156
thread_resumed: Process taskhostw.exe with process ID 2056 resumed a thread in another process with the process ID 2056
thread_resumed: Process taskhostw.exe with process ID 1416 resumed a thread in another process with the process ID 1416
Terminates another process
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
process: svchost.exe
The binary likely contains encrypted or compressed data
section: {'name': '.rsrc', 'raw_address': '0x00034200', 'virtual_address': '0x00036000', 'virtual_size': '0x00011848', 'size_of_data': '0x00011a00', 'characteristics': 'IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ', 'characteristics_raw': '0x40000040', 'entropy': '7.13'}
Creates RWX memory
Tries to unhook or modify Windows functions monitored by CAPE
unhook: function_name: ShellExecuteExW, type: removal
Checks the system manufacturer, likely for anti-virtualization
Process: FileCoAuth.exe (4348)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (5572)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (2404)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4724)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (5580)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4764)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (6148)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (392)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (1664)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (3252)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (892)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (4276)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (5816)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: wermgr.exe (6164)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Process: FileCoAuth.exe (3960)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Yara detections observed in process dumps, payloads or dropped files
Hit: PID 5136 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 59 }']'
Hit: PID 5816 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 3960 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 3252 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 1664 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 6148 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 4760 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 892 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 5572 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 6216 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 2404 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 4200 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 424 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 4268 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 1400 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 2676 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 4348 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Anomalous binary characteristics
anomaly: Entrypoint of binary is located outside of any mapped sections
Binary compilation timestomping detected
anomaly: Compilation timestamp is in the future
Enumerates physical drives
physical drive access: \??\PHYSICALDRIVE0
physical drive access: \??\PhysicalDrive0
Attempts to interact with an Alternate Data Stream (ADS)
file: C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-100000000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-300300000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-10e03f000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION

Screenshots

No screenshots available.

Hosts

No hosts contacted.

DNS

No domains contacted.

Summary

C:\Windows\System32\MSCOREE.DLL.local
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
C:\Windows\Microsoft.NET\Framework64\*
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
C:\Users\Packager\AppData\Local\Temp\AppVStreamingUX.exe.config
C:\Users\Packager\AppData\Local\Temp\AppVStreamingUX.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\Config\machine.config
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\fusion.localgac
C:\Users\Packager\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\AppVStreamingUX.exe.log
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Windows\Microsoft.Net\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\97c421700557a331a31041b81ac3b698\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\97c421700557a331a31041b81ac3b698\mscorlib.ni.dll.aux
C:\Users
C:\Users\Packager
C:\Users\Packager\AppData
C:\Users\Packager\AppData\Local
C:\Users\Packager\AppData\Local\Temp
\Device\CNG
C:\Windows\assembly\NativeImages_v4.0.30319_64\AppVStreamingUX\*
C:\Users\Packager\AppData\Local\Temp\AppVStreamingUX.INI
C:\Windows\Microsoft.Net\assembly\GAC_64\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\d8fa23fbed69ed7835374d74f1e953d1\PresentationFramework.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\d8fa23fbed69ed7835374d74f1e953d1\PresentationFramework.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_64\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\909b8ff6c817761576c6ca98a16e38a3\WindowsBase.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\909b8ff6c817761576c6ca98a16e38a3\WindowsBase.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_64\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\dbf675a2e7564fd29ec8b82b29a1a2fe\System.Core.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\dbf675a2e7564fd29ec8b82b29a1a2fe\System.Core.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_64\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\System\372e9962a41f186f070f1cb9f93273ee\System.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System\372e9962a41f186f070f1cb9f93273ee\System.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
C:\Windows\Microsoft.Net\assembly\GAC_64\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\0fac2f53578a7245ab0fafe2716a42af\PresentationCore.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\0fac2f53578a7245ab0fafe2716a42af\PresentationCore.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
C:\Windows\Microsoft.Net\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\ee8292bafc8ef101417cac0e811181ae\System.Xaml.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\ee8292bafc8ef101417cac0e811181ae\System.Xaml.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\053d057c90af827d0929a6aba7feabcf\System.Configuration.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\053d057c90af827d0929a6aba7feabcf\System.Configuration.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\eab83bdd6eee1b956e2c8aef88914cc1\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\eab83bdd6eee1b956e2c8aef88914cc1\System.Xml.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
C:\Windows\Microsoft.Net\assembly\GAC_64\AppVStreamingUX.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\AppVStreamingUX.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Windows\Microsoft.Net\assembly\GAC\AppVStreamingUX.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Windows\assembly\GAC_64\AppVStreamingUX.resources\10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Windows\assembly\GAC_MSIL\AppVStreamingUX.resources\10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Windows\assembly\GAC\AppVStreamingUX.resources\10.0.0.0_en-US_31bf3856ad364e35\AppVStreamingUX.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\AppVStreamingUX.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\AppVStreamingUX.resources\AppVStreamingUX.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\AppVStreamingUX.resources.exe
C:\Users\Packager\AppData\Local\Temp\en-US\AppVStreamingUX.resources\AppVStreamingUX.resources.exe
C:\Windows\Microsoft.Net\assembly\GAC_64\PresentationFramework.Aero2\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero2.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework.Aero2\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero2.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\*
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\e6195b996d8108c2a0a8159aea42b19b\PresentationFramework.Aero2.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\e6195b996d8108c2a0a8159aea42b19b\PresentationFramework.Aero2.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_64\Microsoft.AppV.AppvClientComConsumer.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\Microsoft.AppV.AppvClientComConsumer.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Windows\Microsoft.Net\assembly\GAC\Microsoft.AppV.AppvClientComConsumer.resources\v4.0_10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Windows\assembly\GAC_64\Microsoft.AppV.AppvClientComConsumer.resources\10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Windows\assembly\GAC_MSIL\Microsoft.AppV.AppvClientComConsumer.resources\10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Windows\assembly\GAC\Microsoft.AppV.AppvClientComConsumer.resources\10.0.0.0_en-US_31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\Microsoft.AppV.AppvClientComConsumer.resources\Microsoft.AppV.AppvClientComConsumer.resources.dll
C:\Users\Packager\AppData\Local\Temp\en-US\Microsoft.AppV.AppvClientComConsumer.resources.exe
C:\Users\Packager\AppData\Local\Temp\en-US\Microsoft.AppV.AppvClientComConsumer.resources\Microsoft.AppV.AppvClientComConsumer.resources.exe
C:\Windows\System32\DXCore.dll
\Device\DeviceApi\CMApi
C:\Users\Packager\AppData\Local\Microsoft
C:\Users\Packager\AppData\Local\Microsoft\CLR_v4.0
C:\Users\Packager\AppData\Local\Microsoft\CLR_v4.0\UsageLogs
\??\PhysicalDrive0
C:\Windows\System32\wbem\WmiPrvSE.exe
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe
C:\ProgramData\Microsoft\Windows\AppRepository\Packages\Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy\S-1-5-21-64934406-199802361-3218922526-1001.pckgdep
C:\Windows\System32\mousocoreworker.exe
C:\Windows\System32\CompPkgSrv.exe
C:\Windows\SysWOW64\CompPkgSrv.exe
C:\Windows\System32\SecurityHealthHost.exe
C:\Windows\System32\smartscreen.exe
C:\Windows\SysWOW64\smartscreen.exe
C:\Windows\System32\kernel.appcore.dll
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
C:\Windows\System32\wbem\WMICLNT.dll
C:\Windows\System32\wmiclnt.dll
\??\WMIDataDevice
C:\Windows\System32\kernelbase.dll
C:\Windows\System32\en-US\kernelbase.dll.mui
C:\Windows\System32\drivers\acpi.sys
C:\Windows\System32\drivers\en-US\ACPI.sys.mui
C:\Windows\System32\drivers\ndis.sys
C:\Windows\System32\drivers\en-US\ndis.sys.mui
C:\Windows\System32\drivers\mssmbios.sys
C:\Windows\System32\drivers\en-US\mssmbios.sys.mui
C:\Windows\System32\drivers\hdaudbus.sys
C:\Windows\System32\drivers\en-US\HDAudBus.sys.mui
C:\Windows\System32\drivers\en\HDAudBus.sys.mui
C:\Windows\System32\drivers\processr.sys
C:\Windows\System32\drivers\en-US\processr.sys.mui
C:\Windows\System32\drivers\portcls.sys
C:\Windows\System32\drivers\en-US\portcls.SYS.mui
C:\Windows\System32\drivers\en\portcls.SYS.mui
C:\Windows\System32\drivers\monitor.sys
C:\Windows\System32\SystemResources\monitor.sys.mun
C:\Windows\System32\drivers\en-US\monitor.sys
C:\Windows\System32\drivers\en\monitor.sys
C:\Windows\System32\wbem\en-US\mofd.dll.mui
C:\Windows\System32\en-US\combase.dll.mui
C:\Windows\System32\en-US\KERNELBASE.dll.mui
C:\Windows\SystemResources\USER32.dll.mun
C:\Windows\System32\en-US\USER32.dll.mui
C:\Windows\System32\rpcss.dll
C:\Windows\System32\wtsapi32.dll
C:\Windows\System32\winsta.dll
C:\Windows\System32\tzres.dll
C:\Windows\System32\en-US\tzres.dll.mui
C:\Windows\System32\samcli.dll
C:\Windows\System32\srvcli.dll
C:\Windows\System32\netutils.dll
C:\Windows\System32\logoncli.dll
C:\Windows\System32\schedcli.dll
C:\Windows\System32\wkscli.dll
C:\Windows\System32\dsrole.dll
\??\PIPE\lsarpc
\??\PIPE\srvsvc
C:\Windows\System32\OemInfo.Ini
C:\Windows\System32\OemLogo.Bmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\CRYPTSP.dll
C:\Windows\System32\cryptsp.dll
C:\Windows\System32\windows.storage.dll
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\Wldp.dll
C:\Windows\System32\wldp.dll
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.4348.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.aodl
C:\Windows\sysnative\en-US\tzres.dll.mui
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.4348.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1741.6072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1816.5756.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1845.6048.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1854.2316.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1913.1964.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2028.1120.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2052.6960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2125.4072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2133.5764.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odlsent
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odlgz
C:\Program Files (x86)
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\settings\PreSignInSettingsConfig.json
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.5572.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.5572.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0501.2404.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0501.2404.1.odl
C:\Windows\System32\twinapi.appcore.dll
C:\ProgramData\Microsoft\User Account Pictures\user.png
C:\Windows\System32\UsoSelfhost.dll
C:\ProgramData
C:\ProgramData\USOShared
C:\ProgramData\USOShared\Logs
C:\ProgramData\USOShared\Logs\System
C:\ProgramData\USOShared\Logs\System\*
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.2d772dc0-c22a-4b40-938b-a68ba55e5af7.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.5d67a91a-ef75-4681-85c0-1e0b11915cde.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.860111d2-db04-47d4-b948-9ba07339cd38.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.27243f9b-c04b-4c86-a877-7b4ce2e5550c.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.6b1b6c5f-fb27-4f57-bb8f-ef34e6dbccc4.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.81d3c983-0642-42ac-b0d8-521d06f7fcb7.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.be8815e4-ea09-4783-a4de-ed7022efe7f8.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.d7e9bd53-543d-4caa-933f-3e4957d4c5f7.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.af42ac84-6afc-41d1-bc6e-306f9e52bc09.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.a76d6bcb-aa07-44fc-bc30-b7ad467c4924.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.23c61ab0-7c6c-4a75-a81a-c30bf8181075.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.da029ca8-f908-4cdb-9fea-6b7e18db9e14.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.52080c9a-8af3-4f79-b739-04bdaeb427e7.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.a9bafe91-b938-4292-b720-785a1ad6e6a2.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.2c7b07f2-21ce-4c49-90aa-97c3ebe03baa.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.ad0941b5-0cfc-4426-80ff-dcb792c6a09d.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.f7b3ca06-8c06-461c-a090-8a6f98111f9f.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.7bce75d9-39ab-4514-b1b2-2aa3dc37c97c.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.90125552-a64e-4d22-828b-6d82b81ddec8.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.09b9c2cc-3dba-49b8-8443-69ca1cfad81d.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.215c4586-d992-4061-b443-8e3f2202e4b3.1.etl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.68d119da-bff5-4c82-90b2-20412e3c58c0.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.ac1a6ba2-0620-4bdf-be7e-cefd1950af6c.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.7f8cb04b-8731-4025-96df-70b03a7760a5.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.b5b65b76-91b7-4af6-83a3-c80061ab650d.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.dfc8fe7b-a502-44f3-a7c8-596952c959d1.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.847e58c5-e854-40e2-bfad-c3ecf0b0780e.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.e73b7513-df84-44a1-9108-607624955d4e.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.2216c7b1-0c98-4356-a00e-e2c34a0e5f7d.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.8f156d09-bdf1-4e78-9519-85eec85a024f.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.f4b9f9cd-b8a8-4f6b-b2ee-a512e8509795.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.2bcf30b7-64a2-458e-849f-ca162447f3f3.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.1cb4e393-5110-45a0-99e2-22e56e8fbd24.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.015cd1c3-8179-429a-bb1b-0b3f610f3c2c.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.ceff177b-9cf0-4361-83f8-b0806ee1aaa0.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.be4f2a2b-0152-48f7-984d-36882f5bc4ec.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.6352827e-9e4e-46a2-91d5-6ad25222a92c.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.7a72a457-f93e-47f6-b0a1-248fbb5b954f.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.01d7708a-5097-4126-afe9-a645178b1fe2.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.543e8032-12c6-429e-9e9a-08cf41a43ed9.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.f920561d-8586-49f0-847c-821bbc7b1617.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.ca66d67f-1473-4d65-acd8-277482eaa9f7.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.90a5454d-2fbe-4f6b-9be2-4ea6e2cebdae.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.393cebe3-3893-4dcf-856e-3ecf1bac1533.1.etl
C:\ProgramData\USOPrivate
C:\ProgramData\USOPrivate\UpdateStore
C:\ProgramData\USOPrivate\UpdateStore\store.db
C:\ProgramData\USOPrivate\UpdateStore\store.db-journal
C:\ProgramData\USOPrivate\UpdateStore\store.db-wal
C:\Windows\System32\upshared.dll
C:\Windows\System32\winhttp.dll
C:\Windows\System32\dpapi.dll
C:\Windows\System32\policymanager.dll
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work
\??\MountPointManager
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
C:\Windows\System32\compattelrunner.exe
C:\Windows\System32\en-US\compattelrunner.exe.mui
C:\Windows\System32\en\compattelrunner.exe.mui
C:\Windows\System32\sppc.dll
C:\Windows\System32\en-US\sppc.dll.mui
C:\Windows\System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
C:\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start
C:\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\
C:\Windows\System32\msdrm.dll
C:\Windows\System32\en-US\msdrm.dll.mui
C:\Windows\System32\ApplockerCsp.dll
C:\Windows\System32\en-US\ApplockerCsp.dll.mui
C:\Windows\System32\appidsvc.dll
C:\Windows\System32\en-US\appidsvc.dll.mui
C:\Windows\System32\invagent.dll
C:\Windows\System32\en-US\invagent.dll.mui
C:\Windows\System32\en\invagent.dll.mui
C:\Windows\System32\Startupscan.dll
C:\Windows\System32\en-US\Startupscan.dll.mui
C:\Windows\System32\AppHostRegistrationVerifier.exe
C:\Windows\System32\en-US\AppHostRegistrationVerifier.exe.mui
C:\Windows\System32\Windows.Storage.ApplicationData.dll
C:\Windows\System32\en-US\Windows.Storage.ApplicationData.dll.mui
C:\Windows\System32\dssvc.dll
C:\Windows\System32\en-US\dssvc.dll.mui
C:\Windows\System32\acproxy.dll
C:\Windows\System32\en-US\acproxy.dll.mui
C:\Windows\System32\BthUdTask.exe
C:\Windows\System32\en-US\BthUdTask.exe.mui
C:\Windows\System32\bisrv.dll
C:\Windows\System32\en-US\bisrv.dll.mui
C:\Windows\System32\ngctasks.dll
C:\Windows\System32\en-US\ngctasks.dll.mui
C:\Windows\System32\dimsjob.dll
C:\Windows\System32\en-US\dimsjob.dll.mui
C:\Windows\System32\pstask.dll
C:\Windows\System32\en-US\pstask.dll.mui
C:\Windows\System32\ClipUp.exe
C:\Windows\System32\wsqmcons.exe
C:\Windows\System32\en-US\wsqmcons.exe.mui
C:\Windows\System32\usbceip.dll
C:\Windows\System32\en-US\usbceip.dll.mui
C:\Windows\System32\discan.dll
C:\Windows\System32\en-US\discan.dll.mui
C:\Windows\System32\defragsvc.dll
C:\Windows\System32\en-US\defragsvc.dll.mui
C:\Windows\System32\DeviceSetupManager.dll
C:\Windows\System32\en-US\DeviceSetupManager.dll.mui
C:\Windows\System32\mitigationclient.dll
C:\Windows\System32\en-US\mitigationclient.dll.mui
C:\Windows\System32\sdiagschd.dll
C:\Windows\System32\en-US\sdiagschd.dll.mui
C:\Windows\System32\cleanmgr.exe
C:\Windows\System32\en-US\cleanmgr.exe.mui
C:\Windows\System32\dfdts.dll
C:\Windows\System32\en-US\DFDTS.dll.mui
C:\Windows\System32\mitigationconfiguration.dll
C:\Windows\System32\en-US\mitigationconfiguration.dll.mui
C:\Windows\System32\dmclient.exe
C:\Windows\System32\srm.dll
C:\Windows\System32\en-US\srm.dll.mui
C:\Windows\System32\fhtask.dll
C:\Windows\System32\en-US\fhtask.dll.mui
C:\Windows\System32\fcon.dll
C:\Windows\System32\en-US\fcon.dll.mui
C:\Windows\System32\wosc.dll
C:\Windows\System32\en-US\wosc.dll.mui
C:\Windows\System32\CoreGlobConfig.Dll
C:\Windows\System32\LanguageComponentsInstaller.Dll
C:\Windows\System32\en-US\LanguageComponentsInstaller.Dll.mui
C:\Windows\System32\LanguageOverlayServer.dll
C:\Windows\System32\en-US\LanguageOverlayServer.dll.mui
C:\Windows\System32\TempSignedLicenseExchangeTask.dll
C:\Windows\System32\LocationNotificationWindows.exe
C:\Windows\System32\en-US\LocationNotificationWindows.exe.mui
C:\Windows\System32\WindowsActionDialog.exe
C:\Windows\System32\en-US\WindowsActionDialog.exe.mui
C:\Windows\System32\winsatapi.dll
C:\Windows\System32\en-US\winsatapi.dll.mui
C:\Windows\System32\mapstoasttask.dll
C:\Windows\System32\en-US\mapstoasttask.dll.mui
C:\Windows\System32\mapsupdatetask.dll
C:\Windows\System32\en-US\mapsupdatetask.dll.mui
C:\Windows\System32\MemoryDiagnostic.dll
C:\Windows\System32\en-US\MemoryDiagnostic.dll.mui
C:\Windows\System32\MbaeParserTask.exe
C:\Windows\System32\en-US\MbaeParserTask.exe.mui
C:\Windows\System32\lpremove.exe
C:\Windows\System32\en-US\lpremove.exe.mui
C:\Windows\System32\PlaySndSrv.Dll
C:\Windows\System32\en-US\PlaySndSrv.Dll.mui
C:\Windows\System32\nettrace.dll
C:\Windows\System32\en-US\nettrace.dll.mui
C:\Windows\System32\wifitask.exe
C:\Windows\System32\en-US\wifitask.exe.mui
C:\Windows\System32\cscui.dll
C:\Windows\System32\en-US\cscui.dll.mui
C:\Windows\System32\TpmTasks.dll
C:\Windows\System32\en-US\TpmTasks.dll.mui
C:\Windows\System32\pnppolicy.dll
C:\Windows\System32\en-US\pnppolicy.dll.mui
C:\Windows\System32\pnpui.dll
C:\Windows\System32\en-US\pnpui.dll.mui
C:\Windows\System32\sppnp.dll
C:\Windows\System32\en-US\sppnp.dll.mui
C:\Windows\System32\energytask.dll
C:\Windows\System32\en-US\energytask.dll.mui
C:\Windows\System32\rasmbmgr.dll
C:\Windows\System32\en-US\rasmbmgr.dll.mui
C:\Windows\System32\ReAgentTask.dll
C:\Windows\System32\en-US\ReAgentTask.dll.mui
C:\Windows\System32\regidle.dll
C:\Windows\System32\en-US\regidle.dll.mui
C:\Windows\System32\msra.exe
C:\Windows\System32\en-US\msra.exe.mui
C:\Windows\System32\WpcMon.exe
C:\Windows\System32\en-US\wpcmon.exe.mui
C:\Windows\System32\WpcRefreshTask.dll
C:\Windows\System32\en-US\WpcRefreshTask.dll.mui
C:\Windows\System32\srchadmin.dll
C:\Windows\System32\en-US\srchadmin.dll.mui
C:\Windows\System32\SpaceAgent.exe
C:\Windows\System32\en-US\SpaceAgent.exe.mui
C:\Windows\System32\spaceman.exe
C:\Windows\System32\Windows.StateRepositoryClient.dll
C:\Windows\System32\en-US\Windows.StateRepositoryClient.dll.mui
C:\Windows\System32\en\Windows.StateRepositoryClient.dll.mui
C:\Windows\System32\TieringEngineService.exe
C:\Windows\System32\en-US\TieringEngineService.exe.mui
C:\Windows\System32\ClipRenew.exe
C:\Windows\System32\sysmain.dll
C:\Windows\System32\en-US\sysmain.dll.mui
C:\Windows\System32\srrstr.dll
C:\Windows\System32\en-US\srrstr.dll.mui
C:\Windows\System32\wdc.dll
C:\Windows\System32\en-US\wdc.dll.mui
C:\Windows\System32\MsCtfMonitor.dll
C:\Windows\System32\en-US\MsCtfMonitor.dll.mui
C:\Windows\System32\TimeSyncTask.dll
C:\Windows\System32\en-US\TimeSyncTask.dll.mui
C:\Windows\System32\w32time.dll
C:\Windows\System32\en-US\w32time.dll.mui
C:\Windows\System32\tzsyncres.dll
C:\Windows\System32\en-US\tzsyncres.dll.mui
C:\Windows\System32\usosvc.dll
C:\Windows\System32\en-US\usosvc.dll.mui
C:\Windows\System32\upnphost.dll
C:\Windows\System32\en-US\upnphost.dll.mui
C:\Windows\System32\UsbTask.dll
C:\Windows\System32\en-US\usbtask.dll.mui
C:\Windows\System32\profsvc.dll
C:\Windows\System32\en-US\profsvc.DLL.mui
C:\Windows\System32\WaasMedicSvc.dll
C:\Windows\System32\en-US\WaasMedicSvc.dll.mui
C:\Windows\System32\dps.dll
C:\Windows\System32\en-US\dps.dll.mui
C:\Windows\System32\wer.dll
C:\Windows\System32\en-US\wer.dll.mui
C:\Windows\System32\BFE.DLL
C:\Windows\System32\en-US\bfe.dll.mui
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\en-US\wmpnscfg.exe.mui
C:\Windows\System32\mscms.dll
C:\Windows\System32\en-US\mscms.dll.mui
C:\Windows\System32\wininet.dll
C:\Windows\System32\en-US\wininet.dll.mui
C:\Windows\System32\WofTasks.dll
C:\Windows\System32\en-US\WofTasks.dll.mui
C:\Windows\System32\WorkFoldersShell.dll
C:\Windows\System32\en-US\WorkFoldersShell.dll.mui
C:\Windows\System32\dsregcmd.exe
C:\Windows\System32\en-US\dsregcmd.exe.mui
C:\Windows\System32\dsregtask.dll
C:\Windows\System32\en-US\dsregtask.dll.mui
C:\Windows\System32\wer.dll.3.Manifest
C:\ProgramData\Microsoft\Windows\WER
C:\ProgramData\Microsoft\Windows\WER\ReportQueue
C:\ProgramData\Microsoft\Windows\WER\Temp
C:\ProgramData\Microsoft\Windows\WER\Temp\d0c042b0-38f4-4b5a-aad9-ff5509897843
C:\ProgramData\Microsoft\Windows\WER\ReportArchive
C:\ProgramData\Microsoft\Windows\WER\Temp\b423e010-2c9e-47d1-950e-2dc78c12b63d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\*_*_*_*_*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\Report.wer
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78
C:\Windows\System32\usermgrcli.dll
C:\ProgramData\Microsoft\Windows\WER\Temp\8dd117af-7d7e-41f8-b9b6-5f6a643b22bf
C:\ProgramData\Microsoft\Windows\WER\Temp\0186004d-3553-428a-9eea-c6531ed7ba12
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ff1b36da-37bc-410d-8884-1376ad68a582
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\db8f70c8-b41f-4e0d-a271-59e5ad205fed
C:\Windows\System32\umpdc.dll
C:\Windows\System32\rmclient.dll
C:\Windows\System32\netapi32.dll
C:\Windows\System32\dsreg.dll
C:\Windows\System32\msvcp110_win.dll
C:\Windows\System32\profapi.dll
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\AppContainerUserCertRead
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\*
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs\*
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs\*
C:\Windows\System32\xmllite.dll
C:\Windows\System32\drivers\*.mrk
\Device\RasAcd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\b2cc3361-2ce3-4e27-949c-3d5500ddab20
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326
C:\ProgramData\Microsoft\Windows\WER\Temp\997bf877-1922-465b-90a4-8de18eb716f9
C:\ProgramData\Microsoft\Windows\WER\Temp\02a25c0c-fe10-451a-b357-e7c6671ff1cc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7bffd328-5273-4b7b-b871-ea2c1ba72c3a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d9829c04-9e58-45a1-a7f8-5a572193828e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\e4ca3fb7-5362-4e7e-ad9b-db828c681554
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\WER13F2.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089
C:\ProgramData\Microsoft\Windows\WER\Temp\630b8138-e278-4e2e-8e4d-ac76f5ade483
C:\ProgramData\Microsoft\Windows\WER\Temp\8e153121-870c-450f-9090-dc4d60fe957c
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\1da7f6ba-d4a0-4270-8315-93b6ac4bc48c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bedefa44-4ba7-4993-8cb9-fe9944781f91
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\60c0b3fb-ac79-4575-94dd-0067d3391844
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\WER152A.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4
C:\ProgramData\Microsoft\Windows\WER\Temp\799b9c7a-a11f-423c-8bb2-fec72ebe80ae
C:\ProgramData\Microsoft\Windows\WER\Temp\79c08b7f-bc6c-4be2-aa12-00fbecb319dc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\1020d2cc-1978-4f64-baef-f7236021be6c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\54ba35cc-f16d-444d-8fd3-2b0e6b16c146
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\188f9b19-2d05-4f15-97f4-0001aeaa8c4f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\WERF3D2.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543
C:\ProgramData\Microsoft\Windows\WER\Temp\9772b2de-5c44-4780-bce3-6483f75bb94e
C:\ProgramData\Microsoft\Windows\WER\Temp\235e4f3e-0f3c-4ee5-8659-96ad1e1aa731
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\33a7cb3d-9946-49b5-85d1-e88a68e6f316
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\5232059e-34c5-4dc1-a34a-92cc0376ed1e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\1f4f310b-3c4a-42f0-a105-eaaa40acc318
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\WERF588.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8
C:\ProgramData\Microsoft\Windows\WER\Temp\29e8d56a-bee5-4530-9430-cea35ae57c50
C:\ProgramData\Microsoft\Windows\WER\Temp\7033c0c3-de1a-4278-857e-405ecc26feb7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d8c96e67-00d4-4fc2-844e-b6e40c87d386
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ec712b8c-17f7-48a1-aa77-41876ba20d46
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\f86c4eda-5e88-4b32-857b-1d74134cfd06
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0
C:\ProgramData\Microsoft\Windows\WER\Temp\bb282bc0-fb12-4bdd-a048-38969e501e76
C:\ProgramData\Microsoft\Windows\WER\Temp\658fab08-1a0a-4307-a1bb-284e88559830
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0b7f186b-7c6a-401d-b6d3-50aa5d6dab4e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\3061c28e-0896-4fa1-ba1a-94f0b45f7c19
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\e0abbcec-bc01-43aa-b7ef-fd4344e779a5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d
C:\ProgramData\Microsoft\Windows\WER\Temp\5dcad482-0ebb-4b15-ba25-950858342cc0
C:\ProgramData\Microsoft\Windows\WER\Temp\7bb4bb4d-4d7c-4d94-a592-4ad094e2d6dc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\96350453-c43b-4d05-9b57-2ab7b3e72065
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dedf0e6b-4a87-4a45-bae8-f692e6b1baad
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\df14df72-d545-4a4a-acbe-6b74d2d01f54
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba
C:\ProgramData\Microsoft\Windows\WER\Temp\61ad3319-a06f-4f05-98b4-3669e2983ef7
C:\ProgramData\Microsoft\Windows\WER\Temp\df64c193-124b-4e0e-a303-f0dfbb3da020
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\296831ef-45a9-4e4d-8426-9a09557eafc9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\332838e9-94af-4a22-a21c-4ef9ca724326
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\c674d19d-3789-4357-a4aa-3719124b06a8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978
C:\ProgramData\Microsoft\Windows\WER\Temp\834ca866-817c-448e-bbcb-7d4cb7945f87
C:\ProgramData\Microsoft\Windows\WER\Temp\987d5342-d538-4b25-a3c2-8c9be4937d12
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3b6101c3-fa2d-41c2-a778-45e41601fff6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\8c31bdc2-44f3-4f14-886d-07795f73a1c8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\d56d560d-7bcc-48c5-96f3-4b4199c3c1a4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec
C:\ProgramData\Microsoft\Windows\WER\Temp\371e96b5-65f8-4ca6-a0b0-335cd869e6df
C:\ProgramData\Microsoft\Windows\WER\Temp\f59225f2-9be6-40bf-a9a8-dcbe9214c007
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3fd42f22-4e32-4b81-b0ac-f4833d189a93
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\8ce7e2c7-d010-4b5e-bf34-0f1d7f542a6a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\5685eaff-751c-44b0-ba79-2d18bae1c6c1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3
C:\ProgramData\Microsoft\Windows\WER\Temp\98434589-ba1e-402e-b9c1-893b21d54a94
C:\ProgramData\Microsoft\Windows\WER\Temp\cf2a2443-f02d-4e11-a2d2-2371cb2eff94
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eb3fd813-e858-483f-a497-661f16945312
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ec14c11b-1c18-4109-9449-9d0c751a0f8e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\b3da6680-2ee3-4a61-af0e-72a976128b6e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906
C:\ProgramData\Microsoft\Windows\WER\Temp\974df4e6-6ebf-4d97-9edc-ac90820157f7
C:\ProgramData\Microsoft\Windows\WER\Temp\13296fca-6b57-4d23-9618-a903533b2861
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\709dfe0e-9182-4125-bb3a-70cb74ab3543
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\840c60a2-ff36-4c11-b158-d88348ae6f7d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\b7639ed6-8813-4ef3-9e47-06ff757c3f25
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f
C:\ProgramData\Microsoft\Windows\WER\Temp\9fbe51ea-6c66-4ab2-a53b-8dbf2d6e1cfb
C:\ProgramData\Microsoft\Windows\WER\Temp\5bbe9dab-d894-4165-844c-5537bfdf1142
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\bb6b0731-aad6-4f83-a571-6b15b8b796ae
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\1f980d14-8a01-4fc4-9a16-dd3087b11c0d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\9738ac6a-4ce3-4698-8d86-d2eca2faffd5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517
C:\ProgramData\Microsoft\Windows\WER\Temp\ef164dd8-3374-4157-8737-dc8c765c445b
C:\ProgramData\Microsoft\Windows\WER\Temp\c4e7197c-aa2c-4ac3-86d6-459ae487d0a8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f7e54d40-5302-4231-b292-0f7be8d52402
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\4c6e827d-d514-4569-92a0-4ce010e622b8
C:\ProgramData\Microsoft\Windows\WER\Temp\WERECD8.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WERECD8.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\20d18e0e-f8c5-4a96-a79b-fb9105878f82
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\Report.wer.tmp
\\?\C:\ProgramData\Microsoft\Windows\WER\ReportQueue
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\*
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\*
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\*_*_*_*_*
C:\ProgramData\Microsoft\Windows\WER\Temp\*
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0502.4268.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0502.4268.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\1c563e12-ec6d-42d5-86ff-3801735a11da
C:\ProgramData\Microsoft\Windows\WER\Temp\79a60599-13f6-4dbc-91c9-97adb283cca3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\dfc48020-a266-4eba-baf0-befae98327a0
C:\ProgramData\Microsoft\Windows\WER\Temp\cbb89de6-348a-440f-9abd-f34956545785
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\df2b60a2-8d95-418e-8271-dd1e65e79831
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\a3bce7b2-7d3c-46bb-8f8d-f0fe2262075e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\d33c11c4-4d16-41b2-a8f1-0b9ea17a8e34
C:\ProgramData\Microsoft\Windows\WER\Temp\49e6b90b-492a-4659-9f11-52f1d2c91f8e
C:\ProgramData\Microsoft\Windows\WER\Temp\1c761f68-139d-4bae-813e-eab93ac3f0de
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\fe383545-41d5-4de3-bde2-da5e2571d113
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bd42fc51-ed7c-46f8-a6c2-5bd26877df55
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\4063ce41-0c16-49f9-b291-37486474b39e
C:\ProgramData\Microsoft\Windows\WER\Temp\ae91f200-2168-473c-8177-1961e1e6bd0b
C:\ProgramData\Microsoft\Windows\WER\Temp\499417f7-e428-4645-8633-048bdab03d4b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b3737861-16a2-4f57-a6a5-c88c617996cd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6881b67d-f2bb-4d83-aaca-85b842be8a09
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\b2fea227-83d0-4a84-b109-abbfa6a7aea9
C:\ProgramData\Microsoft\Windows\WER\Temp\d5333e9f-c97c-4444-877d-2aac68495a13
C:\ProgramData\Microsoft\Windows\WER\Temp\88531343-1c7a-4f5f-b7f3-87bf04b576fb
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5fbb2fb1-48b3-422e-8740-82e5e063a7d1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\04a574de-2757-4415-beb6-052e25212eb4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\0c8f408c-994e-4d64-9ac3-4283f9d255ee
C:\ProgramData\Microsoft\Windows\WER\Temp\da542b65-3494-4ca6-8264-db527d6d6588
C:\ProgramData\Microsoft\Windows\WER\Temp\18a3e60e-efdc-4d7e-97c0-b5bb3303a515
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\049754ea-f5cb-4990-bc1d-b31c6fea3d37
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c626d74a-7d54-4d76-bc4a-4dfb2fd90cca
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\9fee5fe5-3dc5-4138-a1fc-6c571d0cb571
C:\ProgramData\Microsoft\Windows\WER\Temp\cd142731-6816-4793-8f69-03650d49128e
C:\ProgramData\Microsoft\Windows\WER\Temp\b59b9cc8-38fa-48e7-9fbc-fea05d712d06
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7991e160-a8e5-45f1-8b64-7b4c59e218f5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dde0f4cb-65e0-49d2-92a3-472c63f18460
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\fc418a81-0cd0-45aa-aaf2-fa16fe7e8d38
C:\ProgramData\Microsoft\Windows\WER\Temp\cef02a8d-8d42-4bc1-b149-0c4fece31534
C:\ProgramData\Microsoft\Windows\WER\Temp\fe5866c8-f5f0-4fb0-b5bd-9e68bcf13ec0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\e013b255-035d-4b7b-b715-06e17320659f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6b5bade2-d50f-42ee-906a-27bfd007ccc4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\4f29983f-51b9-486c-8635-25c3c1d86644
C:\ProgramData\Microsoft\Windows\WER\Temp\a4274373-f044-4654-b33e-a9e6a5f3cdad
C:\ProgramData\Microsoft\Windows\WER\Temp\6fa5d070-9698-4819-b4ce-19f290256f4b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b5a81a6a-08bc-42d9-b98b-cf94529139e6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9514c1cc-57a5-4efe-905d-bf07a77e3ae8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\290cf5de-23ff-4492-b738-59963f06600d
C:\ProgramData\Microsoft\Windows\WER\Temp\0a7238e0-17ec-4454-80cc-75f3172577d4
C:\ProgramData\Microsoft\Windows\WER\Temp\5ed93650-168f-4ce1-87e0-debdd5584673
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a952c684-00aa-43fe-a46b-02b86ee599f9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\224486df-3fad-4229-b56e-c4bd9114eb86
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\848c9b3c-fd48-44fe-9a63-b2b391a7c6c1
C:\ProgramData\Microsoft\Windows\WER\Temp\7f067b72-7371-4ff0-b81c-57357491b50b
C:\ProgramData\Microsoft\Windows\WER\Temp\3b65d34e-c630-4f66-ad68-9bd102962d72
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\01d61436-874f-430c-8a9f-8e048746e802
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\92c3f2f7-ce75-45e5-95b4-6e8e05f9223e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\c86912b7-7e19-409d-ac00-cb0ba9754f66
C:\ProgramData\Microsoft\Windows\WER\Temp\0f2aa62f-ad8b-4390-a149-cec419174a60
C:\ProgramData\Microsoft\Windows\WER\Temp\3f05a21a-7da5-46d6-b222-0d56881f4788
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f337b17a-bef3-4e7b-99bb-bdd81e4926b5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68edf295-67b1-45dd-8cf8-6d27752605ba
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\f9f6e365-c368-4c49-b4ae-1f4928a55898
C:\ProgramData\Microsoft\Windows\WER\Temp\d2c306cb-b6e9-402d-a5af-2b860ca81c48
C:\ProgramData\Microsoft\Windows\WER\Temp\27c0da1e-c452-4c75-a75a-f2891bad5974
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a06962d5-8871-4f55-82cc-e221d2ed8feb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c46bfd85-7f11-4c6e-9129-b138f23002cb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\28ee5cc1-36e8-4904-9f7a-8afa4f45a1de
C:\ProgramData\Microsoft\Windows\WER\Temp\5e101db7-031c-449e-8416-05fae7216ffb
C:\ProgramData\Microsoft\Windows\WER\Temp\b70cf222-5ef0-43ce-8815-e22bcfd2af9d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\623c0183-12b1-45ec-9c53-0c76badd3002
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\326fe338-f36a-4b76-99bc-0fe9ed17e8df
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\588fd0d4-a893-4113-8e0e-e965910112e3
C:\ProgramData\Microsoft\Windows\WER\Temp\2106a3d8-3cc6-443e-a4ab-f12e1ade3494
C:\ProgramData\Microsoft\Windows\WER\Temp\f125e995-daca-4211-acf6-3b2f891ebece
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\11ee2349-aa23-4cb9-a1bd-33ba9af0b229
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\570faed6-7d9e-41d2-9714-96ef16578173
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\41e7018d-a2f5-48ed-955a-82297074ce61
C:\ProgramData\Microsoft\Windows\WER\Temp\8dee62f6-011b-47f7-a59c-a4c838a07ed0
C:\ProgramData\Microsoft\Windows\WER\Temp\1a5bacf4-dac9-432d-b3b0-d4f9975cfa75
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c486852b-648f-451c-ae6d-f603495e4a9d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\01396a45-d005-4b47-9ead-a99afe772388
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\090ed61f-a8a3-4b21-8e6e-8cd36a7d27c4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26
C:\ProgramData\Microsoft\Windows\WER\Temp\14c0c761-9574-46e2-a663-ad6ebb128054
C:\ProgramData\Microsoft\Windows\WER\Temp\e4b845a0-1cb7-43a7-a737-595ce3047dbc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\cb92b5eb-6a92-4e68-8efd-41fccbf34b71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d5d3395b-c9e3-452d-ab08-ee091049839e
C:\ProgramData\Microsoft\Windows\WER\Temp\WER97AF.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WER97AF.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\a3274d55-4368-47cf-aebb-02e7a9022ec4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\*
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.39eaa4a7-46b1-4faa-afdd-b1c2d29a7c06.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.7b7166e7-7816-4a77-93db-96e2e7434528.1.etl
C:\Windows\System32\IPHLPAPI.DLL
\??\Nsi
C:\Windows\System32\dusmapi.dll
C:\ProgramData\Microsoft\Windows\OneSettings
C:\ProgramData\Microsoft\Windows\OneSettings\config.json
C:\Windows\System32\OneSettingsClient.dll
C:\Windows\System32\netmsg.dll
C:\Windows\System32\en-US\netmsg.dll.mui
C:\Windows\System32\en\netmsg.dll.mui
C:\ProgramData\Microsoft\Windows\WER\Temp\4bdea17c-05aa-4b78-b554-e60965251881
C:\ProgramData\Microsoft\Windows\WER\Temp\5e9659be-a899-4d09-9899-556fcc7bb336
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\e476da4d-366f-464a-b282-8eef56cd1f4d
C:\ProgramData\Microsoft\Windows\WER\Temp\907011b8-143c-4ba9-883b-554e23191314
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\8b37443a-4599-488d-a051-fc4f30ef6793
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\867da76b-e61f-4a9b-98aa-fcc2bd78afc9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\a2848d2e-529f-44b5-ba08-603de906e7e5
C:\ProgramData\Microsoft\Windows\WER\Temp\34762a1e-5cba-41eb-a6c3-7e680e6a9ab8
C:\ProgramData\Microsoft\Windows\WER\Temp\0b61cc43-0f6e-434f-ac37-c9539d753c02
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a5911ecd-0f82-4b7d-b8cb-786abcc6cbd3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e3aa2567-f4c5-454d-b00d-023bdef9f016
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\fc1836ad-9189-4170-9bd4-f59a81a9a93c
C:\ProgramData\Microsoft\Windows\WER\Temp\bcd5d2f8-ce9b-4cfd-990f-971e3a1b4af8
C:\ProgramData\Microsoft\Windows\WER\Temp\883df162-2010-4308-a05f-3357673c1fe4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\75d9b23f-566f-4f0d-82d2-7bf26a61acbd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6b4b77f8-2d59-4b56-b9e0-675796c85fba
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\2d19a286-625e-40ad-b762-f3213406eeb8
C:\ProgramData\Microsoft\Windows\WER\Temp\6c0da923-7a54-49f1-af23-475092c57ff8
C:\ProgramData\Microsoft\Windows\WER\Temp\f2a9e756-b355-402f-a3b2-6268b586680d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\43fe3615-3706-4c4a-83e4-137992935ff4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\50c222fe-ef76-49b9-85dd-6136762b9562
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\65c8d52f-f23a-4757-af56-7cca8f43494f
C:\ProgramData\Microsoft\Windows\WER\Temp\53e47ccb-0432-4add-b719-ff412e28f7fc
C:\ProgramData\Microsoft\Windows\WER\Temp\5d81c4a3-80c5-46a7-9faf-bee7f9702864
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ccca33c5-1b2b-4c5c-ae70-2e2d1ca13332
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\5d6e38b5-aff8-45a4-9dab-19aaa3081ae3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\06bb1534-f019-4f61-b631-c2caaa6f87de
C:\ProgramData\Microsoft\Windows\WER\Temp\f37b10fe-007c-45f4-a02f-a8cd2eed3fc0
C:\ProgramData\Microsoft\Windows\WER\Temp\2b4359eb-37b0-4b90-9075-2e46bb662f7b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4eaed130-1615-42fb-b661-c478ec7c0303
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\640e8bac-076d-40c5-a525-a7e9e4a35370
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\38ff105b-c017-4525-aa4e-c57dccfedd45
C:\ProgramData\Microsoft\Windows\WER\Temp\69fbc069-f850-45d6-b025-91b793f0c08d
C:\ProgramData\Microsoft\Windows\WER\Temp\fdc0cbc6-e04d-4613-bdb9-cdcc28b7e2e1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\afb35a57-d0bf-4531-b8c3-f6d662effd59
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\7d7cfb51-5fec-42c1-a5f0-6f00b6980d51
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\e0dfad91-4455-4ef5-9b2f-2dfddd04688b
C:\ProgramData\Microsoft\Windows\WER\Temp\b5fdbebf-f34d-42ef-a955-ec8c8aa5c64e
C:\ProgramData\Microsoft\Windows\WER\Temp\a3b0067e-e0c2-4ed1-8563-bb3083ba544f
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\42667c2d-74cd-4666-b130-5da92c49984d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\cd611230-54ed-4cb8-8391-47cf2b577c13
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\714dc6a4-39b2-4c05-b689-c4fca56bab39
C:\ProgramData\Microsoft\Windows\WER\Temp\0bc88026-55e2-4d6e-8ec1-e9c54493eaa8
C:\ProgramData\Microsoft\Windows\WER\Temp\ead27d28-428d-432e-98f6-925adec24da4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a021a5e8-6f81-4435-8d20-341ea4f4460d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9a5dacb9-c864-44f1-b616-3a6efa2e9c87
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\b9d9de37-3503-4fad-94fe-397ecfd563e6
C:\ProgramData\Microsoft\Windows\WER\Temp\0f02d54e-e5da-4a20-8e4e-af61da5cf685
C:\ProgramData\Microsoft\Windows\WER\Temp\a3838019-f5a4-4a66-a541-db034b5c9dc4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\65097c21-0f7d-4a07-a9a0-e81d83d09e3e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6ee3ab76-768d-4120-8db2-833844b1041d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\be933dd8-953f-4e8b-b49c-2d6fb78e361c
C:\ProgramData\Microsoft\Windows\WER\Temp\a32cc7b1-f10b-4040-a611-0cec85b0051f
C:\ProgramData\Microsoft\Windows\WER\Temp\66e552d2-a62d-4e82-966f-8357c0fc11a1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\60388ba8-4179-4367-947b-e98c3b09e6b9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\22b1ee36-a90c-4fd4-8961-9fdd6050276a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\6e7fe297-8711-4959-9407-a5037b7e6130
C:\ProgramData\Microsoft\Windows\WER\Temp\eea95cf8-1b06-420f-a901-7ec5baf46720
C:\ProgramData\Microsoft\Windows\WER\Temp\7f5c2d86-0bd2-40f5-8b30-9cfc7df45c48
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\2b6699e0-c05a-4636-9b04-b727e38faaee
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68f4d547-ff44-4d7c-b61c-b0fdaf852993
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\656e75ad-7d95-4b6f-b5d8-b32a489c0973
C:\ProgramData\Microsoft\Windows\WER\Temp\4849680d-488b-4292-a7f5-1bd1e34df3fc
C:\ProgramData\Microsoft\Windows\WER\Temp\7f42e9e9-beee-4ffd-bd9e-aefcda2b6d2f
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\675891e9-e8a7-4eee-9397-e73e737e0614
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\29edbaf3-962a-4f62-a78d-ab5041e58e31
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\837e4638-84d1-4c64-a973-d9d195e6e624
C:\ProgramData\Microsoft\Windows\WER\Temp\5120a8ee-7d04-446c-b580-c1ceeaadba37
C:\ProgramData\Microsoft\Windows\WER\Temp\fb6adeb9-5f07-4828-a151-5eb150bb1748
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ae1dbe10-1029-4846-ae93-a9f32175c8bb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\fc5754ec-7d49-4506-b7c1-7ebb088c52c4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\79fe4204-5331-4f1c-8eb5-4adbb267e416
C:\ProgramData\Microsoft\Windows\WER\Temp\b0ea7851-5b14-4633-b38c-3f4c3c68aad4
C:\ProgramData\Microsoft\Windows\WER\Temp\151ab792-f78c-4fdc-abe2-4d33425af15d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a34fe06f-bcdc-4221-84d4-a1ec75d1e6af
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e0d99e84-409a-44c9-b81e-3d6904f0eeb8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\a72d8ce6-2455-44ee-9126-e869ef68a320
C:\ProgramData\Microsoft\Windows\WER\Temp\2153c9d5-dd70-4460-9b06-f6efe910040b
C:\ProgramData\Microsoft\Windows\WER\Temp\d69a0a9b-25b7-4aab-884c-80eb518ee7f9
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\47b74653-7be9-4a1c-b335-39b25ebd349f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\0611bcda-512d-46f9-b27f-410b409fffe8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\8ce5e5d2-308a-4305-9de3-54f975bfae88
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8
C:\ProgramData\Microsoft\Windows\WER\Temp\38464a3c-767a-455a-bbe0-7e1b63150c96
C:\ProgramData\Microsoft\Windows\WER\Temp\ec9999b8-c605-4731-9a63-fb6873e379e2
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\689ee52e-2cd0-4b37-ac8c-d9a6c79b78a8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ab7768dd-65ac-4381-ab29-26bbbbf01101
C:\ProgramData\Microsoft\Windows\WER\Temp\WERD0AC.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WERD0AC.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\3972ef54-4b4e-4b80-9533-60b982868b64
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\*
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0506.6148.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0506.6148.1.odl
C:\Windows\System32\wbem\en-US\cimwin32.dll.mui
C:\
C:\Windows\System32
C:\Windows\System32\
C:\Windows
C:\Windows\
C:
C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-100000000000}
\??\GLOBALROOT\Device\HarddiskVolume1
\??\Volume{01989354-0000-0000-0000-100000000000}\
\??\Volume{01989354-0000-0000-0000-100000000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-300300000000}
\??\GLOBALROOT\Device\HarddiskVolume2
\??\Volume{01989354-0000-0000-0000-300300000000}\
\??\Volume{01989354-0000-0000-0000-300300000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-10e03f000000}
\??\GLOBALROOT\Device\HarddiskVolume3
\??\Volume{01989354-0000-0000-0000-10e03f000000}\
\??\Volume{01989354-0000-0000-0000-10e03f000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\scsi#disk&ven_qemu&prod_harddisk#4&35424867&0&000000#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}
\??\PHYSICALDRIVE0
C:\Windows\System32\clusapi.dll
C:\Windows\System32\dnsapi.dll
\??\PIPE\wkssvc
C:\Windows\System32\iologmsg.dll
C:\Windows\System32\en-US\iologmsg.dll.mui
C:\Windows\System32\slc.dll
C:\Windows\System32\en-US\slc.dll.mui
C:\Windows\System32\en-US\storagewmi.dll.mui
C:\Windows\System32\Syncreg.dll
C:\Windows\System32\en-US\Syncreg.dll.mui
C:\Windows\System32\tapi3.dll
C:\Windows\System32\en-US\tapi3.dll.mui
C:\Windows\System32\vdsutil.dll
C:\Windows\System32\en-US\vdsutil.dll.mui
C:\Windows\System32\vsstrace.dll
C:\Windows\System32\en-US\vsstrace.dll.mui
C:\Windows\System32\wbem\en-US\wmiutils.dll.mui
C:\Windows\System32\msasn1.dll
C:\Windows\System32\dhcpcsvc6.DLL
C:\Windows\System32\dhcpcsvc.dll
\DEVICE\NETBT_TCPIP_{CC6EEB36-5AE2-46BE-81A9-5F0B62ECF81F}
\DEVICE\NETBT_TCPIP_{27E3D6D8-A922-11EF-90C1-806E6F6E6963}
\Device\Afd\Endpoint
C:\Windows\System32\perfc009.dat
C:\Windows\System32\drivers\Synth3dVsc.sys
C:\Windows\System32\SystemResources\Synth3dVsc.sys.mun
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WorkflowServiceHostPerformanceCounters.dll
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\en-US\WorkflowServiceHostPerformanceCounters.dll.mui
C:\Windows\System32\lsm.dll
C:\Windows\System32\en-US\lsm.dll.mui
C:\Windows\System32\HvHostSvc.dll
C:\Windows\System32\en-US\HvHostSvc.dll.mui
C:\Windows\System32\drivers\pacer.sys
C:\Windows\System32\drivers\en-US\pacer.sys.mui
C:\Windows\System32\FWPUCLNT.DLL
C:\Windows\System32\en-US\fwpuclnt.dll.mui
C:\Windows\System32\pnrpsvc.dll
C:\Windows\System32\en-US\pnrpsvc.dll.mui
C:\Windows\System32\azroles.dll
C:\Windows\System32\en-US\AzRoles.dll.mui
C:\Windows\System32\FXSRESM.dll
C:\Windows\System32\en-US\fxsresm.dll.mui
C:\Windows\System32\drivers\afd.sys
C:\Windows\System32\drivers\en-US\afd.sys.mui
C:\Windows\System32\drivers\fvevol.sys
C:\Windows\System32\drivers\en-US\fvevol.sys.mui
C:\Windows\System32\drivers\spaceport.sys
C:\Windows\System32\drivers\en-US\spaceport.sys.mui
C:\Windows\System32\drivers\refs.sys
C:\Windows\System32\drivers\en-US\refs.sys.mui
C:\Windows\System32\mispace.dll
C:\Windows\System32\en-US\mispace.dll.mui
C:\Windows\System32\drivers\vmbkmcl.sys
C:\Windows\System32\drivers\en-US\vmbkmcl.sys.mui
C:\Windows\System32\drivers\en\vmbkmcl.sys.mui
C:\Windows\System32\drivers\smbdirect.sys
C:\Windows\System32\drivers\en-US\smbdirect.sys.mui
C:\Windows\System32\cscsvc.dll
C:\Windows\System32\en-US\cscsvc.dll.mui
C:\Windows\System32\iphlpsvc.dll
C:\Windows\System32\en-US\iphlpsvc.dll.mui
C:\Windows\System32\drivers\dmvsc.sys
C:\Windows\System32\drivers\en-US\dmvsc.sys.mui
C:\Windows\System32\bthserv.dll
C:\Windows\System32\en-US\bthserv.dll.mui
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelPerformanceCounters.dll
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\en-US\ServiceModelPerformanceCounters.dll.mui
C:\Windows\System32\umpoext.dll
C:\Windows\System32\en-US\umpoext.dll.mui
C:\Windows\System32\drivers\tcpip.sys
C:\Windows\System32\drivers\en-US\tcpip.sys.mui
C:\Windows\System32\drivers\winnat.sys
C:\Windows\System32\drivers\en-US\winnat.sys.mui
C:\Windows\System32\drivers\http.sys
C:\Windows\System32\drivers\en-US\http.sys.mui
C:\Windows\System32\WindowsPowerShell\v1.0\PSEvents.dll
C:\Windows\System32\WindowsPowerShell\v1.0\en-US\PSEvents.dll.mui
C:\Windows\System32\drivers\dxgmms2.sys
C:\Windows\System32\drivers\en-US\dxgmms2.sys.mui
C:\Windows\System32\drivers\en\dxgmms2.sys.mui
C:\Windows\System32\wmp.dll
C:\Windows\System32\rdpcorets.dll
C:\Windows\System32\en-US\rdpcorets.dll.mui
C:\Windows\System32\drivers\srv2.sys
C:\Windows\System32\drivers\en-US\srv2.sys.mui
C:\Windows\System32\netlogon.dll
C:\Windows\System32\en-US\NetLogon.dll.mui
C:\Windows\System32\drivers\USBXHCI.SYS
C:\Windows\System32\drivers\en-US\usbxhci.sys.mui
C:\Windows\System32\drt.dll
C:\Windows\System32\en-US\drt.dll.mui
C:\Windows\System32\advapi32res.dll
C:\Windows\System32\en-US\advapi32res.dll.mui
C:\Windows\System32\drivers\mrxsmb.sys
C:\Windows\System32\drivers\en-US\mrxsmb.sys.mui
C:\Windows\System32\appvetwclientres.dll
C:\Windows\System32\wevtsvc.dll
C:\Windows\System32\en-US\wevtsvc.dll.mui
C:\Windows\System32\PeerDistSvc.dll
C:\Windows\System32\en-US\PeerDistSvc.dll.mui
C:\Windows\System32\WsmRes.dll
C:\Windows\System32\en-US\WsmRes.dll.mui
C:\Windows\System32\vid.dll
C:\Windows\System32\en-US\vid.dll.mui
C:\Windows\System32\mprddm.dll
C:\Windows\System32\en-US\mprddm.dll.mui
C:\Windows\System32\perfh009.dat
\??\UNC\WORKGROUP*\MAILSLOT\NET\NETLOGON
C:\Windows\System32\en-US\ACTIVEDS.dll.mui
C:\Windows\System32\powrprof.dll
C:\Windows\System32\en-US\powrprof.dll.mui
C:\ProgramData\Microsoft\Windows\WER\Temp\1900ff9e-34e0-4405-b047-44543fa78afe
C:\ProgramData\Microsoft\Windows\WER\Temp\fb1a63a1-bfac-4d00-a94d-e7b8b8f8920a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\f0b9230b-4ec2-4bf2-8f6e-46cd9ae32db9
C:\ProgramData\Microsoft\Windows\WER\Temp\78afe647-c42c-4fd8-88c4-a7fc386399e7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ae393f33-a2e1-4cd6-8144-ccdf675af042
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d6a65110-a339-469a-a957-d7d618237e44
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\62aa6660-4d56-4ace-af58-399a010a17ae
C:\ProgramData\Microsoft\Windows\WER\Temp\0c3e1cae-3de6-4e23-bc75-bf91b01b513a
C:\ProgramData\Microsoft\Windows\WER\Temp\3a6c035d-af73-4ed8-ba2d-547a0772f9ab
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d3dc6193-1ebd-4092-a313-1c6a72e55075
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\eaefaec1-5fab-4bd1-bd34-4744e3c2fa52
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\9e6735a3-37b0-4a8f-ac7f-844a29465a3d
C:\ProgramData\Microsoft\Windows\WER\Temp\26d93544-5e0f-49aa-91e6-6d96ebb96826
C:\ProgramData\Microsoft\Windows\WER\Temp\17a0115b-0324-4c4c-bf87-d5838170ff3e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\2450af5a-40ab-488a-a69f-6cfd99dd52ff
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bf28fc57-5b13-43a1-9f70-0834170c882f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\acd6f3bc-cdb2-4305-93b5-4ceae247595a
C:\ProgramData\Microsoft\Windows\WER\Temp\df882e15-65c7-4fc4-baf0-ba291f112797
C:\ProgramData\Microsoft\Windows\WER\Temp\d5cb514c-0c3a-42ae-bb72-cb6b23b076ea
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0ba4d858-5c83-4c2e-bd73-d58df0e4c07b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f6c6035e-8caa-486a-b16a-ee0bc07cc59e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\94134e2d-c03e-4fa7-8d1f-e6e0040dfad3
C:\ProgramData\Microsoft\Windows\WER\Temp\d72c5ba7-3826-4f0e-80ce-f071dd66192c
C:\ProgramData\Microsoft\Windows\WER\Temp\fd504180-4518-42ab-a498-1b15930cfa71
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\274dfc13-5bde-4596-a6b9-3e7e3d31de2a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\df4137ee-a511-4fde-b2e4-ac0a6f6d8f71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\160cee4f-e2b1-48f7-b484-f2f7a5f44c69
C:\ProgramData\Microsoft\Windows\WER\Temp\60b1bf96-5b93-4f5b-814b-1ef60a7dc9d2
C:\ProgramData\Microsoft\Windows\WER\Temp\9044bc85-469f-47d2-97f7-830b64ca09c7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a907682b-d394-4ada-ab45-fc663d571313
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68f99320-1a88-4862-bf47-e1771c5a4781
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\a9966c7d-40f1-499b-ad67-f641e91b09ff
C:\ProgramData\Microsoft\Windows\WER\Temp\82bf4197-0122-4985-a891-24bbb7708525
C:\ProgramData\Microsoft\Windows\WER\Temp\470e7e17-dc64-4ea3-97a0-0801c532ae09
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0f083210-d8a4-4a2a-be2e-be6703d91689
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bb8bf6f8-30cc-429f-a03f-ac14546eb97e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\7425c9f5-6f12-495a-b242-24a41c68c173
C:\ProgramData\Microsoft\Windows\WER\Temp\ec41a742-2d3e-478e-bf0a-43e86f97480f
C:\ProgramData\Microsoft\Windows\WER\Temp\f623e8c6-5349-406e-a6be-fd2cc8009b2e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\06edc4a9-23b9-4497-abeb-d624ce0c5dfe
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bd048943-4408-402c-86af-0f2667bfea03
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\f8346a71-8fbe-4a02-8c61-f106bd5e76c2
C:\ProgramData\Microsoft\Windows\WER\Temp\b222edb2-4f4b-478a-952c-539afe8f6244
C:\ProgramData\Microsoft\Windows\WER\Temp\0cf5cc33-41ad-4c5c-b16a-0c680592537a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\53948671-dfae-4e96-967b-7ce76453e72b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\81bf5976-4ced-4e6a-b290-5821e1c12089
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\dfb8f859-950f-4d96-9acc-d765d9c1ec14
C:\ProgramData\Microsoft\Windows\WER\Temp\cca00e07-d8fe-4a05-a3c5-fee5c0a2ecf7
C:\ProgramData\Microsoft\Windows\WER\Temp\24e9809f-c04c-45e7-8672-746bfcaa69c8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\abee175e-f733-4ae5-bfaf-56957088bdc3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f2d7e20e-dc8a-46e4-8009-c7828c933535
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\7ccd0660-21b0-4cd6-b6c0-4234501caeb4
C:\ProgramData\Microsoft\Windows\WER\Temp\304b9986-5316-43dd-82c4-ce02f327bd4d
C:\ProgramData\Microsoft\Windows\WER\Temp\bc35e9f6-72d1-46f4-b864-170c06ce66a8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ac21b2a7-a2a2-49f3-9fb1-eeba65732720
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b8cb9b55-5608-4496-8d05-75c2f2bce1b6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\820f834b-0a28-4577-be6c-5eb1641c936c
C:\ProgramData\Microsoft\Windows\WER\Temp\23a79337-3f8a-4ec3-9f8b-334ef050acc6
C:\ProgramData\Microsoft\Windows\WER\Temp\7820d2b7-9495-43dd-93b2-3deb40b8925b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\408780dc-02c0-4a71-850b-e15d3255245b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\af25d725-1354-4dfa-82a5-9507d4cada30
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\4ef94a7f-1004-4760-91e4-1a6c1614d5fe
C:\ProgramData\Microsoft\Windows\WER\Temp\91103fbd-bbf9-4df2-872a-855988f493bd
C:\ProgramData\Microsoft\Windows\WER\Temp\ebbaf455-f994-449c-8a60-11abd1a31a4a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5ea30b2e-8d91-44e3-9bc0-5ce4fd6b4eda
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05afd737-9598-4f5d-a89c-88f7867ab80b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\f5361aa4-2b82-4315-a110-7e317951aa8a
C:\ProgramData\Microsoft\Windows\WER\Temp\585b0881-682b-469f-bc44-be3e1e9dbc2d
C:\ProgramData\Microsoft\Windows\WER\Temp\01970d51-54f4-4fcc-925d-4eb337c8edeb
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7af2973f-81d3-4ad2-a75b-3caab0b41d8b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e1664dcf-5ef8-41ab-a80a-aac213b45be7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\3b9f39cd-fc8d-4553-bfbf-ab4db007bf30
C:\ProgramData\Microsoft\Windows\WER\Temp\81cc31fe-cdcb-436e-9299-131be37496d1
C:\ProgramData\Microsoft\Windows\WER\Temp\8f93b2a1-1778-40a5-8f6d-34897e3bf907
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\726512b9-0ed7-4ce0-b5f8-3ae8a71b1520
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c129dd55-e016-4636-b9db-f208e12e0701
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\e45c7199-9b00-4da4-a59f-0e06ad53f1fd
C:\ProgramData\Microsoft\Windows\WER\Temp\c9caf120-db05-48f0-ac78-3ac8025f9ff9
C:\ProgramData\Microsoft\Windows\WER\Temp\cdd8415b-2414-4e60-a75c-f0dc9a30436d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ecc8596d-fa68-4437-ab96-abce0e34c263
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\0bf5c4c9-15e4-42fc-aa68-e4bb504162d0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\25c1e0b7-8d9b-47e1-ba58-8723f9d3abb3
C:\ProgramData\Microsoft\Windows\WER\Temp\70e5ca7b-7833-44c0-a8d5-d9576f2ca929
C:\ProgramData\Microsoft\Windows\WER\Temp\045dca67-5d19-4f16-bfd3-a51286c9aaf1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0e6c828e-d8be-4f9a-8ab5-ed2aa38b2a83
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\da1c20e0-67c4-4595-828c-ca900ba7655f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\da4d4d95-b31f-4873-9091-3f46c0617747
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d
C:\ProgramData\Microsoft\Windows\WER\Temp\f39ca442-5119-43f6-ac8a-c86e8f023914
C:\ProgramData\Microsoft\Windows\WER\Temp\bb7487cf-d2ef-4540-a992-7cc644d76f64
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\106480e3-b2da-43a7-a090-631eda6f39fb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c56e1ef8-6d56-4df7-851b-0cedc481937d
C:\ProgramData\Microsoft\Windows\WER\Temp\WER3265.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WER3265.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\4f68f3b9-de4d-4432-8bdf-f8365be59c1d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\*
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0508.1664.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0508.1664.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0510.3252.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0510.3252.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0512.892.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0512.892.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\51468a7c-a276-4bc0-866a-2e9dfbb026fb
C:\ProgramData\Microsoft\Windows\WER\Temp\4b4dd790-7f65-4f52-a00f-5afbef3a1161
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\9dd17237-61c3-4220-8ae4-9872a3a4b17c
C:\ProgramData\Microsoft\Windows\WER\Temp\9c92873f-5713-4ee6-a4d0-20b6340e9ce5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a04ed82e-d522-4564-8d7e-b6f0f653cdf1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f957e2d8-b859-4e6f-bb79-09238067cc2a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\01c9d45e-dceb-4b62-abe3-bc029c8ee07c
C:\ProgramData\Microsoft\Windows\WER\Temp\c9dc093c-1170-47fd-b8d5-c6d9a29728ef
C:\ProgramData\Microsoft\Windows\WER\Temp\15756e82-80c3-4379-bc02-3caf5258a060
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0f0563b7-405b-41da-a0ef-96d2aa11e060
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\be155704-8ede-42d5-bf5a-1be56e9db615
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\a8a5a85a-c337-4a6f-b13f-a0989b92d7b3
C:\ProgramData\Microsoft\Windows\WER\Temp\bcab629a-7d8d-4d76-9425-be98fafe97d4
C:\ProgramData\Microsoft\Windows\WER\Temp\07e42f62-9897-40cc-bf49-57d78795e75b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ac9be809-7484-4f87-82ab-ea8aa505e3eb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\445f71fc-b5e4-429b-ba4f-1dcede0a3138
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\a3c77351-05ea-4754-9bd5-8786a7d968b4
C:\ProgramData\Microsoft\Windows\WER\Temp\e67a303a-38b5-4e1e-a16b-7f9ef317f528
C:\ProgramData\Microsoft\Windows\WER\Temp\0600e23b-4498-4813-b394-9cbe6177f222
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\87962ff2-9dca-473f-b207-e8e44f8c81f0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05a88254-533b-48ea-92af-040dc3fa2839
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\370d843f-15fc-400e-ad13-0f31ead79e50
C:\ProgramData\Microsoft\Windows\WER\Temp\2a13ee86-efab-4042-877b-070fc2c38734
C:\ProgramData\Microsoft\Windows\WER\Temp\1e836981-1914-464e-b50a-5923de244eee
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\daadee0c-53f5-44f1-9543-8898d95ec38e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\1bc923ca-70b4-497b-8a3b-1fd812bc1cce
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\0adb164c-ec0e-4890-baa1-af54981e2781
C:\ProgramData\Microsoft\Windows\WER\Temp\1c49884b-8275-40c4-8096-3ce3eaae6a6a
C:\ProgramData\Microsoft\Windows\WER\Temp\546f874e-2bb0-41f6-b080-6dfe656275f2
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5e15e49f-149d-4254-a763-15907fbae3e8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9208dbea-b3fe-4667-b4fa-4af80e6464c7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\241f112f-6882-4a48-b309-53b2043f14d9
C:\ProgramData\Microsoft\Windows\WER\Temp\c636d7cc-71c3-4a42-bff0-6ff39cae1ec3
C:\ProgramData\Microsoft\Windows\WER\Temp\2340a3b1-3191-4f31-afde-4cd6c4310722
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5781b8f8-0431-4ae3-a680-bf2bfd4c40ac
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\95b7e9de-cfe8-4ff3-b1dc-cc382d11bf2f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\4da2cb19-6a27-40cd-bf2a-e08461ac4c31
C:\ProgramData\Microsoft\Windows\WER\Temp\1baaf939-1126-4eb6-bb0e-30e7cace13ab
C:\ProgramData\Microsoft\Windows\WER\Temp\88523a61-f63a-4801-ae4a-29666ac887c9
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a2ebd2ef-afa6-4cfb-83d4-a0cb702fcf4c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ea14f7ed-0dbb-4ce3-8ef7-7fc5ea4fdee8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\7b1106f8-1cae-4d8e-8b3d-99dcd74aeac3
C:\ProgramData\Microsoft\Windows\WER\Temp\fdb5f8ec-13c0-48df-9827-9b2dc5304db9
C:\ProgramData\Microsoft\Windows\WER\Temp\b0b5c0c6-25ee-4d08-bdc6-1b014a072177
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f3f080c4-7281-4752-96a4-9380eebfa31f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9cf55252-972e-436a-8f62-a253d2060037
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\94d92042-c28b-4f57-81fd-3ec503533f84
C:\ProgramData\Microsoft\Windows\WER\Temp\43bd05a1-81de-4240-886c-c8090fbeaf77
C:\ProgramData\Microsoft\Windows\WER\Temp\9fd445b8-478d-4786-95b6-466024787987
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f43dbce8-9d30-4423-8a15-9b01f58f8b41
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\7334f52f-6b9b-4d70-abd4-560e1d3af6ea
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\a9a62d76-43ac-4362-a982-e1b0f2a9edc4
C:\ProgramData\Microsoft\Windows\WER\Temp\edc366b0-7f3f-4e85-9989-a2387c4efc8f
C:\ProgramData\Microsoft\Windows\WER\Temp\87d8ebac-a627-4831-80c2-6dda76c4bc41
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\28055e7a-7df3-4298-ab84-2254cfec5ed3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\06b87688-7dea-439b-886e-996ba4fccd45
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\e9c8e164-63c3-4374-b189-a80169fe4fff
C:\ProgramData\Microsoft\Windows\WER\Temp\668320d4-3540-4db0-84c6-a513fe9fe441
C:\ProgramData\Microsoft\Windows\WER\Temp\eeb9fbfc-188f-463e-b557-925fedbd13fd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c2efd3f0-d9a7-4abf-85d9-31e6ff730a0c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\fb918cf6-4710-42de-b519-5fc14acb2600
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\d55dedff-26f9-47d4-a515-f33705f3adf1
C:\ProgramData\Microsoft\Windows\WER\Temp\3d10f273-4c8b-4ba3-8ee0-d235d358d8e0
C:\ProgramData\Microsoft\Windows\WER\Temp\9d955089-ce36-45f1-8650-dee9cf755fd0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b6ba9550-eab4-4707-93a2-4b213ebf15c2
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\abdb75e7-b23a-4e41-a6dd-af226aba040c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\957cf033-b4a1-4a66-911c-d71670c27bd2
C:\ProgramData\Microsoft\Windows\WER\Temp\c484ce92-fd9e-4e8f-a828-89f1d3be8755
C:\ProgramData\Microsoft\Windows\WER\Temp\cb0fba60-b670-4b46-8bf6-3c61ee8beb6e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\65f37e24-6cf4-49ea-9816-b11399970f00
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e1b14911-d475-4377-9a37-1637fdf912d9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\f357da1d-2bd7-4442-a4a3-0deeeace0dd0
C:\ProgramData\Microsoft\Windows\WER\Temp\56c60c2b-d476-4e30-9b16-8c80d588c2de
C:\ProgramData\Microsoft\Windows\WER\Temp\b4440311-703c-43fe-a562-5a162e77b425
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b56b78f7-2fca-470e-86ca-18a9adc84a0c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e78e50f6-dc4a-476d-9d03-c04925b58afa
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\8b0d5d61-3570-4e47-8d74-165c95ab18d0
C:\ProgramData\Microsoft\Windows\WER\Temp\7751f72a-19ca-4087-8996-c824ffdd13db
C:\ProgramData\Microsoft\Windows\WER\Temp\73ba985f-623c-4bea-97cc-537e322b7515
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b2f3272b-025f-4296-9c31-73eab8bab85d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05321d5d-b381-4b3d-bc1e-c96d32296448
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\f0d7bce7-14f8-4b5c-8f46-e9c585672e0f
C:\ProgramData\Microsoft\Windows\WER\Temp\900df87c-fa2b-49df-bca0-e5368cade331
C:\ProgramData\Microsoft\Windows\WER\Temp\f300c8e3-e7c6-4e34-8fd3-8b4d2f7ffaf6
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4620dd07-129e-486f-a9ec-1383f61fea39
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68108104-8f30-43a4-9661-022703390c18
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\a910f34d-6aa7-4946-9df9-1b1de31466e9
C:\ProgramData\Microsoft\Windows\WER\Temp\c32dd6ca-639b-41d5-bb4f-cdaa178228e1
C:\ProgramData\Microsoft\Windows\WER\Temp\d731ede5-dc04-4747-8e4e-f705afbab3ba
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\07b59e26-3a75-421a-852d-b1eb2a3da12d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\49a32c98-b309-40e9-a120-e92f13107af3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\bf71e0f8-5d45-4461-8ad0-e6de0f3f9b45
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663
C:\ProgramData\Microsoft\Windows\WER\Temp\8d65c2f4-ad46-412c-a6e0-c162688ead49
C:\ProgramData\Microsoft\Windows\WER\Temp\27f595f4-e2ec-4fae-94ea-e4cc3ef9df82
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\584e44bc-4699-4ab2-b9e2-116c90d75326
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\be7e0f23-ead6-471d-b50d-3738fdca7a28
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8A42.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8A42.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\efdd73a0-f274-4283-b9d2-8096cda0e165
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\*
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0517.5816.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0517.5816.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\491fded7-0457-40e8-b5de-66a8c2a59e5c
C:\ProgramData\Microsoft\Windows\WER\Temp\ff469d57-07be-4cb1-966e-854f8b2311b0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\6923aa03-31e9-4e06-bc2a-94cefa3a4716
C:\ProgramData\Microsoft\Windows\WER\Temp\69c2b1f7-7766-450b-bd78-1384570384db
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c9c36f3f-3fb4-4218-957a-64936cbd8fd9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f3c2d478-ea16-4c1f-8ca5-a1cbe24f9971
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\410b1d84-5334-4bcb-a8fb-0c298013c927
C:\ProgramData\Microsoft\Windows\WER\Temp\402e6fef-8fd1-4527-8cd5-ed898bf4df5b
C:\ProgramData\Microsoft\Windows\WER\Temp\69f118a9-7946-4bc6-87c1-416f85eb8c2d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3bbe91ea-cf46-4255-81da-f71c84e9ef8e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d078e966-826d-44c2-b572-7e8837a78847
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\c3f7c3b9-44d0-4fb1-8422-84e547ec376f
C:\ProgramData\Microsoft\Windows\WER\Temp\e419de1e-3aec-4a2f-9819-354e0ce3e097
C:\ProgramData\Microsoft\Windows\WER\Temp\7e7363b5-3176-4f91-a521-0357ceb05a06
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3ecdeb83-4372-40f8-ab1f-c1ebbc5c5c9b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\42efda90-fadf-4d5b-9f05-584d0c07fa42
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\8687facc-5d13-4e1b-a784-d850679efdbf
C:\ProgramData\Microsoft\Windows\WER\Temp\f2df8c86-5139-4a24-b878-c6d0634b287c
C:\ProgramData\Microsoft\Windows\WER\Temp\4fd59eaf-a9cf-41f1-9ff3-37cbdcaff9b7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\97f46561-f945-4949-87aa-ed675c0edf13
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c0eeddf3-78d0-4461-bdfe-65ec6155fe1c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\027ba704-c64c-4e8a-93a7-e28041ee63b9
C:\ProgramData\Microsoft\Windows\WER\Temp\894974b8-5bb9-4536-b164-a13c789d601b
C:\ProgramData\Microsoft\Windows\WER\Temp\be744043-f2d0-4fe2-8113-7efcc07c0530
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\70923230-6964-4d74-8e4b-922fa0adec32
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d0da8b6c-0a33-4870-b80d-f2b80b0c770f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\7cb441cd-51f1-4767-b0a5-ee1397a98a71
C:\ProgramData\Microsoft\Windows\WER\Temp\55d1752e-8bab-4b77-9b23-37b0db748594
C:\ProgramData\Microsoft\Windows\WER\Temp\31bea3f4-6202-401c-ba19-3ea4b3c3be58
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\09742ad2-68cf-4d3f-9ea9-8e610719efb1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b15e6200-ced2-4012-9a50-bebe3374585e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\6893a833-130e-4807-879c-0a3f7ab95337
C:\ProgramData\Microsoft\Windows\WER\Temp\5f748661-032a-455e-82d7-21cee6a8eaf3
C:\ProgramData\Microsoft\Windows\WER\Temp\91898f8d-188d-40c6-a1cd-d14a6e2030e0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d0a8ca86-1126-4d21-b351-a7f067ca2c1a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\3749640e-736f-4f9a-b0b4-ba29d23e1912
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\ac2fea72-74c6-45a7-a5ec-9fbece621c5b
C:\ProgramData\Microsoft\Windows\WER\Temp\f22867d1-8a92-445a-a79f-fe183e735a59
C:\ProgramData\Microsoft\Windows\WER\Temp\8d87703c-cd97-4333-b94b-44e66b098e0d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eba1e0f2-6404-4166-9f97-fb80501e6edb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bef973e8-fc3b-4f05-af71-f3130fe7716b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\5740727d-f219-4d34-9b15-1239b2a96d41
C:\ProgramData\Microsoft\Windows\WER\Temp\8d6c9ee8-2c22-4401-81bd-a44b8bc66cd5
C:\ProgramData\Microsoft\Windows\WER\Temp\793ef85f-c6ac-474b-9f2a-c79e80d94eac
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\15fe7b03-7c48-469a-b486-955b4d187cf2
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\211db599-1be9-49a6-8bd8-2aa98db5281a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\c791ab40-1a7f-400a-bdd4-06de3738dacb
C:\ProgramData\Microsoft\Windows\WER\Temp\13524239-a7a6-483f-b2ec-adf763b69654
C:\ProgramData\Microsoft\Windows\WER\Temp\62cd03da-9156-48e1-b11c-45d2a90dc2fd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\de39e7d6-174d-45ba-89be-5c07ff35de6c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b12284ff-4aa3-4be1-b99e-443c9c181220
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\68919fd5-c770-46e5-8c44-f59bc3aa65e0
C:\ProgramData\Microsoft\Windows\WER\Temp\6ecbac61-3985-4174-8503-f1b4e8624cf0
C:\ProgramData\Microsoft\Windows\WER\Temp\7381eafc-7b14-43db-982f-523b9ccac0a5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7532f109-5ae5-493c-98b1-d711d48c6a71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\80d754b6-c249-441c-8d57-c9f95bf081eb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\26c42387-c59d-4bee-bafe-a16ede00ec78
C:\ProgramData\Microsoft\Windows\WER\Temp\9ebe0284-d000-4feb-92f9-13973eea9a76
C:\ProgramData\Microsoft\Windows\WER\Temp\2eba53f4-2e8c-4333-adfd-b97d6b167178
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\e201685e-5e7e-421a-a3e8-2b13f30b314d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dba07245-3ad4-479d-a998-f97de6f0bc93
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\bac7cd59-2f14-4f09-87e2-f634c3515624
C:\ProgramData\Microsoft\Windows\WER\Temp\cb49373b-b110-4c72-becf-1f702c1a335e
C:\ProgramData\Microsoft\Windows\WER\Temp\af6b4ed7-bfd5-4755-81b9-fa08a1672dc5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\8384bede-cca5-468d-8ca8-8ad3089a7f9f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f0aae3fc-a0c3-45fb-9839-7d04798be49a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\ff433234-258c-4716-8a0b-b41c7176bed7
C:\ProgramData\Microsoft\Windows\WER\Temp\d2dbb63f-2ae4-449f-989e-41463c27c4c6
C:\ProgramData\Microsoft\Windows\WER\Temp\ba35d31f-4ddc-4ea3-ac09-442147746528
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a307c884-a42d-4c1f-bb3a-6196e8baaf4a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\078f9d72-35d9-4f96-9f10-d58376d3e1a6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\3007689b-83b4-4874-8885-afb2f83d33be
C:\ProgramData\Microsoft\Windows\WER\Temp\676f4c45-6ec7-4b83-a1bb-3b7c087ad807
C:\ProgramData\Microsoft\Windows\WER\Temp\7de6801e-edcf-4d1f-adc4-d402175cfeca
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\43a6b7b6-36ef-40a6-9d7d-b727009ffe95
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f3660e51-1b15-43e1-bafd-a155dc1cf4de
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\46e3373a-236a-4493-a944-944b8b993c7a
C:\ProgramData\Microsoft\Windows\WER\Temp\f871efa3-c023-4bf7-997b-2a4827220ae2
C:\ProgramData\Microsoft\Windows\WER\Temp\d10cd99e-6967-480e-a341-5835cbb539ef
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\702ce421-1b47-4d04-ad63-612f0c0568ea
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\253b2353-9371-4aba-99b5-5424ef201c22
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\f8a586f4-bfb5-4537-8816-a93ecc73bfda
C:\ProgramData\Microsoft\Windows\WER\Temp\d233b792-f96a-4364-9978-602930e37178
C:\ProgramData\Microsoft\Windows\WER\Temp\4f8843dd-7920-48e5-b934-7edc3fb4c674
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4e1e275b-4637-4652-bcde-d72bfc988efd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\cd3ea072-6093-4554-8d36-d8ad357a07c7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\cd6f9d9f-c8c5-4dc8-8629-a52aef1e9728
C:\ProgramData\Microsoft\Windows\WER\Temp\2b84170f-34f7-46e8-be89-15335df21efa
C:\ProgramData\Microsoft\Windows\WER\Temp\ba5494ea-7c2c-4c22-9309-c39102fa138a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0ca8944b-1bc8-48c8-adee-63d3c459a881
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\015eaab3-28dd-451b-85a5-22830424cb6d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\057cc802-1721-4177-ae4a-7364380655c6
C:\ProgramData\Microsoft\Windows\WER\Temp\b3394895-5d6e-454c-9d8c-e077abe7b262
C:\ProgramData\Microsoft\Windows\WER\Temp\70f0fd6d-76d8-407f-a95b-b79ab7f3ec38
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\79385e33-e761-4b0c-8dfa-872339718425
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f791bce1-34eb-4c6c-b346-a7686404820d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\d8f83d2c-dcb9-45c1-a4a8-e006bad00dd7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6
C:\ProgramData\Microsoft\Windows\WER\Temp\5cd6c16e-35b9-4c36-b773-86781872c900
C:\ProgramData\Microsoft\Windows\WER\Temp\0986806b-c004-4f39-a6cd-4316f196ecbd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eec0b63c-0110-4968-8611-69e63e1d1282
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b53995b0-6d9c-475f-89f5-4c75af482ba0
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E3.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E3.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\4e4660d9-8571-4e32-818f-a7b14a3315b3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\*
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0520.3960.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0520.3960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\AppVStreamingUX.exe.log
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\WMIDataDevice
\??\PIPE\lsarpc
\??\PIPE\srvsvc
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.4348.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.4348.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.5572.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.5572.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0501.2404.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0501.2404.1.odl
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.68d119da-bff5-4c82-90b2-20412e3c58c0.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.393cebe3-3893-4dcf-856e-3ecf1bac1533.1.etl
C:\ProgramData\USOPrivate\UpdateStore\store.db
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
C:\Windows\System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
C:\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start
C:\ProgramData\Microsoft\Windows\WER\Temp
C:\ProgramData\Microsoft\Windows\WER\Temp\d0c042b0-38f4-4b5a-aad9-ff5509897843
C:\ProgramData\Microsoft\Windows\WER\ReportQueue
C:\ProgramData\Microsoft\Windows\WER\Temp\b423e010-2c9e-47d1-950e-2dc78c12b63d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive
C:\ProgramData\Microsoft\Windows\WER\Temp\8dd117af-7d7e-41f8-b9b6-5f6a643b22bf
C:\ProgramData\Microsoft\Windows\WER\Temp\0186004d-3553-428a-9eea-c6531ed7ba12
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ff1b36da-37bc-410d-8884-1376ad68a582
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\db8f70c8-b41f-4e0d-a271-59e5ad205fed
\Device\RasAcd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\b2cc3361-2ce3-4e27-949c-3d5500ddab20
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\997bf877-1922-465b-90a4-8de18eb716f9
C:\ProgramData\Microsoft\Windows\WER\Temp\02a25c0c-fe10-451a-b357-e7c6671ff1cc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7bffd328-5273-4b7b-b871-ea2c1ba72c3a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d9829c04-9e58-45a1-a7f8-5a572193828e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\e4ca3fb7-5362-4e7e-ad9b-db828c681554
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\630b8138-e278-4e2e-8e4d-ac76f5ade483
C:\ProgramData\Microsoft\Windows\WER\Temp\8e153121-870c-450f-9090-dc4d60fe957c
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\1da7f6ba-d4a0-4270-8315-93b6ac4bc48c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bedefa44-4ba7-4993-8cb9-fe9944781f91
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\60c0b3fb-ac79-4575-94dd-0067d3391844
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\799b9c7a-a11f-423c-8bb2-fec72ebe80ae
C:\ProgramData\Microsoft\Windows\WER\Temp\79c08b7f-bc6c-4be2-aa12-00fbecb319dc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\1020d2cc-1978-4f64-baef-f7236021be6c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\54ba35cc-f16d-444d-8fd3-2b0e6b16c146
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\188f9b19-2d05-4f15-97f4-0001aeaa8c4f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\9772b2de-5c44-4780-bce3-6483f75bb94e
C:\ProgramData\Microsoft\Windows\WER\Temp\235e4f3e-0f3c-4ee5-8659-96ad1e1aa731
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\33a7cb3d-9946-49b5-85d1-e88a68e6f316
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\5232059e-34c5-4dc1-a34a-92cc0376ed1e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\1f4f310b-3c4a-42f0-a105-eaaa40acc318
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\29e8d56a-bee5-4530-9430-cea35ae57c50
C:\ProgramData\Microsoft\Windows\WER\Temp\7033c0c3-de1a-4278-857e-405ecc26feb7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d8c96e67-00d4-4fc2-844e-b6e40c87d386
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ec712b8c-17f7-48a1-aa77-41876ba20d46
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\f86c4eda-5e88-4b32-857b-1d74134cfd06
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\bb282bc0-fb12-4bdd-a048-38969e501e76
C:\ProgramData\Microsoft\Windows\WER\Temp\658fab08-1a0a-4307-a1bb-284e88559830
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0b7f186b-7c6a-401d-b6d3-50aa5d6dab4e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\3061c28e-0896-4fa1-ba1a-94f0b45f7c19
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\e0abbcec-bc01-43aa-b7ef-fd4344e779a5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\5dcad482-0ebb-4b15-ba25-950858342cc0
C:\ProgramData\Microsoft\Windows\WER\Temp\7bb4bb4d-4d7c-4d94-a592-4ad094e2d6dc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\96350453-c43b-4d05-9b57-2ab7b3e72065
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dedf0e6b-4a87-4a45-bae8-f692e6b1baad
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\df14df72-d545-4a4a-acbe-6b74d2d01f54
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\61ad3319-a06f-4f05-98b4-3669e2983ef7
C:\ProgramData\Microsoft\Windows\WER\Temp\df64c193-124b-4e0e-a303-f0dfbb3da020
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\296831ef-45a9-4e4d-8426-9a09557eafc9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\332838e9-94af-4a22-a21c-4ef9ca724326
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\c674d19d-3789-4357-a4aa-3719124b06a8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\834ca866-817c-448e-bbcb-7d4cb7945f87
C:\ProgramData\Microsoft\Windows\WER\Temp\987d5342-d538-4b25-a3c2-8c9be4937d12
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3b6101c3-fa2d-41c2-a778-45e41601fff6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\8c31bdc2-44f3-4f14-886d-07795f73a1c8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\d56d560d-7bcc-48c5-96f3-4b4199c3c1a4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\371e96b5-65f8-4ca6-a0b0-335cd869e6df
C:\ProgramData\Microsoft\Windows\WER\Temp\f59225f2-9be6-40bf-a9a8-dcbe9214c007
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3fd42f22-4e32-4b81-b0ac-f4833d189a93
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\8ce7e2c7-d010-4b5e-bf34-0f1d7f542a6a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\5685eaff-751c-44b0-ba79-2d18bae1c6c1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\98434589-ba1e-402e-b9c1-893b21d54a94
C:\ProgramData\Microsoft\Windows\WER\Temp\cf2a2443-f02d-4e11-a2d2-2371cb2eff94
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eb3fd813-e858-483f-a497-661f16945312
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ec14c11b-1c18-4109-9449-9d0c751a0f8e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\b3da6680-2ee3-4a61-af0e-72a976128b6e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\974df4e6-6ebf-4d97-9edc-ac90820157f7
C:\ProgramData\Microsoft\Windows\WER\Temp\13296fca-6b57-4d23-9618-a903533b2861
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\709dfe0e-9182-4125-bb3a-70cb74ab3543
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\840c60a2-ff36-4c11-b158-d88348ae6f7d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\b7639ed6-8813-4ef3-9e47-06ff757c3f25
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\9fbe51ea-6c66-4ab2-a53b-8dbf2d6e1cfb
C:\ProgramData\Microsoft\Windows\WER\Temp\5bbe9dab-d894-4165-844c-5537bfdf1142
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\bb6b0731-aad6-4f83-a571-6b15b8b796ae
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\1f980d14-8a01-4fc4-9a16-dd3087b11c0d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\9738ac6a-4ce3-4698-8d86-d2eca2faffd5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\Report.wer
C:\ProgramData\Microsoft\Windows\WER\Temp\ef164dd8-3374-4157-8737-dc8c765c445b
C:\ProgramData\Microsoft\Windows\WER\Temp\c4e7197c-aa2c-4ac3-86d6-459ae487d0a8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f7e54d40-5302-4231-b292-0f7be8d52402
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\4c6e827d-d514-4569-92a0-4ce010e622b8
C:\ProgramData\Microsoft\Windows\WER\Temp\WERECD8.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\20d18e0e-f8c5-4a96-a79b-fb9105878f82
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\Report.wer
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0502.4268.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0502.4268.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\1c563e12-ec6d-42d5-86ff-3801735a11da
C:\ProgramData\Microsoft\Windows\WER\Temp\79a60599-13f6-4dbc-91c9-97adb283cca3
C:\ProgramData\Microsoft\Windows\WER\Temp\dfc48020-a266-4eba-baf0-befae98327a0
C:\ProgramData\Microsoft\Windows\WER\Temp\cbb89de6-348a-440f-9abd-f34956545785
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\df2b60a2-8d95-418e-8271-dd1e65e79831
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\a3bce7b2-7d3c-46bb-8f8d-f0fe2262075e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\d33c11c4-4d16-41b2-a8f1-0b9ea17a8e34
C:\ProgramData\Microsoft\Windows\WER\Temp\49e6b90b-492a-4659-9f11-52f1d2c91f8e
C:\ProgramData\Microsoft\Windows\WER\Temp\1c761f68-139d-4bae-813e-eab93ac3f0de
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\fe383545-41d5-4de3-bde2-da5e2571d113
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bd42fc51-ed7c-46f8-a6c2-5bd26877df55
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\4063ce41-0c16-49f9-b291-37486474b39e
C:\ProgramData\Microsoft\Windows\WER\Temp\ae91f200-2168-473c-8177-1961e1e6bd0b
C:\ProgramData\Microsoft\Windows\WER\Temp\499417f7-e428-4645-8633-048bdab03d4b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b3737861-16a2-4f57-a6a5-c88c617996cd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6881b67d-f2bb-4d83-aaca-85b842be8a09
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\b2fea227-83d0-4a84-b109-abbfa6a7aea9
C:\ProgramData\Microsoft\Windows\WER\Temp\d5333e9f-c97c-4444-877d-2aac68495a13
C:\ProgramData\Microsoft\Windows\WER\Temp\88531343-1c7a-4f5f-b7f3-87bf04b576fb
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5fbb2fb1-48b3-422e-8740-82e5e063a7d1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\04a574de-2757-4415-beb6-052e25212eb4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\0c8f408c-994e-4d64-9ac3-4283f9d255ee
C:\ProgramData\Microsoft\Windows\WER\Temp\da542b65-3494-4ca6-8264-db527d6d6588
C:\ProgramData\Microsoft\Windows\WER\Temp\18a3e60e-efdc-4d7e-97c0-b5bb3303a515
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\049754ea-f5cb-4990-bc1d-b31c6fea3d37
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c626d74a-7d54-4d76-bc4a-4dfb2fd90cca
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\9fee5fe5-3dc5-4138-a1fc-6c571d0cb571
C:\ProgramData\Microsoft\Windows\WER\Temp\cd142731-6816-4793-8f69-03650d49128e
C:\ProgramData\Microsoft\Windows\WER\Temp\b59b9cc8-38fa-48e7-9fbc-fea05d712d06
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7991e160-a8e5-45f1-8b64-7b4c59e218f5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dde0f4cb-65e0-49d2-92a3-472c63f18460
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\fc418a81-0cd0-45aa-aaf2-fa16fe7e8d38
C:\ProgramData\Microsoft\Windows\WER\Temp\cef02a8d-8d42-4bc1-b149-0c4fece31534
C:\ProgramData\Microsoft\Windows\WER\Temp\fe5866c8-f5f0-4fb0-b5bd-9e68bcf13ec0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\e013b255-035d-4b7b-b715-06e17320659f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6b5bade2-d50f-42ee-906a-27bfd007ccc4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\4f29983f-51b9-486c-8635-25c3c1d86644
C:\ProgramData\Microsoft\Windows\WER\Temp\a4274373-f044-4654-b33e-a9e6a5f3cdad
C:\ProgramData\Microsoft\Windows\WER\Temp\6fa5d070-9698-4819-b4ce-19f290256f4b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b5a81a6a-08bc-42d9-b98b-cf94529139e6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9514c1cc-57a5-4efe-905d-bf07a77e3ae8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\290cf5de-23ff-4492-b738-59963f06600d
C:\ProgramData\Microsoft\Windows\WER\Temp\0a7238e0-17ec-4454-80cc-75f3172577d4
C:\ProgramData\Microsoft\Windows\WER\Temp\5ed93650-168f-4ce1-87e0-debdd5584673
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a952c684-00aa-43fe-a46b-02b86ee599f9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\224486df-3fad-4229-b56e-c4bd9114eb86
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\848c9b3c-fd48-44fe-9a63-b2b391a7c6c1
C:\ProgramData\Microsoft\Windows\WER\Temp\7f067b72-7371-4ff0-b81c-57357491b50b
C:\ProgramData\Microsoft\Windows\WER\Temp\3b65d34e-c630-4f66-ad68-9bd102962d72
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\01d61436-874f-430c-8a9f-8e048746e802
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\92c3f2f7-ce75-45e5-95b4-6e8e05f9223e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\c86912b7-7e19-409d-ac00-cb0ba9754f66
C:\ProgramData\Microsoft\Windows\WER\Temp\0f2aa62f-ad8b-4390-a149-cec419174a60
C:\ProgramData\Microsoft\Windows\WER\Temp\3f05a21a-7da5-46d6-b222-0d56881f4788
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f337b17a-bef3-4e7b-99bb-bdd81e4926b5
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68edf295-67b1-45dd-8cf8-6d27752605ba
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\f9f6e365-c368-4c49-b4ae-1f4928a55898
C:\ProgramData\Microsoft\Windows\WER\Temp\d2c306cb-b6e9-402d-a5af-2b860ca81c48
C:\ProgramData\Microsoft\Windows\WER\Temp\27c0da1e-c452-4c75-a75a-f2891bad5974
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a06962d5-8871-4f55-82cc-e221d2ed8feb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c46bfd85-7f11-4c6e-9129-b138f23002cb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\28ee5cc1-36e8-4904-9f7a-8afa4f45a1de
C:\ProgramData\Microsoft\Windows\WER\Temp\5e101db7-031c-449e-8416-05fae7216ffb
C:\ProgramData\Microsoft\Windows\WER\Temp\b70cf222-5ef0-43ce-8815-e22bcfd2af9d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\623c0183-12b1-45ec-9c53-0c76badd3002
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\326fe338-f36a-4b76-99bc-0fe9ed17e8df
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\588fd0d4-a893-4113-8e0e-e965910112e3
C:\ProgramData\Microsoft\Windows\WER\Temp\2106a3d8-3cc6-443e-a4ab-f12e1ade3494
C:\ProgramData\Microsoft\Windows\WER\Temp\f125e995-daca-4211-acf6-3b2f891ebece
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\11ee2349-aa23-4cb9-a1bd-33ba9af0b229
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\570faed6-7d9e-41d2-9714-96ef16578173
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\41e7018d-a2f5-48ed-955a-82297074ce61
C:\ProgramData\Microsoft\Windows\WER\Temp\8dee62f6-011b-47f7-a59c-a4c838a07ed0
C:\ProgramData\Microsoft\Windows\WER\Temp\1a5bacf4-dac9-432d-b3b0-d4f9975cfa75
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c486852b-648f-451c-ae6d-f603495e4a9d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\01396a45-d005-4b47-9ead-a99afe772388
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\090ed61f-a8a3-4b21-8e6e-8cd36a7d27c4
C:\ProgramData\Microsoft\Windows\WER\Temp\14c0c761-9574-46e2-a663-ad6ebb128054
C:\ProgramData\Microsoft\Windows\WER\Temp\e4b845a0-1cb7-43a7-a737-595ce3047dbc
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\cb92b5eb-6a92-4e68-8efd-41fccbf34b71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d5d3395b-c9e3-452d-ab08-ee091049839e
C:\ProgramData\Microsoft\Windows\WER\Temp\WER97AF.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\a3274d55-4368-47cf-aebb-02e7a9022ec4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\Report.wer
C:\ProgramData\USOShared\Logs\System\MoUsoCoreWorker.39eaa4a7-46b1-4faa-afdd-b1c2d29a7c06.1.etl
C:\ProgramData\USOShared\Logs\System\WuProvider.7b7166e7-7816-4a77-93db-96e2e7434528.1.etl
C:\ProgramData\Microsoft\Windows\WER\Temp\4bdea17c-05aa-4b78-b554-e60965251881
C:\ProgramData\Microsoft\Windows\WER\Temp\5e9659be-a899-4d09-9899-556fcc7bb336
C:\ProgramData\Microsoft\Windows\WER\Temp\e476da4d-366f-464a-b282-8eef56cd1f4d
C:\ProgramData\Microsoft\Windows\WER\Temp\907011b8-143c-4ba9-883b-554e23191314
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\8b37443a-4599-488d-a051-fc4f30ef6793
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\867da76b-e61f-4a9b-98aa-fcc2bd78afc9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\a2848d2e-529f-44b5-ba08-603de906e7e5
C:\ProgramData\Microsoft\Windows\WER\Temp\34762a1e-5cba-41eb-a6c3-7e680e6a9ab8
C:\ProgramData\Microsoft\Windows\WER\Temp\0b61cc43-0f6e-434f-ac37-c9539d753c02
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a5911ecd-0f82-4b7d-b8cb-786abcc6cbd3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e3aa2567-f4c5-454d-b00d-023bdef9f016
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\fc1836ad-9189-4170-9bd4-f59a81a9a93c
C:\ProgramData\Microsoft\Windows\WER\Temp\bcd5d2f8-ce9b-4cfd-990f-971e3a1b4af8
C:\ProgramData\Microsoft\Windows\WER\Temp\883df162-2010-4308-a05f-3357673c1fe4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\75d9b23f-566f-4f0d-82d2-7bf26a61acbd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6b4b77f8-2d59-4b56-b9e0-675796c85fba
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\2d19a286-625e-40ad-b762-f3213406eeb8
C:\ProgramData\Microsoft\Windows\WER\Temp\6c0da923-7a54-49f1-af23-475092c57ff8
C:\ProgramData\Microsoft\Windows\WER\Temp\f2a9e756-b355-402f-a3b2-6268b586680d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\43fe3615-3706-4c4a-83e4-137992935ff4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\50c222fe-ef76-49b9-85dd-6136762b9562
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\65c8d52f-f23a-4757-af56-7cca8f43494f
C:\ProgramData\Microsoft\Windows\WER\Temp\53e47ccb-0432-4add-b719-ff412e28f7fc
C:\ProgramData\Microsoft\Windows\WER\Temp\5d81c4a3-80c5-46a7-9faf-bee7f9702864
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ccca33c5-1b2b-4c5c-ae70-2e2d1ca13332
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\5d6e38b5-aff8-45a4-9dab-19aaa3081ae3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\06bb1534-f019-4f61-b631-c2caaa6f87de
C:\ProgramData\Microsoft\Windows\WER\Temp\f37b10fe-007c-45f4-a02f-a8cd2eed3fc0
C:\ProgramData\Microsoft\Windows\WER\Temp\2b4359eb-37b0-4b90-9075-2e46bb662f7b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4eaed130-1615-42fb-b661-c478ec7c0303
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\640e8bac-076d-40c5-a525-a7e9e4a35370
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\38ff105b-c017-4525-aa4e-c57dccfedd45
C:\ProgramData\Microsoft\Windows\WER\Temp\69fbc069-f850-45d6-b025-91b793f0c08d
C:\ProgramData\Microsoft\Windows\WER\Temp\fdc0cbc6-e04d-4613-bdb9-cdcc28b7e2e1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\afb35a57-d0bf-4531-b8c3-f6d662effd59
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\7d7cfb51-5fec-42c1-a5f0-6f00b6980d51
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\e0dfad91-4455-4ef5-9b2f-2dfddd04688b
C:\ProgramData\Microsoft\Windows\WER\Temp\b5fdbebf-f34d-42ef-a955-ec8c8aa5c64e
C:\ProgramData\Microsoft\Windows\WER\Temp\a3b0067e-e0c2-4ed1-8563-bb3083ba544f
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\42667c2d-74cd-4666-b130-5da92c49984d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\cd611230-54ed-4cb8-8391-47cf2b577c13
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\714dc6a4-39b2-4c05-b689-c4fca56bab39
C:\ProgramData\Microsoft\Windows\WER\Temp\0bc88026-55e2-4d6e-8ec1-e9c54493eaa8
C:\ProgramData\Microsoft\Windows\WER\Temp\ead27d28-428d-432e-98f6-925adec24da4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a021a5e8-6f81-4435-8d20-341ea4f4460d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9a5dacb9-c864-44f1-b616-3a6efa2e9c87
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\b9d9de37-3503-4fad-94fe-397ecfd563e6
C:\ProgramData\Microsoft\Windows\WER\Temp\0f02d54e-e5da-4a20-8e4e-af61da5cf685
C:\ProgramData\Microsoft\Windows\WER\Temp\a3838019-f5a4-4a66-a541-db034b5c9dc4
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\65097c21-0f7d-4a07-a9a0-e81d83d09e3e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\6ee3ab76-768d-4120-8db2-833844b1041d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\be933dd8-953f-4e8b-b49c-2d6fb78e361c
C:\ProgramData\Microsoft\Windows\WER\Temp\a32cc7b1-f10b-4040-a611-0cec85b0051f
C:\ProgramData\Microsoft\Windows\WER\Temp\66e552d2-a62d-4e82-966f-8357c0fc11a1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\60388ba8-4179-4367-947b-e98c3b09e6b9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\22b1ee36-a90c-4fd4-8961-9fdd6050276a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\6e7fe297-8711-4959-9407-a5037b7e6130
C:\ProgramData\Microsoft\Windows\WER\Temp\eea95cf8-1b06-420f-a901-7ec5baf46720
C:\ProgramData\Microsoft\Windows\WER\Temp\7f5c2d86-0bd2-40f5-8b30-9cfc7df45c48
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\2b6699e0-c05a-4636-9b04-b727e38faaee
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68f4d547-ff44-4d7c-b61c-b0fdaf852993
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\656e75ad-7d95-4b6f-b5d8-b32a489c0973
C:\ProgramData\Microsoft\Windows\WER\Temp\4849680d-488b-4292-a7f5-1bd1e34df3fc
C:\ProgramData\Microsoft\Windows\WER\Temp\7f42e9e9-beee-4ffd-bd9e-aefcda2b6d2f
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\675891e9-e8a7-4eee-9397-e73e737e0614
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\29edbaf3-962a-4f62-a78d-ab5041e58e31
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\837e4638-84d1-4c64-a973-d9d195e6e624
C:\ProgramData\Microsoft\Windows\WER\Temp\5120a8ee-7d04-446c-b580-c1ceeaadba37
C:\ProgramData\Microsoft\Windows\WER\Temp\fb6adeb9-5f07-4828-a151-5eb150bb1748
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ae1dbe10-1029-4846-ae93-a9f32175c8bb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\fc5754ec-7d49-4506-b7c1-7ebb088c52c4
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\79fe4204-5331-4f1c-8eb5-4adbb267e416
C:\ProgramData\Microsoft\Windows\WER\Temp\b0ea7851-5b14-4633-b38c-3f4c3c68aad4
C:\ProgramData\Microsoft\Windows\WER\Temp\151ab792-f78c-4fdc-abe2-4d33425af15d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a34fe06f-bcdc-4221-84d4-a1ec75d1e6af
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e0d99e84-409a-44c9-b81e-3d6904f0eeb8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\a72d8ce6-2455-44ee-9126-e869ef68a320
C:\ProgramData\Microsoft\Windows\WER\Temp\2153c9d5-dd70-4460-9b06-f6efe910040b
C:\ProgramData\Microsoft\Windows\WER\Temp\d69a0a9b-25b7-4aab-884c-80eb518ee7f9
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\47b74653-7be9-4a1c-b335-39b25ebd349f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\0611bcda-512d-46f9-b27f-410b409fffe8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\8ce5e5d2-308a-4305-9de3-54f975bfae88
C:\ProgramData\Microsoft\Windows\WER\Temp\38464a3c-767a-455a-bbe0-7e1b63150c96
C:\ProgramData\Microsoft\Windows\WER\Temp\ec9999b8-c605-4731-9a63-fb6873e379e2
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\689ee52e-2cd0-4b37-ac8c-d9a6c79b78a8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ab7768dd-65ac-4381-ab29-26bbbbf01101
C:\ProgramData\Microsoft\Windows\WER\Temp\WERD0AC.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\3972ef54-4b4e-4b80-9533-60b982868b64
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\Report.wer
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0506.6148.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0506.6148.1.odl
C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\PIPE\wkssvc
\Device\Afd\Endpoint
\??\UNC\WORKGROUP*\MAILSLOT\NET\NETLOGON
C:\ProgramData\Microsoft\Windows\WER\Temp\1900ff9e-34e0-4405-b047-44543fa78afe
C:\ProgramData\Microsoft\Windows\WER\Temp\fb1a63a1-bfac-4d00-a94d-e7b8b8f8920a
C:\ProgramData\Microsoft\Windows\WER\Temp\f0b9230b-4ec2-4bf2-8f6e-46cd9ae32db9
C:\ProgramData\Microsoft\Windows\WER\Temp\78afe647-c42c-4fd8-88c4-a7fc386399e7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ae393f33-a2e1-4cd6-8144-ccdf675af042
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d6a65110-a339-469a-a957-d7d618237e44
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\62aa6660-4d56-4ace-af58-399a010a17ae
C:\ProgramData\Microsoft\Windows\WER\Temp\0c3e1cae-3de6-4e23-bc75-bf91b01b513a
C:\ProgramData\Microsoft\Windows\WER\Temp\3a6c035d-af73-4ed8-ba2d-547a0772f9ab
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d3dc6193-1ebd-4092-a313-1c6a72e55075
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\eaefaec1-5fab-4bd1-bd34-4744e3c2fa52
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\9e6735a3-37b0-4a8f-ac7f-844a29465a3d
C:\ProgramData\Microsoft\Windows\WER\Temp\26d93544-5e0f-49aa-91e6-6d96ebb96826
C:\ProgramData\Microsoft\Windows\WER\Temp\17a0115b-0324-4c4c-bf87-d5838170ff3e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\2450af5a-40ab-488a-a69f-6cfd99dd52ff
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bf28fc57-5b13-43a1-9f70-0834170c882f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\acd6f3bc-cdb2-4305-93b5-4ceae247595a
C:\ProgramData\Microsoft\Windows\WER\Temp\df882e15-65c7-4fc4-baf0-ba291f112797
C:\ProgramData\Microsoft\Windows\WER\Temp\d5cb514c-0c3a-42ae-bb72-cb6b23b076ea
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0ba4d858-5c83-4c2e-bd73-d58df0e4c07b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f6c6035e-8caa-486a-b16a-ee0bc07cc59e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\94134e2d-c03e-4fa7-8d1f-e6e0040dfad3
C:\ProgramData\Microsoft\Windows\WER\Temp\d72c5ba7-3826-4f0e-80ce-f071dd66192c
C:\ProgramData\Microsoft\Windows\WER\Temp\fd504180-4518-42ab-a498-1b15930cfa71
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\274dfc13-5bde-4596-a6b9-3e7e3d31de2a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\df4137ee-a511-4fde-b2e4-ac0a6f6d8f71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\160cee4f-e2b1-48f7-b484-f2f7a5f44c69
C:\ProgramData\Microsoft\Windows\WER\Temp\60b1bf96-5b93-4f5b-814b-1ef60a7dc9d2
C:\ProgramData\Microsoft\Windows\WER\Temp\9044bc85-469f-47d2-97f7-830b64ca09c7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a907682b-d394-4ada-ab45-fc663d571313
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68f99320-1a88-4862-bf47-e1771c5a4781
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\a9966c7d-40f1-499b-ad67-f641e91b09ff
C:\ProgramData\Microsoft\Windows\WER\Temp\82bf4197-0122-4985-a891-24bbb7708525
C:\ProgramData\Microsoft\Windows\WER\Temp\470e7e17-dc64-4ea3-97a0-0801c532ae09
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0f083210-d8a4-4a2a-be2e-be6703d91689
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bb8bf6f8-30cc-429f-a03f-ac14546eb97e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\7425c9f5-6f12-495a-b242-24a41c68c173
C:\ProgramData\Microsoft\Windows\WER\Temp\ec41a742-2d3e-478e-bf0a-43e86f97480f
C:\ProgramData\Microsoft\Windows\WER\Temp\f623e8c6-5349-406e-a6be-fd2cc8009b2e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\06edc4a9-23b9-4497-abeb-d624ce0c5dfe
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bd048943-4408-402c-86af-0f2667bfea03
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\f8346a71-8fbe-4a02-8c61-f106bd5e76c2
C:\ProgramData\Microsoft\Windows\WER\Temp\b222edb2-4f4b-478a-952c-539afe8f6244
C:\ProgramData\Microsoft\Windows\WER\Temp\0cf5cc33-41ad-4c5c-b16a-0c680592537a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\53948671-dfae-4e96-967b-7ce76453e72b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\81bf5976-4ced-4e6a-b290-5821e1c12089
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\dfb8f859-950f-4d96-9acc-d765d9c1ec14
C:\ProgramData\Microsoft\Windows\WER\Temp\cca00e07-d8fe-4a05-a3c5-fee5c0a2ecf7
C:\ProgramData\Microsoft\Windows\WER\Temp\24e9809f-c04c-45e7-8672-746bfcaa69c8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\abee175e-f733-4ae5-bfaf-56957088bdc3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f2d7e20e-dc8a-46e4-8009-c7828c933535
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\7ccd0660-21b0-4cd6-b6c0-4234501caeb4
C:\ProgramData\Microsoft\Windows\WER\Temp\304b9986-5316-43dd-82c4-ce02f327bd4d
C:\ProgramData\Microsoft\Windows\WER\Temp\bc35e9f6-72d1-46f4-b864-170c06ce66a8
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ac21b2a7-a2a2-49f3-9fb1-eeba65732720
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b8cb9b55-5608-4496-8d05-75c2f2bce1b6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\820f834b-0a28-4577-be6c-5eb1641c936c
C:\ProgramData\Microsoft\Windows\WER\Temp\23a79337-3f8a-4ec3-9f8b-334ef050acc6
C:\ProgramData\Microsoft\Windows\WER\Temp\7820d2b7-9495-43dd-93b2-3deb40b8925b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\408780dc-02c0-4a71-850b-e15d3255245b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\af25d725-1354-4dfa-82a5-9507d4cada30
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\4ef94a7f-1004-4760-91e4-1a6c1614d5fe
C:\ProgramData\Microsoft\Windows\WER\Temp\91103fbd-bbf9-4df2-872a-855988f493bd
C:\ProgramData\Microsoft\Windows\WER\Temp\ebbaf455-f994-449c-8a60-11abd1a31a4a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5ea30b2e-8d91-44e3-9bc0-5ce4fd6b4eda
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05afd737-9598-4f5d-a89c-88f7867ab80b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\f5361aa4-2b82-4315-a110-7e317951aa8a
C:\ProgramData\Microsoft\Windows\WER\Temp\585b0881-682b-469f-bc44-be3e1e9dbc2d
C:\ProgramData\Microsoft\Windows\WER\Temp\01970d51-54f4-4fcc-925d-4eb337c8edeb
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7af2973f-81d3-4ad2-a75b-3caab0b41d8b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e1664dcf-5ef8-41ab-a80a-aac213b45be7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\3b9f39cd-fc8d-4553-bfbf-ab4db007bf30
C:\ProgramData\Microsoft\Windows\WER\Temp\81cc31fe-cdcb-436e-9299-131be37496d1
C:\ProgramData\Microsoft\Windows\WER\Temp\8f93b2a1-1778-40a5-8f6d-34897e3bf907
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\726512b9-0ed7-4ce0-b5f8-3ae8a71b1520
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c129dd55-e016-4636-b9db-f208e12e0701
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\e45c7199-9b00-4da4-a59f-0e06ad53f1fd
C:\ProgramData\Microsoft\Windows\WER\Temp\c9caf120-db05-48f0-ac78-3ac8025f9ff9
C:\ProgramData\Microsoft\Windows\WER\Temp\cdd8415b-2414-4e60-a75c-f0dc9a30436d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ecc8596d-fa68-4437-ab96-abce0e34c263
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\0bf5c4c9-15e4-42fc-aa68-e4bb504162d0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\25c1e0b7-8d9b-47e1-ba58-8723f9d3abb3
C:\ProgramData\Microsoft\Windows\WER\Temp\70e5ca7b-7833-44c0-a8d5-d9576f2ca929
C:\ProgramData\Microsoft\Windows\WER\Temp\045dca67-5d19-4f16-bfd3-a51286c9aaf1
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0e6c828e-d8be-4f9a-8ab5-ed2aa38b2a83
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\da1c20e0-67c4-4595-828c-ca900ba7655f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\da4d4d95-b31f-4873-9091-3f46c0617747
C:\ProgramData\Microsoft\Windows\WER\Temp\f39ca442-5119-43f6-ac8a-c86e8f023914
C:\ProgramData\Microsoft\Windows\WER\Temp\bb7487cf-d2ef-4540-a992-7cc644d76f64
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\106480e3-b2da-43a7-a090-631eda6f39fb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c56e1ef8-6d56-4df7-851b-0cedc481937d
C:\ProgramData\Microsoft\Windows\WER\Temp\WER3265.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\4f68f3b9-de4d-4432-8bdf-f8365be59c1d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\Report.wer
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0508.1664.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0508.1664.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0510.3252.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0510.3252.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0512.892.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0512.892.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\51468a7c-a276-4bc0-866a-2e9dfbb026fb
C:\ProgramData\Microsoft\Windows\WER\Temp\4b4dd790-7f65-4f52-a00f-5afbef3a1161
C:\ProgramData\Microsoft\Windows\WER\Temp\9dd17237-61c3-4220-8ae4-9872a3a4b17c
C:\ProgramData\Microsoft\Windows\WER\Temp\9c92873f-5713-4ee6-a4d0-20b6340e9ce5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a04ed82e-d522-4564-8d7e-b6f0f653cdf1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f957e2d8-b859-4e6f-bb79-09238067cc2a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\01c9d45e-dceb-4b62-abe3-bc029c8ee07c
C:\ProgramData\Microsoft\Windows\WER\Temp\c9dc093c-1170-47fd-b8d5-c6d9a29728ef
C:\ProgramData\Microsoft\Windows\WER\Temp\15756e82-80c3-4379-bc02-3caf5258a060
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0f0563b7-405b-41da-a0ef-96d2aa11e060
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\be155704-8ede-42d5-bf5a-1be56e9db615
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\a8a5a85a-c337-4a6f-b13f-a0989b92d7b3
C:\ProgramData\Microsoft\Windows\WER\Temp\bcab629a-7d8d-4d76-9425-be98fafe97d4
C:\ProgramData\Microsoft\Windows\WER\Temp\07e42f62-9897-40cc-bf49-57d78795e75b
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\ac9be809-7484-4f87-82ab-ea8aa505e3eb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\445f71fc-b5e4-429b-ba4f-1dcede0a3138
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\a3c77351-05ea-4754-9bd5-8786a7d968b4
C:\ProgramData\Microsoft\Windows\WER\Temp\e67a303a-38b5-4e1e-a16b-7f9ef317f528
C:\ProgramData\Microsoft\Windows\WER\Temp\0600e23b-4498-4813-b394-9cbe6177f222
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\87962ff2-9dca-473f-b207-e8e44f8c81f0
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05a88254-533b-48ea-92af-040dc3fa2839
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\370d843f-15fc-400e-ad13-0f31ead79e50
C:\ProgramData\Microsoft\Windows\WER\Temp\2a13ee86-efab-4042-877b-070fc2c38734
C:\ProgramData\Microsoft\Windows\WER\Temp\1e836981-1914-464e-b50a-5923de244eee
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\daadee0c-53f5-44f1-9543-8898d95ec38e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\1bc923ca-70b4-497b-8a3b-1fd812bc1cce
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\0adb164c-ec0e-4890-baa1-af54981e2781
C:\ProgramData\Microsoft\Windows\WER\Temp\1c49884b-8275-40c4-8096-3ce3eaae6a6a
C:\ProgramData\Microsoft\Windows\WER\Temp\546f874e-2bb0-41f6-b080-6dfe656275f2
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5e15e49f-149d-4254-a763-15907fbae3e8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9208dbea-b3fe-4667-b4fa-4af80e6464c7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\241f112f-6882-4a48-b309-53b2043f14d9
C:\ProgramData\Microsoft\Windows\WER\Temp\c636d7cc-71c3-4a42-bff0-6ff39cae1ec3
C:\ProgramData\Microsoft\Windows\WER\Temp\2340a3b1-3191-4f31-afde-4cd6c4310722
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\5781b8f8-0431-4ae3-a680-bf2bfd4c40ac
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\95b7e9de-cfe8-4ff3-b1dc-cc382d11bf2f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\4da2cb19-6a27-40cd-bf2a-e08461ac4c31
C:\ProgramData\Microsoft\Windows\WER\Temp\1baaf939-1126-4eb6-bb0e-30e7cace13ab
C:\ProgramData\Microsoft\Windows\WER\Temp\88523a61-f63a-4801-ae4a-29666ac887c9
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a2ebd2ef-afa6-4cfb-83d4-a0cb702fcf4c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\ea14f7ed-0dbb-4ce3-8ef7-7fc5ea4fdee8
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\7b1106f8-1cae-4d8e-8b3d-99dcd74aeac3
C:\ProgramData\Microsoft\Windows\WER\Temp\fdb5f8ec-13c0-48df-9827-9b2dc5304db9
C:\ProgramData\Microsoft\Windows\WER\Temp\b0b5c0c6-25ee-4d08-bdc6-1b014a072177
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f3f080c4-7281-4752-96a4-9380eebfa31f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\9cf55252-972e-436a-8f62-a253d2060037
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\94d92042-c28b-4f57-81fd-3ec503533f84
C:\ProgramData\Microsoft\Windows\WER\Temp\43bd05a1-81de-4240-886c-c8090fbeaf77
C:\ProgramData\Microsoft\Windows\WER\Temp\9fd445b8-478d-4786-95b6-466024787987
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\f43dbce8-9d30-4423-8a15-9b01f58f8b41
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\7334f52f-6b9b-4d70-abd4-560e1d3af6ea
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\a9a62d76-43ac-4362-a982-e1b0f2a9edc4
C:\ProgramData\Microsoft\Windows\WER\Temp\edc366b0-7f3f-4e85-9989-a2387c4efc8f
C:\ProgramData\Microsoft\Windows\WER\Temp\87d8ebac-a627-4831-80c2-6dda76c4bc41
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\28055e7a-7df3-4298-ab84-2254cfec5ed3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\06b87688-7dea-439b-886e-996ba4fccd45
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\e9c8e164-63c3-4374-b189-a80169fe4fff
C:\ProgramData\Microsoft\Windows\WER\Temp\668320d4-3540-4db0-84c6-a513fe9fe441
C:\ProgramData\Microsoft\Windows\WER\Temp\eeb9fbfc-188f-463e-b557-925fedbd13fd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c2efd3f0-d9a7-4abf-85d9-31e6ff730a0c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\fb918cf6-4710-42de-b519-5fc14acb2600
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\d55dedff-26f9-47d4-a515-f33705f3adf1
C:\ProgramData\Microsoft\Windows\WER\Temp\3d10f273-4c8b-4ba3-8ee0-d235d358d8e0
C:\ProgramData\Microsoft\Windows\WER\Temp\9d955089-ce36-45f1-8650-dee9cf755fd0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b6ba9550-eab4-4707-93a2-4b213ebf15c2
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\abdb75e7-b23a-4e41-a6dd-af226aba040c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\957cf033-b4a1-4a66-911c-d71670c27bd2
C:\ProgramData\Microsoft\Windows\WER\Temp\c484ce92-fd9e-4e8f-a828-89f1d3be8755
C:\ProgramData\Microsoft\Windows\WER\Temp\cb0fba60-b670-4b46-8bf6-3c61ee8beb6e
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\65f37e24-6cf4-49ea-9816-b11399970f00
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e1b14911-d475-4377-9a37-1637fdf912d9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\f357da1d-2bd7-4442-a4a3-0deeeace0dd0
C:\ProgramData\Microsoft\Windows\WER\Temp\56c60c2b-d476-4e30-9b16-8c80d588c2de
C:\ProgramData\Microsoft\Windows\WER\Temp\b4440311-703c-43fe-a562-5a162e77b425
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b56b78f7-2fca-470e-86ca-18a9adc84a0c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\e78e50f6-dc4a-476d-9d03-c04925b58afa
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\8b0d5d61-3570-4e47-8d74-165c95ab18d0
C:\ProgramData\Microsoft\Windows\WER\Temp\7751f72a-19ca-4087-8996-c824ffdd13db
C:\ProgramData\Microsoft\Windows\WER\Temp\73ba985f-623c-4bea-97cc-537e322b7515
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\b2f3272b-025f-4296-9c31-73eab8bab85d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\05321d5d-b381-4b3d-bc1e-c96d32296448
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\f0d7bce7-14f8-4b5c-8f46-e9c585672e0f
C:\ProgramData\Microsoft\Windows\WER\Temp\900df87c-fa2b-49df-bca0-e5368cade331
C:\ProgramData\Microsoft\Windows\WER\Temp\f300c8e3-e7c6-4e34-8fd3-8b4d2f7ffaf6
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4620dd07-129e-486f-a9ec-1383f61fea39
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\68108104-8f30-43a4-9661-022703390c18
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\a910f34d-6aa7-4946-9df9-1b1de31466e9
C:\ProgramData\Microsoft\Windows\WER\Temp\c32dd6ca-639b-41d5-bb4f-cdaa178228e1
C:\ProgramData\Microsoft\Windows\WER\Temp\d731ede5-dc04-4747-8e4e-f705afbab3ba
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\07b59e26-3a75-421a-852d-b1eb2a3da12d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\49a32c98-b309-40e9-a120-e92f13107af3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\bf71e0f8-5d45-4461-8ad0-e6de0f3f9b45
C:\ProgramData\Microsoft\Windows\WER\Temp\8d65c2f4-ad46-412c-a6e0-c162688ead49
C:\ProgramData\Microsoft\Windows\WER\Temp\27f595f4-e2ec-4fae-94ea-e4cc3ef9df82
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\584e44bc-4699-4ab2-b9e2-116c90d75326
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\be7e0f23-ead6-471d-b50d-3738fdca7a28
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8A42.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\efdd73a0-f274-4283-b9d2-8096cda0e165
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\Report.wer
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0517.5816.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0517.5816.1.odl
C:\ProgramData\Microsoft\Windows\WER\Temp\491fded7-0457-40e8-b5de-66a8c2a59e5c
C:\ProgramData\Microsoft\Windows\WER\Temp\ff469d57-07be-4cb1-966e-854f8b2311b0
C:\ProgramData\Microsoft\Windows\WER\Temp\6923aa03-31e9-4e06-bc2a-94cefa3a4716
C:\ProgramData\Microsoft\Windows\WER\Temp\69c2b1f7-7766-450b-bd78-1384570384db
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\c9c36f3f-3fb4-4218-957a-64936cbd8fd9
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f3c2d478-ea16-4c1f-8ca5-a1cbe24f9971
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\410b1d84-5334-4bcb-a8fb-0c298013c927
C:\ProgramData\Microsoft\Windows\WER\Temp\402e6fef-8fd1-4527-8cd5-ed898bf4df5b
C:\ProgramData\Microsoft\Windows\WER\Temp\69f118a9-7946-4bc6-87c1-416f85eb8c2d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3bbe91ea-cf46-4255-81da-f71c84e9ef8e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d078e966-826d-44c2-b572-7e8837a78847
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\c3f7c3b9-44d0-4fb1-8422-84e547ec376f
C:\ProgramData\Microsoft\Windows\WER\Temp\e419de1e-3aec-4a2f-9819-354e0ce3e097
C:\ProgramData\Microsoft\Windows\WER\Temp\7e7363b5-3176-4f91-a521-0357ceb05a06
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\3ecdeb83-4372-40f8-ab1f-c1ebbc5c5c9b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\42efda90-fadf-4d5b-9f05-584d0c07fa42
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\8687facc-5d13-4e1b-a784-d850679efdbf
C:\ProgramData\Microsoft\Windows\WER\Temp\f2df8c86-5139-4a24-b878-c6d0634b287c
C:\ProgramData\Microsoft\Windows\WER\Temp\4fd59eaf-a9cf-41f1-9ff3-37cbdcaff9b7
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\97f46561-f945-4949-87aa-ed675c0edf13
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\c0eeddf3-78d0-4461-bdfe-65ec6155fe1c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\027ba704-c64c-4e8a-93a7-e28041ee63b9
C:\ProgramData\Microsoft\Windows\WER\Temp\894974b8-5bb9-4536-b164-a13c789d601b
C:\ProgramData\Microsoft\Windows\WER\Temp\be744043-f2d0-4fe2-8113-7efcc07c0530
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\70923230-6964-4d74-8e4b-922fa0adec32
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\d0da8b6c-0a33-4870-b80d-f2b80b0c770f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\7cb441cd-51f1-4767-b0a5-ee1397a98a71
C:\ProgramData\Microsoft\Windows\WER\Temp\55d1752e-8bab-4b77-9b23-37b0db748594
C:\ProgramData\Microsoft\Windows\WER\Temp\31bea3f4-6202-401c-ba19-3ea4b3c3be58
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\09742ad2-68cf-4d3f-9ea9-8e610719efb1
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b15e6200-ced2-4012-9a50-bebe3374585e
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\6893a833-130e-4807-879c-0a3f7ab95337
C:\ProgramData\Microsoft\Windows\WER\Temp\5f748661-032a-455e-82d7-21cee6a8eaf3
C:\ProgramData\Microsoft\Windows\WER\Temp\91898f8d-188d-40c6-a1cd-d14a6e2030e0
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\d0a8ca86-1126-4d21-b351-a7f067ca2c1a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\3749640e-736f-4f9a-b0b4-ba29d23e1912
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\ac2fea72-74c6-45a7-a5ec-9fbece621c5b
C:\ProgramData\Microsoft\Windows\WER\Temp\f22867d1-8a92-445a-a79f-fe183e735a59
C:\ProgramData\Microsoft\Windows\WER\Temp\8d87703c-cd97-4333-b94b-44e66b098e0d
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eba1e0f2-6404-4166-9f97-fb80501e6edb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\bef973e8-fc3b-4f05-af71-f3130fe7716b
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\5740727d-f219-4d34-9b15-1239b2a96d41
C:\ProgramData\Microsoft\Windows\WER\Temp\8d6c9ee8-2c22-4401-81bd-a44b8bc66cd5
C:\ProgramData\Microsoft\Windows\WER\Temp\793ef85f-c6ac-474b-9f2a-c79e80d94eac
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\15fe7b03-7c48-469a-b486-955b4d187cf2
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\211db599-1be9-49a6-8bd8-2aa98db5281a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\c791ab40-1a7f-400a-bdd4-06de3738dacb
C:\ProgramData\Microsoft\Windows\WER\Temp\13524239-a7a6-483f-b2ec-adf763b69654
C:\ProgramData\Microsoft\Windows\WER\Temp\62cd03da-9156-48e1-b11c-45d2a90dc2fd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\de39e7d6-174d-45ba-89be-5c07ff35de6c
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b12284ff-4aa3-4be1-b99e-443c9c181220
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\68919fd5-c770-46e5-8c44-f59bc3aa65e0
C:\ProgramData\Microsoft\Windows\WER\Temp\6ecbac61-3985-4174-8503-f1b4e8624cf0
C:\ProgramData\Microsoft\Windows\WER\Temp\7381eafc-7b14-43db-982f-523b9ccac0a5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\7532f109-5ae5-493c-98b1-d711d48c6a71
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\80d754b6-c249-441c-8d57-c9f95bf081eb
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\26c42387-c59d-4bee-bafe-a16ede00ec78
C:\ProgramData\Microsoft\Windows\WER\Temp\9ebe0284-d000-4feb-92f9-13973eea9a76
C:\ProgramData\Microsoft\Windows\WER\Temp\2eba53f4-2e8c-4333-adfd-b97d6b167178
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\e201685e-5e7e-421a-a3e8-2b13f30b314d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\dba07245-3ad4-479d-a998-f97de6f0bc93
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\bac7cd59-2f14-4f09-87e2-f634c3515624
C:\ProgramData\Microsoft\Windows\WER\Temp\cb49373b-b110-4c72-becf-1f702c1a335e
C:\ProgramData\Microsoft\Windows\WER\Temp\af6b4ed7-bfd5-4755-81b9-fa08a1672dc5
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\8384bede-cca5-468d-8ca8-8ad3089a7f9f
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f0aae3fc-a0c3-45fb-9839-7d04798be49a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\ff433234-258c-4716-8a0b-b41c7176bed7
C:\ProgramData\Microsoft\Windows\WER\Temp\d2dbb63f-2ae4-449f-989e-41463c27c4c6
C:\ProgramData\Microsoft\Windows\WER\Temp\ba35d31f-4ddc-4ea3-ac09-442147746528
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\a307c884-a42d-4c1f-bb3a-6196e8baaf4a
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\078f9d72-35d9-4f96-9f10-d58376d3e1a6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\3007689b-83b4-4874-8885-afb2f83d33be
C:\ProgramData\Microsoft\Windows\WER\Temp\676f4c45-6ec7-4b83-a1bb-3b7c087ad807
C:\ProgramData\Microsoft\Windows\WER\Temp\7de6801e-edcf-4d1f-adc4-d402175cfeca
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\43a6b7b6-36ef-40a6-9d7d-b727009ffe95
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f3660e51-1b15-43e1-bafd-a155dc1cf4de
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\46e3373a-236a-4493-a944-944b8b993c7a
C:\ProgramData\Microsoft\Windows\WER\Temp\f871efa3-c023-4bf7-997b-2a4827220ae2
C:\ProgramData\Microsoft\Windows\WER\Temp\d10cd99e-6967-480e-a341-5835cbb539ef
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\702ce421-1b47-4d04-ad63-612f0c0568ea
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\253b2353-9371-4aba-99b5-5424ef201c22
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\f8a586f4-bfb5-4537-8816-a93ecc73bfda
C:\ProgramData\Microsoft\Windows\WER\Temp\d233b792-f96a-4364-9978-602930e37178
C:\ProgramData\Microsoft\Windows\WER\Temp\4f8843dd-7920-48e5-b934-7edc3fb4c674
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\4e1e275b-4637-4652-bcde-d72bfc988efd
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\cd3ea072-6093-4554-8d36-d8ad357a07c7
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\cd6f9d9f-c8c5-4dc8-8629-a52aef1e9728
C:\ProgramData\Microsoft\Windows\WER\Temp\2b84170f-34f7-46e8-be89-15335df21efa
C:\ProgramData\Microsoft\Windows\WER\Temp\ba5494ea-7c2c-4c22-9309-c39102fa138a
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\0ca8944b-1bc8-48c8-adee-63d3c459a881
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\015eaab3-28dd-451b-85a5-22830424cb6d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\057cc802-1721-4177-ae4a-7364380655c6
C:\ProgramData\Microsoft\Windows\WER\Temp\b3394895-5d6e-454c-9d8c-e077abe7b262
C:\ProgramData\Microsoft\Windows\WER\Temp\70f0fd6d-76d8-407f-a95b-b79ab7f3ec38
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\79385e33-e761-4b0c-8dfa-872339718425
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\f791bce1-34eb-4c6c-b346-a7686404820d
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\d8f83d2c-dcb9-45c1-a4a8-e006bad00dd7
C:\ProgramData\Microsoft\Windows\WER\Temp\5cd6c16e-35b9-4c36-b773-86781872c900
C:\ProgramData\Microsoft\Windows\WER\Temp\0986806b-c004-4f39-a6cd-4316f196ecbd
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\eec0b63c-0110-4968-8611-69e63e1d1282
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\b53995b0-6d9c-475f-89f5-4c75af482ba0
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E3.tmp.WERInternalMetadata.xml
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\4e4660d9-8571-4e32-818f-a7b14a3315b3
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\Report.wer
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0520.3960.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0520.3960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.4348.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2133.5764.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2125.4072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2052.6960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2028.1120.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1913.1964.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1854.2316.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1845.6048.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1816.5756.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1741.6072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0456.5572.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0501.2404.1.aodl
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_windows.immersiv_8252a9b726a2ca5168b11af40b319ab28e06656_31aeda3d_841fb045-354c-457d-9cb0-a7dda03e1d78\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_5ed5ec82a9b038a6cf1c6dde5247a22d3a43f7_00000000_d871f5e6-49e7-4785-b605-9ffc4964c326\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_37174847-3906-422e-b227-a20349c47089\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_c9ba984c1fb2f68b57c358b04812ef3133da8e9_00000000_e880c3f8-3ce8-491b-8b2a-08690bf988b4\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft_f56eeaf4c54df4517ca4f4ec62f6777f7adb93a0_00000000_99f0b73b-c8c4-41c1-9271-25b038d09543\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_a4488e19f39db737bbf3c629781316979543e6a_00000000_e42a7fa6-1cf7-4296-b2a8-f6367c9592e8\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_4ba8fe2c-cd5c-4e54-ab22-06c23564ece0\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_f824e6a4-40f6-471a-a442-89b13e78a66d\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Window_16827428572979ae8ccf6a4adfb6fb82df42c84_00000000_779d63e8-be23-4004-a2b8-3f441a53bbba\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_33b998188f678f96da3a8a0377712336947a156_00000000_96f26c02-a54b-41b3-b6b2-0187b5451978\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_41bd3d2fa18feb9f71aeedce9e9c879f5a6422e_00000000_2441405d-dc45-49a0-a06b-2f19b11a93ec\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_Microsoft Corpor_8f55e0a5fe5a4ace9ce4d7b3d11ec987f58c91_00000000_3a2b0db3-a593-430b-aad4-90a00f320cf3\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_OneDrive.exe_964a2733c5af6746b97d023226479c268542f_00000000_173b2abf-4d5e-4ebd-a047-ef81a2e3c906\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_ed71e54c62bbd4d39663ab74facbd87e5c8c09e_f237ee1c_b8b938b2-c113-4e91-8961-492721932e0f\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WERECD8.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_c650a977-6adb-4f58-b1d6-1a9cc1579517\Report.wer.tmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0502.4268.1.aodl
C:\ProgramData\Microsoft\Windows\WER\Temp\WER97AF.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_b37245773eb89b371fbc0bad2bd08e95d777fb_f237ee1c_02538bb4-6a10-4acd-a96a-cac769194c26\Report.wer.tmp
C:\ProgramData\Microsoft\Windows\WER\Temp\WERD0AC.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_67860fc1-43c4-4d6a-aec3-a7f44bd200a8\Report.wer.tmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0506.6148.1.aodl
C:\ProgramData\Microsoft\Windows\WER\Temp\WER3265.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_644527c6ad208775a0796c9478da966c37a5ad_f237ee1c_b56ffb2b-536c-4794-9d0a-46d3e5335c8d\Report.wer.tmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0508.1664.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0510.3252.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0512.892.1.aodl
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8A42.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_2c628c892acff9f251c95527b4be783abbc9_f237ee1c_1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663\Report.wer.tmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0517.5816.1.aodl
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E3.tmp
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_FileCoAuth.exe_a2ea31f3d29381d7e1168dcf941b6fc2ea543b0_f237ee1c_da3c427a-cedc-4020-b216-1ee123fa27c6\Report.wer.tmp
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-12.0520.3960.1.aodl
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Policy\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\policy\v4.0
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\InstallRoot
HKEY_CURRENT_USER\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\UseLegacyV2RuntimeActivationPolicyDefaultValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\OnlyUseLatestCLR
Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\policy\standards\v4.0.30319
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\v4.0.30319\SKUs\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\SKUs\default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AppVStreamingUX.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_CURRENT_USER\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\NGen\Policy\v4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\Servicing
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions\000603xx
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Sorting\Ids
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en
HKEY_LOCAL_MACHINE\Software\Microsoft\StrongName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\UseRyuJIT
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\STE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration
HKEY_CURRENT_USER
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion\PublisherPolicy\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.PresentationFramework__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.PresentationFramework__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.WindowsBase__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.WindowsBase__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Core__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Core__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Configuration__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Configuration__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Xml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Xml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Numerics__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Numerics__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Security__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Security__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Xaml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Xaml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.Accessibility__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.Accessibility__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.PresentationCore__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.PresentationCore__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.UIAutomationTypes__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.UIAutomationTypes__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Windows.Input.Manipulations__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Windows.Input.Manipulations__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.UIAutomationProvider__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.UIAutomationProvider__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Deployment__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Deployment__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.ReachFramework__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.ReachFramework__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.PresentationUI__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.PresentationUI__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Printing__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Printing__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\APTCA
HKEY_LOCAL_MACHINE\Software\Microsoft\Net Framework Setup\NDP\v4\Client
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Client\InstallPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\FeatureSIMD
HKEY_CURRENT_USER\Software\Microsoft\Tracing\WPF
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Winevt\Publishers\{6a7dfda1-a101-5a70-eade-2ecfec4034d8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\AppContext
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Data.SqlXml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Data.SqlXml__b77a5c561934e089
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-64934406-199802361-3218922526-1001
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 024
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_CURRENT_USER\Software\Microsoft\Avalon.Packaging
HKEY_CURRENT_USER\Software\Microsoft\Avalon.Graphics
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\ClassicETW
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.10.0.AppVStreamingUX.resources_en-US_31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.10.0.AppVStreamingUX.resources_en-US_31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-64934406-199802361-3218922526-1001\Installer\Assemblies\C:|Users|Packager|AppData|Local|Temp|AppVStreamingUX.exe
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\C:|Users|Packager|AppData|Local|Temp|AppVStreamingUX.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Users|Packager|AppData|Local|Temp|AppVStreamingUX.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-64934406-199802361-3218922526-1001\Installer\Assemblies\Global
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\Global
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global
HKEY_LOCAL_MACHINE\Software\Microsoft\Avalon.Graphics
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FontCache\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FontCache\Parameters\ClientCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense
HKEY_CURRENT_USER\Software\Microsoft\DirectX\UserGpuPreferences
HKEY_LOCAL_MACHINE\Software\Microsoft\DirectDraw\GammaCalibrator
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\RequiredVideoDriverDate
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Video\{27E3D6FA-A922-11EF-90C1-806E6F6E6963}\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0000\HardwareInformation.MemorySize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0000\InstalledDisplayDrivers
HKEY_CURRENT_USER\Software\Microsoft\Avalon.Graphics\MultiAdapterSupport
HKEY_LOCAL_MACHINE\Software\Microsoft\Avalon.Graphics\MultiAdapterSupport
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\DISPLAY1
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\WinSAT
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\WinSAT\VideoMemoryBandwidth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\WinSAT\VideoMemorySize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.PresentationFramework.Aero2__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.PresentationFramework.Aero2__31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.10.0.Microsoft.AppV.AppvClientComConsumer.resources_en-US_31bf3856ad364e35
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.10.0.Microsoft.AppV.AppvClientComConsumer.resources_en-US_31bf3856ad364e35
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsRuntime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\Diagnosis
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\LevelObjects
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\Levels
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\UrlZones
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\Paths
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\Hashes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\UrlZones
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\Paths
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\Hashes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\UrlZones
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\Paths
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\Hashes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\UrlZones
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Hashes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\UrlZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\UrlZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\Paths
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\Hashes
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\4096\UrlZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\Paths
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\Hashes
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\65536\UrlZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\Paths
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\Hashes
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\131072\UrlZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Hashes
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\UrlZones
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\DefaultLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\SaferFlags
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SafeBoot\Option
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableUmpdBufferSizeCheck
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Cimom
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseActivationAuthenticationLevel
HKEY_CURRENT_USER\Software\Classes
HKEY_LOCAL_MACHINE\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmiprvse.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLEAUT
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Log File Max Size
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\WDM
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ACPI
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NDIS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\mssmbios
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\HDAudBus
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\AmdPPM
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdPPM\MofImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\portcls
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\monitor
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\ImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1109958850,Name="C:\Windows\system32\kernelbase.dll[MofResourceName]"
HKEY_LOCAL_MACHINE\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1871506606,Name="C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558520124,Name="C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1107771162,Name="C:\Windows\system32\drivers\ndis.sys[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2647819754,Name="C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780570,LowDateTime=3245592320,Name="C:\Windows\System32\drivers\mssmbios.sys[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2629702478,Name="C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=551801554,Name="C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558676975,Name="C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=552738554,Name="C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{49353C93-516B-11D1-AEA6-00C04FB68820}
HKEY_LOCAL_MACHINE\Software\Classes\PackagedCom
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\OneDrive
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\FileCoAuthTelemetryRampStatus
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\FirstEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\LastEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2025
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2007
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2024
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SystemInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemProductName
HKEY_LOCAL_MACHINE\Software\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\Com+Enabled
HKEY_CURRENT_USER\Software\Classes\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\AppID\FileCoAuth.exe
HKEY_LOCAL_MACHINE\Software\Classes\AppID\FileCoAuth.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\DefaultAccessPermission
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\MaxSxSHashCount
HKEY_CURRENT_USER\Software\Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{389510B7-9E58-40D7-98BF-60B911CB0EA9}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\ThreadingModel
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\AppID
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\Elevation
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\Elevation
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\MainAccount
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserFolder
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\cid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\DisplayName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserEmail
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\Business
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\SharePointOnPrem
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\FirstRun
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EdpManaged
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\RootAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\TenantAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\HasMadeFirstUpload
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\IsUpgradeAvailable
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\CrashDetectionKey
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EnableADALForSilentBusinessConfig
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastKnownCloudFilesEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\WamWebAccountId
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\AuthenticationURLs
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\Tenants
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\ScopeIdToMountPointPathCache
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastMigrationScanResult
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\PreSignInRampOverrides
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\PreSignInSettingsOverrides
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905E63B6-C1BF-494E-B29C-65B732D3D21A}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PropertyBag
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PropertyBag
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\UpdateRingPostAuthConditions
HKEY_LOCAL_MACHINE\Software\Microsoft\Office\ClickToRun\Configuration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\EnablePreviewBuilds
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\OneDrive
HKEY_CURRENT_USER\Software\Policies\Microsoft\OneDrive
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableEnterpriseUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableOrgInternalUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableTeamTier_Internal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableFasterRingUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineId
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\DisablePersonalSync
HKEY_LOCAL_MACHINE\Software\Microsoft\Ole\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\DisableThresholdAppLaunchPerfFeature
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\MGOTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ProcessMitigationPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ProtectionLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{75121952-E0D0-43E5-9380-1D80483ACF72}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{75121952-e0d0-43e5-9380-1d80483acf72}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{75121952-e0d0-43e5-9380-1d80483acf72}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E357FCCD-A995-4576-B01F-234630154E96}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E357FCCD-A995-4576-B01F-234630154E96}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E357FCCD-A995-4576-B01F-234630154E96}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B824B49D-22AC-4161-AC8A-9916E8FA3F7F}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B824B49D-22AC-4161-AC8A-9916E8FA3F7F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B824B49D-22AC-4161-AC8A-9916E8FA3F7F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0000000C-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0000000c-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0000000c-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FA9812C4-0B34-47D0-9B0B-157FB5B5FDF2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FA9812C4-0B34-47D0-9B0B-157FB5B5FDF2}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FA9812C4-0B34-47D0-9B0B-157FB5B5FDF2}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BFB02FED-4C71-40E1-B4F3-CE99C2FF0542}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BFB02FED-4C71-40E1-B4F3-CE99C2FF0542}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BFB02FED-4C71-40E1-B4F3-CE99C2FF0542}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68766F36-3808-42F9-A18F-0ABDE6391172}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68766F36-3808-42F9-A18F-0ABDE6391172}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68766F36-3808-42F9-A18F-0ABDE6391172}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{04C2542D-3C28-4510-A0C0-8DB0E0A3A526}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{04C2542D-3C28-4510-A0C0-8DB0E0A3A526}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{04C2542D-3C28-4510-A0C0-8DB0E0A3A526}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9D4966FA-DBD1-4799-A07F-6A5E1991BDA4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9D4966FA-DBD1-4799-A07F-6A5E1991BDA4}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9D4966FA-DBD1-4799-A07F-6A5E1991BDA4}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F3CC02FB-7C40-443A-966E-D85196B36F21}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F3CC02FB-7C40-443A-966E-D85196B36F21}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F3CC02FB-7C40-443A-966E-D85196B36F21}\ProxyStubClsid32\(Default)
HKEY_CLASSES_ROOT\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{41945702-8302-44A6-9445-AC98E8AFA086}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{41945702-8302-44A6-9445-AC98E8AFA086}\CLSID
HKEY_CLASSES_ROOT\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\FriendlyName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SpecVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Vendor
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ContainerFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\DeviceManufacturer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\DeviceModels
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ColorManagementVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\MimeTypes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\FileExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportAnimation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportChromakey
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportLossless
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportMultiframe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ArbitrationPriority
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Formats
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\CLSID
HKEY_CLASSES_ROOT\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\FriendlyName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SpecVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Vendor
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ContainerFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\DeviceManufacturer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\DeviceModels
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ColorManagementVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\MimeTypes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\FileExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportAnimation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportChromakey
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportLossless
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportMultiframe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ArbitrationPriority
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Formats
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Mask
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsUpdate\Orchestrator\Configurations
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\TestHooks
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\MiniNT
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\~MHz
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\TimeZoneInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\Bias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardBias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardStart
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightBias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightStart
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerCorrelationId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\mousocoreworker.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\mousocoreworker.exe\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D726464B-98F1-4627-86CD-4A082A1E5307}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D726464B-98F1-4627-86CD-4A082A1E5307}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D726464B-98F1-4627-86CD-4A082A1E5307}\AccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2168CAC-969E-43DD-A3AB-A4DD612E223D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2168CAC-969E-43DD-A3AB-A4DD612E223D}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2168CAC-969E-43DD-A3AB-A4DD612E223D}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\Elevation
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\Settings
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsUpdate\UX\RebootDowntime
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\PolicyTestHooks
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\ActiveHoursStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ActiveHoursStart\Behavior
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\current\Device\Update
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\Lus
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\ActiveHoursEnd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ActiveHoursEnd\Behavior
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\SetEDURestart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\SetEDURestart\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B357F841-2130-454E-802C-5C398B549F8E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\Elevation
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsSelfhost\ClientState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\ClientState\PilotInfoRing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\ClientState\ErrorState
HKEY_LOCAL_MACHINE\System\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5DF486F8-50EB-427E-8DA3-7122CCAF9415}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5DF486F8-50EB-427E-8DA3-7122CCAF9415}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5DF486F8-50EB-427E-8DA3-7122CCAF9415}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9844E0CA-F034-40A2-AADA-84671C0E21AB}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9844E0CA-F034-40A2-AADA-84671C0E21AB}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9844E0CA-F034-40A2-AADA-84671C0E21AB}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DE2F3CF5-D9CD-4284-ADA8-1EDB8A23FFA9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DE2F3CF5-D9CD-4284-ADA8-1EDB8A23FFA9}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DE2F3CF5-D9CD-4284-ADA8-1EDB8A23FFA9}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{84D31176-4A5A-4419-B07F-809FBA936A0A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{84D31176-4A5A-4419-B07F-809FBA936A0A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{84D31176-4A5A-4419-B07F-809FBA936A0A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsSelfhost\Applicability
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\IsBuildFlightingEnabled
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsSelfhost\OneSettings
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsUpdate
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\PreviewBuilds
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\Value
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowBuildPreview
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\Value
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\current\Device\System
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsUpdate\Orchestrator
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\ShutdownFlyoutOptions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\EnhancedShutdownEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A1E78367-46B7-4AC8-AFFA-D9F55645223B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A1E78367-46B7-4AC8-AFFA-D9F55645223B}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A1E78367-46B7-4AC8-AFFA-D9F55645223B}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C85C21BB-5CCF-412A-B0CC-059A8A6AD0DF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C85C21BB-5CCF-412A-B0CC-059A8A6AD0DF}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C85C21BB-5CCF-412A-B0CC-059A8A6AD0DF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\Debug
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MiniNT
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Windows Error Reporting\Consent
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\Consent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\NewUserDefaultConsent
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DebugApplications
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassPowerThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassNetworkCostThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueueNoPesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoApproveOSDumps
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LiveReportFlushInterval
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\ResourcePolicies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerPortNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseAuthentication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MinFreeDiskSpace
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceHeapDump
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceMetadata
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Source
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\StorePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceEtw
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUploadOnFreeNetworksOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\UploadOnFreeNetworksOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveSeparate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LocalCompression
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableWerUpload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableEnterpriseAuthProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ArchiveFolderCountLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueueSizeMaxPercentFreeDisk
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MinQueueSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxRetriesForSasRenewal
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoHeapDumpOnQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DeferCabUpload
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\DataCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\DataCollection\Users
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowTelemetry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry_PolicyManager
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\DataCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\AllowTelemetry
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\SysprepLock
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\MoAppCrash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ExcludedApplications
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\MoAppCrash
HKEY_CURRENT_USER\SOFTWARE\Microsoft\TelemetryClient\ThrottleStore
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\SampleStore
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Throttling\MoAppCrash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\OobeCompleted
HKEY_LOCAL_MACHINE\SYSTEM\Setup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\Debug
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\crypt32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagMatchAnyMask
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllOpenStoreProv
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\My\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\My
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\MY\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\MY\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\MY\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\MY\CTLs
HKEY_USERS\S-1-5-18
HKEY_USERS\.DEFAULT\Software\Microsoft\SystemCertificates\My\PhysicalStores
HKEY_USERS\.DEFAULT\Software\Microsoft\SystemCertificates\My
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\_Groups\UTCPartnerPrograms
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\_Groups\UTCPartnerPrograms\System
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowCommercialDataPipeline
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowDesktopAnalyticsProcessing
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\Value
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowUpdateComplianceProcessing
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowWUfBCloudProcessing
HKEY_LOCAL_MACHINE\Software\Microsoft\IdentityCRL\Trace
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AE363A51-A0DE-5827-80F4-961B407B40C2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AE363A51-A0DE-5827-80F4-961B407B40C2}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AE363A51-A0DE-5827-80F4-961B407B40C2}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\IdentityCRL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IdentityCRL\ServiceEnvironment
HKEY_USERS\.DEFAULT\Software\Microsoft\IdentityCRL\Immersive\production\Token\{67082621-8D18-4333-9C64-10DE93676363}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerBaseName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\UrlPrefix
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\RequestUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerPort
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\UseSecure
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\DoNotRequireMsftRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\BypassProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\AzureBlockSizeInKb
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\MaxBlobSizeInKb
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\ConfigureMicrosoft365UploadEndpoint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\8073
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\OEM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm
HKEY_LOCAL_MACHINE\SYSTEM\Platform\DeviceTargetingInfo
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\BIOSVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Product
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\10433
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\31
HKEY_LOCAL_MACHINE\Hardware\Description\System\CentralProcessor\0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4573
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4572
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\ProcessorNameString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4575
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\9290
HKEY_LOCAL_MACHINE\Hardware\Description\System\BIOS
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\BIOS\SystemSKU
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SystemInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\ComputerHardwareId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\12728
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC\RacSampleNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\OEMInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\CorporateSQMURL
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\CommercialId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\CommercialId
HKEY_LOCAL_MACHINE\Software\Microsoft\XboxLive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\12674
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\DnsClient
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\DNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableAdapterDomainName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DomainNameDevolutionLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AppendToMultiLabelName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenBadTlds
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenUnreachableServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenDefaultServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DynamicServerQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterClusterIp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\WaitForNameErrorOnAll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseEdns
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsSecureNameQueryFallback
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableDAForAllNetworks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryIpMatching
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseHostsFile
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AddrConfigControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartNameResolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PreferLocalOverLowerBindingDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryNetBTFQDN
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartProtocolReordering
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UdpRecvBufferSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableParallelAandAAAA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableCoalescing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterVPNTrigger
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMultiHomedRouteConflicts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ForceQueriesOverTcp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShareTcpConnections
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationEnabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterPrimaryName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\EnableAdapterDomainNameRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterReverseLookup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableReverseAddressRegistrations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterWanAdapters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableWanDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationTTL
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationMaxAddressCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\MaxNumberOfAddressesToRegister
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateTopLevelDomainZones
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DowncaseSpnCauseApiOwnerIsTooLazy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationOverwrite
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxNegativeCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AdapterTimeoutLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ServerPriorityTimeLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCachedSockets
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableServerUnreachability
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMulticast
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastResponderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderMaxTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsTest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\CacheAllCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseNewRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistrationOnly
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\NewDhcpSrvRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessPreferLocal
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableIdnEncoding
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableIdnMapping
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShortnameProxyDefault
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableNRPTForAdapterRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutHistoryLength
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutRecalculationInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\System\DNSClient
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\AutodialDLL
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\SecurityService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\NetworkDiagnosticsFrameworkV3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\NetworkDiagnosticsFrameworkV3
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Throttling\NetworkDiagnosticsFrameworkV3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\ScriptedDiagFailure
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\ScriptedDiagFailure
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Throttling\ScriptedDiagFailure
HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Windows Error Reporting
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\TelemetryClient\ThrottleStore
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Windows Error Reporting\Throttling\ScriptedDiagFailure
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Windows Error Reporting\Throttling\SkyDriveClientError
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsUpdate\Orchestrator\Installation\Target
HKEY_LOCAL_MACHINE\Software\Microsoft\Shell\OOBE
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\OOBE\Stats
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DAM\PowerEvents
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecureBoot\State
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A37467DB-1DE5-4A3E-B9E1-D010EBA71143}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\DetectionFrequency
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\DetectionFrequency\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C879DD73-4BD2-4B76-9DD8-3B96113A2130}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C879DD73-4BD2-4B76-9DD8-3B96113A2130}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C879DD73-4BD2-4B76-9DD8-3B96113A2130}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68DA530A-6DF6-438A-BF57-452EAD01C7CC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68DA530A-6DF6-438A-BF57-452EAD01C7CC}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68DA530A-6DF6-438A-BF57-452EAD01C7CC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B357F841-2130-454E-802C-5C398B549F8E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B357F841-2130-454E-802C-5C398B549F8E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\taskhostw.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\EnableDebuggerBreakForTaskStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Update\UpdateServiceUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\UpdateServiceUrl\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\PreMigration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETag
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagBackup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagValidated
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagAcknowledged
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastUpdated
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastRefreshAttempted
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastRefreshByApp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\RefreshInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastHTTPCode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\QueryStringHash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastPayload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastNotification
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\WOSC
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\OSDATA\Software\Microsoft\WindowsSelfhost\OneSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\Ring
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\TestFlags
HKEY_LOCAL_MACHINE\%DiagtrackRegistryRoot%\TestHooks\Volatile
HKEY_LOCAL_MACHINE\%DiagtrackRegistryRoot%\TestHooks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Server\ServerLevels
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\BuildLabEx
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\UBR
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\BuildBranch
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectX
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectX\HybridDeviceApplicableForDxDbGpuPreferences
HKEY_USERS\.DEFAULT\Software\Microsoft\IdentityCRL\Immersive\production\Token\{0CB4A94A-6E8C-477B-88C8-A3799FC97414}
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\DisableOneSettingsDownloads
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\EnableOneSettingsAuditing
HKEY_LOCAL_MACHINE\Software\Microsoft\LanguageOverlay\OverlayPackages\en
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\EnableDebuggerBreakForTaskHang
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Elevation
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_CURRENT_USER\Software\Classes\AppID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
HKEY_CURRENT_USER\Software\Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
HKEY_CURRENT_USER\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\TreatAs
HKEY_CURRENT_USER\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LocalServer
HKEY_CURRENT_USER\Software\Classes\Interface\{75121952-E0D0-43E5-9380-1D80483ACF72}
HKEY_CURRENT_USER\Software\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}
HKEY_CURRENT_USER\Software\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\TreatAs
HKEY_CURRENT_USER\Software\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FindMyDevice
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Experience\AllowFindMyDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Experience\AllowFindMyDevice\Behavior
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\current\Device\Experience
HKEY_LOCAL_MACHINE\Software\Microsoft\Settings\FindMyPhone
HKEY_LOCAL_MACHINE\Software\Microsoft\MdmCommon\SettingValues
HKEY_LOCAL_MACHINE\Software\Microsoft\Settings\FindMyDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\CustomAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\IdentityStore\Providers\{D7F9888F-E3FC-49B0-9EA6-A85B5F392A4F}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IdentityStore\Providers\{D7F9888F-E3FC-49b0-9EA6-A85B5F392A4F}\Name
HKEY_USERS\S-1-5-18\Software\Microsoft\IdentityCRL\StoredIdentities
HKEY_LOCAL_MACHINE\Software\Microsoft\MdmCommon\Settings
HKEY_LOCAL_MACHINE\Software\Microsoft\MdmCommon\Internal
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MdmCommon\Internal\RegisteredWithService
HKEY_CURRENT_USER\Software\Classes\AppID\{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AccessPermission
HKEY_CURRENT_USER\Software\Classes\CLSID\{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}
HKEY_CURRENT_USER\Software\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\ThreadingModel
HKEY_CURRENT_USER\Software\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{29A3AB33-0FD7-44F5-9BFF-C0B6C081FBFB}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29A3AB33-0FD7-44F5-9BFF-C0B6C081FBFB}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29A3AB33-0FD7-44F5-9BFF-C0B6C081FBFB}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\MGOTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ProcessMitigationPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ProtectionLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\Elevation
HKEY_CURRENT_USER\Software\Classes\Interface\{AF86E2E0-B12D-4C6A-9C5A-D7AA65101E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AF86E2E0-B12D-4c6a-9C5A-D7AA65101E90}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AF86E2E0-B12D-4c6a-9C5A-D7AA65101E90}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{00000035-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000035-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000035-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{3474D734-3408-4471-A344-A3439343634A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3474d734-3408-4471-a344-a3439343634a}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3474d734-3408-4471-a344-a3439343634a}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Browser\AllowSmartScreen
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Browser\AllowSmartScreen\Behavior
HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\current\Device\Browser
HKEY_LOCAL_MACHINE\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\MicrosoftEdge\PhishingFilter
HKEY_CURRENT_USER\Software\Policies\Microsoft\MicrosoftEdge\PhishingFilter
HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\PhishingFilter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\AppHost
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost\EnableWebContentEvaluation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\UseLegacyV2RuntimeActivationPolicyDefaultValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\OnlyUseLatestCLR
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions\000603xx
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\UseRyuJIT
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\STE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Client\InstallPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\FeatureSIMD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\ClassicETW
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FontCache\Parameters\ClientCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Avalon.Graphics\RequiredVideoDriverDate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0000\HardwareInformation.MemorySize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0000\InstalledDisplayDrivers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\WinSAT\VideoMemoryBandwidth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\WinSAT\VideoMemorySize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Diagnostics.AsyncCausalityTracer\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\Levels
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\DefaultLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\SaferFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableUmpdBufferSizeCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseActivationAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Log File Max Size
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdPPM\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\ImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\FileCoAuthTelemetryRampStatus
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\FirstEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\LastEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2025
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2007
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2024
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemProductName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\Com+Enabled
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\MaxSxSHashCount
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\ThreadingModel
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\AppID
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\MainAccount
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserFolder
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\cid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\DisplayName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserEmail
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\Business
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\SharePointOnPrem
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\FirstRun
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EdpManaged
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\RootAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\TenantAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\HasMadeFirstUpload
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\IsUpgradeAvailable
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\CrashDetectionKey
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EnableADALForSilentBusinessConfig
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastKnownCloudFilesEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\WamWebAccountId
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastMigrationScanResult
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InitFolderHandler
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\UpdateRingPostAuthConditions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\EnablePreviewBuilds
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableEnterpriseUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableOrgInternalUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableTeamTier_Internal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableFasterRingUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineId
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\DisablePersonalSync
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\DisableThresholdAppLaunchPerfFeature
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\MGOTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ProcessMitigationPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ProtectionLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{75121952-e0d0-43e5-9380-1d80483acf72}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E357FCCD-A995-4576-B01F-234630154E96}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B824B49D-22AC-4161-AC8A-9916E8FA3F7F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0000000c-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FA9812C4-0B34-47D0-9B0B-157FB5B5FDF2}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BFB02FED-4C71-40E1-B4F3-CE99C2FF0542}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68766F36-3808-42F9-A18F-0ABDE6391172}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{04C2542D-3C28-4510-A0C0-8DB0E0A3A526}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9D4966FA-DBD1-4799-A07F-6A5E1991BDA4}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F3CC02FB-7C40-443A-966E-D85196B36F21}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{41945702-8302-44A6-9445-AC98E8AFA086}\CLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\FriendlyName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SpecVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Vendor
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ContainerFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\DeviceManufacturer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\DeviceModels
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ColorManagementVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\MimeTypes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\FileExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportAnimation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportChromakey
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportLossless
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\SupportMultiframe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\ArbitrationPriority
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\0\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\1\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\10\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\11\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\12\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\13\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\14\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\2\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\3\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\4\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\5\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\6\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\7\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\8\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\Patterns\9\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\CLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Author
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\FriendlyName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SpecVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Vendor
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ContainerFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\DeviceManufacturer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\DeviceModels
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ColorManagementVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\MimeTypes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\FileExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportAnimation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportChromakey
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportLossless
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\SupportMultiframe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\ArbitrationPriority
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Pattern
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\0\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\1\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\10\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\11\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\12\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\2\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\3\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\4\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\5\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\6\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\7\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\8\Mask
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Position
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\EndOfStream
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FDD51E2-A9D0-44CE-8C8D-162BA0C591A0}\Patterns\9\Mask
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\~MHz
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\Bias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardBias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\StandardStart
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightBias
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\TimeZoneInformation\DaylightStart
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerCorrelationId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D726464B-98F1-4627-86CD-4A082A1E5307}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\mousocoreworker.exe\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D726464B-98F1-4627-86CD-4A082A1E5307}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D726464B-98F1-4627-86CD-4A082A1E5307}\AccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B2168CAC-969E-43DD-A3AB-A4DD612E223D}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{607C052E-2B08-4548-BD1D-EB7665A34788}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ActiveHoursStart\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ActiveHoursEnd\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\SetEDURestart\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11F11442-3359-410C-875E-D21984507B62}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\ClientState\PilotInfoRing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\ClientState\ErrorState
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformation\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Networking.Connectivity.NetworkInformationPrivate\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5DF486F8-50EB-427E-8DA3-7122CCAF9415}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9844E0CA-F034-40A2-AADA-84671C0E21AB}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DE2F3CF5-D9CD-4284-ADA8-1EDB8A23FFA9}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{84D31176-4A5A-4419-B07F-809FBA936A0A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.PropertyValue\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\IsBuildFlightingEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\ManagePreviewBuilds\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowBuildPreview\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\ShutdownFlyoutOptions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A1E78367-46B7-4AC8-AFFA-D9F55645223B}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C85C21BB-5CCF-412A-B0CC-059A8A6AD0DF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\NewUserDefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassPowerThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassNetworkCostThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueueNoPesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoApproveOSDumps
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LiveReportFlushInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\ResourcePolicies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerPortNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseAuthentication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MinFreeDiskSpace
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceHeapDump
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceMetadata
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Source
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\StorePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceEtw
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUploadOnFreeNetworksOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\UploadOnFreeNetworksOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveSeparate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CabArchiveCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LocalCompression
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableWerUpload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableEnterpriseAuthProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ArchiveFolderCountLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueueSizeMaxPercentFreeDisk
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MinQueueSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxRetriesForSasRenewal
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoHeapDumpOnQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DeferCabUpload
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowTelemetry\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry_PolicyManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\AllowTelemetry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\MoAppCrash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\MoAppCrash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\OobeCompleted
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagMatchAnyMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Security.Authentication.OnlineId.OnlineIdServiceTicketRequest\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowCommercialDataPipeline\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowCommercialDataPipeline
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowDesktopAnalyticsProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowDesktopAnalyticsProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowMicrosoftManagedDesktopProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowUpdateComplianceProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowUpdateComplianceProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\AllowWUfBCloudProcessing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowWUfBCloudProcessing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Security.WebAuthentication.AuthenticationManager\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AE363A51-A0DE-5827-80F4-961B407B40C2}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IdentityCRL\ServiceEnvironment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerBaseName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\UrlPrefix
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\RequestUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\ServerPort
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\UseSecure
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\DoNotRequireMsftRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\BypassProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\AzureBlockSizeInKb
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\TelemetryClient\MaxBlobSizeInKb
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicypath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicyismultisz
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\grouppolicymultiszSeparatorChar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\ConfigureMicrosoft365UploadEndpoint\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\ConfigureMicrosoft365UploadEndpoint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\8073
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\BIOSVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\10433
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\31
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4573
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4572
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\ProcessorNameString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\4575
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\9290
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\BIOS\SystemSKU
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\ComputerHardwareId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\12728
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC\RacSampleNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\CorporateSQMURL
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\CommercialId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\CommercialId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CommonDatapoints\12674
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableAdapterDomainName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DomainNameDevolutionLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AppendToMultiLabelName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenBadTlds
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenUnreachableServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenDefaultServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DynamicServerQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterClusterIp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\WaitForNameErrorOnAll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseEdns
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsSecureNameQueryFallback
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableDAForAllNetworks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryIpMatching
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseHostsFile
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AddrConfigControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartNameResolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PreferLocalOverLowerBindingDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryNetBTFQDN
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartProtocolReordering
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UdpRecvBufferSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableParallelAandAAAA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableCoalescing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterVPNTrigger
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMultiHomedRouteConflicts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ForceQueriesOverTcp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShareTcpConnections
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationEnabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterPrimaryName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\EnableAdapterDomainNameRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterReverseLookup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableReverseAddressRegistrations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterWanAdapters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableWanDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationTTL
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationMaxAddressCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\MaxNumberOfAddressesToRegister
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateTopLevelDomainZones
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DowncaseSpnCauseApiOwnerIsTooLazy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationOverwrite
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxNegativeCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AdapterTimeoutLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ServerPriorityTimeLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCachedSockets
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableServerUnreachability
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMulticast
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastResponderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderMaxTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsTest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\CacheAllCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseNewRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistrationOnly
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\NewDhcpSrvRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessPreferLocal
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableIdnEncoding
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableIdnMapping
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShortnameProxyDefault
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableNRPTForAdapterRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutHistoryLength
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutRecalculationInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\AutodialDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\NetworkDiagnosticsFrameworkV3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\NetworkDiagnosticsFrameworkV3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\ScriptedDiagFailure
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BrokerUp\ScriptedDiagFailure
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\DetectionFrequency\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C879DD73-4BD2-4B76-9DD8-3B96113A2130}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{68DA530A-6DF6-438A-BF57-452EAD01C7CC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B357F841-2130-454E-802C-5C398B549F8E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\EnableDebuggerBreakForTaskStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsManager\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.ClientAttributes\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Update\UpdateServiceUrl\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\PreMigration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETag
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagBackup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagValidated
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\ETagAcknowledged
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastUpdated
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastRefreshAttempted
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastRefreshByApp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\RefreshInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastHTTPCode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\QueryStringHash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastPayload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\LastNotification
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonObject\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Internal.Flighting.OneSettings.OneSettingsPayload\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonValue\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Collections.StringMap\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\Ring
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\TestFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContainerID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\BuildLabEx
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\UBR
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\BuildBranch
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectX\HybridDeviceApplicableForDxDbGpuPreferences
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\DisableOneSettingsDownloads\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\DisableOneSettingsDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\PolicyType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\MergeAlgorithm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegKeyPathRedirectMapped
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegKeyPathRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\RegValueNameRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\grouppolicyname
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataDevice
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\ADMXMetadataBoth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\System\EnableOneSettingsAuditing\Value
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\EnableOneSettingsAuditing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\EnableDebuggerBreakForTaskHang
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Experience\AllowFindMyDevice\Behavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\DllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Threading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\TrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\RemoteServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateAsUser
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateInSharedBroker
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateInBrokerForMediumILContainer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\Permissions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Data.Json.JsonArray\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IdentityStore\Providers\{D7F9888F-E3FC-49b0-9EA6-A85B5F392A4F}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MdmCommon\Internal\RegisteredWithService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29A3AB33-0FD7-44F5-9BFF-C0B6C081FBFB}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\MGOTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ProcessMitigationPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}\ProtectionLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AF86E2E0-B12D-4c6a-9C5A-D7AA65101E90}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000035-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3474d734-3408-4471-a344-a3439343634a}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Browser\AllowSmartScreen\Behavior
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost\EnableWebContentEvaluation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\ShutdownFlyoutOptions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Wosc\Client\Persistent\ClientState\WOSC
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1109958850,Name="C:\Windows\system32\kernelbase.dll[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1871506606,Name="C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558520124,Name="C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1107771162,Name="C:\Windows\system32\drivers\ndis.sys[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2647819754,Name="C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780570,LowDateTime=3245592320,Name="C:\Windows\System32\drivers\mssmbios.sys[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2629702478,Name="C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=551801554,Name="C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558676975,Name="C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=552738554,Name="C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\EnhancedShutdownEnabled
ntdll.dll.RtlWow64GetCurrentMachine
ntdll.dll.RtlWow64IsWowGuestMachineSupported
C:\Windows\system32\wbem\wmiprvse.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe -Embedding
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
C:\Windows\System32\mousocoreworker.exe -Embedding
C:\Windows\System32\CompPkgSrv.exe -Embedding
C:\Windows\System32\SecurityHealthHost.exe {08728914-3F57-4D52-9E31-49DAECA5A80A} -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
C:\Windows\system32\wermgr.exe -upload
taskhostw.exe
taskhostw.exe -RegisterDevice -ProtectionStateChanged -FreeNetworkOnly
AppVStreamingUX_DESKTOP-6BOMRFNPackager
Local\SM0:5136:304:WilStaging_02
Local\__DDrawExclMode__
Local\__DDrawCheckExclMode__
Local\SM0:4132:304:WilStaging_02
Local\SM0:4348:168:WilStaging_02
Local\SM0:5572:168:WilStaging_02
Local\SM0:2404:168:WilStaging_02
Local\SM0:6580:304:WilStaging_02
Global\MoUsoCoreworkerRunning
Local\SM0:756:304:WilStaging_02
Local\SM0:4724:120:WilError_03
Global\WerMgrUploadingLock
Global\841fb045-354c-457d-9cb0-a7dda03e1d78
Local\SM0:4724:304:WilStaging_02
Global\d871f5e6-49e7-4785-b605-9ffc4964c326
Global\37174847-3906-422e-b227-a20349c47089
Global\e880c3f8-3ce8-491b-8b2a-08690bf988b4
Global\99f0b73b-c8c4-41c1-9271-25b038d09543
Global\e42a7fa6-1cf7-4296-b2a8-f6367c9592e8
Global\4ba8fe2c-cd5c-4e54-ab22-06c23564ece0
Global\f824e6a4-40f6-471a-a442-89b13e78a66d
Global\779d63e8-be23-4004-a2b8-3f441a53bbba
Global\96f26c02-a54b-41b3-b6b2-0187b5451978
Global\2441405d-dc45-49a0-a06b-2f19b11a93ec
Global\3a2b0db3-a593-430b-aad4-90a00f320cf3
Global\173b2abf-4d5e-4ebd-a047-ef81a2e3c906
Global\b8b938b2-c113-4e91-8961-492721932e0f
Global\c650a977-6adb-4f58-b1d6-1a9cc1579517
Local\SM0:5580:120:WilError_03
Local\SM0:5580:304:WilStaging_02
Global\02538bb4-6a10-4acd-a96a-cac769194c26
Local\SM0:2660:304:WilStaging_02
Local\SM0:4156:304:WilStaging_02
Local\SM0:4156:120:WilError_03
Local\SM0:4764:120:WilError_03
Local\SM0:4764:304:WilStaging_02
Global\67860fc1-43c4-4d6a-aec3-a7f44bd200a8
Local\SM0:6148:168:WilStaging_02
Local\SM0:6196:304:WilStaging_02
Local\SM0:392:120:WilError_03
Local\SM0:392:304:WilStaging_02
Global\b56ffb2b-536c-4794-9d0a-46d3e5335c8d
Local\SM0:5616:304:WilStaging_02
Local\SM0:1664:168:WilStaging_02
Local\SM0:2056:304:WilStaging_02
Local\SM0:2056:120:WilError_03
Local\SM0:3252:168:WilStaging_02
Local\SM0:892:168:WilStaging_02
Local\C9E8AF12-FA27-4748-EC04-38CA71239739_RegisterDevice
Local\SM0:4300:304:WilStaging_02
Local\SM0:4300:120:WilError_03
Local\SM0:4276:120:WilError_03
Local\SM0:4276:304:WilStaging_02
Global\1ecd1c89-fc2f-45e4-a4ed-4aeec7de0663
Local\SM0:5816:168:WilStaging_02
Local\SM0:6164:120:WilError_03
Local\SM0:6164:304:WilStaging_02
Global\da3c427a-cedc-4020-b216-1ee123fa27c6
Local\SM0:3960:168:WilStaging_02
Local\SM0:1372:304:WilStaging_02
camsvc
WaaSMedicSvc
wisvc
BITS
lfsvc
smphost
No results
Sorry! No behavior.
Sorry! No strace.
Sorry! No tracee.

No hosts contacted.

No TCP connections recorded.

No UDP connections recorded.

No domains contacted.

HTTP Requests

No HTTP(s) requests performed.

SMTP traffic

No SMTP traffic performed.

IRC traffic

No IRC requests performed.

No ICMP traffic performed.

CIF Results

No CIF Results

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Suricata HTTP

No Suricata HTTP

Sorry! No Suricata Extracted files.
Sorry! No dropped files.
Sorry! No CAPE files.
Sorry! No process dumps.
Sorry! No process dumps.