Analysis

Category Package Started Completed Duration Options Log(s)
FILE exe 2025-06-11 08:52:49 2025-06-11 09:10:56 1087 seconds Show Options Show Analysis Log
procmemdump=1
import_reconstruction=1
unpacker=2
norefer=1
no-iat=1
2024-11-25 13:37:17,537 [root] INFO: Date set to: 20250611T07:19:16, timeout set to: 1000
2025-06-11 08:19:16,132 [root] DEBUG: Starting analyzer from: C:\tmp_gell1p8
2025-06-11 08:19:16,132 [root] DEBUG: Storing results at: C:\eARugV
2025-06-11 08:19:16,132 [root] DEBUG: Pipe server name: \\.\PIPE\QcrdgfGeu
2025-06-11 08:19:16,132 [root] DEBUG: Python path: C:\Users\Packager\AppData\Local\Programs\Python\Python310-32
2025-06-11 08:19:16,132 [root] INFO: analysis running as an admin
2025-06-11 08:19:16,132 [root] INFO: analysis package specified: "exe"
2025-06-11 08:19:16,132 [root] DEBUG: importing analysis package module: "modules.packages.exe"...
2025-06-11 08:19:17,179 [root] DEBUG: imported analysis package "exe"
2025-06-11 08:19:17,211 [root] DEBUG: initializing analysis package "exe"...
2025-06-11 08:19:17,226 [lib.common.common] INFO: wrapping
2025-06-11 08:19:17,226 [lib.core.compound] INFO: C:\Users\Packager\AppData\Local\Temp already exists, skipping creation
2025-06-11 08:19:17,242 [root] DEBUG: New location of moved file: C:\Users\Packager\AppData\Local\Temp\OpenVPN.exe
2025-06-11 08:19:17,242 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL option
2025-06-11 08:19:17,242 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL_64 option
2025-06-11 08:19:17,242 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader option
2025-06-11 08:19:17,242 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader_64 option
2025-06-11 08:19:17,601 [root] DEBUG: Imported auxiliary module "modules.auxiliary.browser"
2025-06-11 08:19:17,664 [root] DEBUG: Imported auxiliary module "modules.auxiliary.digisig"
2025-06-11 08:19:17,711 [root] DEBUG: Imported auxiliary module "modules.auxiliary.disguise"
2025-06-11 08:19:17,726 [root] DEBUG: Imported auxiliary module "modules.auxiliary.human"
2025-06-11 08:19:17,742 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageChops'
2025-06-11 08:19:17,742 [lib.api.screenshot] ERROR: No module named 'PIL'
2025-06-11 08:19:17,742 [root] DEBUG: Imported auxiliary module "modules.auxiliary.screenshots"
2025-06-11 08:19:17,757 [root] DEBUG: Imported auxiliary module "modules.auxiliary.tlsdump"
2025-06-11 08:19:17,757 [root] DEBUG: Initialized auxiliary module "Browser"
2025-06-11 08:19:17,757 [root] DEBUG: attempting to configure 'Browser' from data
2025-06-11 08:19:17,757 [root] DEBUG: module Browser does not support data configuration, ignoring
2025-06-11 08:19:17,757 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.browser"...
2025-06-11 08:19:17,757 [root] DEBUG: Started auxiliary module modules.auxiliary.browser
2025-06-11 08:19:17,757 [root] DEBUG: Initialized auxiliary module "DigiSig"
2025-06-11 08:19:17,757 [root] DEBUG: attempting to configure 'DigiSig' from data
2025-06-11 08:19:17,757 [root] DEBUG: module DigiSig does not support data configuration, ignoring
2025-06-11 08:19:17,757 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.digisig"...
2025-06-11 08:19:17,757 [modules.auxiliary.digisig] DEBUG: Checking for a digital signature
2025-06-11 08:19:40,148 [modules.auxiliary.digisig] DEBUG: File has a valid signature
2025-06-11 08:19:40,148 [modules.auxiliary.digisig] INFO: Uploading signature results to aux/DigiSig.json
2025-06-11 08:19:40,148 [root] DEBUG: Started auxiliary module modules.auxiliary.digisig
2025-06-11 08:19:40,148 [root] DEBUG: Initialized auxiliary module "Disguise"
2025-06-11 08:19:40,148 [root] DEBUG: attempting to configure 'Disguise' from data
2025-06-11 08:19:40,148 [root] DEBUG: module Disguise does not support data configuration, ignoring
2025-06-11 08:19:40,148 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.disguise"...
2025-06-11 08:19:40,148 [modules.auxiliary.disguise] INFO: Disguising GUID to 5b721fb2-5901-4dbf-9e93-ccddabf535ff
2025-06-11 08:19:40,148 [root] DEBUG: Started auxiliary module modules.auxiliary.disguise
2025-06-11 08:19:40,148 [root] DEBUG: Initialized auxiliary module "Human"
2025-06-11 08:19:40,148 [root] DEBUG: attempting to configure 'Human' from data
2025-06-11 08:19:40,148 [root] DEBUG: module Human does not support data configuration, ignoring
2025-06-11 08:19:40,148 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.human"...
2025-06-11 08:19:40,148 [root] DEBUG: Started auxiliary module modules.auxiliary.human
2025-06-11 08:19:40,148 [root] DEBUG: Initialized auxiliary module "Screenshots"
2025-06-11 08:19:40,148 [root] DEBUG: attempting to configure 'Screenshots' from data
2025-06-11 08:19:40,148 [root] DEBUG: module Screenshots does not support data configuration, ignoring
2025-06-11 08:19:40,148 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.screenshots"...
2025-06-11 08:19:40,148 [modules.auxiliary.screenshots] WARNING: Python Image Library is not installed, screenshots are disabled
2025-06-11 08:19:40,163 [root] DEBUG: Started auxiliary module modules.auxiliary.screenshots
2025-06-11 08:19:40,163 [root] DEBUG: Initialized auxiliary module "TLSDumpMasterSecrets"
2025-06-11 08:19:40,163 [root] DEBUG: attempting to configure 'TLSDumpMasterSecrets' from data
2025-06-11 08:19:40,163 [root] DEBUG: module TLSDumpMasterSecrets does not support data configuration, ignoring
2025-06-11 08:19:40,163 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.tlsdump"...
2025-06-11 08:19:40,163 [modules.auxiliary.tlsdump] INFO: lsass.exe found, pid 696
2025-06-11 08:19:40,179 [lib.api.process] INFO: Monitor config for <Process 696 lsass.exe>: C:\tmp_gell1p8\dll\696.ini
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'procmemdump' with value '1' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'import_reconstruction' with value '1' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'unpacker' with value '2' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'norefer' with value '1' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'no-iat' with value '1' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: Option 'tlsdump' with value '1' sent to monitor
2025-06-11 08:19:40,179 [lib.api.process] INFO: 64-bit DLL to inject is C:\tmp_gell1p8\dll\lWqIFBF.dll, loader C:\tmp_gell1p8\bin\RlsewIXh.exe
2025-06-11 08:19:40,242 [root] DEBUG: Loader: IAT patching disabled.
2025-06-11 08:19:40,242 [root] DEBUG: Loader: Injecting process 696 with C:\tmp_gell1p8\dll\lWqIFBF.dll.
2025-06-11 08:19:40,242 [root] DEBUG: 696: Python path set to 'C:\Users\Packager\AppData\Local\Programs\Python\Python310-32'.
2025-06-11 08:19:40,242 [root] INFO: Disabling sleep skipping.
2025-06-11 08:19:40,242 [root] DEBUG: 696: Full process memory dumps enabled.
2025-06-11 08:19:40,242 [root] DEBUG: 696: Import reconstruction of process dumps enabled.
2025-06-11 08:19:40,242 [root] DEBUG: 696: Active unpacking of payloads enabled
2025-06-11 08:19:40,242 [root] DEBUG: 696: CAPE debug - unrecognised key norefer.
2025-06-11 08:19:40,242 [root] DEBUG: 696: TLS secret dump mode enabled.
2025-06-11 08:19:40,242 [root] DEBUG: 696: InternalYaraScan: Scanning 0x00007FF84A790000, size 0x1f4542
2025-06-11 08:19:40,257 [root] DEBUG: 696: InternalYaraScan hit: RtlInsertInvertedFunctionTable
2025-06-11 08:19:40,257 [root] DEBUG: 696: RtlInsertInvertedFunctionTable 0x00007FF84A7A090E, LdrpInvertedFunctionTableSRWLock 0x00007FF84A8FB4F0
2025-06-11 08:19:40,257 [root] DEBUG: 696: Monitor initialised: 64-bit capemon loaded in process 696 at 0x00007FF822E30000, thread 6396, image base 0x00007FF60D500000, stack from 0x0000008EFABF4000-0x0000008EFAC00000
2025-06-11 08:19:40,257 [root] DEBUG: 696: Commandline: C:\Windows\system32\lsass.exe
2025-06-11 08:19:40,273 [root] DEBUG: 696: Hooked 5 out of 5 functions
2025-06-11 08:19:40,273 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2025-06-11 08:19:40,273 [root] DEBUG: Successfully injected DLL C:\tmp_gell1p8\dll\lWqIFBF.dll.
2025-06-11 08:19:40,273 [lib.api.process] INFO: Injected into 64-bit <Process 696 lsass.exe>
2025-06-11 08:19:40,273  <truncated>

    

    

    

Machine

Name Label Manager Started On Shutdown On Route
win10-2 win10-2 KVM 2025-06-11 08:52:49 2025-06-11 09:10:36 none

File Details

File Name
OpenVPN.exe
File Type PE32 executable (GUI) Intel 80386, for MS Windows
File Size 3203704 bytes
MD5 40fe8e6ee4122aec95cdab4e267c8a37
SHA1 d7581564a7880ccf880d6bf6a7ccbe92224df45a
SHA256 cdee381e615fc567fd60056c80dc423a9e8261d06a4a489fc166299413cf13d0 [VT] [MWDB] [Bazaar]
SHA3-384 757489857695e17c658b579a61a4a07d3f0076de6e1c0282d70fea1b898112e6c658bda27b889f091817c6367ea75361
CRC32 6C9AAD5A
TLSH T1DBE5332236E7C4B4D1945D339E11AFC1A2FED37D4A3894AB330A4B1D2A74E45F90B58B
Ssdeep 49152:1G5UfgWe+ZWwk6gmVa+A4vFshuQ1W2DQiaY0dIGUvekUlP/0aTYg+VnvI3TtiOV6:1G5QgP+ZWwqQ4J1WAQi14HHPsS+V21V6
File BinGraph Vba2Graph VirusTotal

g%Ci)
US``8\
s\x t
PhDZ1[3
5 KA=
w[j,'
@.data
~%VJ:
FeD8sW
8O*Sc
<BOPs
;tSa@
Y'_`l
;YDj V
SFM001
<EAUz
O.-dl
i8NWuX4
M%le#
|c}D4
hMaWD
'0{|#
%eP6!
bvC9^
*se(d
8>rH}
RVhHR_
__Vw'
;c^/P
H/%lc
-?/#/
&,MP7
AHET!
X@3or
Yz3X+
gz8l,
fFn#TB
+ @yR
zL4}!
=:'e>t
zm,I(
2Cq^Zc8
*Qoi{
>V%<G
Sunday
_q2Tn
QQSVW
5%[;0+Y`
"'T1B
y?~4sx
9~<~A
|/lL_
r`bs&
A/MVs`
$7###
R0hzU
RWz:h
qb9XB
8SZozWI
:!,'R
dqt?
Eg#8~<
(<?>k
=C?RH
RLpE\
;D*35
~qfjD
c@r%9
NcWJ9
hl03*|
yA{l(
T?W[!*
>u0Vj
pXq\1yL+
es5cx
BsPh]!
k\9ZJ
9EEHWz
77)R)JS
Vi740y
~e!)h
;NQ8d
j0'NB
<7t"x!
nJw1=
cZR1Kt
)-Qi^
z,`#U
5o&ByU
Hot2&=]k
f.`W`a
*dr_e
R6024
YD\bgj
9b*&r
_.Jg$
zg7a=
@:YNp<L
FOx.c
|urr(-
xZY&:
41K9(
q{_a#
`idTQ
}^n Ar
_[M0kU
{74MY)
gfIi
0?[U:O
H3@{D
`Y_=R@ m
!766&a
Ly=5J
d].4s
^WD[P
<{Og}
|>QzF
221219205013Z0
cv *Z}
RUb:)
7>7@I
mw/jI
J';q&8
DX-8[
>hE;_
20clf
ATy}?
8c$N/
H8[m`
i)m?G
0jRlY2ylwt\d
,H!Rr
1P"hYEL
op"m6~
?cy+~Pz
/)wLs
#A8A9
/[Rkl
&kjW6
cf7|,
:'V/&
+g|4n9
83ke#
pnVR2e
H/^+yl
fIQBd"
HiMd8I
;qlLb
<d2fl
|tX}[
ZZ))6
Aj0Ab
MDh%Y
.21q)$y
VryE,}
d"yU:l
Vhk`@
'1l[,{17
b"8#x
edwQ.7;6d
?]\!3P
rB;lG~
c=2vHl
G5||Z
{'Jg)Y{
;CHg%o
CZP(it
L-lzr
,2GG2!I
qMUjS
gBM^Y/
#C!qd
T]2*t
}oN[4}
+OA$>*u
*"Henu-
gL6q%n
rI-z,
T2<[m
##(y3
;(}HjIk
PB0C1
e$Bzg
voi%S
+?'Ebj
R.:)d
"/:<>\|
M/7Z&
?+Fq[66
n;SN4
6EnNrW
m)"CQ
!vojmD
S< t+g M]
` irJ
sKxDi
e,y;C
,<d\\
:e[T{=
2nkPg>$_Z
C#]9W
8QqX>
/c.)>
iom9<
&)O([
P8gWpZkq
'E9Em'
UG>Fj?
>M$@Y
9lwWc
rY5E?
DnT<%la^
jAI`p
H6c@o:>Vn
J()b{
<H;hb
\dHKQJqX
]G02o~
A&:EUz/E
]M)>"
|yS</u
ZI_*H
^?1ky^buMq4
G'P9@
22W?)a(H
^r4D~tx
_962$
l$YP'
Ci+Fgr
d#tHe
zD,L7Ju
q;]{?
C?KA`s$tFz2
Z95O5
CSXfq.
'(_Ojo
[AftR9
n''{Kp
7?\<j
3b!I`
KR7j;N
~J}%;
b8s3l
fx?#\V
^:e:
\o Q
:zJlr?
Rd]]U
~q}`+
M>Zow
]X/<PIJ
=_j"*
p7Avx
Jr8p*
<?7H0
`11#tr
@SvF ;
#=6kK(
Z$K^h
-"mx<2
)Wf5t
wJp'n-
<e Fm
QNEi<
Tjv.A
oVD~b
y#'0".q
;b1H<
%:[2#43
-;\J/\^
B,IlFy
e=j`I
PJ,AuR
O R}#E
vGQ0[s
osj%/
R [fk
gu:v8
Vnr.V
G"fI;
Oqpw[!E
9!Xy=
>,Pa9$
Px%i8
tbH4b4
|9<NI},
(/K-IPO
MZ+U[
GY>sE
6tA.;a
?5]PX
-AL-p
_^][YY
2Y?a4
\:]mE
:A@"hao
KBzpz;F
9E{gEH
jJB)(
1JW73
R6027
'wL/e
7n\|G
i<:}!\
Wj~pj
ND|cj
aw~H@SG`
Be|&Eu(0
ZVk5zW
B#}rvHeb
9bAP(8
>ILW
$z:Rn
etC%8|e
Pn]t'
RY}yTxb
tUNDOj>c
Microsoft Visual C++ Runtime Library
-=Jw{_
4&;av5M
D0emJ
tc&d5
(V:#a
(&-2w
vGBjW
T/O@[
RSyhI
^\c0oE>8
S?iY|2
Y`MVm+
e_dH-Z/FO
6b*b ?
Q*ECU
\g0AsTXM
;/u|P
#9Xxn
?2gGf
?;MLyq]/
&mDe65
+X']MY]
%~w]\
~:2RR
VbCcF[3
91XVJ
LBmCj^9
(eX!4g
zqL&o
cRok=
JL&-,
3vM9 6%
\z=+,
(RVK.
q.~+'_
i/F=w
}Y0XY
)&0[FyJ
Ss6DN
v^'SyM
mR)7*
_o;m.
*Im7y,
AcfI3)
VdRD9
c/2E5
QP-s~
C0L87#
yP~mO
(`3#}
)0\Ua$
\GF{,
Do5xH
_!>C'/
*skF3bf
/URw!rE
rFk~>
{)wXh#4*
L3pTA
#7)e>4
^~)SSo
%KMr]
d/S0>
uc2Ox
hm\s;
jo[|9
a)N8oC
7\..s
H~|+T
;&h<d
(pB2z
wQ^Z`
SS@SSPVSS
\5i5R
7http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0
3%bA6i%
Q*<]g
[p#,T
R@>)s
jpy<4=@
`M(-^
+$}N4
w!-j13s
g<u6{V
ZPf1j
AK<4O
Dp',9
0OnKq
/5(:4
ed;OrE?
<:FvL]z(@5
l?_r=|
Jp6kK
5zi)9
r{ZC-
bdvsz
(q^A|
,http://crl3.digicert.com/sha2-assured-ts.crl02
Y[zl:
pTcU~s
4"KO3(
vNX#5
M"::4
iWq?i;R
sf^S+
WpKmeoQ
{|5R:5
0pIZN
II7f{
XCksu
H}yJH
tMWWS
w!jR{g
"-S^j
6_E@d
cXTZ/
Gs]N,
V2VA=<
K*S=-
=[[e~
V6a?iL
--,6S
8tsU<%
A;c}_
@F0=PY
qhC^}
fAk8
~(L.7
B:]3|
g;HI([Ts
\lgq&
y?}/Z
5c3~p
q<F'Ww
3"<CYkW
V.Pv/'
2yT2\
W{)d}6
JG=t`
xA1;>
ID<&Z
O`#7U
;=PZB
9"#zC
umi!8
01,Hn
(P*gK
r!|s4M
;6vQ<
m4hwC
vtJu=
Zz*z*
qu7rq
aH <o
9,r#F
V'%&e
LywKs
`](n(
{>e]Y^
?]Tl#@+
X5EU)^g
RCo@"
wDw#]]B?
dnYQd@6s}
5t%>o
5B!q=
]z'rPd
st,HYf
@J^7_
GoK>n
y"ECh
3m3z{
749e+)
AS6}I
*}aSZ
B$%Vl
>yRx^
EI$$L~4QH
/-dvy
lYQM#{E
TjER@/
*hv0h
&V=~0
mxH3]C
oZY@T1'
7@f,`r
:"t`u
w/h5[
I?>3~Y
h,pqvN
ZlzZy
VW\2cT
'EY4X
d2&#z]
B<^xt
"cF2w
}bGP\
R}=>
830{Ec
AyD-u-
rnn6{
SfM'6
#+X3l
OOx#`,
V;p+k
PlG(&
ki1\W
>t5,*)
OTcoI
~>X|%s
{O8mO
u/Q{R
#Noo`Yzl
Mgk4u
w{+o"
u 1Ga
fU?hu4
9St0JV
vkmoM
Z|{e788
':*yFs5}\Fn/
.a1zJ%lcb
[NyCN
=NO4
^}^&~
RUw8rC
p82i
|f|ca
't)4c
CviGA
8Wktt
XMR<o
;Ep~9
k+/~n
jCy-hc
B<$NG
Wtvx+
ogmNN&
aFya6
C~Ftx8f
7Yrs8&
=Oo\b
p4_)3
!9<I[
+*&10
X6="o`G/
hTNb=
%bP=[
,Dca!
{17]#
oTT$!
g|yfw
Um_[H
J&+|(M
BF*{U=
0</NP
J+Jsm)
"I=N5!!)-
)ftEt
"kW8%I
L</o;
ISS_f
87j$l
70G\tL
wD?f5
7bO+mW
y E+r
L(rwJ
)tsOVw
uW=Lv-y
`:2%8o
};U;n
>9bqB
2NqJ%1
Qy)S!
0z,\)]
fODi,v,DCe
-XcH<
P-I%l
gV=y/
T\)Bz
P94Oz;
\PN@k
Fj\\
6Nm_\K
A2)eR
*}i@M*
#:!}`
n9{m<g
ukym`
[l;j,8
r,e`6
_cs$!
tnI8&^
9mLna
=a1\_T
3]_>="
GetModuleHandleA
~txj)i
i)`4q
m%~,48
TytL^>
y#6qK!+N
'gbP}
H)&@V
/@Yn ^
00(eLF}Z2
FG#cG
zr)~.
KWQ<[
T3**rBh-
Q(yM11'
J]@znx
9Zw@P
n\yrhU^
F~@WP
x0q`O
wI,[g
b8 &=f
\NV2p
(@Xg?
#+<OU
.nd>x
c(_Ay#
VnUL"H
|5-q*
Ej7',
;dd"@W
\6i;)
ex'P1.
$^_UE
$;]Y=
z&1tX*{
=.>}66
wfVyQ
"p:1y
H$Pn
8f)Wz
.rsrc
Ircn"|
_bG.lBj
%h5OZ
@(6I(
`5bG'
(W+iXB
?D`l
B]1vo
4JY&.
0=f,h
C1d6Y60
C7e~b
*BH<i
H*Ehf
3Entrust Extended Validation Code Signing CA - EVCS10
| laB
vqW'o
<application>
W0eE^w
3`HwX`i
Sg\C>
zlkr(
`Ysyb.
`U"e#
_NFo6
<Y4#rq
NUrSd
\yU)E
x.C%q|
=p9]V
fO7#:S
D&7,@
Em[0O
R'$D+YBm
?U6Q'=
kNP]'Ydgx
tl1d[a
4http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0:
2W2`t
5uat]
'!%0%
m.a%U
XOojSa
.Pv0}
SetCurrentDirectoryA
1bTn2
sm9w,
9fQ[6
+qbWh
.@,.a
Y;q$~z%4
(Bfdb
<;#RS
HeE>Ay5
3zTdw
GetFullPathNameW
dP;2b
s~@93
y&(9
<"g%V
Eovwm
]dS[)z
u6Ls%
!6[b4
*!WU~r
X!Zp%
8L]Vj
;s]i$Q
px*|+X
NiDH,
k*r8h
PostMessageA
;F_$Le#
ZvStKL
\D<T(
ysPj8
J^Aq+
P%V*_Bf
zw2|7
vWPo1+}9
2575Q
]-GT\K
Fd9CB|
>x39SR
@#&*B
l@Ss)J=
g?gAk4
o`:-1a
I2t(^VOSUO
E0\4M
Uw"a!
%EFPks
L[c!D
w s#*#6M
[IILR
<5&+48
^cN22
_n|5]
'Rs%:|
09Rifi
fzH9[
b0KB@<
h!l2j
(W:[%
%e^_`
N4vY[K
5q%[W
Q&>A-p,C41
6@NDt
oi+p^W
J++[$
})uMD
X`9u;
@Y6r74
#|lsv
48ign
k:R03
_Ugce
~:q\rT
Y8z9HT
q`nqiz[ 4
5m^,?M
&<0U'
'?N:h
:)'mh
<*[Bh7u
bQ]3U
z]9kO
#dWBO
Q'uu@
Wu.|L
:=%"=(}
G;~ |
Wednesday
SB"AB
e EC6
nYj'!
7!4Sq
2ud^7f
ZJN-a
E)Xs;
Qyu{fe
(9[xP
RD#rti
IG{ b
WuN?Yh
~:Rl9&
z(g&t
bhNNN
(M@Ae1
Sg1~]
P[N j&
v;J/~d
pQ9pu
Js:c{U
6454%
@Z)Pz>]
Ke`[Wt%
om,3m
Y-GU=p
{3 e1
ykg,ny
@>j),2
F@[\|5
FrYvu
O?WYEX,N[
Y=0c3
I-5b8
YqiHzv?
iA~~DV
A&k]V]?]
3Kp<n9
h;J/#^h
!DcLpAl
4Zy^8
Fj"n-:
9833"X8
.text
\1B'S
`o{wMfG/
November
x0}t&Q
aoPp2b
S}}$h
DIF,L=
qaq1q
<!-- Windows 8 -->
z}ttE
6>+P'8
I5,^4I
?VR)?9
P)CW2
9!Tfd
/ x<z
2iOk<
\%s0=^(
\@E\&
V)'har
-afe"
TPmgg
5M!)W
l $Hf
C2;6A5s
gfxik
Axu4e
@(yw#Xe.
-E-Mw
,qy-xi
QyLscU
,e8TT
, <"I
?+!N|=
t2:tEAE
YU,Wk
oKf'?
:7${NX
WsE!J
!A^rP}
'6DYk
l0h'F
yp,qk'
<4GPQ
IrkG}
Zh'me/
3PRT]^
0&XTP
AhNYn
8QL#]Df&>+
.5v5L
GLt\-
fptp;
%?C9W2
%itVo
3+\oC
/)1d[r
e([/@El
H:vwa
GetACP
Q2sq$
}A<.Pi
gD8H)
o^aEf
Y,kE@
glC%+X{
1hoGb.
ak^K@n
/9 8N
r^EaI
Xs(u4S
*iKzx
mL%k'
fZ$DVbw!Y
)o$;8
=[:xC
yD0,^>_
@|?`R-
7&yuI;
?k}?}
./%=>Q
H-}lnDm
)/=GG
Se8p}
6tSSRly
Vsa#]
Rk`&*
bl?&i
8NZbqn|b
]P(l+d/2
3%8|(
m%&9vx
2XK*P$Q
0we4/
SJ!cg
b~1d%f
"7%H-
{T*-7
,<f:W
06#4|
\N|KBH
hY`/z
aOrAj
~F-yGO
8<C\r
UH&k}
M9e~.i
G;o-Q
c~9#_
#PTl2:&??
8 vZc
N&9^V
e]lf~{
9I#rz
}G?FA
c`(B@
_6rVuc=
5E94A
S?-0qs{N$
Hg=84
#Sc2W
D.%:~7f
Npon)
KDlZ=
#kD4#
ru~mA%>
Q@X{DS
Q/Wj?U
Y!<IKFk
ElhHPK
OQ<sT
9GYM9
D|P0"
U6f#\
Lw,]vE
&wDJ8(^}
&@v`P
{AJ~<
0(c) 2015 Entrust, Inc. - for authorized use only1<0:
P#5pG
P+tpJ{@v
i6Jz3=4
`^fa0
lI}#GU*
6Gh:<
!:S^8
Q{/ouj
`^4Y%
q#TD~
{Dv%,
0aTY**
SetLastError
%onUB{2
r=Em-
:=,kZ
_5uKN
d?n\w
F$;F,r
w)KT-#
7Hjf1
~!^Tu
j()Et
&8s 1>'+
'{D?Ja
P#e_C5e
B?C_.S
R6008
<q<k{
Yy?)|:
jFLH/i
rskSSK
UB[S)
!JBr(x
f.ZMio
3"fV0$4#[
c++-<
S7@+;WC
K}H3*
s]37^Th
tO!?3Q
<o6PO
*qAYJ
~$4Ps
~qUiL!
m&ZbyA
_/~SWa
ew#$"
VirtualAlloc
+(06h
3L;Vo
1d!so_
[s/(dg*;
F$][Y
:D;/I
~G_UR
9pH%0RH
:I6Zi
q#SM+
8wVuL\h
frW-'
TG'-S
4D/gj
'3uH~@
QC\AJ}'
ZGi\0
g'NlP
S7?:V.A
EA;6`N4
;T*;c
WGd72
28!*G
mV&.'
S\8{|
#YFKu
;Q2gVPY
cvER>
&ruI0
l.TlD
`#(x9
$`FR-
O\t|f
[CmJQ*
~95yl
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
x?E~j
e3Bax
,%jt/
xy1{_
M:t4b
:Buot:E
K nd.[a]{
K4E6\Ae
b$%a,{
5AN8>z
"WWSh
phDT~
+vMA1
(mjRl
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}" />
=?)s[w
b0COnqt
U6;//
gr`zG
X/M.:
o1'9'
ETsM!
8{.{nHl
-PAYZ
Z9SW+
"<p<w
\3:E;fn
L`$a"
NdX;6
>3;{g
doooN
L7s~n99)
/pnx}
T}3Z<sw
rBc|W
.}R>V
EV&th
Zf|FvQ
Z`NN&
:RKE#
)s$AcC
anwG?i
[F5xA
eRW$Y
..M4K
$^WMt
!S8X@
w_TbNS
4D$T_
:L[Lf
"kzcC\
H)Oad
:9f{8
#AsY&
<fNf5,
0`]Hb
&v5DVa}
`8]~x
_FBBhV.
P5=P7S
oRF(#
/- 4^
~$7x8
OOh>B
%dl>un:
@~g:S-
m w-J
=f1}#
Q> x)
rAubk
EFQ8h
<%ki8
vb'Br/
.mGBcP
}$ZCM&
[^MKe
%ex.0p
^E/{5*mbbyh
m$fBN
Sq/+9
t8Q 6
(F+Jw
7fxFJw
)[ZM(
aF9(R
t,@8 Wa
FindNextFileA
Ky~}J
]g7*=
Vy`t~
leAqJ
B9^Lt
$%`3`
~&q"
A3LfL
{PUZD
L4Xs8
hj[j3
sXbR5
/|_iET
{iA'v
,~VTl5BK
,-sT{8
mK M0
W-{|Y
1T=n
}piC?
ePEGYS
&'?n%
v<E<]e#
Ztb;^
LegalCopyright
nc<Ek
DuF5S
Yw2p/+
u9 di
B-0{d
om*,i
+.nh_s'5w
SetCurrentDirectoryW
`;tZH
hu%;y
[j&QG
@Gwq<Px
zZs*]HQa 4Q
drz:y
9D=}u
j/}&b
CL`2;
|]s~\
h}-8n
2gJfP
! @fR
S674Q!
u(^pX
Kx6c$M
:ec!m
}~SD-
[dcf*
ZW6dw!cY
SCV+MvoN@r
DVE`(
qj?uW
'yhLh
P`cE-?
IDCW'
CMXjD
ss3C}/
GRT^
~QFpn
TA!]M
c(Aj_
"WJ+6g
#1f'O
(2FyG
) B.j
$?$bF
*P8L4@
o{KC-
z})-Fj
,Y4\L6
d'gVj
R9oq|F
IR/)9K
W)39Y
1ViI&R
sD]$0
IrtjS
G&a(l1{^
oTFAZ
3&XlF
^b<gDf
:G{aD
"FFDZ
w=n8O
.^ 13:>,
LWTA`
x6:a-*N
9D']`"
`!,($
;Ofb=/_Kl?V
$!]hB
D>__L
|z[#m
L^>w+
si jr
@Q*&;=
=0%86
i3\3B ]5
^Na/Q|
'd{p}
92;8\
8/D+f
%URBZ]
=tY@n
cAS,[f
www.digicert.com110/
9G+@:
dz|@X
x}KDH
B|~0i
CH}YV
51'.B
drWJ(
ADI([S!
h=kBq
/@T{D
Uf^JQ
!}]`{k
)zLVr6!
{-v"4
;tMWU
tQI#@"U
sS<:'
TBk<Y@
w!'a4y
U/A&qK
=*n=5@
'bHdw?
GSF%L
!9^&U
T!*S7
7)bTWZ
J8Y#S
o'x+I
?1lK-
l!$i2
i-5meO
- not enough space for thread data
1o>{}
ykkAc
%4Es8r
+Gggx"
h'jt
L#/ST
ZN,*g
hlFl]
T5Zh<
8=aJg@
%6HK^
fKlDw@x
shdfI<5%
kCz8K
rilX(
^Y9fl
F.}k9[F
9<zP!
[ wj](
kX^h*
iL(y(
}(8CR
G 2"lZ
-qzmd
6R[^{
\ Xv7
$j+EBK
uMm]_
j]9D%
(H,Ja$
p&wPt
\v6e$"
7~=$i)
#`Im4Kj
]ndSN)
D!xU^
0LO<Kl
lyP[0
VCICZ
7OV_Q
g27L|
K[f1}
6>E=!
Ld'rB
f\};E
Uh g3i/
j]~QjP
nk8=%
^hdn[
g;7&X3WG
z^yA7
|UlcV
=b7Lvu
Cl|<!
.LIAjI
VWjtj
Extraction Failed
^$= ^
r5a8F
IKU^8
yyuo1
UT*g'J
p{K!g
?52'80
DmB|tD
n[>Ef
T>6t7gf"`
q+kUt
Dl;2h
5&CQ3
#=`)KHR8;^
`m@zM
[@ -Mr
]YFEFCH
%E6`<'
H,c3b
M(g^>ecXCuH
.e%'8
G42un
}&i8%
Pz}@Z
R_Xe|
WyFDk
Q3l`X
^y)t:
Can not find setup.exe
WaHqy
m%u[M
("NE$V
Z/1|bo
VVVVP
k\QZk
SknZ#
KCS2>
GGe #
%852"=
3~pQp
hQ#6?d@
W"UFJC@
5VE{I
'm`U$
$h8I7
3NpD%=V
%m9LB
\;rk!
aqhfX
_0e>IXh
+CyQX
Rp(/I
JqZ_m
%?ohP
f&TS8O
^[Y&+O
zfegl
=DA(@
dW^jj
:s}&@
8.Ylw
HeapFree
sWR.L!
(*[qj
4ZU%J
ZL66*e
Fg_8+
EXBlibf
h(0y^
GFt@_
:.'ze'
4x[s"
r'k{*C
l>3Hrc
DZ01e
J@wY-
yq0N)5
C[g|e
vHR0sk
pB:&Y/
0%TBa
{q12]:
sS1{Sw
7g"Ek
D?YLuy
E]]==
.xq.(
Ugip:-E
iNV^
LkvW
a-f,j
ja~@R1
p5}_%;
m(U*hp
*#8=
z^Ud=|Y
UAu>7
mfNO
o]|[W
"({NTZ
mLpm6J
94g_&
#9;":
<)M,x
]OfD7
0fS:0
VRNtF
:rFNP
\4jp)
~Pu2:
c6y5Xn,
`2qpf
DU0.0}
J}JT+
FKEbjiN
8i\l>
u,AARL
T&{XD
eM+)`h
}--bx
c,$b9
?jCBi
e~zO,
/;c-D
)$rtT
9vMQ4
a/r_p
o.1~z
L4f'D
mD|DV-
*>lU}
hp@!d
[Ea;R
wzK.l(
C}L^Yg1
oL#OQ
http://www.digicert.com/CPS0
XBnTI
vCo^T
o:n!@syn
sN$gn
+|=G>
6LbWc
}1\"{
qA?J8
b=0C$
*ygYQ
U.>=P
spv!|CD3P
b) .R
,!9z7
$vW"l
d.au?
EKbW}
msctls_progress32
sG}%[
SHELL32.dll
FtJ*d2@N
/m0$z
v5D"V
N/CdZ9
\Qo[~
?kL8=]
[qPMb
#t7;ga
%ecP_d"Fa
o^!!^
Nv=]3
#JK+7
utD{R
?C#b*{
(7-cx
+W%F/vH8
+-F>|rI
e7NA'
5RR9P
6E;s\
in0O$
KLtIv |k
MNWT9bb
mt${(
jkZ`*
_JAiA
3p],G
ouU;Z
_>PSN
BDL"t
4>Z5;>I4
Y*%1|
$[ Ch
#ai'i
8+6#!(
m1@W0
wRE!)W
?:cA&
dut(u
Y8W]K
}VzSa
v^K"g"]
TDk{(
X;L*5
4x;t3l
3(|2k2
/<B/q
8T+A$
p643f
B"zmL
l^ 9aKM
nDK 92
x[{=&
OY29*@
]&QWa
027{H
2}mg^n*
Ws#Ez
W_9{`
gX-Ej
M(L]=
5uqFB
~5~3g
>WWNe
t:\8}
P~EL#x0
,ba0U
5?|IVwd
~f9JuJfYt
e$ocp
Lep);
m8<Jn
[_HsE
>/DNU
s-Cm=
b1"j9
;r]{k
==-2u|#P
WUL0<^I=
`WQo5h
\AR2r
KY8ObK
1la?"
v>jGB
C%y.GA
V[qR=
619J1)
i-""y
KpWI/!
O\6D<
ac/Oh
PF?&6w
G=57\
&V1K?
^c#+'
(-[S+
ikiyU
xdDeC
_1B]#I
m/=0s
6+)B@;l
CreateThread
I(rfy
v>N}0
i9,k{
)/[HA
O9u!:
P:t'+
er'vJ
#{L,&
"hLgM
U(hn_E
i`tx*
9=T3B
]_~ *`
;ur&/R0
O3<{+D
!X=E1
Z!~Yv
2\`Y8
~$>o)
.Z})j
QtXK:
[H!M0q
b+>,8l
\2g(I]
pYe|9?
H3v:\
y3k7a
LHzh!
Y#J<9
GW,yfM
0P:2T
9)E;?+1
}_"]l
F(nl-
O1w+j
S8N9^+-
"xy/N
%c5bj
/krV"
&-$;K.
{I7T
`+KT{
'z5a1
Wz/zOg|d
HX.sZ
y+].W
&$7L}
3wy^b
g)3R,?
s(CQY
8.8@>
Q"Vg[
w<Nx:
}wPSs
\_Zg^
]p${[
P"+pz
?|K9V/;
$q"a&5F
5fc8.T
X!'/]z
qo9QA
cggm:4v
yuJR}3aK.
61h%a:W
http://www.entrust.net/rpa0
q/v_b
Pt7)F
BME4y)
qNjkc
L$(;L$
<#=x\=
wBeh:
m@*.
_Cy]?I
)pvYvq
Q}bh)
To\.`8
{hmc%.
FI#]2
70bUp
#1#t?2
mA|x%
xC|fl
rLA9!
P.aJl
?l|<X
UO7\L
ZgGUUV,
4-jzq
./^1@P^
psq%B
*2IFVj
b~3Sok
P<h*0
<a+#p
X@7l_J
EL^ .Y
V454Mj:E
=\|,~o
}g55H
<4p>$Hu6
+#nBlc
mE9[!
gM<AN"
Lumnk
$+3.K
M`DZ8-
*siR0
x2Z&{
,Pxbh
0#?Xr
Lu24uL
"[wZH!D
C+'@;
p)tv+
37#IZw
%N5V-
"Ah.|
v)\ly
I/>HF,&t4}
6Tu:2#
u&Mv7
E=D<<
uRFGHt
Bc//j
`F+M-
}=Y~eOy/
yd~D4*
6"wVj
9sqYo,d
'EAS;
Vq#Ut2
%OdoCt
4"1TM
G;~`|
?e|D$z
'tRd`
xW\()
uFWWj
Q^6:l
FindFirstFileW
Q7AG,
!XC4\
B6K,z
Zrc:E
lk4nZN
>18~,
PW/S3b
>=xkD
hvtjH
yG~JM
XD>`PL+
E&sE;
5bSx<V
PN5C9
U~h],
\dDyC>
\4B""
6&\5f
%P7qb
U\kW6
5d&nh`$
?rq3
x@k\E
L@S^+`
Zdi:1zh
7D7`<K
38{i?
Y[%n
f"} v
P_4iVi
[9YXf
TNY(s
|y1$\
(HuS/p2j
6/U?V
#5t%w_
Lr(),
vapU-S
uA,wIJ
A5ol(
&ncDvA
I5v+-c
gr6ffj~fN:*aaz6:nzz*>&j
T~"0W
q5;Ll
PhC*Q
DRCJwL
jU~D`
yQ-|;
LA95@
d5>M>v
Bucure
cP.5|w
9?F.E
X-(fn
$M?'iGo
Rm,}J
eyGe^Hy
^0f9~;&=
p@:; _8
-}?Ub
lPn(KvD
q~kla
aJ+Z$
{`CVq
k`X?NM
tUc43
ho*\KG
L_V/kx
acXM,L
)uOHI
C4D1/
o}<>@
'zMX3
@u7Y,iq
fa9C_
!ejdp
FpkP&
t+TvH~
TPt:qx
U(X&:
:*PDC
5DKU_"
Y1fUk9s7
\8Iaf6
iq0N/r
mY}S'
!yXb,
cXMER
/TXTi
L`#Zp
=Z[-5
rSOpX `
\6tX`
~'|o&
Gx,<Kl
]M-hv
oo>ai
f7DBt
F/!7nxo
T]o4&
{^ibA
9pe1(
T_\rJv.-2
pY25D
LY#{w
w^X~q*
n'geeD
O%NEeqxg
"ywj1
_4DE^
]-a}@/
l9Q4T
h%r[pe
O+-&{
orOwa^
[y/sf
Xm3.A*&
Ozp!Q
wO~jx&
Kr8=&
-4}\>
OG0*/
hzRgU
yfdC$
Haog4
K:+&~
%`|V(-
*bX]P9
ak^Bu^d
7fb&/l
_2KY[
QvZc)
aK-%$^m
f+6n9F
Ibdr9u(#J
\;_ g7
YH^O=s
t{0p|
RpN-s
Xouq)Pa
+?#s)[{nb
'7Dx@
S_-Ca
2#7b)
=RY<Z
V%?/{*
wuls-
FS>Q$
X*FcT
/.fU]9
,)#jH
*3s^@
zY{c=b
_EU,!W
:tFcS
AY`-t
Lf/_G
bo"V?*
AgJ:
September
Mg;oM
.Ufr}
3#BQ~
^4e`>
[>c2q3
.?AVCInArchiveException@N7z@NArchive@@
5fRNz
$P6+r
c%7}c
v&wJ:
OQL>`1
S8lG?
:}=cO0
d*}ft
ao#]\3"
S_Jd8G
v~0'V
"\oN}
hbsU|x6
:>Z'im:%
N8!:N]
WideCharToMultiByte
l*eP?
C_lwr
<E.H#
#t@j8$
VarFileInfo
@kC}:c
2b&p/
c?V>?
TokVS$
,CU+a
5r9:s
Q~#Z]
KgLjyp
zwM(d
R.9'[
b...ss
PU}Ae
[Q*Qj
3y1ztsZ
g4PdS
fv{oo
E?/G^
&V4lqOs
=)Sug
THV!-
bCl?)i
\Qiaa~
#e ~^
?'7NHm
U{P,A
MRkjH
l729_+
e{lwPQ
\7[Qcj
}(ODp)8f
>ybca
xw5'3
g o\^
<'_IA
fC(ER
;Y`&!
z1vA(
ty={|
(J2oa
+=GxU^
$?<Jw
a.]7a$g
M2%X.
D?Q^l~(
CreateFileW
Ai^2y
x{;[T
+VW%~
d1POk
"iU+:
a}{K7
oc!w#_
0b.Kl
n1=|
>$[ik
o1wdU+y!MO
BeQhf_.'Un/
LbR>B
l[d=Z
*<*ej
QPY]Y
:LNL%
{I#5m
F.Di8l
<^aP*!+
np2'qS?
yVEis
PRs?Ii
0 tx1
Q2C^b
,70he
]=z4%
e[ 5}
YuC+[
V~^&7
ix=$x
}Tmo3u
w"3c;
*980,
$#z_)
'"u)D?
*a</s
VjX-E
6j>+#
A*uSL
P'PI/KT
m1jpoltG
9?a5`2
:+35,
r+PC{
S0Aa~t5s
BCan not open the file as archive
9;Fz8:
W)/o4
_=9abn]
uSJf`K4
DeleteCriticalSection
Ji ye
5mW%U
*lJ\K
7Khqu
#?{%1y
Rx 6i
{#aSY
|'6v|
|fLK
Z *Yxu
b,dz]
,??wl
GRN(!
K^cj.
pfmW/
"Sl7!
v&Otz
JF.e&(}(W
8pwVo
fim]T
[PGBQ
GHL|!CS
H?&q9
~E%lk
B6|!Q
8EYB5
>s785
=GiA\
csV]K~
&wJ31#
5s?T0z\"#l
s<S'M,:)
[`\!<
Wa6c_q
s-sc1
M5}Wl
{xhqk
kYQUz
[.{HpJ^
3YR$N
cloQF`-
>#`fz
1T1*R;;
u qp'
gF"-Qu
I|uO'
68;X_-
]vBc0
wJr_(yr*
HeapReAlloc
+0X.,
wW!Z}
[za_#
Private Organization1
/2PGOw
q )i;
T:)J;
lyTuMB
[`g-w
DQata8i
=A>f{L
#*[N0
,=^9"w6
Lt)bJ
>w#f@
6cRJ$
}FYJ}F7
Mpn(X%
/3{Re
nTLC`
+5g OiM
.z8s_(
vYVK
686:w
tiGZRP
lu`E0
\e&7_0a[
Mqz+;
`Yt/SA
3@u_-
SiulO
+3cpp
5Ue'l
-i6sf
JJabF
[qA4M
dqRl_/b
'z!Hgk
&,6]A
{^H-K
A+-2G7
?Ipl[
`IM,K
PfwGu
VirtualFree
i=;l}l
5sr&@q#
|m*1J\
w4v@q
Tp&CF
&r1S)o
a]Xti@
2hbQWR)
GI$(H
3kM'&K
[)2sM
]syby
|7%c\oQ
vd2<6v
^-7s
itjcc
zAeuy
$j7#<
G_v.|I1v
Ib}#{
a{2da
PF<_L
GM>A_
[)QY!
O-Bah0
996[U
@J)oPSm
[S#26
sV*ASSA
~a ;O
'vhBu
,j? 9
97R<oT
*q>0\
# n "
|Io}/X>2h-
y2OBz;w
AP~bQ
Jp[U1D
lSL@CbVNx
|D`sY
6Sw.?
9p!8u
78QYH
as[z;v
)Adix
;IlFj
]A~^kw
mBuWt
Q[QH
R6`8y
3di0R
zOh_T
ti-HM
r$QG-%
*=;9!@9
oq&?=+`
+uzkC
#O5kJ>
s5:~t^
cqU,I<m
;~a,>
L;\Vn
U#6yH%]
6Mm9z*
HV8oT
vdRPv
uZ+;m
5c_qn)MRzi
or!qkB
^#6nJ
7hOxo
bg`f/
F~`7M
Thursday
3'MKZ_
B^cg,s
Hc<Xh
:?Iqn=
Y{S;P
na5dF
=}/?$D
1vb'a
V2t)"
G|B]Y
q$nPd
Uj/.O
aw+U+
E?/]R
*aZdh G
December
g0Ewy
FwZE#
pP`(\
y^_?l?
1 [Lt0c
l3x2vY
uKF/e
r0H7AJ
t7gQ_
^_G14_
6l.Ro
7P#Q$
shE|B
VEGYa
!-hXN
$[Uyk
sf8.n/j
t`@Y*:
7#hz(Y
jV#^*
;vKe@
tpOCh~
7lI+Er_
U3Apm
b<Xrt
Bc==c`
aMVtj
~.328y"
4xe&Q
R5wYvyY
g|f4j
@5u&Z
-[Rt;
8e8r"
Ymlb4g
.eMZ^
ILL#4
Qji|e
E;T F
'-9sJ
#TkU>'?
Mkly0
zE=R{
c@zg,
ioPJ6
8myPTR
3L@]}H
uaHop
>n$=AO`
c7| z
,1lbC
k8F<!=
)aS%W
;BBNo
5R2v
fJJXN
L18 2
#QN0R
E>08q
#Jf.nF
u-$0,
~S Yj
w$_^[]
D$W<SE
\.W|`F
P!Dt@
Kk@`_
G{Er"
AA=P/Y
7A~)3
~74A-
}yO0,
bQIt-
E-PoH
$`{vi
J>ieY
1Cp>tMv%
k+jm"
Sz+-5
'wZKqU
ROR8i
7FD<0
l3MkQK
u*Tqx
_[TXx
HRdW(
\oLi-Y..
0*Iv.
Fq6E{
dOF[E
Dnw^X
Uq7dd
G;~P|
8mh*e
byWX;
IlA.(
s~Gd5'0
CqNCJR
mYsO0
DUr h
G/bhZr
1}h:4
&7GY@?="
qF}WC
Af?M9$
^-eDQ$
BO\3i
]6jbr
Qj|1cN,
").b.
G;~<|
97&>7
k8HZM
oWMv+5WbY
}\lRJr
[4;Z,
v+$3l
&RHZl
e10/K
.9*pZ
Bzc3Y
0`iXQb Hu
#A`!n\
$- :bb'
c;eTJ
fkn2u
C+YYa,
IB_yE
S:4u;
=S~=Sx
a<LYC
awQ2k
IcBBld
Lyc.l
!Tq K/
K{Qrt
\,k+s'
-yvJxU;H
<!-- Windows 8.1 -->
k$Mf3
q}|2}
3rLQE
T)rcp
-_5EZi_
_/AXa3}<F;
mtGbgO
U\~Cja\
x<JL?
PT^7{d
_9= 4B
/<+Qb
k"G*kQ
{=Iv-y
gc_+r
^/gU/E
$a\S-
~&2I;xe
T8hq_\
J0[hIh
8yqT<
,Fv{>
Jd5U3
l6f#3+
April
'lu.V
Gw&PS
\yEz8
'$}kj
Z|`j[
_d8uy09
Y4;0S
AvS]6F(
LlF\`
qnc&Y
"lERT
PaL2y
TsGR(D
:lGyo
:8l/T*[
SetTimer
/}j)`
eXHy~
Z4g5c
G.D+I
i".Iaj
t:hY&j
P[N}_
yi+#a
qVq,c
j:c?a7(
}6iG{
E<Bo1
ej-K7k
?mJ:Z
M'W[W
CUx'4
dva)lR
lm[ K\
2G"xC
w$EX^
bN]8x
V/H!W
tWGY|
aB%uSnK
DOMAIN error
o4d,X
!H_a>
-gR#v
"J9vN
f=)2J
)EwRWcA
10%}$
jm,92Q
mgtPp
\T[u[
YvrE(
1WHL0
+#1rJ
upniW
G1|]r
\`@Dwp
mk\h^K
*KMD?
.huq|
~4[?x
R6016
6/5MJD
9_(g(
SXFg([
Hqt<x
AA)<K.0C
;u\]3
$6cfBg#\xl5
E;.zK
8tNA*
]n@*n
DL[{:
=U4-)[
'Bgv>u
TSdlM
qQ5*j
q%wuo
|*B?O
sxEW*-
d'Uo7
8q{j>
9:a`6
_iXN9
7+;rG1Q
0DAN@
tbXJ`
*("3Y
QNVB'
kJwV
vy.y2
zSv)-m
;^(t<
%QRBCTK
o,Rq1
\EfHX=%*
i7M|`
g!T-<
RrsQ>
=59O`
5f>wn!
\R]qd
rfD}z
lUi"C
=;#jF
w>Nz`
Y<T/9
)hY.b
dQ A6>
$zrw1R
axM!$C8
g,~a}y
n)W-y
8V^F_j8
eOm,k
%q";P
{;MCM
prg+(r
+pY~&
<FZ>
u-5z}`
=+hOL
U\2pJ]mz`
niq4I
V5m FL/~
{I\2js
tQe9z
Knm.%
4{[;^
IB\\z
N}"TF
K[RKJ
eGNr/
s(8Pd
R&}Z0
4eL0Ku
4g.@N
:Fle_
o|MO([
_)^tp
@R&k%
M|\ ?{
m.F$w
F)Obc
9/3y'
@/Q5<
&e$O-
Q:O$S
BY68~
n[1%qW
~orY?].
ZrY}<
5nPZ`L
vFd'Q
)d>L?K
~F[Jj
_:X[!
'B _!Im
3}Quewk
D9npQq
V<lq@[U
(dCyt
:l~*9
'DwI]
:=;HV&
'TKy~
hot0<_5U
*v(-s
T<hTlp
%QS@s
^!HH!
Bl"-v?
9Z'mA
}cZqb
tRh\%
Lxa~-OL
i.3zeUne:
/cotA
QUdj9\O
!_=m'
.]kik>y
pZ`u,
cDH$7LQ
J%yeh
veDOZ
QMJr$
$8>Vk
9L^Y?
9xl6?1[=
UqMR:
}#&yq
KrbrM
9d8h#\
G;x@G
K=yS\
RVT-/W
w!k4H
M']r<
%_ Y1
>J9aAZ
l6!if
/}gv[]
qY0G#7
b<r!#J
pTwCq-
`F<S=7
~YNFxG
PGe-V$8
I0G08
fENxE
c7!i/
8_ht3
/*N>W
5;DbIW4
YGq/S
^iU-B
%RUK$v
3"Moy
^I+f2r
nnKy<6
Q2;*%
e6$d3
j)mO#
l'?b/
tM9sT
Vf>(t
N<<t/
P({zc
k>W{ Z^gI
gSPOt
]~_.R'
dfN)g
Wyd=]AO
yDd|i
E<GyK
XLL]p?e
lo?iV
R6025
R.C_m
uev;A
FVdXO
V\"l-
fGyld2
1e1ld
- pure virtual function call
tOxY~
ZTzD}
4EtZDi8
`F+>d
<[#i|
amx1\
G&yT0
}hi`Kk*
D.J9"
(<!k9
&&pL!o
bj!_}-
,O(}S
b ^kf
Gl903
Z:+>[
&Ph*!
t"!7F
-C4|G
76Bvy
\zwx_
2|=;P5
92s? d
Sf=vP8>\=
%_s[]
k;6gG?3
TlsAlloc
7F1,)
cp-P|%
Dtr~>
9;*d|-
]"]8C
S)l2W
`-A;{
0vL0mb{
[?#0U
)%0%$E
fzoA2
w[R<#
B#M/}
>tn"s
hs?b7
!p\$X
w5Yx3
/ O^t
tln_b
-9uT5FM
~%zT,
|\>A)
0pedJ
zf/ye
R/~.M
Y&^+r:
`6aBI
lwq LF
s\{P+
wC0oo
`L ?%
|.h~@
VIW')
)UJ`e
z)};WG?
&>V*.
k3Ba/
P~S X
Z~~S5
&A~%D
{?5|w
6?1m~j
Nvv47
C5h)Xw
p}13-0
KxAL&u
vcy^j
l+|T)
3N).^
{;1+2MTRM
*k|nt
"""""/
SsVkA
[`9-a0
L=K2q
@E64oT
Wm6ts2
LM-_j
-|AXS
oXS<L
9rN`Pz
,F`*o
SRbQ7
+-B4O
:genQ&
aNEC:y
eE?!$
R7 .?
3U,fMU
%Hss0
Cn*auiw
Lgsr,[
Y^{aQ?
sR[qx
7F?njF]
$jG41
i#[@6
T(Qx9=
\,-EM0
b:q-"
sG`!?|
ZD6Ua ZM
U&/.x
JB.P1
b12LUF
:M?,(
tV:7I
{|{q$
ts\'P
FU_wH
(B@uI%~X
CNDb'
1.|735
f^xN",
2[)]
[e6g#
MeC%W
mM!r7
d$fF)*
2,>x_g
#q#[Ww
;Z4e[
*G{[I
@@&ot
C\eTf
YryfB
g4Qxe
$GJw"
CM2-P
N@~GX
@vu^c[
S8>oY
ve|=(
2o-\:T$gY
4@E<p
F;bY?
nmrw3l
&Kmy4
@zLoU0
"idj[TW
bW]?g
SENzQ
-!a:@_u
(q76.
/dNrQ
Zmcfb
bzuLqk
lDpqS
LUS"5
m)`MJ
CreateProcessA
$u9-M>
kJ|xn:
#5~CW
"'uB-Kj K
s-^D.
82vx&
!z:C,
p&04k:.
sYA);G
mU;~+
uV{4W
I3_s,b)RJ
y!IiTz
IigR#Jn<gz
-{i/E.
Yjr{o
abnormal program termination
mDD&>
m&z@@)
U2>|@
?d+ed
5CCEU
xhj6v%
*.FlW
4;k,)>
.'avL
9,2UA
o"9Mc
yL#{Ni
q_b1K
}>KU<c
>Qki'
,8>S5@
,!@InstallEnd@!
5E];vV
*f/iq'{
(sn@f'
BuRCk&p
L/!%2
cjpR,
F- 'm
Xa5-g
"+M1=
d@\ps
%wM[s
=.[C-
Yf6"~
HK!qg
S#Xtl
`c7cd
)D[:i
pic?3,
V_b8S
Wdg~s
D/N,@
=n|6;8>
}Dp|7
`nAARl%s
Q0d&o
&hX~'8
`,uV)
R'7SK
\_x7{
V~3~NY
ui<1C
G~`0Az
;2'tj
O0v@nsR
tK0+q
bB86$0us
-'oc^s
xiTRH
DryZ=L
^xv@I"
4E*,+<
2r]gV
tz"&Q
}-$|O
O&7bTw
7VUIj
Hi%o}
Iv3Mf
;g{u$<
[Z_te>R
?"q&gh
!tVXx
!`U3X
zrA_'
,/SVr
fdO4W
A>SO}
qwJUU
n$BX+#
NB$!W+n
_lD(9
ZA1G6W
S"dnN
@0DuJ
SUVWu
Db x'ys
1_U'M
OLEAUT32.dll
zO}hP;^W
`MCl#Ek]
}twW&c
,Ng]K
y:7?P
zBO6&
zO#k1
wVdbN
A/zhJb1
GD6eh
HVkWa
A1>'o
'J%V]S5
G(."i
;s<kzJ
Yd,}*
I573qi
#c#5Rf
s"(>@ve3
|'D\(
yPdc^}3
1=|D=R
<\\#RL
_(I2n
Q?e%(
GYo}H
ev_|}~
:X$mB
Jh_h4b
}>/2}4 _J4T4
|uOiIn
s>o#^
"[g>;D
GetCurrentProcessId
n= #<
9C\ux
gaMJx
/W =P"@
P[HwS
]+i6_
)P$<$
~w&e2
nbZg|x++&
Q.w@X
lQW@^
@A(1!
U7hz6
~*)0"W
Tq77kz
JbP:F
mI{KF
8ZnjSf)
:5z9l
yMB;L
]+%Qb
(vpNX
t'<\t
SlcXF^
)ZnTu
bgxBS
7t]u>
t7Ht#Hu
|A>ZA
i?>/I
]:}~(
F?Vq$7s$y
}7hPX
2JhB,|
u"*'N
s'kyz
'gW_fI
w!`Pn|
,VGH~:>
92(dz
S{l[6yO
i@su_-P
)RV0#
2e\q<|
uzAdoF=~
6DOiM
[O|QZ
U$\)J
7y3O2
p</y<wI
`YDu5
$|2e3
%@~ew
T2GE~
v`;w<
'YU=g
9H1d(
[6Q~A2K
[~uOwJ
I\5.b
0?6F6
GetDlgItem
M,3&vw
tFD7v
*BV#5]
t$$VSS
<oaDv
?jzZ>L
2@\o]
x:D LUAO
oPm,
^6UG)
#R^[+
pAwXVo
SBm<r
[8d@6
;/xuwh
.("p/
6D\!3
IbG?kXGj
a[In(^
/k $:4q
qZS)?
-p)IF@
B=w%F
!This program cannot be run in DOS mode.
U{Xz=
bo~&3
E;pwk
Z"9!K
o|wOPB
YjQ!m
a!Q18
c@kR~
1MUEV
5!&:;Q
e<h0N1
gO`vx}w#
&K%#q
]5>`@
/aS6t
wX8RSwF
k`UOX
j>Ru+
6[xe[
SING error
pI/pi
":x U
MT;V>
wwwwwwww
#[6'\
`B'C4:
XLNT Web Services SRL1
]W7[W
5kNm&W
%O>'i
1w ^%
8<)Ut2Oi;
Vt:Jf
UWB%mn
Ycbf(
wTf]'^4
ci@#\r
YXS;pFJ
:1F.-#
)BY|Y
;GG/O
[r^(c+r
+*I#S
tZ~0y
IX`HZT
N1b]U
Bn (:f
\J'Tn0
pVz"p
BtO+=
hFDZ(
fOI?h
ydti\
20220208171821Z
Config failed
|S$Rk0
P#T_!/6b
39+o@
'KVn_5
RX1E}
wPiVV
rXg_
V`#^4
8-N"0
8,B49
Z)Bt
ZH ?f
I"0RN
OXp}$
?48/@
8fi.)C
dc:L{
:=;"{
#\E)`
1r&:z
e4t+_
\(p9t_
-#4T
_Qfgq\
3b2CJ
KB]2NCn/
0foU:Pn
^/e}-6
J`l+-
l?mhq
*Q[d<
{h7gC5
8in#/
ve]mJ
\MalX9B
Y$C5v
un*20
>0IS)
VyZ']
r$2"n
E!J=7
up9k~-
wc%y2!
>sX5V
DeYH?
dG{YU
c3#7t
dEa<d4'
`pEw-
Sji|'
- not enough space for stdio initialization
;m9bc
Ct*{Lj
-/X|4\
nu{e,
)y>=o
Mg91f
>g\$*
gW5|R
|X1XH
E(Wyc
7[f"^
y&t^t
i5ZmL
9!4ek
!83`M
W6%``
n,01G
@\t0,P
j9}wk8
y%akaO
h&*{~0z7
A^9t'
#T\io 4
93To$
VAYcU
CharUpperA
LocalFree
UKq$u[
-)M{6
FL%M$
l2;oC
;5\(B
mS>Rs
Nz"w.a
L;<;[
y@zBF
yr0GWh.(
)\_rH
\JC;2
LV85,
=ul q
)O^2s4
Mns~ML
6-8la
m?h+A
]=A(C
OI<>9
Translation
4H%<w@
axw679a9Z
~%4x2
jNtW`
A,Mhy
{i#lH5
@FCD7g
dT>xM
i!_Bi
t+=|\
jSx3|
5FLn6
GetEnvironmentVariableA
8sIa^
78m:"
EN0')Lr
Y6Z3O#e
OQ_!'
~O!oj$
=X>{b
f\Xu)<6r[3
f7TDX
nHChjG
M2dqH
dgsg gJ,
QMkV@
nInN-d
s\QEa
Ybk2]
ePv[K
:7S b"}
mtjnQ
]5DAIY
]{{`Q\
{w#<|
MHsk9
!XpBp
z*y@t
n-l|Eee
}ko!>{
R$"8[
n[zk`
v(hrH
rRr]8
i'E?7
M!hs&
6{tjdvl
Asw#w
"i *r
F>xIJ
i2RB\
fa9j3
$-,8i
!~i[O
1T%9&
{p]x
'[I7!A
OlJ)=
2'1?g
QCHUJ
J$..^
n\bC'l
m8 ]F
t7Ex7
c,`8=W
nuKde
bw]Mj
G{mwv
rBl'U
]&PO4
cX}B7{
?R\:D
ks*:?
Q<OVc@
aybH~6DJ
;.Xlj
]a+,M
/D;OT
T=z|J
3/0I>z
QTJhi`
ua,6WA
b1B3q
fl;aKz4
4?ipm
TkHYi`
V=8n'i
L$,_^]
tm+JX,(
=\x9_
-<jzV+
#`QG9y
|rMjd8
~%y*2lZV
OVz(R?
0}ej[S
;7dWe
J'K.v
--7N@
//nB%
VM6|t9}Y)
dHh'k
fGOZ)2
nz_3(
Mw9I:>
nf2T+w
"kgKn
*NK(9@HDAr
QBcQg
U&:>3z382
MS|#R
l 2)Da
nILf%.F
v]|?d
QBj{D
}2[O*,
hF#/s1
Cancel
Qhqc|=
z^GDB
Gj7[M,;
;I?;tA
FL;FD
u=q0[
&Zho%
z]{'@Kb
@&A}pz
)"1t>
+4'"E
S* oW>
"A%VI
,/"I>
@92{_f
WnC`_
FormatMessageA
G'\/(=B
Ud"}{
m!h#%
*GFh&
2],Qo
P$^`<o
g8~"hF
dx3:GZ
iTxEmD
~h\sV
!(0H$
FtPs`
d;t(NdyJ6
P_)%s)
eStInd
>-blv
VMe[\Ms
YO'0j
C ,{y
'u{vS
C2)X/
^p]Ha8
*d.Z#
'0%0#
wZX*oE
rc6"ku[Zzd
SS`bJ
L@$^u
'6dH
D<;p\E
c-2we
Ym>3&*[
tfPZK
[|)Bw
\_bF?s
vnnD_
X0uNwV
+w--U
hsGVT
V/&jRx10
Wk1aW
|3%Ef
#%i]i
uxgU+K
ONxYQ
1}Ccy1N
kJKZn
!!pd9
*1K3s7
yjbOr
X(rl`
7?%<h
8&dr_
yisoN
1x'+Z
1&]E8
347&6#hU
;s7U{
zPrJ3q
[]Q-{
oF]53n
8`B0T
'?T]t
NlB&5^
<!-- Windows 10 -->
9w&:m
1ZTY*
o+`2jR5
US9'=
sf&;v
,W;59
E60d|8
7Qrk.w~
=r`e3
Xgz&X
PJUd&
wwTwot
No3BM
x.pa&\
@6JK`(^/
&H#)}@
Wb+qP
0Da!sS1
acpQ<tb
kUNYc
Kbv l
E&{ n=4B}V
AQ6rh
cACHp
IxeDll
uNy&d
OX-3k
Z5jn3
E0k1T=
OA4Uk~
`XUhc
h:q\:
:c)GOAt
b4^FX-=
2h)zF
?72%/
,ygalrV
|P@Dz@
9,ZO
J`$bMV
)P?cK
49ju+
!Kj"G
C1;D|H
:>r_d
|Q,jW
}9(aZ
,v>WAz
h~uyf
ulS)N
tw10{
W=XeT
dS#~*
G2kg;_A
^tQgBa
"-d7L
L9X?#
{S6A'
vEWwD5O
:-r<C
>1nw18
2M=Cp
+661a
Ea}sG_
Tds~V
?]7|t
h`s6Y
iC{)2
<security>
xog"
=&':s
:EC/GN
BV H.!m
.mJO%~
R_L5o+
{}g{e
g@0B$
||Sc=
;5tw3
t~)ez
dRGcR]
K`%;uB
dDR{t
lu~bG
j/8(z
xF-mO
_*\FT
mH51B
deFtd08
s@PiS
5}M)%-
/h>ze
}z0wC
`|=_i
`xo$>
vE@[KH:iW)
`C$*+
zoZ4i
,#;_^
FnM3Z
`e)so%
,u E@
~&@U!@
Y6]pND
|VTeJ
k>j8m
DRd&U
$QnOyav
HSVWh
r5xZQ6
S a`^u2`v
|tJ\0
zyPR,
:(GJR
n?l*CVS
CreateDirectoryA
2U!wa
:8,91B
eDN?&;
IsBadReadPtr
mH|J-
U>j*C
T?Kpn
,l3JiDZ
:g0hjJFF
+YAiq
YNu\O
$Bfj}6
t#SSUP
Na|9\
;=H'xX
<XIlS
|su[_
]@y[}
XQ6bTgD
j[uGg
6`{?3
~e[2(
"6fKL
7B4$A
I{1p*
I:f%]
$S4 +a,
`-AHh
cjsi*N[9,J^u
*/Z?"?
6lcPS
ycUl-
}1Ql(
!5A#$
\6}K{
hlx{J
[|R/Y
yd;hB
6<TQV
lismLw
=,q=^m
Cnwmm
r1YN+Kz
+2uT!
U?4\F
"HRfQ
w{U0-p
9LfG;
CQ*qZ
GwQPg
Q'Rp3Yj
0E>odB
o.xog
;R1#9_s
Zt2As
<~TrL9Y
^H3w$
NVml<S
/YOb,?h0b
F&<iL
8JO)t
"yXb~
T8-,H\]
}0Ldy
3r6W7
&PGf,
I-6r"
EndDialog
"}wAch
}E"2D
FpT^7
YVFG#'
B/Kj,
a; 3|
9@:(Lp
vy29#
Xh^1d
NN"_\
I\;6f:-|
\z742
K:KaE2P
KZeGz
jJ0Xs
q.[Et
fAo^VU
\Gz{b08F;/6
;Bm[*{
:eUZ&G=A
fKpy\
g&cd(
?'(4x
#g %{
VvaC!
aA!??
o.p5.
o8'/Rdk
U<QFZ
kM'iF
Zbrl;3q
~4">q
saT?lu
G{<(Q
9vj\*
R%-/g
jO^12
QB.u1Q]
I5Ip)
jS-@R
_ !FF
2#)(db>l
rs<{A
8Do>/
NfE<U
f]1kTV1
IRC_N+
N:[qI
B=L~L
y$ouFP
,.>8<
YO5UT
"*Dg?
u~I}f!z9=
E]|ZS7Q
1u{3]S
w}-x8@GQ
q"%}r_
=}b`P
Q?]eo
?-zZo[
\>l4e
u8snk^
Zv,Z)
Eu/p_
Bi\C2p
)PqIH
;vo}$
ht#2&
#92D<
+-0$o
[15[6
LCMapStringW
a)i1P
i`8R--
.Q,%n^
-nd,4<
L*9qm8s
XkOkx
M7knb
7 1[,
>_u)X
@M17f
BMCXZ
dC?=R
g@ZZG|{
5+]4E:
-[v~"
*&R3 =
<'-}
xX/t3
&H,=<
-ox]&'
9_t3/
> 'oJ
Brk=.
ng2ON
w"!Ty
[>c>}
p7a>kX
5h]j|
;_A-$[
ld8&R
fx^kK
_oJM6
/0l{QQ
3net!
G5GMu
wL=%5
T?J<_
M=^Ww
)%\6.
<"[@}
http://crl.entrust.net/evcs1.crl0
qQDEG
yS[?;
>[pe?
7ZByP
H&6R^
%"+gi6t~
*XsEZ
a\7#\xKI6
_qPj[
kfS&)
kf7R=H
|u3d.
dvc<w
tc*gAA8Q
IurCs
A+X"o
oP%{^
V9+Z<<X(
#}E2y
ogwP(Ze
$\2|,J7
kBj%fS
X;\23@u
6($xN
Q4sWn1
r"DlZ
d*:P~
{F9&u
2Iaop"
OI(8qm
Hj>Gi
0`0|.
=jDIl
&R^NT,s0
k`a5A`
t/:0\:
d55xNm]
NI?ap
]:Wz/
,5W`h
kbSG6Q
P{>$1
qcn8kq
x;5[K
A6r(O)
9yb!h
tt;&*
|!?KCl
}{EDb
05~n3~1O
mXnvMu0<
KOlN&
t={60
;]4|&i|
-cl]&|+/T
Aq.4G
q:h@0
P2r|c
L^#lJ)
7,CZu
y49!'0g
vTKE`
@B+&9
XX@bd
[DN4v
gF\TT
~(^jc
*#utM`
::GhH
cCb5eq
DfxI/
sE_&9
60e^>
]tx(0
(DigiCert SHA2 Assured ID Timestamping CA0
7vd(d
t0@7n
g~gv!
)0j$Y
y[C&b
GL@j%
G^^=3
s".U&
Z5ic[O
qHIi3
El8m3
LoadLibraryA
O1W3w
WtTA-G
5HVd-
S<fkH
Va)_7
FNcyh
W?sgt
[wUYb{.
wMa@;
J8Dbc
&'>r-]
[y3k3
_WI=Z
{k~0 @w
~ByL![
v3Z)=
>>EQv_
)+aO&
Ga(A}
dU3@2
3NpBZA5B
'D=iR
e5\)X
i|uHgi
Zk!r(
K@D".8
U=+wy
OFz1>
G2@}W
>m[#0j
ad/_\JTu
TK64.f
301110141249Z0
^7 z}fO}
I5NOC
,r 21
^2t\a
0MYL~
x*Zx>
1hpi:O
Cyp~q_
-|~Z+^W
;=T3B
a/iY|
S6=46
XYW%B
9pJ8HwR!
s|ya^'>
rkX,X
c2w!Bit
2s@xiKu
F^8:`G
+>GMY
XzX/kA_~v
v|''<
ts6#Y4Z~
EsH8A
WmXS{
bw 8sJ'
rjBwa
#B,iXNi
`6o+p
O)K0Y
x|6\18
S;JSz
h9\YY
Qe^|zz=
R/)P*
W9xRp
$H'R<
$dsi\:
0@^wc
Gh{e+uO;
[/]oN_
ZMuty"s
GetCommandLineW
L]/:z
oR+CnZ
_gN$,
A_%b,cGL
GpZ2zo
<LFIv
1BXfv
<nVot
R6009
tpDPU
XJ!EWb
bO\*4"
_Sfb[I
gz5k{
_3TP]
,cS[\~
:Pu.*B
Lr%_&
Unh\R<IW
ep{|r
MUlk=w
AF_b!
va?JuM
HE}nA7
<^9]+
6'w]|1
q!0*:
a*-Az
#;[t1j=
N2RGuw3
$|10*
M;Mgy
I^*~?
P|f'sLV|
%TN=`
=9~)s]
Gn'E(#2
Py*%dXf
?Q 0W
aNJD<
4(}v9z
8i0SfRi
?Q+)L
g,-Jb
~/R&JeT:
e>+to
)^H'>
LhC"o
FaCf~
N{l__
vliod2
AQM+{
WBiVX
:%nk>
mArpa7
+.EqP
.\;|`z
|,r7??
]N"1Y
.xk]>
OR9N*
JKJ"Z
*P-wD
0]3X|
&@wqV
XjPny
:29u/}H
NHuCxP
GHhD*:4!
OHORv
xva=/
q!kh*|
a$Sv5
~K<=^
Q09E(
RweYm
#Nnb)
iiPSd
E=u&6=dN
qjUPQ
FileDescription
^`Yr?
ncJEJ
?UBOg6
}ZBw2
itnrnX
{mi_K
rX{l,
,&</$
d2/3+S
-Ra{K
0iQ7
T!8oY
6;5X(B
,`,xq
9= ZB
TV6D}
5"glv
YtQP9u
u4e4r
fJa,UA
iJRM)EO
)!QY7
JqM~=\/
UGQhU
#Y;5Wr
<lG4=
~mqae#
Bt^,j
mS"Fa
5.</K
'oQSwh-
mC4q-
.j BOI
c7iKX
QPlm~
*%fOx
x9yM"
ClN&3
iM\YR"
",[8#
II&j)
BP6n:
tgj#d
IWI|7Z
am9`6
_F`sH
6\,,C$
^y}F)
MN\"9
Oh]kH
Xi(?935
.ldri
1.b+g
@QHsq
,YP\b
H%r,,
!pWzvSb
9~ v0
Q#WZ^xb
;ZE1,N|;$
231&1
@kRn|
{VzY?
GDi<?
mv!0j
Dg9nV
{A0-'
5iXgjlw
Ai}l^E
.8;cr
HD?7q
=Ln._{
,$X%4
4zWT9
qYfVH
oHXr20X
rZ0OZ
G+1K10j
fUp5(p]
@l6)*@
EsnWi
jBt2*
=Ei|1\
oz9:TsL
@:JuCuD
6xP}d
\U|_^
;!@Install@!UTF-8!
h;OXqF
(WAu)
.RR0fm
SCOf{
</applicationRequestMinimum>
w"U[[Y
aLw K@
Q{xJ7d
aQpS(
[S:mU]5
mWj_y
0WpI,
[eq[
AgNHS
I{5L:
4O%:[9!
jTypN
\e 1)
;9+=
_GXv6
(:0\{
+$b^U
oz~I7D
J]dLU
.h+2*
o(ozI
sKwLa
\l,3jX$|
v*J K
lhaz~
]4+}t
i2YNWus
R`up`
[8V5;sB
`D?B@
UL{U#
ud,/"0fz
1L0O
9TX=
c[RNz:
SC W1
bRiV:
j!@ad
k4Q{z
@[UB9
#\ Ld{
jC:qD*[
0i~mi
N95-X
FRj_~
Jtv6'b
#G|u</
F!&Bi
3M-jf
!]\2o
:Igx"
__eQHAQ
#||lZ
MS=q!
['cqeto/}h
`e$_x$
zA*~67
a@>j)
tic!*
s:V[{
22eXan
w>xEA
$1d+MU1
$>C<W\
[LF`#
G!!?X!
0p9`p
c3g[)
|NC~wp2
OcK.{
xX2f&
_1Mo%
G_U$6
+Fp[pW
qL0-,V
"jqS"
S4qI#F
e3_A'/
mq.zh3
S%|.,q
:L`dg'x~2
C 7Q:
3 xmF
5,S9:
Y|`n[`a
9z2ga
4N,v~
I}u-n
d7[f/.
;?U?ph3
o~-5<
9vz*Toy
~D.!'
SW/}"&
pEzU]
pL+Mw[
%vF,;
9O[NsCk
/f57z
I99jc
b8x!~
B'n2@
;\L7L
Gw|$G{
N*3#N
X]~2c
SetFileAttributesW
H\&UR
P:2crL\.
AH1N
`N}rK
='(Md
RtlUnwind
8A`0a
L\FO~
Pj-36#8
c#6vb
F}*v/
>-yk-
39T=2
xT-{fr
?>O4@l;})
oZ"n7'
3Njv3d(
VsS-@
8&vp]:
smA5ym
;6"'(
8/Jb4X&
;+.r;o
|bC}a
v:Na6
;L$ds3
wx}B"|
%YB8{
]h<ZFw
-,{":y!
Fir/(
my8Nz
crse@
4Z!!v
a1,#U
uy"K^
yR#s"@
x:3L"Eo9
,OmT\
bOrB`
IkiD>
J.'!%
ea\ga
!="iA
$U5gA
0svIU
!!R/D
eAM|?q
XJqvX
g&>gs6
zN8wN
.sxdata
\IO;_
*@/%b
I(d!p
86}-g
];"@=5hF
&b?Mt
&_E~8
P*jE3
i;^su
dd[D/A
Sg"DA
<yxN1
c4~WI
{m^f5%6C\r
?f~}E\
f2-Gd
3TBA&
%*I?^
H=)x6j
(;~-#
r%4j4}g
CQ^-,
QfN8y
j=rm=
u_^ra
F(%@2
.+Mrv
"en3j.m
`?>iY
a'zzx
"U!^'
-p7_M
@0$s`
<?G-I
~!7jJAJ
g.<t"
9sn_F
q?$Qr
Rk5@ib
W_AztE
ySpz`
"wi$ 0>
ezL&J
I^i^L
y?)/M
1+U@rdl
tj\1x
*CYB8J
D$I:zF
@m6^z
2D7cKs
F*Tizaf
@g1?`
.8p<j
Xt ^g
)[i**
c$/p8
1l>rb
gfFXvu7
,PidP
_(lQ9+
Yl:M[Ok
4gy&%^,
CZ*C\
L Hic
GetFileType
A8[|6
oA!ONh$o
;9h`4
\"1;D
IOhTX?
;zJ`mW
eQU}e
hi?AdH?
090707172554Z
?yn?A\
Atbb{:
,?Y5x
GetOEMCP
ad[:Z
^`3 x,
5bk~<~
[9a"\
gF=wBj
P*WwX
WuGCg
SWpF'
dN;mEd
)(}Qm
n`CT|av
\;t,:
PcgIP4<^
Q4hPU
s5lWo
\/qLL+
A9cK#
7QoM07^
0CRO0}
9P![]p
,{KQ1
eTam7
j: !.
YA}<o
/z5c8
4LRm,7
I+L\
E)fB^l
&o .~
0iV,f7D
`vJ!]hd[/U%
J}8dxJm
4)*jj<
qO3__9Lzx>
Uay^A
O\al,{
<jqoi1
rN$YJE
J@`Y=
w+rmR
}VWnW
|qj?6
BbI."
O@2uvNX
@'h(m//
D$,_^]
+:(8TM
{2l4H
e]:X[q
ilq;X
9t<4S>
G7nm2\
d^kg/
Sq/7mx
#f:,/
0jq'Q
Jn&kFS
.rK5`$M#
m0WX*
8u*Bs
Y9^p~1
v<E<"
JjT,"Y#MnT
*HDUT^$
MessageBoxA
/`EM=
@${H@
@]0,8
i#gZM
2|eIj
a(uNE
s,>uv
N3UV3YO
2V\u"
+D.r"
p0vkh
_pE8EG
rB$]s
KtgT,E
ADyy`
IOct2~#
N)x-{:
ma=oa=
e'^+l
''{#:.
{0oR#
ZQlfL
,b"a-Y
y>L\rt
Vr`-
pkaT6
nw#Ay
S*VKp6z
Z[P~CI
wtW+VXbu
E/F32#
LoadStringA
zaj&-5
c*->d;_.
luQ\h
~AUTjM
f&}m
_%Uxq
='PZ}
(p?LG
R7\>2+
AIl5-
kEdVY
|IV{(<
0d=*=
6!5'J
')M(r
xX;Cj~
jqb[Ig*
,:jQ-5
tS`>c
[OEDw
1NmE/
IKkH1
uI*5{
p=}Xw(
v[$-o
824R;
\16;6
IL{j$
"69#s
E4U$P
d&x o0
S X a
f%?^O3
/1(0&0$0"
8 ?aW
?eijM
6 (.=
X06mg
ydCr#r
]WL5O
z,zxq
r_8JG*
9nVH/
++:ZV
l) JD
q$`{ )
upg4H
y2CA`
'_ez>
oAgJB
~]@ZJ
|4Bc3
1M*X\
Wj'O
L^L:P
4Vb:$AJu
eqa^!
}Q]OG
K=G1.
9>Y1~
7G:=H
~b]%C
_d<6kX
6lb]j
V3DWA
!`tdT
#Reck
C=WWV`
<lVCy
g)5gC
x~KUq
ewonV
!Y)fz
3sje0#
vSHs`2
Tlm<V
a1$S{
kLbHH,^L/
2rK!]
5{$vo
Icbn,
AsXnoN_
w{HhO
"/=W9pku
;2"q/
ad?^2
k"p#G
9(9FM
FeawDa
5s{1=
[QrxMZL
MSdNw
+q02`Z
AX}rPG
gK~&>
N7G)KCR
A%"$b
_*dEJ
o3uE;
Hml!Q(
zuuh]Ds
,4HeZ
@v;H5
*?3]Q
LFo8G
)&#{hA
af[]Z
_$_{bV
%0~9?
F#+R(
CgBiBp
'G1}@MV\i
Yif9o
>S, oa
\Yx[o
_1CBG
t_q/s
pwa>u(
%,$c$
SI{~f
q5,xZ!
\oB\"AQ
-pLS%
<IB?D
%kA;m3#
-t"7N
T:}g!
>y_j[
-Sk(`X
^8WeZM
&^.$r
AfIb2-]
!!J#,
Kq^`F
*#Fa7#
r@/(rn
10|K}
e\E==|
Yd'nG
gM'hK
1+,b:
AzO=n
u~jsZ|
dak'd
Co5Xo
ER%Ku"|
&vU[!d~
jp^> zC
%7F!&
R#i4/
F%PHDIQ
RK1Cz
xcs9K
IN_,)
LeUd]0
tt!!$!
.{TZ%
W_3m6
@oaZGGYn
y2le
y|cNr
$4BL!<\
DyTHi}
$EosH>}r
1VKn6
evFF"
AM2#|
p +G/
bHVzA
uc+nNV
h)mEK9
5ES_U|
^>a`W
Wb=$!WL
Progress="no"
wI<\-0
F%!VE
B0}O=ye
sRM?e
<T>+zO
0ofW}W
-]mLk
cO(9~M
m;Yx<,
WMzy>
y :]A
;}N[90
M$A'6K|
( q!*
G/pw-
%H#vp
L(/*'
{j{M6
NM'$I
K9v<ri
i'l?j<
>2S^b
GoqaS
So%RD
k=%Z~
@@zV$,
hp.eF
>a&w9|
yn[W1
]1,x!
?#k"gpq
8Ju[u
reLFd(
^M~'T
;z@RT
[KfUe
wfN\i
!oyG"
v{M)T
)qj7?
S~m()
+<b-r
^'k(I
Z.I.!
`b}|{
Y1s/ss
&UEcE
bd}*P
&xjt#
cz:eG
8b|2i
r?*z}%
biY!o
`2H'gE0
gMc4-q
@T]EQa
>d)gd
us)A7
E]Jvk
"Fy;p
7[mXJ
uH3d<
Thq[ifcD
mq"mj
w}B5P
{7z~(.{
mjKlU
t.WvR2Q1
-r'!?S
`34W
O+;[z
|= i+eD
jqxJ+
1U<iJ
[`3,3
As[[^w
xhA?On
`D"hI
DBfSW
5ouoAG
\3"~*d
QbR.o
20n{D
-vaKa
U^Z6|
Ea;*C
[i^#%%@
(RY?MZG=
G*t{U
u@}BEX7
DLR#QL
RU=lD9
#8bsPI
$4%UC>S
]#\@x
^~]l}
'Yig^zQ
Can not create temp folder archive
Av<'<
bsxR-5A[X
},X{+
sm+jc
-/QVX
*dWI$"%
"`$3Y
|w0W=UB
!D1:Pb
57ux9Z
@K&H3
fnVa')
n07J<
gCA{}
}kRv4
wIv[w
zK^-'
bCj20
@3y:w
Zy>Tg
D$ )Ft
\fK6C
Io$fU{
k"]Vg\
am4u]
LBI0:
%n|K&
gq,&i
CreateDirectoryW
li|8D
/5-bM
vRrv>c
QZa5@
`LJ7K
>w8Z;y`2S
Zd^} P
Ej_Hu
rxbMz
w#|sow(
UsqVk
hJK6O
\BG'b
O\Dp&5
dwc_#Ri
CXzM5%
;0'i}
W#En\
h5 oa
j$F4n
;^Tt!
S,#'<
d~&:n
SS=Je
%kAcQ
T$0_^]
v2=>i#
\z#2m
^[Kio
o.;QA
RuL`q
O=k+1
:(z-o
6LY/8
0+0I^
Sm'B#
<PermissionSet class="System.Security.PermissionSet" version="1" ID="Custom" SameSite="site"></PermissionSet>
$[X&L
xna~9
HVVp-
ACYE}
G#1.+
2~Jej
|1_~T
'w*ZA
BTua8^c
]<ks:
OJD:=
/DBNR
zL'K4
T[iCXQ
0v-!x
i?(-n
,-hEQ
6uC~RW
8v(A#
tU)>D
;#iw'
&3u6@m
"nOO3
<6w.{~
q<NHr5
Z!K/s
v]\AO$
-n92'
|_u3jH`
3S^,0i_
hvuE<
d9tw5k
y:M/>
>m!R5c<5W
k7Z3G9z
Q]tG?
Xe*E="
b5kAW
u%tZ"I
tt%kI
<R;+o*}
I,Sf-
-4h80
#|DKo*Y
:k0|p
<?k^BP
XCL_"
?Yl}E
~l04L
,jMCMw
~%rQ\
8spR5
f[T>a&
!Gm!P
rW8%g
<9{w-
L2DDT
`q>a]
Q[#tl
%\9K!
^lx&OL1hZ
^}%95
tZjzKw
f"/EO
S)E?m<
5c_C
,&ltL
|l2f%$
J^{J5
+8GKU4?
Kzj~x
x_UM+5U
F&#}P
(~,y`pN
[@:sC
_yVEV
SetFileAttributesA
<x4sV
gWilw.=
C_S%[
beh9~
ib5/yp
c*/*D
{Wg*M
A%7U8
Fv eNK7
2S$In
u<8%!E`A
\VR=!:
}Ap,a
:?vEh
76C4:
;*+m>
.8\&8r
A6/S;
n~e73\E
]$Zsv
p;I)*^<
q.r=K
pHnNFE
pNq8#
]3M.v
v!LBvL
{1mr;#
Cr2mGC
\TU0C
No>Lk
q@y9
)!nFa-
3p85J2aK
GjQ.(
E]~&L8
u2+`;
wDQ^F$
9n'Bs
!<s(3
V$cldr
YY8N5
oICClbM@ip2
v{(tT
<8[?Y
cTHp3B9
xE=Y}6
1P\I{
ZlU%/"~rl
))6I[b
-HV,'
ufXX@8s-R
vY>@4
M{UD|waJ
QA%J^I]
^^1r`
vg}}'>
46IMD!
I(_l/T
+U (q,k
zorfagS
opGAR+
iU@i#
70\A1
C7zu1
=;tF!
.WX[o
eU !<
qz,c"[
LV|;HL
=o}GO
22-Pg
oI?#x
mRM?x
$Ej^A
Qjf"7
InR>-
DG''<
y0w0$
p'VUj
.hVi|
AKZ8/
`qDy/
X?7"ge`
\d Qe;=3
KbPSR
k(<_O
Lg^ky
VIzMZ
`g@5F8
XFl!UOK
d>z|=x>OA
5R?p"x
yQL;-q
}D:p4
+{%\q
WfjU[
JnEd>
_:9QN
@-,o
2:S3dgW
kS(o|
@[8%@
+_B?p/
3@htT
; j'#qj<
_Vt$)%]
sT@<1
c&"?P
L8]"i
A[[yK
>w`LX
KeFN)L
#'QqaI|
MessageBoxW
4b7(/
N!lo:l+
s!5A"I
J:B]"
c5?|,m
C3jF+
Kyo3(t
$!-G+d
uo4n@5
u*d<U
<CPg|
^)"`p5
$aZAB
G;~0|
ci@0k
SkH,W
oCuGO%
mKpOMn
"@k'5
n)Y8qQ
EY>/q
\BAob
pNOcW
%&"k^E_
+slR)
cn[-J
7Wrea]
Y(gL493
s}F]}
U3cWL
eJH?z
9$1qY
e/0_r
t2<rm
BPmK*
Pi^Wb
&Ub2Jxx
iGEWI
tWHt8Zzw_
omTFH`i
_O9DV
.4ie-
4y=Sy
lzU'c
'=\d)
asRs"u
Hf)ve
G4a{K8
)i|t;
~SFBL\<
Up=1Q
KD{pT
Q'h,;
EX@3K|:^
HKRc;
/^76/M
@lr^X
@7A({k
*O*f{#,Y
a#65HSm
;50ZB
`m&I@G
sBVvO
5O,^e
@*?*Q
jHHb)
%"q/!
'&'E#
o2,) !vj
:4u`P
hzl9KC
^3SpE
" dt\
bS-x<
q8Jge
g^C/%
:mz!!
GxQ81S
T=l|)
b.7IKR
J4gPR
tHx\V9
lroOa~
. -*esrVF
l,6<5Fi
_YT!Mj
4&b/^
k'wX2
ur=c uH
un,B%
XrT F
VC+Jpz
aJbPT=
K?8b67
B:iG|
y7#~r
tHzxC
}UBQO
D*OPb
_{[J;
0$z8t
+I<JE
~be7+*
>-jv
ifBg}
4n%Ue
/Z:-V
l,B#F9f
(;:YCY
*q__gl
/{/,v
9rb'U6
xVC\?
Friday
S&5ZD.)
l?A:a
(soe2
8Ou*cuI
TP>fj
Z]`&/
Hpkz,1J
;5'1/w
=1/-N
ZoPDk~
,0Zz.>Tn
@gYwF
zVx[-Fn7j
xaPy.
J// S
_fP:.
=J\fC
NlI0v
Sm/Lx8
FO`!@
#oh|^y*
-_%$8
.0NE%
UKKLG
yg`/]\!}
v`)e
Z_eo"
.yfkH
pAFm
,fcn2qxP
q^q!qo
**bII
N4!\vKUIq
!<@!'
fuSs+
jtLn,
/n]:?/
1XrfR
ihab|
s~DHO@
Cf&F8>
3cGB7
ZG5I`
x1*Y-
W?T8}
<defaultAssemblyRequest permissionSetReference="Custom"></defaultAssemblyRequest>
JLk_E$
an>2S\
L1MHn
FD;FHu
uMll-`,
vMnkkw
AN2D_
Y9+@}
c^N7j
f*naf
$v<C8
(PJ\wb
<xJS?
[nlNG
0Ao3`%R
,7!ND #
_WS>
MKs*o
DO%y$w2;
Ng3CT\
Kt*Jd
%}=#I
*u)r~
{?r8s
'vYVXn'
:$A)X
7t^~J
aa8.Z
Pip}r
cy8?,
4wp[B
Wp,jh0
u2"gS=
L.{bK
<)^/3
1QaSa
D6'S"*
qE<^BU
ocZpg-\
z06Xbn
%xze;
t&5$c
DuFIR
815C*
])VN]
>v{Iv
Unzq,
hcZb=5
Ds7ks
>3<).x.
hhW&M}
Ojwkv=
k[\L;
V<.JF
&ioX/
Jcbk6
:J5=~G0
Unknown error
pXs]u$w
Rg\PA
)Q\wk
!nyjz
kbQn!
YSs15gP
]2fK4B
tHV5g
L0_|@`
JfZ"_
,=M-/
gd5Q]c,HM
SF!i8@*FU
e?#< M
AN4]z[:
>@BdcA
%j>;=9
bP+$q
H oLdL
0v#19
x\'Wn
.^KtDU
iv5<qit
T*<=p
R!770
5['p1%
d;8sV
V|*sf
p9hbf
A}qRB
ukjQT
'}v>*
yx=fA7
pJe<:F
_Uq)f
v8ecQ[M
`9k=l
:n#b^
\s3q`
'?I/Fw
<Om.G
)]9Q*
AWzIu
o e8.
9=$nS
(sD]l
4U(M|E
lPyb}9Mf
gSF*Vw
2z^``v*=
nb$XD
PSSSSSS
,^:it
47dZo
N$Emj
SC]Lkf
r{*)9*
NUItt_
5&l.P
RD1za
hy7&2
-'-2
0fhmQ
oSh\&c
>9YmU
RYH)*k
5E3Ns
Y}RX8U
0]XhpoH
<`i@W
?RLw O
hh2kV
K (&x
-O0yw
8(T(<
~@w{"
tyIiKw
f'u$^
GetCurrentDirectoryA
q/.<D
n]_mo$A
P\MAq
#W.CS&iU
BmZSO.Y
~8+PS
{bQoP
Xm-ndS]
^(WGi
7.gN"z
4.9~2
a2DC7[
:H,ysX
.^.b|
vluvn
0S?:&
1Woak
T:Qr|;
=Lcz=
]-d]z
-8NqF
^[urX
SH4&A
',he=
k_ok4I
3o{JN;
glo^N
X/bq@2
$[V1M&
EARv]
e&,z,
L@%6s
hr|f9
#VuJ
$Wb]LX
X]W1''
$DC!\2
~Q(9)&`3
k9G:LO
[3Qo\
8WHxfF
n{.3Z:
?sa&E1
xmZ04c
*%,"@
D[(`%
PxnV"?
2t[XC
vDisJ
p @stw
T3Cqo
((((( H
QMdl{r
vozQ$
eAG|k
;9hT$
AC@%r
%gSW5}
wb/Sz.
D(A[]
Oj)6w5H
w6}\_
).=|d
@Fvq-
T@wMk
I.B`x
qqq+9UU
S^i"j
#RQdT
.l"%)^
}0;Zui
yU1mX
(-|tG*
't@QWP8
OfbmSM
N9S#T
<<n Ch
39I.v
E5#YC!
9WeT(
Qg.}Y>
jC:-j
tTN2D
-joDL
YY7=S\3S|f
]Y0q.
<=6<6<
U >)?
/uS,j
-+,U~
DigiCert, Inc.1 0
k F :
A{i|Y
~J1LW
)w#33
]?P%b
Jz'smJ+
g+N8~
dddd, MMMM dd, yyyy
#4i8X
"hJ/x
{OP|62
ZJd5mm
>pYc$
uS1QI
V&$A2
BFF;W
_i')g
QX+sj
`t&Dh
eg5V@
xL>>7
$L#+`p
;)^X`}@
J07x&Ku;
s.ks m#
V|qfYi
_SROn
MRd^x&
<_GKf|
kb$vF
<a|k0
S)iiR
SEe]tR
BiylO
R3xs-
jta_`
3(3yuL
*6wuY7
z76!2t
E*iw5
e|1P]$
J8!c7
)!}[F'w
$#oug
)*W=E
;HC/r
[Bd-k
w.MrL,?
yg~IY
42J(s
m4A;q
:EX5r
7SY-/
f'i&V,
^l[n\
jDNV>
X]5n?
J-ffeg
zm]3D
Cannot create folder '{0}'
R@PYz
:%,_t
'Q6Kw
t{3j`
&\/q+~
%\>$Y
@;>q(
u[66r
T;tnt
~vii4
/}bA(.7!
,p*Jp
UB@<*
,8+ts
Z`!_{
sP8F4
%1Gv}3
i&3C%
\NsZ.
DAQH|
8>211
Jt&OA
=oG;)j
r?VRyN
%${!NG
/{U;rM
bNE,^
rRh<Dv
5E"3I
P_Iz=:
_@4_p
http://ocsp.digicert.com0O
a\?]/
D_OAn
Pa=086
A\:?>9
V&s&l
[\B?tD[
+/Yll
GRLjj+r}m
@UF#%E*
z(mXb4
y/J4h
)[tf2
(]J}~
$(GAl
ws{'j
I)/70
4H6gL
Pw|+T1
h|)-+b
@4A7,
oS[U{sHb8
Ap0Y6
_5KG)Y
}Y]R*|
dho3q
P|`,dw'o
+3&/x
h5{[4
GsZ'/
wG:ga
P,Kk>%
!AKB!
<OF.NIGW,
\aNE`
MF|7qoP
U?5|A
*FerW
mh.~2
!djDRf/go
=={9ge>
L$o#c
WaitForMultipleObjects
@Q/C>5.0
:'-3c6E!Nu>/kk
pk'J(
#a6rmG
1]+s~j
zIaID
1lP;$+
A9LAI
Mf^w\
gf?-h
&`GzZ
\\ICX
F#g#}Z
&@i}.
+u<n%2
=!g"Ae
-($\g
{mj1#
R5x=\{ao
;Y%>(
PCr:D
K:DA
<]DPU
)zv~W
%lw,K
9+Iw"
N.`!}
C"fmB
bBV*M
)j]'?G\
f4%V#
LBI.D;
9s:!(
/1./o
0Q<Vn%$d
a-=.O
Icg<MX
<H{<V[
6Enun
#!I^?
=_JB9!c#=
<vbVo
#A)\-x;
*Cp~$
{biC\Nm
|v@+W5
":$YWX
i~c.a
-]":#N
@xN!l
xwv|#
(2)l5
Xh)5`
TaUK{
/cB/$
-(8RYij
X=r=-a
Ia{L|
Hp5(5
{H!g\
]gZN@<
040904B0
J_)B}
a|vlbNxuP
"vx0&
8<cSaJ
tsSW3
VC[Bw
*cx0k
Are you sure you want to cancel?
9QZ<~
korB<
OX3=8!
noaa)
Q=)>H
OTIG3
-)-O8
St-[^
RFwKy2
`7Npo]
l7'Lak
9g$JY
(lB:"
!D'|1
q1&0.
qN7kJgEX9
q4$Ko
1?^f"
}1|4)
/K`:o8
^25?;
Y7|]i
UJ>7r
hia]1(@
Od>@>9
kkr,b
t\]6J
.=alQ
;!@InstallEnd@!7z
.FE4/
@arsz
l+EAx
f6?rk
%2}Jy
z|J8E
?JNI^
[/@V7
} fbM
3`eHM
.O8?O|
gSQ)Mu
k0rm@
$Y4Ac$
eyF99XD3s
}$Hu@B
n#Ayt
UX;Sx
N$+F,
bk}~B
U`<@Eh]tF
,-$ 8
+I:<x
9,,V!RTF<
Fd[O`\
WTDIU
@"pRe
K-*6,P
g!/^wD
S\Td;
\m,m9?
C6GC&
a1F2g
ReadFile
.4Z`ctE
=Gnewxb
y^[b3
Y1nR|
,.>D^~,t
$y~r?
aH9CQ
zN`sA
N?3LFr*s
aGfG+CP
yT0$.
WSlFU
R$]5!N
<Kb?i
n|#b{
A[{j[
MAINICON
F5'ND
eD7aD
+9s&U;'
a#V[Er
KR(59l,
n7/)~
u?an&
]$9F~
"'6Gh_
;%I]|
(X'N<S
]zT/<
Adaware 2022
AE'1%
\3d(H
".p=$
cT\1o%V
p;ZEr$
GaMR7s
wNhFA7
hmW5b
ork3z
{ulS-w!R
uz;#h
qo&]=
]3lH@y
1Y"[^^
K` 7l
S>&UJ
zZ96w
V3"/"6
`:jz)]eP
zX}VMQ
B`<3=
Qw\t*d
?d GJZ
eW=Z^
Ng]8{
Z]r\5<
,U;Re
F4Q:r
AC'<-
1TgN/
N{nob
.NK05
=g_{>
cY<6dFsn
~5clc
_2?`_
)GsN7
hd|Umg
=JbJ@
.g|.aO
+yqNv
8~?s:
<<b4r
~1U~"
(CXR"
Yiry^i
JJ{l6
rQSvy
O~-&BE
K~93j\}
(sX5M
= T2#
n(].K
v3pJK
bwIU(mm
M"v7\
BqF,F
p%aL*D
BL):z
ukdD!.
GTSh3
HIS(;
2U& G
)G$O[
9$ar%<{
+T>-_
d{6k^
ObzY!
y<Cy4
FormatMessageW
*Qu``
(s-zu
&;k](
TP"6WI)/
xuHSS
`C8|cvn
M/1T)
^e&V[
:^8fO
.obyD8
48K?[
ExitThread
q-Q.u!@<6\kQI
tX6Tc|
#oCaG
/'uYI[
9@i1y
_i U9
@9ARE
+A*E`
B9t3kS_
\tex=
E0?=KkYV
$le,`
'<%3O
%b8R7
xSFo5
)I|5*
qPQ6w
uM]]T
3Fvi?
W>)H7
Can not open output file
JX.su
RaiseException
7AK|&
vYItu
C618w
?C#}+
{Sshx
Rnr)y
/=NT@e
'z\mcU
q)i7-
iZ@L;
4xKp=
]y2{.
{7lOK
BqMaR
a[^=]7
2w ]*
WgW:I
$R~}={
nH5,wd\
zFH@7
4I#d,
&#k9B
c97tN/
"t'if
$RQcb"9O
MX3?e
C)@XL?
;/z>x
p4g60
Gt{r|
9]dZH
&^uj3x
5$!=_k
s=+a0[/]
O6gl`
g,[:~
EJMs|
.$>QV
3Y\LZ
p+gtJ
iO0%a"
?3\@~
#'rwv&H
Xws/lkZ
wUno3
Z!04=
au2f\
U\GA8(
_5M`fz"XD
_4J}$
N}2b>
z-mKa
-iL>t
Oaw%6
SlaQpiz
/;rWy
z69r@s
%1mLxG
zQ4Mb
G;X(Y
qUIIO
@P?bV
Ff"'l
M$>"F
?AVS]8q
=nH#&
D}Bpg
`KY)v
,c_?2
G6VW4'h
qAb`l;5
t6hOa
iLz_G
|zwC)
7j[ob
f}ax~
`VJWG
,Rj$:
')Z{8
9zIWd
&tG'n^
o5RBq
#T%wx[
J??O=i
er]zk
gXMJg
UAq*T
y5FWU
/?wpC
Tm@TKW!
xZ\~h
C=IfB=
V@&7n
G?za]
RunProgram="GenericSetup.exe"
WY_bW
IVf%G
,r/Q<
Rd3yPlI
,L]xI
lHzx~!
?13%X
-EmNE
J*[QH
cli5?
A=R7f@
|lN]1
s7=?h
U<2h6
&.sc\9o
Zbf`S*2&
y9d;v?
<USDV
GonH`
I=,W6
@[DUik
i9JB\
)'9>h
O3jWl
B3;bIFcP
1Y}Yg
th/u8E
TqG`B
SetWindowTextW
DialogBoxParamA
1DG#,
L)VV,BB$`
pl8x?8
y$3U&
- unable to initialize heap
A#@\B-uB
-V/*)
b;/8e
SGW]4Ot
m2axi
&FB9C
);VdJ
{\s1=eJ
%qyx)t
>*jAn
twJ,:
N*+=^
}1<Sb
Tuesday
Kc;q[
a[`[X
c#{'?`"9
fjp2K
*/) _
v!a19
+;;8c
&c58{
sdOxm"^
s~$;.
2JWi:
x l[
u[x`8
$;8Z7
*K_1@
cc(la
VWVNNN
301207175554Z0
<iQFM
Fzt`l$
kP]~/
R*&kH
ISLL3
Xt`}3BC
<nWJ9'
Q:`zG
P7bqY$z
6i E?4y
:OMc|
:GtlI!9
h.-4S
#+JC:L
o;)0Z
c`y_G,%7
|>Aze+
f>5?(
}2/)?}/7
B%ib(
@]\U`
H&OqP
H,ieF0
)EWSH
E9JyNRRl
q (LIO
0:0"
_-ikz
rl(+k[
J40 / 6908/20151
}x{~^
V=~WZs
y][nW
w:{sw
54Ogn
BSb5Uy
"#3G{
hM~9_
#H-_v
Z!9MA
m:n$P
-&Sud
!.Y/s
ad`$O
S)A;GT
ztFuW
)g0O&
</application>
ws|Rg
6!WBw
%[\<p
1*6"N
ye7yY
Vn]fU
/"TJ3
U:D9w)
J`zv9%
(W.EX
PO{`<Q
.RRQx
(wfW!
aBev=
.q6}8
70x}2O
aI?Ou
`6_Rt
:Ym4QkE`
V^DV;
pb_Y8
P9~Lb7{
+w}S'q
@P{C:
NbhlG
#8Kr+
{\o'0^
5NthSn
XMh@V
x\lUgY4W)JI
;UWTJ
2Ax=S
JLPX$
HrYn6amV
(?sD9
BOpO'.:OT
<ZWE%
nO+;O
S1DPD
Gh:;/0
t@V9
"UodH
D1;28
F>9`,
meBqu
KOy[A
dHnd#;
tKme(
>Uk)%c
Jfa@1
MAP<d
<l"|L
ecU{Br
Ve_%c
rA7aR\
d+<:]
M&ju1
b",ZJw
'9{L8
!'}{Be
DXR^S
t:f="
L)Y1i
M]SHJ
45Xr2
/*0&<m
s/<-X
#]r+z
;i?z|&
1U5&n
At?q%o
_uud~8;Z
2*"Bp
#Fwsg
_WL!}
<&}EIA
d%N"Q
TK;SO
[V&Ql
[QkDsM3
zp<EC
/!7_h
|[Xaa
wUiEG
9=t5B
"*:e_`#_
fSS=F
6xo8Tv
F'EP+
yq?H:
oovwOESI
m?}Kh{
210101000000Z
P(U\ymYb
-6n63
RhM>K
Z|8T[Qnku
*I&+}
(%8I&-!
tES.u
o&MeB
YYcG`0
3~CGg7'+
YE{26
-5pr|
4YoS'
Ngo0s
{@<dBiz8
"NG>3
#xO$A
o.FjF
- not enough space for environment
74+W
^Y^O1
VTt*o
=@a:w
+YcX|
x7ZMX
uFdX^
EcC?.=
: ^fu
h.F'M
%FCbT
yH7DT
D%~"?
0BnW$
<KIYq
qpPWt
$x;A'
TLOSS error
}]j&{
PisK'Oz
^`#O/1
e;)jB
%VC\n
x6i`p
=H'L3
<pG)y
XXu;<C
D5]&Z
I(zgI)E
v+gb?
j'_%`
!h@M?
u;yr4uV
I&%;p
dB|*]
rB,G)
0h\7#
bcPxA4
lb\w>
1wiVX
8x`&U
Ti&a-
]zf3G
K#+X8b
Fq8~r
|r+TA
l@y3-
$!6O'9t
yp-vp
N9zrV|p
K}6^
UvbI&T
3*Fh9
B!l)q0I
[+\62
z0x0:
xy[BYKl
|Yva=O
66Ayq
dY6)E3-
drLe;
;$k>=
8akSv;
EC~KzLjM
nM}+d
^{_J(
"R(kdTp
Cbk2Ku]
I6I!b
@5"vk
8D4fM
5IV'%
._6L_<
#Uu{i
u?jtj
>)Y"F
6PB]+
ntUQxU~
3rlD;
I2I<J
zTCT#;h
$G}vt
JWyQ<
@q(`>
t?S_y
Dt-A,S
eE$$&q
<Q|C1K
~a@3$1
o:8M=(m
KERNEL32.dll
2@#jo8[
3y-YW
)Pi/!vg
#<]>%G
awt$b#
Jg aMq
6sO*t
DDSk?Q
mR@\BJ
u?eF
wr Fk
AIug4
4Uf/:
r?^*G
Jmzpk
\HH/~w
DV7ia
uc0yT
A$C-
ZvZMK
HeapCreate
eSM.{`5j
Y^b+1%
*84cA
F9l;`
Y:|312L
$1gemvN$
+L$ +
@#tWmf
z1U1l
+7)V0
5;yPK
B"Hy2
*)(#m
!ZIg|~
S&\nrK7
#\=&t
;#~+dg
E^=j4
qxLB{z
zF~d2${Y
uF/xV
9/5x<
?ZV}</\
:dxXL
3?1e=
wV\"Q
q1YpZ
vO`G5C
1iDDxk
BakD`
|9x!a
+&~K9
S}tox
"@Erc
a (M3
qS%]T<
Cz{ww
W4fC$O@im
69}+9
:E#>]
;p7A:v^om
$BeP %
msL9i
-ep/[#
X/x&>@
~}2"{
tzm{vz
+ep\L
%Y:)k
HwZ*V
XImlB
(b$]f
QJ&(V
<;SFp
UcH5N
%y{5<
Jn?s(l
kZOtm
P{Rj04
iN}@s
Y[l`{
rt>f7
zrXNR8*
|!KE%
t#AZ#
TRtHZ
;+0B\
0OIqO
u.#Q#t
tB)A+
7X1E k
|6wJ6<^
jNa'3
+@0d:0k
+T6:Y
Yf\dH|
}?7w1}
^dMv>
7-Zip
=~'v\
HzjcG
eCWo$
`s6+|}
z**hN
~ a(-
GLY$%
WRgP#
KH9@Y
)!nbg
bd*}m
v?kVl
AHICOR
aoxb;
yEj28
|(R}uz2
WO;O^N5
qwo;[
Cb;=Q<
k?7` c
z4(gwQn_
Q/g;F-Y*
Eb|XP
/\%/;Z
$V!GRov
qieC,A6
- floating point not loaded
GetActiveWindow
lG9KDl
m/R"}S
yV=jh
3W{Q{
03rUD
M%XuG
\-m2b[yE*
kWaMND
+=@a]
o`P<d
U+MvE
T<[zo~`"
@0Si6!zO
b.m!V
9\I{A
:zuAUT
hS#B/.
R6017
")aho*
m/N`J
/\R_'
UtAYmT
QQ}A
qj_uy
@yP_&
4vO)C
eC5[Z
xeWX,jt
2<#W^.
9~P~A
WEW_Q
\iP~-
y3:^'b
dY6ur
K:Sde
:&/Dy
2]'S.
Yt!(K
~siG/
xv7I3
<!-- Windows Vista -->
bxI?G
9CF9F
*3`(Pn
]s^}}
}J"lU
|KQP@
O4gJg
/T_B-P"
yO|^(
1|$-hX
Z]!~+
X361:+
SendMessageA
BqT,y
4`vm~O
.G"is
(V80Q
Kc{/[
N%,Xl
-CA4z
TIeBG
NNw1@
GKW>m
u*wis
Lf5;3
1%vRu
6=NAV
e{t1"
6,<wV
(V1:2[cry;
)clv[
t.fo8
SVH\}\
6,j-s]
kOw{+m
+6UC@k
6AQko
mkcg<
qf*;:
J-ZYw0
~@CvT
uyEs'72rg
~6gP4
~tRy\
*e7u-NmPr
X/f y
%0Ag9
.LvRS
g9^l!
>0ePq
)('JB
+bc9E
lYxB!
OY=*D
PJeDX
oCV*k
7r*><
[RK!v
DDD1nD
)?K-Y
G-(")
NK,=w
gMCa.
.Q4[jz
\0xweb
;2zPTCP}
[LhBQ
{/RZ-~
6?N&A
7;>Z2&
"ecS%Au-!
A+E61
FileVersion
&lO8P
6?DUL
OT?iJ+i
:Uk&&3J;`
<HuPp
|J6[ev0
ig!,-
-Rk<I
9PA^=
NRMW[
/T*=q
MCJb"
]Re2p
0'O&i
2i:2!
EJ%Xl
}A/q~
aYYoz9
X\FXF
GTdK:
GetFullPathNameA
BwyNS#
[0$G;I>
Y?CbG
& E/}
9.wwy
2E>IQ5
0]]9I
#a>di
- 9]<
.;F&>
z[Zk:X/
NcnQ[
t{gqj+6
;A@+S(AC7
(\{(n
RmOgTO
vzbNE
aj/m\=tNG
te{F(L
+c;h_
H2oDR
x{YF'
p?f:)
CY;^p|
@9W^:
wKgA.
L 5SF
dlcX(
9ke'-
f~Z}#3
H:wMS
HtYBU0
OeKAQl@F
4ezJbu
rs@W;
5R\l~
\g"X[
B}Bgz
7neIR
II6.fJ
~]Zv1
;2G^I
Y[?`0
Tj*m3tS*XR
u8pq^w
H"c:p_
E,u]b_
a\QR']r
W":FXZ~
J#$,R*?
6,fc8
9 E1{
dBwJ&
wLVSP
6K:+]
GenericSetup.exe
t*l]R
7"-bc
\o0E6:
'<DO`
;dsG|
zn&AS
@i56V
>"Y/K
d%2o1k
DeleteFileW
<,X=D[
"ZGx
dbz{o
42d`Hn1
XU3PH#
}^pok%
WT;0E
uQFpI
1Oa]#
#1wja
Cti {
4,Nl<
s.n%~
s:2^}
5;}7!@
qp"6n
~}/^x
3{78H
YdpT)
d"RN0!)
cv@P{
p<U=H
tO[S/Y0
C+F!I
Sy:IUR
`Z_7W
<Rh&Z
&6)Rmbq#G
Gaic2/U
pN"f{pE
YOoTHff
Q2jT#
tow:7[
5Bq6C
.;m'q
`nodK
6a&_X
z%tozA%
_ e-w
:h-d{
wj=r(
N%3:w
VwP||
fY&~"
'\^:h
`aiN}
E5*=L
M>"!^
<p}>/MU
a7f"8
goH2:
@pS@,j
-R\m<
,Nu0.
?Y%WBA,d
}3BSC=\G
ybJ=B~
;-~cK
O#O @
ExecuteParameters
*^,~S
dhbiO
q~LlG_
ZcG^o
txRq9
r`t'}AcTsY
nav+2>
2M vTA>
[DVyf&
zPw=(
9lXyxm`
]^xDM
http://ocsp.entrust.net00
?W"UR
2AABBf;
}{t[T
V6Zu]
August
A(ftH
!xMe4
]re+C
^L0uM
ipA_V
o6$l\
r;0R!
>t=k];
]uhf[*
2^=br
t?@"EC
]Lv6t
Mw.oC
WW_vP
2paR)
mJH;c&L
95X(B
@L=xW9
&_rz31"
EH N-
7=<'68n
Kn!Wh~
(<4VU
5Yau;
tc<wU
UO6s*8
SWE@I
ceM}s
/N[1oU
5a$eoU
<=K.D
G1<B;
3VL/q
ssg\~`
V32rZ
g]@?.Q
*y</h
GqSbT
o=r,;
(O&u%
9g50K
^1.T,
?$'iWd
FindClose
"'u5~"
[BDX\QCn
qP%1;A
8y:-d
[Jd~_
O8y*e
sWIuq
SG3Cv'
h)ij_
Z[vxd
lsruzq
H}I+P
t:jtj
WpIL4
'#U!L
<P~0
Q!cNe
WnX/H
W{EiG
&87@7
_]=~~
,*HK{Af
]A:wy
M;R.{
/@D;r{
&=N{NO
5z#U9
Km}L{"
VtyZ1
ZF,c1
&!CuZ
RfVqE7
;1vS[
SN,%l
/#~[Yi
28qe@
0R!y+J2i|
?h&HH
tx]O:
99Gtt
KU$=MhKD
uFh<:
^Ma5{
@2V8(
6to5Q
a!Ql\TpKbC
A^[SmE
vl3{=
^#+m^
_<qR0n
}an_y
tvWUu
Z{dlL
l%G!+
da9XN%
|OBOO
Wky +
>:5zvBF
e`i*~W
g*v"kF
=L[2M
Vdd=i
Y0CGl
yX0,E
7$ }s
nMD`G
7)VR]
0z^][N
CCG=rQ
F@ff,
nB7?9
Pa'VE(
S)ziv?3
sAcD8'
c@HC)
?HyV$
j.r[f
gwVfr
Pe$,9
Id1B#
u^weY
O=H<j
yi1yv
5l0`w
l{Y>bs
v#Ul,
E!y#:
0Q6S2:
@lq*$
Wk~ ,
CharUpperW
'V6b9
3[rv]
,Xym6
0BVP}a
RS%'6>
)GvB_h
k:%'g
- not enough space for arguments
[;C~D
fKx;4
H$F/KbU
`(V6-
6oAD[
4}bE-s]
~Q`8/yr
u$xTU;
7-Z.NOU)
in1@B
$NT"v
b"1h-
ZA$OK5
g-0$=
424oz`
{u1);
yWBX5
"ob5{t
;LSJhu
w 8uz3
B;VAIWG
O,R2e
>ooCT%
w~Fz!
o<out
DYL8l
9>wg]
CNbd#
Vvx{'
t{=]&+
`FYpS
E[L]UWz
/u0rY
_'7;D
5tKsjO
QQSUV
cRRGX
OKX%B
d~kK9
4gaUH1
1;Xy8!
tFjEY
J%00c.
5jAvL
NNX56j
(%qAB
c+,0]j
wNKQc
p<{yRsWMQ
?r7H-
Mnp
&]K8K
6*bz<W
8@@fhJ
Vj!meJ
}<hqg8
9$wlFpJD
Qd_j%
q~UK^
9Lmf-|R!
)0f."b
VPev)0
i<0~C6
=~"_B
w]eN]
N2Lbw
U>ZS\
_r9^6
ppZmp
Kd:gHB:
$&AtY@
R:.eV
I/[,M?C:
s]QzBZS
`}oqx
.hA'u
u}K-1
_$2lw
4h8X{
MQvd/
y2[?p'
$fR?'
R>Hk[
\?wa
\~k,U
LwY3V:
*#k9Qt$
YAKaC
XRS;+
m2HXQ0d
Qcl4I
~y-cF
r-[fV!
,0FWE
$!Y=n
.dK2.~
\q_"<
I?`#`
)vH&g?Ke#F
|@R }(
Xl%S"
O(Z(l
/!]4a]pz
~,Gdy
'[GCQ
$Ake^xZR5
{&|,u;wt
jZW^B
x$uH_%
&nr#)
30qJ`
DQEHjT
Nv:un
0OT:[
V:YS;K)
aBWtV
l<y4o
|>TPw
F.}7/Q8
yr,*c
9WP$<q
^*9jo!R
4/mt/
!.v~:
(J4c@
NAw|R
Kb;iVp
R6Xp5
saqT#
to$xY
)r|Z\
DpAb.
|2J_dV
Pl]XM#
G?/%]e
Gln]yD
nA/D(D
9V#&6|a
kn]hG
d?WL1
x kAr
qC1E>
Why_&w
*[zj|
\BW~P
bTk13t
$:JG)Gq
)1[>a
8!,yf}{
"g6!!
?<%DG
i'B{U
mf1q'
<requestedExecutionLevel level="requireAdministrator" uiAccess="false"></requestedExecutionLevel>
h,RTf
sW}{8
eM'w.
;]kZP:
uQRBDapS~N
&?<]*
_xu:!
$"Y?\
7j|~l
Iel7'eB8
$q\~_
<K%"@
aF{B+
y&X>:[
U~iEex=
VD*v*
o.s1r
-~t{J
rvI)/*+
B@'03
~omz:6
D>-"p
b KTB
U)@pE
"_&\#
5kM&S
~mTHS[/0>i
;])HZ
?&P<~
-?^&>
,Iqzi
acNp]t9
.{~I#`
Qgb8YWf
HW:S6]l
%M0.2s
fy8JaF
>x #gIT
XXd~}
c|<t&
K'pOw
g<QK&
UwSY
P&{L_
''8fq#3
y^Y{t
`a9_/
D0Vv$
tBeH#
AM<7r
tP0{F~@J74
EpB.EL
J{LmS
'm"QT
\G<\|W
%FKg
[oBa{-Up(
)lvCV B
Z2_h!
?10"7
:W<RFn2!
\C2]]='
8l*;L
fLXVzhu
N>soi
S+:Ktyz
jO^S3
Uu+5O<
\:I_os
S:zoy
M}= 94V
b^Jrg
[J|Ch
7`eVGm:
[N]:&
I`g5y?
-:m4VPi
,+y5f
|BmN7n
z5wS"
u*KH5
omQ}#
wxa=E
i<dSt
&Cm$n
Wx:[yl!
%"rm7
jucLc
/{\<SB
Nw{agm
\'bSUY
k1z|Y~
_EK#[
yu`0U
N"n>aH
BR7nj
ZFZE5
95Nk\6wQr
:]-k$
}*,Q7u
a;/tY
z)j&;,
P*8@[
[0_uq-
`F:=lsw
ProductVersion
b10P1M
m.|QNX
^e%#'
#*Qn}g3
s{Ls3
&^YZl
<a9o
)?8:=
tLa9FK
8<S%:3
u^GM^
Hs'(W
8Vw#V1
wfYRp
iUW-(y
P{~fGs
ER<$1
sg2]W
-yxL`
o"29Jd
,xLKP
ZZs}!
Xl#+-
M~]WYg_
t F21
"bLXz+G
G@qq1
HugtV
]Neg9
|ZIWS+
Z_]Q#
`B}X=
)%p^`
'!l/z
-<tZ>
!/ws>n
jM=/x
g-(b@@
J:Qw*
]$4MUk
^K'>X
160107120000Z
1Y9:[
z_ML@
="(Q3
lF|m1
OS3L
Tn1Qf9j
out of memory
C1nD)Y
/XZ=r
UckFv
'LZR8
`?~Cz
EP\9s
*.='>s
MkS9i
4*>w{
)Bpm!
)f5yt
nex=uv
2m;zn,
BVRIRQ
^a]0ef
'c"Se[
_>#;QsE
D-x\W
V;25k
C{xsq
)_NW/#
jor/K
/PP-@
*b&*DGp
8FB{xC
jT@\I6C
mXq'@#_}
1mZG<
#*3xK@~
~!=`Y
yiZ;{
(,JqX
BP+m$
HMG]l
y7"U.
MhG@2k
hmessageid=5426c3ce6149983b34797b9d1ab0463200a94512
VL(+i
39_g3`
A!^jS"
V `s%
=85^j
kd`H[.
\-/$%
l!',s
~g}$R
&qb5/
?z'zB
!\J/[S
2nH:d
I{[CM
^*|Xk
I;;UP
V E`7b
fhurw
G;~p|
iL+L(e
,n?nj
EH3u7
6B1d'gN
.u @*X
INZ[%
Rb-^A
Pb>j"
ljmap!
w??vL
Sc~of
DH:Oo=
.151;
~{3RI
C4]DMZR2
]zxZa
@]X3t@
q?u?r
R?+cv
=9]>:
Mw7VH
{p0CJ
V-MDL9
>]#gf
V+0,"
zb1ZcP
2zMP.
a4 W8
N92!Sv_x
k)#@%
LVyXtqe
Tg$7p5dM
f|TB,
$R,pScj
!c'u*
L,''X#
}7k >
t7icRA
Y$Gab
c[*)V
X3th1X
x;**p
?V'}[
iIx?<n1
yI@dE
l9+@~
!N!f
94P[&
|A7cn^k
Yk\5@
d.|ft>|
T;Oo<
m(Ve_
'RVG;
LN}hQ
"!FD8
Hc#2@
Ro0!9
K.$z3
R[wrnC
X_zsG/
YaL=1
r77V(
T?%:H
UCkZ$
,GP5|
pM)>j
:pX>(
P>*m1gV
c1W!J1
{1.Fe
.X7dGO>q
K#fKS
u?9H#
R\Te+
yE\Li
qw7`Z{
v(:xJ
&}~|*.
}~)qX
!tqP:8 W
5HIPk
$df)"
U`[^fK&
y;[3A
#R%;q
VVs]zA
m<Zq{
fmXW9
7Coh?
QM\Y
yQ2jE
qk8L"
U&6JF
.2iDt/
H:4Hv
M2!+9g
zpQ9tFAJ?
4zTN1
]e0Vv
q-g)#
}7]6)
*u8u6
BbiP"
$uwLo
QfE'a B
.%@ W}g
LkB{5J*
$..SV
]12`7
&o)|$
bUktn-
IANR9
I/|14bKYj
SPSQS
l|'@=
dUqNp
1F1>iA
`.rdata
\B/?V
p49W&$
pi#6I
mh'{m=
:68VN
vz"'L
L(lv-
3 FP[
@G:h&M
Me.=<
EYsk+Q
|Bik~
!b`o"
6tHktQ^G
+.XHc
~$-ak
k{!HPE
dX&pLm
opLlL
[((^@U
V"3%vo7
VA}*7
}Zi'$
!lTw*7K
:)dI>{vT
x9|Fi
*|=^/ObU
9c- 0
llWUiu
E,Vvav{
^TSfo
\UzCLN
wuF~7
wGmRr$Mx{
Progress
~Cc0vI
I^Xc0?
P{0x{J
I^PXT
"j&@`z9
?C#aG
{l9.kv
ajm_h
fe`l~
*on^W
t{d=$
p8yq^^^
Tb6A+m.
C{Y|A
g?j=(
~~fNXQ
jzHLv
<q3QN
"Eogx
o0t\(t
Saturday
M6T`:
X\0&o.
XS9<#
b;B9^
.k!a`?wJ
s@f:n
sP0&Q
b*F}=
1,s]a
Kw=Ld
u}^P@
};e?T
a/(3^}
,W/Et
`zzV9
xp0y5
fzSJ:
'ue3@a
X</rMH
LO5Wq
G-`.,
H_I8l
E#]JD
'3,rg
D+9)m
Ef>~m
q#|l+q
wP6\h
8n$He
CvofK
Im|s
,Io$E
A?q!jt
n"8t>
\t~gj
IWq&N
;HGHN
x( E/
b:75l
goK)
Fzla%
'<O$v
rB8Y`
k:m!]
b&y7wJ
7"}/R5
!86<Kq
{<I3*
tW?q"
,"zYr
2:swZ%
k:B&;3xQ/]
Uh9Bc
pVO,,
hjA3/5
#b(akg
aC=9q
8 $ 1
0/`aZ
E>Bz
F.q4t
&]:<`D
769e!0
!#{h6Rn4
{QYw>j
;I_H.
nU{[*Q
M-nYp6
Ik0Uvu
x/,yM
CZu;?
Ca~aB
d~aFv_
H<LAT|
mQey ;
TZs''
2p0Vn
T3>7q
'R!cY
JL=d2
}WD%oW"
D'wX6b
O!7~?
PL );
TcBTJs
Hm&zW
X_^[]
Gj &d
NaE0m
u:6fY
.,7oH
rk#U#
#`=y*
VU9x9<6
l12jiR
zjz!l:]
a'^hWV/]
:;`a5X
t4Ht"Ht
9bbZn,4
+`0|2
&a\:
d~]zj
HG%n}lw:
5>[]e(
[/}&^}
&XFYKG
:_W@]
J@UPlzlY
?x[U$Z9
e\G;*
KQ2$q
Nh_B`#
^>gLww
b!f|9
;m6+P
yPS-V
qTiL{W
QMom_t
RRN!ku
m!CCuxN
v8oX"
|XdP$P
[4_]N
1Q a?
95&eQh6
uHp\2
>8o@c
vuZg2
G>1|[X
Y,Piq
vW$JiWe
t3CG9
nL`Cp
x(vW
2Vfx@
2S9p_
dTIQXrJ
dVsA{M
'M_5Z
'K=um]k
<lX]v
(JL(_
0[;o1^
q^wt1y
8]}yzZ
%0mL7
4AS=D
}3Toy
qLIH"
=,f78
.R?1d
8copE5K
9l'"o
S/o`sra
s"!a_[@
lM>s!P
}'13L
*7LO{
%NOB!
}HweV
7*NB*
*A{q8]
T+MWDn
,3A1
i{TxCY
TUMV2
KT~[0
=lq,FS
R}m"WO.
m)9=\
File is corrupt
fOBMI
+rN)`>
eGR:.
Z{f[_
7$f_G
ax}6;
(VH5>X
eSPs5
yp^ZD
K9UVv
Kii:iH
H[#D[
)<v1W
_l4t$
5'%cwa
pNQ4Kp
8A692.*
l+kbV
nj5f.
<8SU<
JOl;4
{.d/s
0F^QZ
M]>n%V
Ye#n\*X
\=tVK
Su=JP
tUG(G
b"Z{p
lAs%2
.?AUCOutBufferException@@
wwAxFH
R.NVX
,D \(
Cx98]V
W"Y@v
;1ZN>
j4s`'
&VTph
:m?F~]
fB)5u
4E!LT
TH!~0
62MJ,
e=5'_
W*7-pD
H&O'H94O
2>9K6]
C$krD
'"8In
q'i~o]Ul4
`i~.a
nmGZ*y5
D=5lp
?a~up
K:ttf
`bkxc
TI>RBr
k@q@0
L]U,+n
MY<hw
Q28(o
vT>9(~R
_.6o`
8rrgS
Hb, a
z*)O[]
NYmk6
O|Ap1b
A:.)$
hb%^`
0(c) 2009 Entrust, Inc. - for authorized use only1200
}H~M9
\'t9&
p8zqH
[zt^N
~WU#A
m`= [K
j?aam
'~5K\
oKEtL
{|FeHg
iWPpQ
g6gI%]
TC74%E
9:kH|
eeh>=b
#D/+[
LPo!W'8
/j( @
VWB:#
#ZkfJX
ytWFW
(#P7UT
,jg=;
b,Ar^f,
'7/[-
'J,B<
Io(~(+
6\6*O
&#iruy`
^Vb"Rp
f8Pk!
4\t{uA5
cDfO/S
[(*-_W
fpq%<
{(M{1>
l9s]R
C@[DW
Di%8zv
r&B.
GUIMode="2"
8[HOhX
^}otTO
pSj4K7
I9D)<c
dx]438
S}.K8
N27GT:
PYt.E8
7;[^G
*Q2g^
E^FVj
L~G|%Ns3z
kw5f/
J5m{9
n{T.b
z "<~wj
z(Smn
y1-TV
'?3#n
qt^=S
?];*x
https://www.digicert.com/CPS0
ys1q7Z
BPA%(
C55Zz
~4q'+
lM2^`
ZD-8)
x.1>,E
w(~*"
;SNI8
Y*Q`t
ueCvl
R7qIV
-o6/y
X{-h-
Sc2~L
"6;B>}
u8!.)oRU
J)9R1
wJy~i+
=r^2e
6Fjazl
Tvnd(
59BK,
]J,/<8
Us\|a
hR,R9
ST+|#
0J`eI
zd1w@.
D5Q'Y
{oQjA
9s6!h
f`D;-
iXaE0
>{^Ng_
pBI\z
i9cer
OMh^~z|
;`wrf'K
+d-w*
Z*N@n
fha3m;
!>Z59m
fL<;^
%7;q#gx
Fk|61.
9f:-'
mD1sv
<A'-X
!1g3<
9Etxm
X9n#Y
Zo7,b
$FUd?
U/Ljp
qn0v(
%C1 B
Lrh5d
3~g4yu
R:y2d
16Pb-
]^=r^
8gx-n
" U[0
2!#*B
l'V@.)
tP3ki
GXYUDDi~h
=oE#K
c]Pik
oRC=S
/$It4\N
}bgCb
:-w$z
Xt}8e
7*T/qL
'gQ9%
jr?`D
XD<B\n
/6h5x
mm%sIZ
d=/'S
@ie't
aU2k?
lI\0e
./;&aI
O#+b3
thX<QqR
zlGF+
W5lPG
AP1Rk
4>s04
hD1B6
G}78VB
`qnM5
,w6:4
4fu~6
f,U 1
I/f&
a%j~m1
Vw?IuG
ezN9Z
dCxij#R
)o&E]?
:_,@p
V0b._6
Djltc
XlHz&J
(kib;
Can not find archive file
@`!9%-
N 6-T
4HqPqd
`o_c{
i3o\6
2>P#D
^[UN_
>B^=ed
O9!{?f
YC&Th
a,8FJ
b/Wu.NM
%m)iQ L
7]B0$co
InitializeCriticalSection
<'OLs
5lWi+
U<bpnV
_z:(;
lj@z<|R
2o~W2
.(qVE
9Q^:S
#US8f
X>hXNs>bA
3P%5\
J^AZd]3
Q}KMf
Sf1[>Z
- unable to open console device
kl}Gu
O;[d+u
\<hXT
uEq.izH
`B"]oB
qbV3n*
u#h?a
_J8.OW4
RTI&d
Ry9r'
hj,lV_4b
Y{5Tt
ANKSK
'9?*5
runtime error
0/2Rl>
N*hX5
,1y9z
W ,xV
PL#DAyS
xQu$G+
c"|gFO3^
\f8k4
UmY&K
\l9_p
R5yso
Z5ft}
,W6fp
x8=zY
OL#AV?W_f
sh:5}
~1XL=
;IJQ8;
_d,@ws
3mV<R
{.h<Q
8V6&p?:
njJQ^|$
g2IZ=
8V7_sXy#
#J2T.
FMX<"
& 7wj
JA0mw/
-/)HC
SoftFamous
0Pd^eO
_B3c'
JV"F,
XAwXm1
to#;3
bbDK`
=1\9c
SunMonTueWedThuFriSat
T/vQ>
mIXsL
Yd:$cz~J
wB@;QrU
r3Q;Qi
k~AL;+
2V|pZ
&'y'L
IXy03
:!:dX}m
__MSVCRT_HEAP_SELECT
zjs';E
amo;9
Fhf)R
h}G&{[
wwwwwwwxp
+Uq/z
tNwkE
Mar-u
!cu?k
A2fbR
9hl#m
:!BN|Q0
co^"of
I2s J
@C[c.
See www.entrust.net/legal-terms1907
V8UJR(
2A_/r
h,t51p
Webs+
Vg*"B
-Ix'/
4+",|
IW.gJ
Vy3t<
9(Z1V
<=yZ=o
>z[.(V
qm[XL
SY(kRx
R)C@T
GetCurrentDirectoryW
#.V)3Bfv/
V%tw(
Oh"v#
#?<,%
Es=9N
1qa0:e
HcV1_
Pd<vok
GuqB'
4q]@s
{OCJv4QUtR
nb<7f
0x{}!
V3bjPwl
6;Zg}
{'fnj8
@j=?R)
|xCY4
p<]Y?k&2
LEjCx;
#H66O
(EF$USC
5G\gp
S1TtDc
`&\nWy
Q 0H8
y6jA7
Dt:yZ
%dxwz2
?I4YSs
;k{E
]JZ E>
$Qrq-
Z2,3Q
jApf%}
~Z$54T
/zdfp
5tje4>r
RA8:=_
[|U5~
!Gt|[%d{
Eay+q
/!MlC3
(lv?r
oa{2N
&fP]B?
y,x`u
XamsP
icPG+
Rk7+s
oJK>&
-j->k
BK!>S
l:UGL}
hKwwVi
E41WN
naw3V}
Dvc1m
cg``!
#"!{$
c;wQ%
lcCvQ
^D6 j
Si;t)
JD!Vdxp
E.q>L
mrTsC
v2Eu+
IH,DQ
Kz#XS
km+T_Q-7
Aiu,'
].F:NS
P"|,v
Qjj-\~
;^4t_
.["gV
qT#3h
'hI\[
Rb}nny
=]: =}%e
c%1Z}
:T`a`
p'n=R
\BUza
zO^n@
5-:<r
-\IMj
3*Kdm
!l@"\
A2?$4G?
Bz[Etr
Y29K^
hFe:IP
xGK<n
qf$Y|
@sm[|
kX?hw
WI>(*
kW=eX
'3E-}
0wq+=
n5lbV
[`+4vS
%&o^@
v;coQ
P2g|j
lJz~'
BKn_Q3
ARtTNye
;A#}2
0^%;E=\
~ItU2
"%)5V
J''s*
yX.I1
>*>`'
$ u3}
W$d8#
H:mm:ss
Z_WTY
N[u1d
W[|7!>
%7xmI
Hs2u>4
({7J}
M/d/yy
V4u$9]
[\,%*
O=0(5
" th5
/wj29
EN]nd\
]HHHAw
p!izZ`
r#7}A,
POh_w
OriginalFilename
Yg@%V
G`Yba
o7z0}
:._fe
Hpr,;
f6R+q
_^wni
}BRz'
Va_Gs
,cbD*#
KDtE_
>oopkpr
FaS"c1
v`V,!]
Y?xFo
H\s*y[fh
6k}?G_
+it0
e4Yd+
<|w6g
?6fXm
Y' `K
p;|U(
LTEX`
X/|OH
zeK9h
M"}_:
6v$\UL
A{w{=
}P0~Q
SQHkr
9]c)G-
/V_E]
=_qoX
!b^5w
5VcMz
wwwwp
%"\/(D
af%iI
fz\''Z
|Cd<)QQ
fJQ>:
Z}>pf
srp$L]
h#lJj
7Wfl*
As0`<
gFX*Z]
7zS.sfx
8-i@F
p[(0>1v
zAE]1
&EVA'
e,kKL
ZS.+#
W:;dc
da1VD.
4G3*a
R;%HDy
)%.p[
W^#<a
%jfP
fFye[?
{pJ>yIkTs
fPv^X
'Sn'.
d#K~"
/l-vv
+D*XS+\
U7<f]c
5I`m(
sB,!m
<m[A[
{zW{Ay
Io '_*
sEx@!*a
4U.gPn
'i4qd
7!\k_
,+$%:r
ExecuteFile
d~hjg!{
"O~HQ
50Ay<
WHGi9k
n$kYw
*$h]r
r0>Q)
a~=s6
cnNQC
"U#'YH
6NvJ0
=>?iAk
p2,[7M
qtu:K
9s%#`
,/tiJO
KWu(h
G?^ew
Q+5i9
f\/Sn[
;;m[dT
(V04^
u0vQD
T'cjt
(DD/3
n#5uJ
xZF9D
KMM+~
<!18S}
8k}M]
OQew*
n<2Rr!
`(}MR+j#}
@&RG7
U:/T{YD
KRblu
diP{k
)?b?CJ
*f1_Z
q`vKu
c s\H
utxax
</requestedPrivileges>
.?AVtype_info@@
h]3vD
LpRnQ
GbWZe
s-#Z@
zThTe
*65#Y
[/F}\Xov!
"%yRN
@T_2-%}
3:$&hiL
N.a[j
dv[wz%
r1;W;
fKPXi
5J,}q
npQ>[
t6|Mm
F0;G0
-\S9.c
<R6}N:
9^'h1
t\IItEIt2IIt!It
GetEnvironmentStringsW
-Bsw$
Cs|5|
:+!pv
bu`BgD<K
8!+YMC}Hm-n'
'GNBX
XCEW0
bpaQaI
Y)Ua{
,e=\~
kF|V?
s)V:yk
nUom5D
<g_UY
@w4&o1e
~2@Qz
|Ksaywkl~9J^13
H"zI=
Sw^,:F#y
L`+an
5;1-)
,BCSi
wkb'e
whAFt>
BV).S
GsdmT
V_hKf9
T:uW4
R&e v
:uKa=
.?AVCNewException@@
^*KRa
37Ho_>*
L/..~
QY)9db
MO&!BGy=)
*|?A,Y
"K-p%
HG\@8
c:6ZA
2>axi
Bk,IJ
PYF&S
sw{c%w%
pl)|5
)p^Ib
TKucH]
'<gS@
K)5CM9
bwZD1
:0806
6A"ph
{eqFhXv
kV,y*{
<{'FZ
t1N(<=xr
t(|s*
=btRv
koST+,]%
yK[hb
_7)\]J
>X2n$
u%Z"k
4,Dkv
bl1~[w
,<->#
e?/(R=
{CaSK
M1o_!
L1VUV
t"g9:U
KO?J%
$s0IK
ydirp
V'YgC
XypHE
uD[C1
wkZGy
;p$jixGL
_wwo1
"pD)G)
=b21\
+oZcR
Cz,y*{
Ngb0F
JU_p7M
_f2,P
y=kF&V
C;^l|
]HE_}
Q-\W(W3X
pP*Bm
"b56sH
z\)(}-
342RLJ
DiDQ9
8Q>oF
>iX#9
"|9EXl
R.5('1X L
h\"nG&
l[s\k
Mf'Qz
TO>^2
irYtoTq
$YV$]
A:m:%
f\H{c
))l,?Y
XO1Aw
X{FjL
+bI("
8/!zT*
~Ul53h
$S"NV
|av2f
OHT"X
e_2wh
"PHzR
iC&".
q!'pU
iujJI
Vb"/w
&$YsZ
,PU1M98
cFX:0
bK#]
YA9$;
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}" />
eTvC.
.ZkK/%F
D8`7z
O`>([:
0j2f(f
F9tB/v
3<];}O
t\40$
c6LSi
@xifVJ
!!ff^
@$Cy4
%DSfu
5j'}K
Zt,J4
E+"bjR
ER~1]
I)z%>/
o-20D
aZA*T
~V$y2
R$zj@
*A:Q%
W2JuV
->ff'
ez;]lt
.KnbE
,Y cv
%)H$=(9
{i~Ru
Zf3dI
AQ_K@I
7>ewI/
(MG<{
QD?B7
il+q<J%
n!f^?`
r1]$0
$V-nl2a
Hg_{Q.
B`J^*
udZ_R
.R[h,
KZ}[6
R{++]
-~Y^H
*/Ick=
>d1_eV
)IY#Tz*
uCP:u
g5_5y3
_UY-o
%^zF^
^j^za
7LGO~
R6002
TyGHhX
/+l)^
SfkqH\
+"$s*[
qm_JU
L[yrJ
8U([@
O5D qp
[Fb?S:
:6SjV
V*.Ik6
%Ff'k#
mknzn;
_Wliw:
#Yph}
u#q2X
:E8e)x
NAQmtC
V\C,{
TxSZ3
m09QV
HCzsF
8`,ac
pMyT\(D
vm`DL
;8Sn~w
/kNKI,
rAO$UA@
8;<pJI
/Za.K
LeaveCriticalSection
vyJSzP
;9\,p8
Y&#bg
(m7<^
G.o(<
0D40f
OZe_?
kv9^5i
ex Xo
YFdnt
b^KB82
>$b{s
nJ2p<PQ}
OL!)w
9Wy1FJ
KGgw8
~O8S8_
rQeI*
QX7gn
?4^_n
z2Oskq
3y6;!
V*;5~
K3=m,u
|N"o3
\"-"aFEu'
1mD+mZ8k
Awi"u
qx\PP
u@M0:
x&Imd:
"'i~[b
\%sl)
a()Gw
^C4dW2
|MlXfN
T|7d'
7f b"
Qf)0).
6.8.3.0
3C3 j
w/'1`
d/n,H
FqNeqO
J0p;V9
}hW`W
9F _^]
2}fwP
<;wg*
uF[gMN
)8/$5|f
Dg93Q
8/A{q[
Z(: A
x_j8G
S{YCJ
9r1pp
XFlql
>j+p7
rX/:AJ
https://www.entrust.net/rpa0
mHYQ"
go;+$
^-*Hm
;"i.H
;H#Xv
<_j\Zx
$B}l5"
~S]q`
D%1Kh
tp"pI
j<=+O6
X8Ka5
<nB<_
h[xH[
K?4^%
:A;>>s
]'q<j
J5DF>
Rn[IO
6HabA_
`^\B6
}uX`5w
qdp^bv
d(,+K
fXaSz\
3~N_N
S>pa8
GetStringTypeA
October
ZA>v1
xM!lv4
}kaCM>U
?R"[Q|
d[nw+
;P6T^
'Vytx
xu>r"
RI@ck
O))Ot
icR@+
Xj{Bb
)>4E"l
~@,P*
yZ.[.1
4ZR0+h
e,=8oc*
HxpzNA
5{r].R3IV
,ixz4@E^
0y(.d
IbGCV
Em/2W
;)vGQ
gkD.Qt
G{Z0"1
le%RT
,)pZ^z
Bb[1en
D$(;D$
^MrA'
W)3>p
ND]/B
uW6n+h*1
Z.#{&
%"D~S
zARp2
?8_g)
HX@(P>
8n]1my
GxQO>
'W%"t
)*.uA
~bYYd
+uZ/"$
XF&?]?b
7gQFW
;te!y5
=r3`v
g|J"W
]$/FV
]>Gxz
gBB=D
2<|n-
R6019
7^XWC~T
0XR_;~
-&2ckNV
'HJ`:
PC$n
ApnAT
0?Q<t
i&oXTd
.-&; N
|mXKj
)7M!#
&n6o6
1ks/&
GcP*":
_`s/`~8
J>$:g2
p<>#h<
BUnsupported Method
/}$@r3
pa6Yk`
H7#ea
nK0ON.
h4cq"
6~NM_n
;`.!jn<:
;S@f\
wSXRK
63(Q%
1oea$(1
nz?]p
n19Jz)
KL-y&(
$ d5
twJ"6r
LoadStringW
RaD^M
empWC
xnx}15
d+N%H
^2C@C
O%26+
?{)Ha
X3s'^
3f|INb
}9lir
dE.qW
^7R|UzL
,}eqP
AGkWf
O8F+]
j2b6IF
QdZVVw
o9-F_:EPk
/Q}>RQ
Q^j;3L
Ng.;`
r]uwe
D\Hcc
S5,1gy
imiCM
'h{X
?lt78
8vgVs
==By#
OwCs`ym
N;zuE
x.w8n
rg4&
Y(|rz/
cvoyX
AE%@g
)U!Y3
&(]W+
hG*`$
(KLFs
~?c>K
UKaMM
@oF9M
W|`>`uV_
qo1(2
u?Ws_
m^D}m
*:sW"
bvPa3
=Ipx,3d)r<~a
X{<t($
k>K)(8
K45~,
Directory
.?AUCInBufferException@@
M6i7k
>=pA%
- #{S7(
B!*2\
!46hk=
k2'p|K
Y$IiV3
evM%^r(
HyJsh
Du}K/
vhnt?
aG@+$
([-x_
3#[|Z
P.tO73
x_|0G"^>
WG&7%
gQyuq1bv
Q_zQD
!FU yA~
{`'L6
f13,V
{mI3:
|<vpr
Ukws*
cN`u`]
ld3|"
u>@sP
=Bf'qpT
8}IUH
kvaVj
Dq^I3
TC9,1
?^~yK
WeTRl
z$s1G)
]pR9;
oI{!/{O
?7\orN
n~!sp
QQSVWd
yp@K*U
2[%~#
>=kSp
"M\6<
?})5b
p&?*-
cK<c_
=gdAc
"Q;t]~
WXd\]n
O8{l!
Y[>*5
KIv`r\
n('.fBZ
PfKq1
>hCp^:
Z~>yD
4Bm<[
|mTj_
eV\DO^
33@4C
--&nC!r
R@_;a"
}T.T!
3*&ul
U(f?e*U
|C7j
Sy.g`n
,(z}$
fvV$2$h
[J8\$f`
5MNb0[k
zp<)->
G'k1i
=;$-{
G*<bU -v/W)
+sBK^
9[g1a
&z#)ne
SqGZ6#
=r|S)
-5 ,P~<B?
_GSZ|
Y_/G)
F05Nw8/R1T{
rfS4@GlC"_g
-tdaw11
Eye]V
;-F8;
KYwB{c
:4#a|
5DFeV
k@g&=
M@z&fJk
M8tB=
k6|A[
V&d43
!w1EE
T"mjn
tPF[d
9dQ0L
TTZV"q
r-_&:G
4_RNG]f:
:,V1)
-o?j_~[
1!3D=
[pvjY
ZFT(-
-H9x#]Xc
;7j'zs
L&@`u
#\nC*
(DG04
7Nm2Oc
o\K]Sn
=?x(|%l
sO;>|C;~
fH/oQx
GetTickCount
$BYJ,
17P}m
y$TXK
0V9l5M
m>@iD
~MvT!
zXqfx
AL7Xy(
R$=%/
f+hOXc
%[mSB
<'MJZ
;QPU<
'Kb/l
SetHandleCount
{-dof
user32.dll
/|u`Y
1tw\5w
k:S%D
m3;Pc
)$I7z
}*?b1
s[Iql
< <Do
4cj>OYu
}{8}&
+[Cs}l
Xws"Pe
\8B.j
nL&<L
fSU3i
s;:o$
<|*VKA
T'0tx
8I?^F
'+mO}a$
p3:^<
F~8|1R
pKK"V5Xf
K5Ip5
5Q|JQ{
b.=Jm
YSgGg"W
J4y*=
PE&PQc
WAK,,
</security>
0+5)~4j
~=S3?
Los5-%(!
5>pHX$
P&wT|
?!kO0
MultiByteToWideChar
3FU9N6
)IZC"
]~&R4ap
hYjA:
w2:*1
m76gA
U(-G@
$ '.E
yS: f2
@\EjXZ0UVf
=__a6Bb4
oCtDC
zi+_73
ARI4Li
JJDS[Z
^9V#"Zw$M
%N*9i1
m`HK|)[CR
9 s*5
Fe5(j
DRf5S'
$~IO;
2fx*)MR
("LpZ
L~Oq$
D:P3K>
n?LjA2u
SatPR~
2n ]cn
`?;u7
7R}Ag
4%2+R
.;c>!W\
f,9-wk
LEeWz0
)rS'E2
,8\c3&
w5$BX5
p(>W^/9H
\;9J-
+h8&<
5Th:D
k2rn4?Lc(
a9r7/k
ZV)ey
WD*7-
g05c)9r
9~<l_
|}ME^\p
t*h2O
QE5fK
vtQ#Md
0JS0E)
n&bvM]
/tSKn
3!2)@Y
4>']'
%ulb/wL
<p_cs
>$<]l
O-N2|
c/.n'3
#][.7p
4~IhH
xTAo/z
o^T4N
m0cqV
akhh($$
{1<ekan
x&f$=0
x1<c<
Ce(r>
zWb=]
D3,l0
.U;gJ
.H.<`Z
N07]l
;.8mb;
0U4EXJ
OM,!=
:$G+0
*3D^{"
eiRu>
qT&CY\
%bYK,!
R9y:^Y
xRky;
v#%?%x%C?y
Z%@kOF
@$cVn^
gw->ag
zi6dF-
3t6"`y
/8D}s
0^Lo;
,@75$
$xG(f-
a.,ee
(ALmo
u~"T(Y
|g[^[E
~Bs%M
*kw!A
)F)5m
;An%>
J&Cgi
N^/^=e
?(6}S
bcTMU
CGF85
5*@.20
+Z[n@N
FV#z$
ok$>U"
9)epQF
;{-)j
D\IXl
R<"Y\
6D\x<"
3V(rP
!!+&2
* e]Cf
?GBO+
iAa@_
Copyright
:MK,p
=zUWSodw
87r;k
P[6,wUQ
*p7E%c
]fG(MK
*D:k]04Vd^
\>z3G
w>aS?
=rdaq
PeE,u
r\J@F@
]W@mI
2K*@I
(].na
~;"eP
PzEgG
n@1T`
5ZB&Q
tQuz'V
E0)8~
)At4y
TS.\K
[D8&*"
u4mtCS9
RvaR<B
;r:k[
."5Vj
8PEiL
BF%}R
Cn"=B
[9t.\
B}{p2X
X=SH@6e
GetCurrentThreadId
_D`Dx
yuwO4
~:nP22
&$/,q
s5ov/p
FP=+i
TG_}+
4G$I`
7<$g'
c;ISx
"Q~kJ
E,j)
FD;GD
IsBadWritePtr
UG81+~
J/5:C
5Qd%p
"sD,s
e)+_#
xB/{U
24C.}
ooV}cYK
xy3D5X
zgjq<$
FZ)sGu
SZb?#j
tqh$8M
0vsbO
cb-Vkd
MsvbG0
$n*g@e
<=<9[k)
Sleep
!l2QX
%xiV"
J;eB7
%n}gt
&"0{7
KjX9Z
EsM'`
\u`C5
~[vlgJ
f-fF\
owqei'
8>V)H
j~lD?
hIoba]l:La
b]N/!
5TwSTL&
g9u(2
&MfCK
^>@@g
fhaiv
VztC;
G.pJa
*G#:9
E~24 9
a,VTb
q{=O[
E@3g=
=nMd>H
t)SsY
JxSqa
_YnW@
f4d.\(
WEzk%
qFweA
uFN%7
xla9+gl
t%xI)
~]<IT
(.F-|
q+c=a
FjF}%
/>O&d
^Xt>G
iQB-Q
EAVis
.L3=p
K=m(T
@ i!e*
{mpb>@.wu?
Ek&.1
IpQTN
9d=em
+}D=dP
S?K:w
lr)@#
CXfejs=
buY-M
8?b+m
<Bc4S"
sB{g#
F\ia
?n5i.
@g# yC.i
E'Y}lJ
9chb91
34>mB
L_UI_
!5)+;
I1*%D
XH-Hf
#KzXD
N(-$7
*?)hR
k>Ou5
Ih,$0o
4Q@0j
:mg]K
DV=-g
?Lfh5Q
-i\EPL
ef|#i
TwYP16
SZZ>_
s-+JW
)Wwew(bJ
)ZstgD=
_"-4d^
yaSTh
M4<kB
>1TV"w
Rw~U!1
3X}T&
6tW3}
qi;jU
0/Du^
<_agH
\B`P+Vh
F;w0|
**K]H
j`[9m
W`~{}
xIBWG
>6Duv
}B.Fq
5~enQ/2
U9;f#'
Nh C!v>G
S`][6
Default
3`fP g
HK&*Z[p
+/u-|
@OyK7sz
OE)r]
R6028
RHJzO
C)bgZ
>"[&k
[biui
V7>fEZJ
;i]}.
SVW3
!d7?.
Chttp://cacerts.digicert.com/DigiCertSHA2AssuredIDTimestampingCA.crt0
N,k/$
uB;r>
rnm:(
Bw{pn+6
N7r9xW
<`8LP$
V9iYD@
_C7kr
s#u3J
\%w?T
uSd8\
G;~||
oy9Lypw<
D5hkKD
'=|&=e
bz[Z>
Phhw;G
29Dq&y
*gzC`
%7?)r
'.L+w
3SKMJ
?UWcy
mYmH8
JY}-7=
DL=fG=
[-5UB
ySYf$
&=t+u
2Uhp)A
=MFo[
y ^|O
yLL87
>C^N~
"C0+>=
ws1q<
!{rw6+
W0|hC-
Ip+vj>
]J,t$9
-@WYe
rQP~hI
74]I)
")t+)
?MzT
V[gX}
2IBnAU
ea>X*
m'o%0
n:CWe<I
K`I/>
6G:O
GetVersionExA
JGhZJ
LNCzwM
d\5Ob;X
Fzh6s&`
/X]Ba
47$?G
/ h.{
r`{{$8
vaJk:=d
^%w<i
q)61T
Nezl'
uE t>
BkV1.
"%@6/
O0.S-
yY^N1
lyL {
N92O
2Ock-
W[bH/
&`uWC~UfW
`^+0@:U
9n!?nu
!Pe:@
S)zXU^
5M3-gA
5;5].D$W
{pF]Q
c{/`Iu@8
)nszw
I11yt
AUx7Z
/-.}8
^2wO2,
DM]*T
p3G.6o
0Q`b[
wcw*e<
mdx^(
oG_W+Z
,fZA1
++xrp
3r-Uk
jX,pq5
kdP]?
L5<l)M
;@pw0
dy4FN
^Hzrf
FD+NH
8()TQ
'zP0*
zvGp*
,Uw=k&
WHW+\
)w*#)
!NCb.
<[U[q
_scGg
</compatibility>
-iaYX
Pl:sY
;ut-j!vs
m ZG$
gS0V$4
,;m0T
z:XF=
,[{uFt
XW4jQ
XFb!^
of\\<O
Bw:!J}
[c,4Y
,CfX"
%WC:^+
d^PiW&
m~G,B
aw*U(
_;;,3
9=tD2
N,zOu
WtA/)
F(olw
Z>Z:}-@
NCO[n'
>;a&6
F|'1 B
QJ'am
'nq'V
~\rXX
ji)0d
)>!G_VV
u3`1u
}UV#m
s[T.;
&{0jJ
FA+tX,
^:lh?
~sB=r
BN.tU
H/jsFe
}uE\p
^{?Be
%o[|<
GJ/66
0Rbp\
!'B><
U=61NO[
J3+zNo
FindFirstFileA
&Bo{NQ`r%*]
`_sRV
s!H>1
:x$Y[R/
YGi60K
n]qpF
)$^l0
4v-QH
T,8U$J
X49r&U}
_{Tq[
+~Y=I
xP& @a
4FX}g
c:#~`
5j|,:F
fI0wsp
rahqK
)"r&Qb
@9nLw&r
n%I_C
}A,`H?
*BGf
/HVR{Ti
tT)Wf
Y'*9&
X[lFF|
`Wv_s
));L^
.53{}
GGR#O
"ApXml
u7EkYu
bN;V2q
f0-a^
QChGH
2v,9y
tv)sg
VY'56U<
BV!-K
UDDtTqbQ5
y|\iFh3
bTI5B
D0B07
w0AFf
}Ch4.d
4k;4X
gn)GL@
lUQeA
)L];r
]ux}I
j34P"?
C*[_"
u`H{rFu
BX[Ihn
F{6oh
jJvJp
V.4"j
X['"/
d]k-n
8UzS}|q
hce7p2
S<`Rrx
R~CX}
cY;*h
)9y#dA@
aa_&U
~E '&
P""?s
99E?7
`2:{x
K|C}/
8rr)")-
:(zUf
%C~\/
gDI]>R
H. Nn
a8X!:
WjQuS;
a,82
e1qq5
?KV&cxa
LE J
Gw@SqV)
8$_(<u
TYIAx
r7""C
;/.O@(E
szJlO<
/77!l"9
QB3x!
i@O[__Kd(
}l71"
M(6:s
jvT}f
w=m/[
}U e#|
grx`g
MM[@U
+9EVY
xHl*{
aL#_v
SA2NR*.m
?(Y2sKGk
OGa/Q/
S?$$u4
g]++p
Susxnq9
V0N'O
Q'mqhP
|\$("
G35R+z/i
6o"Q&
1VxTi
<U0Fh
[Cp&Q
>5=dr
P|JT2v
>[=0C
^'eY*
8K9 &@
\9;PLp
- unexpected heap error
j~tomP
'0YqC
-j<xi
j{yje
q-WRH8
rO%Mc_
X{X+n&bE
ZGHy'
ZCw)l
_1}K_
)rW_1<r
|-&-g
zi\"H
mE?zm
'\);=
VDw2]D
GD$-T
E ;FP
b,pNO
?~"2[
Lt@Bg
LoadIconA
7;V4
4h8YK
{}sH4
zev`v'
\wWh.
867w0
SOv_tk
&3"$[
-1~2i
o9C5D
Sb==?E
X8Z~YD
t47XY
"s-{)2
`G:4ul
GetFileSize
nQ}!v
YT8Xj
29ev?
o?/jF.
(0|rDK
nm0$CX
G">7,E
0}r1h}
MFR//
4?uYt
/}"s2
gR/RP
W7(8/
4i]#P{G|
<AqXv
D*O:53
S*O*]"
gGBAX
yTq~m
{Tz~}j
mx#+.:
raek`3
4`1LX(
E3p4O>
c26Ch
@@AAf
cCAf(
PDWIc'L"
d+7=b-
fA)Kn
?OuhY
BeginPrompt
@H]Wz#+q
)/w}W"cW
[_,0Q
\<JT8lM
'gwX{
(5t?l|
"giN-
#4K9;
g.6r7f
[=Z[zW
R)wjM~
}MUh;
oh8Qvb
R~]QJ
y#5`G
8#zLk
89xcM
m80Q*
DK<soJ0
nr~YD
V^GpG
1429}C
I?Zm~
e9vQt
MS'gVO
IJAw 8
R~zSm)-i
vUc4O9
E#mUm
F0/V<
D>hzI
1td7`L
`5I5
9,q/K
cy<\rX
\B 'C
|)yG|G
wEfN\
>k<xk_t
(x8XUV
%u`W:
@uS-W
epW&L
F2W*F
j2fSxU
P]'ak
Lt3>Q
knN3[
http://ocsp.entrust.net05
Tw%BHI
g3pm-
pC&kKc
&M0g}
`ep:k{
e=U!*
U{nb6
k8HdBf
_e-zu
GetVersion
n'C6(
rO7OF
bU:kR
s@RdH~[X,
/)=r5G_
GFewe
?<eaY
PNVI"
Ky=eo
DXdn`I%^
>&mRk
2e>gJ
\e#y&
<TlTSaxW
wv03~S
:hO6C
?h&|I
;0z(Bi
\D9\|
P+M")
)3x1'+
nnA:{C
?]r:<
+fa4[
RH}A4c
nc$~Z
P'/|M
YHmk!
-@$;:
http://crl.entrust.net/g2ca.crl0;
>;K_Yz
2bJVi
I[q,c>
W<ih~j
ESw#|
R2:U>
Jdp)U
ZDBES
y5.&:w
axvJI
UlJVl[
@J*/,
"@lOf
_&fbya
bn_:jz
"\ba.
@"D[l`
p1#=$
E1-}Y=
GdUf'N+
yTpR^
'h4z$
Ys9b
=xMGv1
DigiCert Inc1
{A]U$
OJMgn
DY}z.
:yG"y
QgT3"H`
f`UJ4
l7X'N0
wD[M;
vl8P,
>xs^D?
CCEEf;
h7;}r
qeg0-
Txh&rh
QQSV3
Lmz+R
Y].2X
HDE$'
p6{xN
g0FBJ
6TC)R
StringFileInfo
hq9#L
Bz,U('k
LLLW6
j6Kh~K7
$GPq/w
K2g\O`
%6qo8
ap0sNFp
1x&a5
<8/Q!Z
!Kag0
BIG!5
N,Wk?x3h
bBk+c
,);%<=
;Njy,a&
J;8)!Y1@
rH>{Ydo
s[ALu
c 9+L
3vOW
L$0_^]
J_*.9
W8_16
@ypk)X
7Mz?F
SOoc5
@44rb
MwbOD7
Tmt }>
UVig!A
:_y[=
`lMt~
WC_~@(
X,o%:
ulfqnN%
(HATPP
7<oxk
=F>gK
{40:_+
j`JX $
z9Okx
MTkCQ<E
XYlAg
D{[Re
2fR )
62.VJ
~d|i'
lu$jq
5!>9!h
#uHl?
K*r6 R|!8
OH:]0
Ty!\M[#
i_J/[>
1R}\=
cp@PY
))yJ1
9nao&
hf]"h
.67t8
5EomD
3v1L(
o+FdN/
&aVc$
6s)YV
xK>m3b
y<4x/
9bb7a
Y*0J|
&Y1 xQ
nK%|
M|EiOa
n/-1Z?/*Vw]
[1BH#
I3>!p
hc2C0
P7I<S
7DAg>|
&ynNG
P)ldH0O<kC
WT$fj'
@St9M
lKujgM
T+(ZI
[<||Zi
}$mLm
)Ef+mec
QVOUT
5#!C-Z
LiTon9e
[~Yn,
9;A}p
u?>zPbZZZ
?M?G'
^[$J|#
ni t4
sl'_Ff
}f:K~
tn{\`
Bn/8r
[#u[E
Z&&_,
@81w9"
aXCY=.
_LQQ9
}|jO~
V9[T\y
s6q##D
|XlAg
"-0*LW
Eu=V}
f7L|t
J[n!
Ufx*m
B)%{(
V=<i_
cZx7B
z{>}N
v}[y}K
l\Z}v
E:-9P&@
3g}@[
}/.vN
'fT>j
*:KnC
iHFOT
,m5^T
'V_yX
FM!Ds7
~(TE$
wk]:&
(SVQd
,\L%`
UBfT_
zPexP
f^[R[
>-|OS
tYtvP
%'AZ,
$`, "
&wYqg|,
L>r*0
310106000000Z0H1
1uCC4
C:F"!
{y!SQm
9LKYp2
BWhKvk
Ta_pW
2s`G;Q
FV[r:
jlDne
ia*%`
#vVw)}h
c2U=|,&r)
y2fMV
SelfDelete="0"
Y^*qR
J-y)>
I!7,/
s=U;w
e-hb?%f
/<N0O
{]#WY
+X:L[
$3g@H
C>025
hrnr}
RDEBR
2SR:^
Zr4,6Q
RDEs4}?i
/ rax
Ax39'
E:E-I
ix8 q3
FRR)Q
0q9Y7
<J[46"
g1j=Q
Monday
@senS
\7(Q>
hihj+
qX9UK
d'i=q
3'd&F
5,,(7*;*-.$V
i2^]b
o@c{e_`
b!^<t
Bo#k<
sD7.Rg
!|6>07e
#6'cLdGNN
$./_-
]Ci&6
AMg?&
G&?b*:
vP;8H
B#mMVr
fA,*C
tyZf>
AgPMp
@HMIf
Q@*i}
on}c&*
FGQPS
zOZx,
k}!J&q
Wj@Y3
Xj.ju
jB_BY
R\]ff*
u@")@
:ul^Z
$-/^};'
Zpj8L
\>dM%]$
-,G(&
HAY,L
%z![+
7%@! s
l"JLN
m2nkH
)CYve
f$(]n
,U)UR
5_GT<
o#GkcZ
y+t%|
.2~?
bqJt?
WWNuJ
;V3qa
avYK@
u ;~D|
6OD/wr8
Mf/n7Q
AcVr^7
WP+:f
yWYTv
SX?l[c
,http://crl4.digicert.com/sha2-assured-ts.crl0
|HXK9
LkQ+~$
>[ >%
"Dd(D
383Q<
*(ov&
}jGho
-5FXI4
&%}Sg
9`DJ5
Wa?&J|
2Pzp#
Can not open file
s?_v"
u!b~6
#k`69
FdhLn
*ANWN
=_UMr
h9#7Uy}
Yo?Bc
rGUukz0p
VKi"Q~
$IM4b9
Progress1
FYudf
^xexm
AG;L$$u
~zI:?
G!W]c
9"Pr1
r^^@w
ZM\5y
-j4km
3BptP
5z?:Lo
&num3
-!((}A
=E1m+
V{//e>
#ow#Z
E;pLqC(a`
JM3yX
%;idF
x-{;?jF@
F,",+
]9u7E
xW#)2
R`;ZJ
POH8Y
Q]Q9a
HY2-*
*'&`#
8kb#lIL
L\R-P,
Hl8qa
cbM|b
S1%G|
:8qO5
A]CY3
naer+
C.w/b-
hyH@ZA
nm5C(
"2\zhX
<u;zA2
z8Y4dj
http://ocsp.digicert.com0C
%|_42~(;i
(VK%G
i|pDiW
$~S 21bH
~2Ncq
/_Xf5
x\x8[!
>0x"o
d2:)9
mXm3g
C8Axf*
>!|[1
k{qYv
R>c'"1
Obx8R
qoHHJ
L8h_>
|Y^v@
M$#0]
*tnkr
){~,e
\>.Q#
T!^sc
=&|pp
1KGc;W+
OsM!ce
|A87Z-c
aFDEE
GetProcAddress
km&:.
7*X>C
Lx*:-
&}3_qFR
~8+c&
(n&!*
'd`M#RG
we{ocgAskkqcss{
z: wa=
ProductName
xv@r[<X
&S{E^&x
39(\dq
3Y%e7
nf.C5
c&,<e
^[ Qn
Hij^=
g,zqr
eNMD
}IJHL/V#
DKt4Y
%|LC\QC
[Eezi
.xj0W
_0jVF)L
U@fON
3cf'cg~-D
#5IM_A
#zIsn%
|PrLZ
#r|+_
QD})WQ
#n7>K
'=Y&9
RAfj9$
66B~Fh
`){lE
Z b=Y
B+K(v
^Z|No
3#:)-
-WU3cY
[EmW3
]BK;`R
-8M}7K
Wt /1.
#U<<*
\`N8R
J==!P
sp,XRO
bemG;
V[\S?
:+pn<
X/S%Uu
www.digicert.com1$0"
QND$t
)1+2=
u]s7q|[
!}'FR
|n%l05
d,y8YDRC
XHEhR[+'
4Od (
z'6IX
6)zqQX
Bg&mGH
j^cA7'
EV:2T
Q?=%s
m!`$jM
!>;9F
%TG]D
_.SG#
+.`XH
2"@_Q
R0_]y3
9#6'>
bg[J*1
j\Zf;
jZkXzQb
Zc{"q
xVXb5:
OmbjOAG)
SP3G:
ta;U3
u 5#dn8-
@//\Vv
DtgSR
T>9jN
^uW;N
xW)j8EP/
!l$\0
Plswedp
x_?n<C
=vNbC
o28g*vi
t+gk#
4)\<~
az6H5_
Veb;Z
@s. }g,T
><2T{
f1-ko5
=kx?D
};vF})7WNznC
fU%i_4
N30WS
eGz-J|
{Tkcx
rn'2Y
0MVnhL
}_;-q\>
MAPOCha
M B}p
\6mFa+
9/VD_
t'p-&r&
220208171821Z0+
G6yr5
atay{%
SetFilePointer
VCGUn
K@T)*`
\<z/g:
'_DBaw%
/#bm`
iZ@sU
*nyQn
b{%*>
$hj\+m6M
t2w9+
Sz},
t_@;)
:Lp"'&
P^g{^
j5 {K`.
'JkQ|^
N4Lec
|?5=,
l6OAE
6Pr&U
}WS5ry]
Lf+T=
jhlJl7
K}VO`,
7z&h)Up
ON<8c
k;R"`WVu
o2KER
Xiu.),
,]y?\
&F%KP
pv2k$
\~fUAy~
Fzdh4)M
SKdio{t
.dM")
=V!O&
jJ9h%
"|iC%
=y)lP
Qma4Sf@="
6MB@C
*9D=jt
mDjM8
p9D:[2b
m;gnn^q
}0fw<L
I$)HF1
5gXcAE
aw7h?$
w8"y9q
2U3l+
bn^_@
ghH"Pa
qyQ6jOH
{:#Td
U58HW
NmX1'x
3VhtM
PS629t
Gts@6c
'P.m0
d@Wmv
YMKj#
.W+4\
rDDJ\
bd:\7
b|{59
<][D*c
\p4]2
rQP<V
Q|jQ(
+kS,B_
>r&:k
r>.<L&
$X3&k
h#Iw$nec
y%gpz
vW3wX
-Mx&)
8]O <
^,?QcP
|'a]c
vJ,S(?
wPeWw
a,Wnu
0ARkF
Mk7(-
(LwIC
`A39G
nKg[M
L2\M^
_'&WF
x9'J6l
ZAx&09
3Gw[L^R
k6Bw)
-3z!&i
3pIU!
}FXR.P
?ILR#
~j{L2
Pyn5?
FH3G0l
1#S9"
oKc]U
2zfFyTV
?IG%Ks
Or'':
>)9mD
=SR[-/W
2\N@=
L]OPl
WAp$!_Rp
LG}$;
7!>(A
2WFL@
PvxVFO(|x!
-<qxL;-
}C] l
{gLCJ
T/y~f
-Vr/er
4JMWo
/V=!L
%>6m?Py7
\9<8v
O(~ux
uv3R9
G490tvB
]>.r'
*Z5t*
_-i{*K
>.CJw]=
m],D=
+#WEn
;9k+.#^`
j[iNc1
eoVZZ
3nAn6A{
4@;y<
.-YB>d
,Z'"X
yHGta
Jpv)\
Y:-uvWPi
%g#NphYX
|XK3k
4w4h&
@R7?6
SFZO:@W+
O#sh_
4xX*o
X<m&T{
aro,MQ
0k.&98
dt51:v
AG}~q
YD m,
K.w%}s
4fLN{
,Y^b{
.`+<6
Syl?tF
f;e}:
OHw3Ky
N1H[/
p2^@O
;P|_M
c1E/8
;"oHb
KJr"MIieo
4$j)?xt2
@BBf9
t.;t$$t(
ygT7`
\$y.S
TlsSetValue
*_'5Ts
AUJ22
$7QH"
3kcrfY
e>,|I
R|tc.
xk3nt\5=
PqWq#
{uIEV
@]*"x
>~9`!`@
XEO5C4A
mo%W?
?qjVE|#
Vr&\[
_VG_~
vs*,h
F!/gqr
%s=x*
t`~T;
[eQ%l"I
|}F.=
?v<Nx
[}<46
38pY3+
8+i!S
1m/#u
GetTempPathW
7v{Px
#-}nw6
M@I;+9
H<*1nd
O32;+
[mLsM8
BEQTA
2P .,ICo
N%zxbx
]%%O4
d\hK3\
WCFYr
Ht/#:
rK*Vh
vh";O
%.fB>
.586U4
G]Od}r
8z1Bg
u7>rk
1$NoO
Ze@8Jmv7
qjw_4
cWXP]_T
zgK;[bN
LoG9W
74X9j
Qon3x
5WC7&
E4!qF
n8V1-
7{<?s
}`+n=
{eYKA
]%Cq[
{w)we
,yzM[K.
SxWG0\C
{ :#u
uFW>?
m6SP"g*
c~CO$
c% !S
|yN($
-l!' jt
Zo+kI
=e#sJ
6iuf}
1;d44B
<7txm
Q4OWh
K@nt3
GmtAS?*(
2hz:R
("_?MQ
eAHXS
/-^A~U
&97c\
%>1C1
'$yiX
xrqjHF
qo)S;
-k|K^
iH45{
4_=(]
M3X_|
>MR)d
4" Nu
i] Cx
Rp8&t
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}" />
BYQPU
~nL0M
2B09^
z]d#]
-V /CfI@
MS Shell Dlg
|W/_V
2S\bP
L7ICp
Ha0hA5
(HR3=
M^a"]]
I&dn%
}7Q5"K
*"s1=u%
](4UHH
cc.Da
i&zrl
EO=gZ
nN";'
_<<f$
>z6N(@})
}ltTO
9N2_C
3erF.D
5(@Z6>
zRD2I
~dvV
%'q_hk
2nKDh%
KDlPK
.mIo}
^:WC\
4'8gt
`[NGA
3#-Wr
.I_Jp
b4B~b3
'a6s{
10x_GV
z+J:x
1Wsp4
C1|_N?
M;uar5
f :~5
Z!]f
@mB>*~
YYpen
:1H;e
_FE^[?
+'?g:
NBV5!
TWqN`
FZ4B^.f
0l`~|
#rYH-
Bv#w5%C
AH?(0
9FBQVc
b$k4,A
d9=C]r
Hn2Dd
,Pb}c1^
n#MAL
eq1:&
<EHpL~;
h{WKT
-8h0c
B5J,+
Vj#[C
dF_M7
cPOqU
j.Ni~
D?Q9`
eWyQ,2-
88;"-VKR
8~4%M
'UB0y
1=Erx
g*E.eu
^mM;,
k_:dV
bsmEjW
t]y0X
JISlG|
&61+M
)|s-3
'`Ox.
umcb_
bX=3xH
<U0dM
mq/Gk
]&PI<1H$j
-}};v
*r&?lh
0<9%8\
9&kWNW;
}7&d:!
E()5:
'rdA<C
KO~j/|
O[YG?
2dcqN+
(CA$B
QD7+%
4Pb_K
]K ye
k7vO|=
s`0*|
0&(y-
/A]%s
]f{/\
O#$X#C
Z-m1A
cBmD!
~xGy/
rAQNT
j0d"l
t?}eZ
l=eZ`N
VNcu("Y
jr0_E
0$1wMR
F6@KUe'7
A?yH'
YYVhk`@
&lN0F&
2p]~q@
:1yq\
j0yq1
KWROs
pIqV.
I^-7)
ul~Q2
fm[h
*<B9^
KBNw]
@NB+@
]$\RU
2Aeee
BB87Q L
uGMYh
>&+r>
JH+p;x
|ye;%
x@wYf
G=.]AE
/q)^.s
3h,?t
__GLOBAL_HEAP_SELECTED
2)lkt
/>?pB
Qw&)Y
'"N>T
JV+1[v
R4Ra6
8N]a$
OskvH
9=T}`
Xz@/\
|XlH?
*^9qyI
~ ;,c
YJ`qC
DO=1*q
6@S#ar(
5V~Dy
s;r*!~Zo
vX"n-
'B6(a
d;Chm.
If<sM
MGHLf:
F'fxg
-H4X\IPxm
P X@}\
\HA}m
Ac,^V
d8+JE5
f(O0>
4ihfk
w>30
T[\$s
5.UfS
>(iNh$
|%na5
3(ii(
wpw\P
M$%K.
QGXJu4
g~X9tp
BK^vH
=J_lN
hiniu
Y5J_3
i`$@~
q&Tk%
H(_0<
GZ>6c
hhzm>
&*W-[^
f1re2
JF<(lEQ
t,@0
/{CLOc
v7=^9
%uix[
Q8*!b
|o%YQ
wzw>,
Zo_?QNo
vZYc:5
7XDJFO@
{cQ<,
;(wSj
!bElh
qbBxz
Au],6O
U+3g{
VTdAs
6tU24
;(Qj5s8S
zblI]
>d~<r
-$y91
2paht
b{JG}
!nr|s|
AMMHk
C"Fs2
Pi2(E
uA;5\(B
dls,l
QC'}e
%I9sBJ
sn0lfL
i%Z=l
eOFHxvvwB
I2vqe3
44*Hk
&]lZ7
|@U.t
ZW|MF
+E{1|G
GLgX?
.XCwj
TTh7
##l:]
jD=bR
7Att9
?<v?u
\d$+vJ
"Ox\l
$85=]
tY-1=
Q&Q5H
V2*A~
FW)zj
HL@F;
setup.exe
Z>#F4-
3%cJ]
q-=1qU
#F^mp
F4?JY
z6bmM
j2Bq\*
6jFXS
6)s[
f\(kx3q
]-mlP
lo <\
dq:HU
,rRi3
]c`_*
P+(k1
I7;PL
j'tF)<
<MS2~
P=EOsR
B2-$f
"9Gj87
uS@}9
KZY87Z
c^a'{
-\~i4
,yPwUw
4*|>p
RH6ja
_V:]^
!m[TBv
vDJqE-
=UCt)
( X\,up
28evf
=:QZ,Gih
pfL2x65
c7#L;
.uKs
eUY[`
/(#[o
)R~.z%7uv
j5*-J$
SJqN/(
4h)Q)%
$nVwI1
/R+HH
V,E;V
=V[|E
k[(qO
I}bXOr
|P?>]b
{:HaR
VqXG+~K
Ijq\i
Xn<k4.
</trustInfo>
bRvinl8
u+">V
fAf#?
=fcNI_
?*my[H(R
UOHU%g`
h&l9/
\izND
:BikR
|]E-K
d{kBj
LlN="DC
R?FR7
*1wN*
[ 6Fc=
eGwl2
[%@+T!
SXN"k
zw^e~
NBorA
GXp 7
2/Sx]2
6_;y{
P&'40
pkQ$9
Y++I1
e^N$Sq
"('|!
tpb=?G
LS?[Kt+
#kAc)
C43y.p
KRDQp/
_}=(5
X"bJ0@
ULtl,
A"^{/
c5HAp
!l:C"
Y];1T
\t:C:J
rV%qS
1JCF%+B
ojIeF=R!
%ykbb
uuhD'
f$Tv+
-<=A6t
\ajH(
D}]GDW
z[7=2D1
rUTZt
*Zx!_
( +Jz
V,YbP
m%^IW
/v$WaZ$
</asmv1:assembly>
5/eN]*
cql<bL
""7Uq
n(Far
qNa}w
k[Cb_+
&E{Z|
dpceM
)0B8iP
p\A:1
]_0kF`@ 7
+Cv|7
n@vdf
<ZoCI|
8jPQ^nT
tq*zk
tqexPQ
{;{>-
H`#ep
NVJKbD
eeU600
f_9ydN-/
j~nLn
xMa1<
1Z}{"
>:^&)
Nf8dv
SetWindowTextA
(rBZ<0
JnaQ!
&M`'A
_Py/Cs
qO21*
zA\m6j
t>'k:
QFRT*j
WkY^@
)DU.w
'y1[>
GetEnvironmentStrings
w}8ck"
U%St!
kfXF.
+Oj'f
<ea><
l?Oon
KjPZO
Tx"I7+
S;nn
}kLegfj
#Q4,ynq
xO{N.
#]SjrZ
X"<9{
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"></assemblyIdentity>
0]29E
u^>$
q'EOj
}ym=_K
+IDd,
xUL"!&
Zx[Hg
Rq)&V
rv9c1
A]~i_
s^au#/
Oy=klBtAr,
^TdI_
+Hv~X
eo|]>
hP%lAt
_N]`MfD
=&%6b
%`v{:
QxU'_&
U?B/x\
EJm-8
>s(#a;
aNGs%Q%
dc;D'
MsvS7y
tEWIG
BT)2?
,1-iy
#Km-S|,W
I;MwVaO
5!)qd^?
PsV5jzv
_\2z.
CQ&ab
(W?"8D
&VR-K7
Af4e!
@ Ee]
xY%gm}
'X v&
e}?Fz
/^QJ_
4?s7P
aa%o@
+=~$Q
"XSUrJ
P#484
uPVv1"
qI5<c"
M}[3Z
HDf_\/
j{peB
m:-.]9
/lSw25g
q&Rf[
heC>M
V@dKaAR
rk/r:
WQ:\L
$/A{8Aeby7
z5/;`
o,yD_!
)q0J5T9
++Z K/8
|3+o{
z$1F)
_oY{e
!d M}
Z|q9
>7^mU
58 {m
(*h|XfRSI
?\BRd
fHW:?d
V3-yA
(<b"E
EMYur
BO7W5
G>D!^
"t2CT
![Gk`
/w>mC
#bqz;w
VhUH ?
lo^CAff
1#)/@
|.K`f
=XuZr
hUhcQ
5R^tJ
I#-#_
O732zUq
Iw]qo
-JAJw
&^,7E
_&:xv
6y@oDg
p{nwW
~,_g3]
B&Uc+
B@`/>t
)Rywk
>V<V=
[11IYY
7:!]=9H
F,9F(
F&ecl
KZ\t"f
">*kI&
R.1t>
]LV$[~
7EkK5
.39+.b|9j")A
xf9#B
G3{+E
-g6#3
k@2hC
;hu=7
(sTMD
l}6+T
v'8>Ai
&yg]
\U<W
.'al`(
3P2II
%kLcP
*9Zb/
6T` t
5?u Z
)7v~`U$
h{{>O
m0k0$
-Q5b'f
y#DPF
a=7Y/
PHk
d.qXK
^mv|Y
b41F2d
\|y<*D
Gj6#;
cU=i,
P4!&S@)
+X5G>
*v jf
@vj :k
pA_"d
GoW*}
r%)Pfx
0Z/r\3
Y.ov%
%>$`M
jj}A#%
PF`K*>
=\fj6
=A7wYY
tt_qNb9w
wv!!D3x(
7t#qy
))ieFeE
GenuineIntelAuthenticAMDCentaurHauls
]fj7G
J]hN_
-9`qQ
_!Icvh
[juTX
ZeQ+Z)"Ms
F;$=1i
fmy%Q0o
_gTn6
MXaP}
f_*~Ib
0,&%r
uy;Gv
Q^S<&
X6 em
BAz><ss
m`(2q
3I="W
);$VP;
j@E2W8+
+gkwxj
CreateEventA
b9CBHa
@nL~'
rTr;(
\P<zk
]*@\^
xs 0x,4
<+4#)
32{K/
4:.r*c
+7*<?
MT[)P
iP6Uc
Sarf)
.x@<?
-M8^0
:i\t/
u|1~_O
rV~Y@v
CeCSK
T']R5
ABA#c
yr6LJCy@
7CNf}
LV[Oe
?}kA:'
9S.AS
ALV8?
oe'E/
{Ve^2
<asmv1:assembly manifestVersion="1.0" xmlns="urn:schemas-microsoft-com:asm.v1" xmlns:asmv1="urn:schemas-microsoft-com:asm.v1" xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">
8"uF@
7-}$ 0
XAB4$}
5s'j-D'
E.vw+
HC8hM
c$'^0pab
A_VT[
GQFz.
|+A,Y
t'_[5
e)%Vf
|4FQ
,rlJ2Yg
kDb?^
s[zx+06
iP]<V
2zsqQK
XjhQG
]=+$x:
4 #WO@
QWXVt
uLh)Pr
;^yH*
Wj.}@Ap
v6A6>";
enr5S
[%X#!
aVc7l
m4@?zc
[a^E8
<u<SwP
?Q<Pmp
FzH#56
b*Su"
16*e?
W1TO4
5e}?1
d }rg
<x.uW
Ybyjh
U >5O
GetTempPathA
(sSZb
*Z7|7
- unexpected multithread lock error
KK@zg4
_-!#q
24SrT
^]S|Uc
&yNEl
]%=Em
@+b{&
N-,S 9gP
rT4)1|
Gao,6
210317205013Z
`~gSr
@Dq4To
FreeEnvironmentStringsA
g7=(*K
@`;@@
D!v;p&
4JT0}
q8R%"
@7>pA
zC8 7
!|k<v
vO3vt
v'VJz
B+mI#
[wsdR
HhpiK<
*HPMB_im
HynIh
^ME0YBGr
A>[EC
o(y~$
lJOgu
{%{Gb
tz]"4
px^k%
{+tZ\
O+Td:
2E<#s$
4[wQ|Mx
!wb.$_
uLp2t
8`#E->te
1I>4^
_%)x`
U'MM^
"FDm-i
h",}lc
[x_a$
J6$0W
] eArN
Bk`^?
[rJb'
d12a"
Y}[=^9
U{BpS
,TNdz
&KD0Q
PPONh
scDXv;
Y?vy{
Xn^b\
Fx5:<
io7#A
9H1/.f
/e\=c
l`xF]
6??Mt
LCT!\
dHwG,
kn5UuQ?W
<GVkyi^j
8nSiR
z0Sr#
uz,Pc
u#SfR
\SdYRD
wPu1J
dGy2fg
8M*Ej
)V}~e
\cX9w
TlL/v
}4?"=80
Mg,b}`L
c0#Z!C
]`rs7
^ V\e
@/a%s
SetEvent
mr;F-
qc,a2
WGnV1
qVTX{
j2\@ZD[s
<q-1Q
7+g 6
NWq+A
g?trF.\Lo
:R[lT
u=V #
nppYkq
$s.O-}
F&"aw5
Ch*+|A
=%tdo"
K[a?W
rL<f<
C>BGZk
~ RV)
j0h02
;Q_TC
^(wZ(I
vnF|zd
B|C[)
3ovKA
4j`M/
5l[ZN!
l41H)
6[V<+#
?G.P#
A?^sm
=/dYh
"FRN`i
t^B}V
hdrD'
?=t"U
JanFebMarAprMayJunJulAugSepOctNovDec
FiO;0
5q::[
Rkb,:
[HY,|e
!k}07
)zciX
VjO=v
c T7&H=+\.
&D}N;
e|*&5
)W'>d
,6D|L
_nJ"E
g,G%$x>
km86\
Ozt0a
]uN>P
-bE}C
O-)c_
TC7~ng
+xg?4
0nfjj'7
'%=yT
tpNtfNt*Nt
had<u
sSf-`
GhhK
-IM|_
7I$K N:
(m|;,zV
6v. >
JdL-ryd
Kk!{i
uHK![
`-jzW
n-4=`
L|~X2
nS_MQ
]Rm%#7%
s?<V'HV
s6b0Y
K*aB?
no"2`
PS#?*
Kq)*?-j
GetStringTypeW
)P`&^
7zbog
}-Hd}w
^H!N;
96n8b
=l{W7
3$A8t
GN*X"GL
2UGEe
f+M;'u
1BU?P
_Qq[^
a{@\0
UQusR
3Entrust Extended Validation Code Signing CA - EVCS1
P{sar
(%Aq~R-
RemoveDirectoryA
+@Y5E
K_dh8
F\AqZC
p`C6J
!>}t@x
kHh\Z
&~UYmY
Wo-b#
[s beq
7TY`U
D3F>T
n>dt{
5OZ@v
$3`Vb`n
Bo)kS
iRSAM
b!.e]*5`
`$R3^D
_Qyy7
'v&a5
&*|pA
-P6~S
Vbs5O
XhEuJ
aKV)
7$cT"R3
]o=~8:
8q}l2
<applicationRequestMinimum>
%\3,T
ro[{G
[\]"Vm*oY?
z<=-!b
vWmwK
6<AC$y
A(<f}
Y6=<`
8.Mc].
\(m4v)
ResetEvent
#8`.3pS
V6sB%
vbzt1
*k\D5
]{4S
%Z33n
@7vn"
zz`aJ
P"bI0
(c/tp4]
Np~'\=t
.pQ|-
F#09(
P~VmYY'
X%,HaSZC
kM hy
ubPUa
.*p!'0
D1>[s
&Ea7j
Q &P"
hMADE
H#b5Z
$($bn
I%)9O
6"G-~
)JA{s
O%,SBlu
sXI*c
}4:XT
?$y>''
pdEsh
Gj v.+
s5?}sS
gAnLg
l:vu?
[T,(%
Title
z\0FQ
oE%~7T
-)|MXR
eWJmFs
cc!ZH
rq&:r
,;!`u
*tjKtjf
,hzP_
x<R<r}
1]G"&
<q>]%
vCQSa
+!_ #
j:BN74J
;)r]l
\cyO2W
!59HL
\WhH3
c`R$N
ZZXPTn
:U1=!
[ZBSsm
sT`mB
XMW\e3v
{A0*$:=
`:9UB
)}bvy
+yFK[iM
Te!6]
x ^ow
k,&5Ve
GRY9,
f`g3%Q
GY=JOW
rv8eK
'zu(o
^OQg3
SvfiU
R6018
]&PnA
YoO+`Z?
N+g,~
h+V9p
.2jS>
\}bYf
u;L0N
9FMD:
l+CH%,
S.kkk
^w><#S
2vrM'
llg_8
M}Rq>
&V=*=
)6W<)
Can't load config info
xMw$U)
?dEh_,
y_;Q&
k$n_-
P1WWf
sU*9lu
;yRGU
C;^yd
QoUu?
UpxE{"
k6V#xeg-
-_@w
yFYNW
-t I@
]CQiKvZ
"#GDD0
`j<ka
=tv:E!
n79l'
En9t[
!i <PYF
=&s)jI
'zMTp
tSH-`
syV(c
SG4zH)1
C'\&b
?5^gF
GY?v 4
IgP;5
5r~4?Z
K?U-Z?
' VGX5
(^G~bw
a!T*f
0]Bl>
S>~2=
)LUI*R
ziwy`
!?&|Y
P/gc[
!lAkTW
E \!]
N+./}
^^Zud
[mLWT3?
>a_s\
;&C:'
fpnWJ
76I`4
wORL}I^
gUwqnY
h"F}jM
b+I$b
.w( O
bE( c|)
>$hsG
0ne.{
rj-5Kc
DOe|t
JnR/O
9>14=)
Fj**'
mWELUm
)+xr_
:$I_5Z
NO)%8:
(R1xH
g[mIlB
cx)Tp=
=RlP#
q[Jpw
"RPH5
TerminateProcess
8kC5(
)-=S9<
{Z.<x
)*|g}SY5
FX"xu3
CK`N[K
-\HxH
*`8q^
;{(8(2
pf\|@
nk|6x
7}dYn+V
E6|\i
6u8?9
IKnv|
*bXAR
)AL=U<
PnmNe
UHKPSq^+
;i'r0
Eh`\[
?L04
\1`-K'j7
ZPs+@
Hh6ky
IsBadCodePtr
Cs;AF
N{G-.
Kc\C}
V:)\j
s@&cr
u.a'M
c]~e1I
~^ip0
6dRT0I
"jPPf
9/KZyr=
(OW*"
+:ITq
&(9Cy
QK!&(
@R|2i
;M@4"
/)#'d
o!nUh
E>NG-
3*me/0&j3
Extracting
3&59'O
`aqDZ
QcttD
r{HVy
r+77U\
{-E%B
]n|"+
,QO[M
RD-gr
.n!$YX
Q\d>d
IH9w_z
Qu}*C
RDIb"
=M?Zm
>=t~R
M)2K]}
'a' :
KillTimer
<'gd2
33[_)
!=54B
dHtGG`NAOW*!
iQ7LZ1#C
d=y")
2H=#v/
[:~_?
V[O@X
$tK*BD
=^;U2
M\*@3o`
>3nI J
H1.hYH
}YerB{
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
~5;>{
8F#Cu
-/j3m
^U<?5
|ut53]3
E@J79
CVdQ4
f?q!1b
$.OD<
5XrCTZU
>,*UY
5WmW&
iG^Wv
6tY8`
?w'07
s}f>=6
u8O06
mpazX
eK.L2
#P876
uUq\7
DvXI<
M;j%g3e
}fkyE]
`3C4JO
cvP+
Nrc=dE
X)sc/
'uD`%
l=Zhlq#
cJ.D|
E;7F-64
mfMEZ
GC,!Y2
W=jDH
6r4Z)I
aS0#[
Z1qX'
S3WOY
"w50[
oVG|*
3Yo*j_Y
E:7Ti
jc~Up
}9/Rs
y5K=k
5a!*r
fX{nK
ie8 c
5,!1'
c~fL
.J.X~
R>ghp
BIbU'p8&
p~rjJar
J"?ZX
ya-6C
>#x76K
(/.g:
q.eUh
QX67T
#porB$
x,c-@I
HTw2]
2vYv8
zt"mUq
y|1?kWi{
'Fvof2e
S8rX<
`L$`Q
m@<!k
[@S9Y
*6z%]
}(DWt
w>G[L
![q~zs
sqXRl
A/y41
#3yYN
XQQ@Vlyz
(.R~)
$J1lE
P`#h=
Yu[9bc
EXa`?`
%v6B\
)UiO6
/MR87
+"WV6
u#Cdp
E|P^a&
rWOl.
*'6Vo
]UozP
yoDK^Y3
CloseHandle
0v=AP
TJd0gO
%24BF
v_+rl(
{nj\7{
QR3Ac
,MV?5O
G.X,m?
,u,,?
p@jS~
my8E&
0_eSl
Z<S0C
$%|Qr
HhY4p
kusyh
fN}j^
*p~oH{W
o{;cL
7d06.
P"h9Y
23-o
95mMr
u%_H^
!##V\S
;o/).
EV\eF
,>=bE
D$0_^]
du_Nb37
h,0\&
0Z(s[`C
1d-yTH)
d<z*t
v l%|5
\a(L}4
K=4hK
Ij~jnb
XnGY<
!| ?/
(JG"kwR
b;e6&
5`'Vz
February
RunProgram
YTUbz
[sM'=
Vl1C7
*ZBB\(
M[]/a%U
=[Dl8
p`N.&
1H5Gu
RJs:.
t]l:^
MElv1bF
@Qg!'
.^i]`
szPr.ct
3dL=N
4x5e_X
L&2F~m
V!PG}~
2w,0[
SetUnhandledExceptionFilter
Pb]p
) gW<
;&,[Y
hLh7:
n_s:i
`+CcyO
N& x^
h,0cZ
){O(su
UGCA5F
eYe@H
K_|Fm_
Ia:.J
,xJ:?
X0R%$
kK.+J
Hl,+@k
Eyn2)MS;f
'sIKxd
TjxZA
"@iWD
WDy{f
PRnh_
Ol@Xu
e1x#O
(#a^b
@~AC9FE
aVpc=
jcSHN
M8]'8}c
ntN9s
OPOar
%g$'l
t|#]^p
<VE 3
*BX=NO\QF
-*irRSr
WR%Ll
X gB"
T9B/X
zG Fe
pZ9Y7E
]LOFvCz
lKJtx
{@\;J
VWuBh
_`L[3f
_95l[
)lH:Z_*
_eF8R
h{Zk}MG
k6<~h6
9vtPj
)@4#eic)k
<gK%Zh
P\Dn(
foWc"F(
hdui%6!q
Wp,G}
8tn%M
lqR`L
dI0OcIYFp_h
A.)e$
@q&#<
$;l{)
8z[f,'
EM]D<0K%
eKm)tk
Uf61y
/[2&3C_
Aajs9
jTV(K_
iw>dN
w#7&/
o+-DmB
vTX:O"h
,9Xl(8s
JL0t`
S7?~FA
cH Z)5yI
8R&hv7|
MO+^h
Jw.<<
>6wviC'
}MRS6NH
GetStartupInfoA
kh.~G
]/DD,t
-C"[?f!>n
)$cHBw1
OuC-E7n
3#:"3
kfeN%7S
zk5&*
r/qn+
),2rD
k`3c2=
hSJV&
S#d~v8
(JL,m
\5U?d
gI}oL
'[@]=$Q
.4gLA
&5/}"
O=ty_l8
8aMbF$
RR=E-
lk:[]
%HR+`
J pa[
P6CXO
2x{w8
~*32u
lUY(=
'e:"2
g7x7"
<wum[
n4`+d
}rB~7
8J+\h
ymb`h
_jt1M]
RJ.n.
D:r96
d-TLC<
+>!pX
q|wEZ
{.sI~W3
GTJ|"if
gX,29Q
M~|.Dn5
y?%m/XT
lAUG53}>w
#}YL=
Ch5=_
mc'GR
S&>ye
6p<J{X
mLDWr
0A}=K
Q7r LPz
9~n'k
h% "D
KMN+A
VPn\W
n8("}p
*Eu[)
k~tsq
Fb>^c
"`~Z="
(3[-]
PxCX)
h;~,^
N)W#%
O)z&n&F@6
UH?fy
JjEAa
!?8!a
DZ,beE
+lX:|se"
vK(9UH
^D%`k
RemoveDirectoryW
qnPl)
nM'ut
x[}:W
>o}Cv
<tcN*{
f$\C=
p|@-k
D0BH(C
0|+lC
{IJ2A
_P)R5
}%x{i
9qHAY
TiH$D
yS%Cf{
A,5G.
e|lxk
$8)e^
[0_LcW
f7/S6(v
dHTrk
q4I^dB
f5elVJc<&
lheOVk
2UP=e$`
(7>l[
eP-KHA
!]2@[
Vzd]I
p@Ovs
teK$q
`'++B
VO6mz{
HXHfe
VG}OR
>sCqu
7wyh>
*Z/M,r))
V6S.g
~F[.y
7RLb{
Ok[h*
=H~fO
*JL?s{
Zew9W
BX<z?K.V
;_??zF
Lp_~Ekm
W5pt@
Rj$d7
s?H@`
)s%&y
x^mE?[5
i>x\J[
T:tj]
\Q9g)
vlWOADO
/B?0!
rkkLH
ra-*G
CF&:M
b<kK'
3]a!]
8e^r
Kux+5
{C,F$
Jg_s[r
(/CK[
kOp`[
#C~]8)M%4
Z_=nqv
jx E|
9~$r-
4X_1U
`(F#5g7
y{oKH
Qd2Dp
"'6uu
T\_C6
YIA>:d
RhP{)
1HTlr
1^+(/
- not enough space for _onexit/atexit table
QS&Vk
13-'d)1
,dmR\
a<t(u
Mh`Q9
+c3^l^
44yi4V?{-Uu
g?Y<X
Z?k_#
vf|{Pz'
rKj9[3C
\_)#;
G4c1i
pX6f>
y>\PZ
=v*#b&}
w[6"(
-J])E
>}utRd6
u.Ok0
UDTwX
6RfSK
DUlWv/
'Kt][
{oS%~
Cv9@F9nvzZ
tWF\(
_P<AZ
4X=1c_
g#;y[n
rD!Q!
CD`oG
&|u__
%_Lt,
Yl&!TDm
4HKwR
:vfuSy
\zm='?x
|EdJ,g
(^)>>
ut^=a
lnz]KF
(UfQZ
Z3/Kkn
W[O6}
gRq` `-
&|csD3?
zXvA@
@?=3+u
L*AMS7P
0](VcW
=A:.Kg
%Z>&a3
SetEndOfFile
9NPtD
gb949
B$WD8c
y1J5z
E#/|Gf
H$n{E
L{[#u2
I5tR}
0a2:Z
<21q>
/a:Nnq
xmzh"
ZLGY@
jxnv9
pYQh^
oICYN =
!!BME<
TQrG;k
4mc7?
$djx@Z
4)6X?
=$=D|2
p_<IV
-s]H|
^L8^4t
)Entrust Root Certification Authority - G20
Rv'<2
q/||N
Ud>X]
j!?{0
684+\
0&UlS=
.s8^!
+M&gv
R^RsM
j>[,$s
Ai]Y|
}E5K68
(q35g
d*#(]N
h%6=6qD
b-[=X
p(n3Fz
=m?*D
RLQ/B
g1fB*
@QU.|FJ
A a/,
)]3-JCw
X==zH
$?d2^
"H6rj
2`Tq2
U!c1l{
jh{&J
4LzFTwJu
b!mr<(
)X.bs
R'jL+`
6^pBR&r
_T:hG
;-n6:)
`HAkIA
09TM:
`\hy1
Y "F8on
jhXc7
BjM<7ju
$j1<V!c
n%lZE
T')*+H
qVV[;
+;b.m
D;Z&=
G;\^/+
sPnvp
!H#kp
k0|/{
0_Ia4
.Ca;YS
,4`wM
3~nHi$!:
$lJ <
fbJDPw
LBo6s
R=1Hk
Xqf!B
_q6nx
o0C>c
)+,*&
zqpz5
&515o
6&~[0
hc[fQ
fXA i
Yz'tX
y!{%3
(DigiCert SHA2 Assured ID Timestamping CA
7,OuM
EOEI^<
e`EYY
k_{{@`
>?9A$
,!@Install@!UTF-8!
BjzFZ
)A"\r)
/i@c'
jA9ug
pr[y;`#
/{${n
2T9Xc
N%H,:
cR{]}
T$,_^]
41'dK
Tj*lm
^|{r/
Program:
v'"$$
7XuZ)
$'1Dm
ZqQY:V-
KMsZ5
s='yV,
9OG-
>x)Wyu*
5}1R1
X")LRT
Z:j88
I<Q6zz
r} DJ
HeapDestroy
1&)deo#
W&?@H
E?+BA
1,l 3
g!m[o
L4w70
8;[k;D
.`E_+
&zInV
Q{#^E
%*)x@-P
ZL0(C=
Fyj |
@Jj?&S
K|G~G
1#@gjB
Pgrfx
rS2a0zN
[pc0V
SK[S6
;m:w
+*Al`
>AZ`9j
L@/gu
Kw.mh
KjC_J
)z,qj'
x& QL>
SetWindowLongA
kFxn|^<3)&
I~}1^
t!,j1
"_,^R
TVHR
X3QaP"X?)v
v.Ds%}a
,)Ef|
Z[ZQU
2Gj?w
EL]EY
\#+qd
QvG&G
L=DJ=
e~Au6
*&:PW
P@|;Y
},j\>
o?Om'
^BtIq
%?f*Q*
dnnUA
D1%IY
USXWMGU-
gTg rg
oUh;V
Wlzsn
Runtime Error!
Umiz`
1h=v3X
Je6vs
r\k))
UgD0q^
4CI(Y
opF6{ #
WaitForSingleObject
LIvZxg
F?T;~
^0\0#
roS-Y5
\qJLx
[S_[2@
oc=NRTg
bpf;IV
*4<NK]
zZ>urz0d
Srfbz
!?9T\D:
pHxA)
%0;K9
p:7Wj
T!j!V8
]Q~T,C
PEq|j
W(f?5
GetModuleFileNameA
1Ub~R
D)aZ&
T1sov
TPSGo
nMz9r
m=0/&
{<<mw
'%?5u
1</Od
g0Tyv
ox?m?
>mJ_+
k\$G2h
K*V7GM
T*SoRc
aWq<b
dxhA*w
0XCj1
sS^fRP
UI>~{
w,'m,c
Y7:YZy
:~<;Q
)pZrA
'''f]t6
=u~YD
,)B5M
]#qw.
l7,oLu
L$,QR
\|odV
_`pCL(zR
kwm+(`
?K9ft
;,Bs]
I)I64
68tGW
;"l"-%J
QSUVW
^}VW8'3
@<T`Q
htW,{V>
<Treb_/
YY_^[
\'*\$3ian
PJfwZ
]=$]C
'DY~J
X]#S/
0-=JM
inD=,
3xDXxx
I]+KS
)http://aia.entrust.net/evcs1-chain256.cer01
Dn_V_Z
PRHBIS
-N}??>6
ipq%j6T
i/JXM
T`_4G
a3K,v
nJSh%
U4K&c]aV
AzRxL&
<Q5h-
mtzY61
6o8{9;
qM #q
"K;SvZ
^PY-a
i2\Q;
xA:Sj
;qWnK
e0w!c
q!_8i
>%U*q
A7OMfe0
;'(Z_x
[!_?E
.3lH"O46
>an'n
n26"T
0 {^N0
LZNAzi
<iNV68
"UF{ _
,Y7TJ/
?DOGT
h-CvD
N?@CH_|
/=>"Z
+$70C
zdo1UK
G|1C7]
cK?ip~
SetFileTime
>tkybU
:mon>
i57TI
\[MZx
`4n<\9|
-^:r`
kJ/.H0\
GsK?f
b,qx*
i^A(q
(m?5D
j*.aM
p;3dJ0
)l_ `7
>>(EH
o@C(5B
HLMAA
&bAmwV
c(|kh
Vwc_+
ESfp4
MV6|]R
\r~!Bq.M+
[+'-1+
vFh=7
rmR29"g
h9Z5%
diY::
ns-An
(^Yqy
'm+ v
xtlX7
#kdp2
I `alYnE
Vu$=}
~IxLN
&4>$!
oxxP*
#D2?as
^<D+[
y@Ril
EshDm
zEh(]
"'t-7
|3CA
Y<G-7
J]i9;
H%.1|
ZAU}\
~=yukH
^@O<L
Cv?{?N5
tSNNt*
\ezwn
JaTie
%,/3Ev
.aYN+
BV$,SI
$(!%*lOW
k|P+!
^hyp/:
bG?P"
Q94[X
R>^_A
m^u'R
~o[t:
;7$)|Z
*o(`>n
A,2<6W|
D(b3>C
2l:$hl:
Hj6D"o
PPtB~j[
)H{ql
-3'hk
!8p|k
7lF>9
fXSW'>N
MU3adRt6
hcEa6
d"S%J
Tnk(1
d77X6
kU?[@
KDV<=
J^9r`
sJvq1B
6}B!@_
s]#0z
s9E2k
[O7<<
$T:DX
_raQ)
%FlBZb
%g6?L
@4EyAZ>
v}$43
|o7\c
y5h7}Rc
+kW#Z.n
m;~mZ
EQ--m
2s+.W
:YCuaB
'spnz#
O-O@c
Q:}:_S
HY-i;
/6ei/E
i#QtW)
+D{Dv9S
qz`!G
m>: iv
-@yVSz
x4@L.
#8b>[
yzQGw
%i[c*
a6S7h
hs< $_
`;}+e
"YDK?
JV96K
cyCRP
5^*%}N
W I}#
3/!Me
mNB]y
W\I1a*
0rIYR
yq@HM/7
=ScT[
g^4 U
XyER0
8=VwAo
Gw=0a
<\.kTn
33?v4e
jwJm-
i*NTX
DVJr
9G*%ke
'K\P,
=^$71
6cWP<
s{WL*"
Ld/|U
G;~ r
!<N=\
|{\`;
5haO0
G#iX>
X +?6
P2WP4
cf+c~
F<K![
4GG?##b;1C(
XdsF}
PL:32
t1FLD
d2([_1(
!c])X4
<`>k#
a.\%E
@;%Dg
F&p`3
D'QL/
T(*9n
$1Yh<>
F`l4sg
gw|qo
9nWA'
C].'z
6F`=?
<compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
-h<)F
,24M:a,z
@\1B9n
e#K}L
DigiCert Assured ID Root CA0
auu|LE.
VN#*T#
*K=!v?
no+0"M
^T''P`
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}" />
jYnei
58z-+
:,WRC&
S!6t_
Zw#9Rj
EXc=:m
;$iB-
) @~^m_a
z,%Ts
z,beD
B{!\r
N(o`6
KB&_;4K
1M8en
%2fF,]
X/}|4
?X-p#e~q
30wR@
Jzxs3
<X)fR
iN`yi
5%/r{
E[ znc
/n(R(
P^?_I
Io][[
d(GBY00<
;=Uq*'
5*0\)j3]@
3BL3R
#~xm`$
<2=U^
fZw)I
DialogBoxParamW
ru4)`
{v)U5
K^$c#r!
=~1fq"
q}R\su
W^}j}[2
Rd;=F
|`'Mk
|d`n@
'x}r"
Q!N]K
^]ukw
pUG3L~
4oyXl1
U4;FQ
1 h8X
~ZT&'
o&)R%
#,W+XI
5-R}E-D
5Muc W
nnGQH_
*z;q{
'ErtY
Ubf^,
CompanyName
'J[&jM
@0~7d
D$Q^=O
0a1XHC
&aM"z
q;D?I
br.12
Q7":u
=4\#8
EtR4q;D`{$
L[UEe
N1*8]F
z6sC?,
#Oh][
z^p|w
a'N x
tJju,t
NHlv?wL
G$)Qn
w{0<HWT
<BmXc
aAeMS
'wx$/
3c3X"
f?!ZA1
mx~[@
d8;f3cV
atn2A
HS]}[
<G,\C
OKjKz
(S8KY
$1SQQ
ceD(9
j)r9n
k<tU:~
uIf *qO
HI6Rg
?WlcpXcpb
0;^s}
'+|Ud
R8?98gF
B?=K{uw
c&SJe
AD}1D
5h[gc
atFI&
={Vn=
!L{V!Wj
0 @Sv<
ycS0)
^rl69"
Z6Cc;
rgH97
;>:Cc
5T{^=
Can not load codecs
XmMQH
9PX)%
7=e;+
0,ZPm
I]-{(0
k^]C>
hDp/+o
,cveAd
>Cz4| 4j
N\k,mt
=u0LE
K,OHY
VXfm%
Z6I<B*
+'1~R
gW[{C\
[Ye/O
@x`pBo
(McE:
}.!xb
R*WQ'l
Eo9Lo
:ZYnr
oq>7-8i8
E$7um
60~:;
12b|DI
*0r;h;
\8}bJ
W2E^J
asg|MD
9Y<=KC
1y q*
#"=Fz
&|l|s<
BCOj1_
2N3jrp
18c/v
{LYWo
9ql$w
;$U#4
^fyk0e
\xCqr
?Ot}C
k8Z:J
O|isn
%[,SG
C) F$
Sm<sK
J'D+8
Sdd=i
tKW.[
DZj(P
/SE"n
<program name unknown>
`vQ1}
siz{7
6L3m`q}
zm" Q
|XWB?
`HBXW
!l_;Q
|NO8c
GrHM|
-{E4l
Kl2UR
Jt%?Zj
cPM8@
N(z `
fO5ru
)`0&.u0~
+G[^C`
{7zP/
f;8>.
150610134249Z
v~}lF
Gm4i{/
$K`%v
C!S
YkXH|
I<cE&
7wHDmT~f
6_L!.+
LHvx_
FF%".R
b>:7j1
%Y*0=
JDfT*=
a+edt
0%NK%
@xl#4S`VB
<tNh,
x!MzOH
<G5< +nk
Dr`u4
S>v'~B:<
dZ?BM
pr/oC
':ND4W(
j|YT;
&"fU%
a-xQQ
]jcBE
m)DH-O{
\:!yJ
{U(i/
JOIwa
f1c<[OmX
CVvKH
qNvAz
1-g6}G
!`66g
IOWhXEC
A!Q1*
Yu+Kn
+g eb
|H5^y
GBKbYo
crnD(w
LO6A>
;{Z1k
InterlockedDecrement
&HTvr
k- I+
d&I kV
epWqY
*qWAtc');
|g~nm
B>\QR
f%w> @
K~WB<
ZVm;f
FH;F@
ZfQz{
2bk+J
Ika;K
U8\ V
tSG(_+
EeQ@jz
DigiCert Timestamp 20210
$exGC
Q+W>Twt
Hm'T7
d"o$&Q
6GEu3
7 _]3
S2]4(0
V#r7iQ
MHwQo8)l
d1>&k
VOsA`
aqRS2
DXHxvc*
>BBEb
Jc;h`
f}k$*
NoY=f,
\h/'{~4
S-a{'
4Q,'u
Fod2Ui
?\~^5|
i{}0j
@pW<M
v[DtL
%>sYd
on_y0
@4<u*[
- not enough space for lowio initialization
@!.Z%
IU"@n\
N|]n9
ar+wb^
WJ({g
~9;w6
0\W041?
310107120000Z0r1
+]2y)
lRK/zo
JLRcb
QiTVu
<1k7?
=K8+J
l.l'Q
y63cR
[s\tb^
|M6vh
]z"JTd
RY3}w
hN^[)
f~N{](
~<`I/x
0ZU]w
tV?Or
TJOPmQkN"
6+whq
|oE,rCS
=}nue
uQ&-n
LZMA2
0C*e}]f
`q=J=
_t!AKc
=?fHR
(cCJx
m)NiFb
]E6?
|jn}C
,ZKir
d6xI;
X:O/bq
F,lVcH!
^y,>*
?P=`JF
B21%A
nEPY&y
.iZb|
PF{o-
c0QQb
-wVTB
NTD{:
G8 mer
9E|<M
YJ%;K
N:At2
x'dUSL
JEum5
wM[Ab'
K78Y/KsF{
O[c^C
V=Lc6B
hyF@[
^1SUfE3
_6}Z/y
E3`8R
w3U,]0
y&}0]
5IXtI7
,]#ZY
F.3F=
ekXT~
OV4){
xUeB0l
!l0*_
Z2M9+H
Lr!#4
pL.<s
=![m5
f:w`7t
KzX6jp
E[vJ1
5MP(X
.n]_~<
`\)<XB=#
fIw31:
,,&b(
GetLastActivePopup
;ZBl7
/!Z7Kq
RcX|y
^J|K"0
J1^E5
+NQdfL
;A'9e
=Ry_j
lEmNE
s^d"]"
lN8^,F
$?tOn
>2);D
@hfF?M
L% >f
'hYRwP
Pfe%e
"R/S/r:-]p
a~}Hm
,n0-K
-<+qR
\?jlC
1mTh>
2V}+BB
J^g?clh
{)tgG
HC=3}
;}S $
1u+?2
vJlaZ
I3hB{
Gn^5ou
/4,.:rpr\I+
&[WTT
RT{mp5
@tl`'D
]l1eD
Ce!]n'
2a@<5\
z~<.f
ATCIy
BobGK2\
Q69ss
3ea9{*ES
_VlEqBw
AtF0q
Ql2Y]
r^be$
-7k(8
+*_,.
Hge1\
W.hUx
`f=w
Z_oR@
hL_-!O
XiZEi
8)+j2
$]X$l
8j8DY
5=jY-
BeUi8
zxbLHB
p7L3j
fKEn=NkTK
$/:>)
ka!k'
$~rvi
Ea/TQw
5u)S:}
PG(uL
IvJav
Y6/X1
Jh VD
_LJW}
_[JZ]
C#+ UX
B>mW3#
BLA2H
lqVdm
t}&K7
-%jxg
aFDo\
`ND)j^*
*&lLp
lPzft
h=]?v
T.-_Q
xdOx|
kZ8|,
fHubY
I[]pf
kTg(t(
SfJrM*
)N$1Fp4
FXQWP
2eaI/
Xy&*xx
xcs[|S:
v;i2#M
*ITP,
hCg%!
kMamK
RRh\D
cQDTfE}
1Mt4{o
4K_N>
nMuqT
s :(>
g936Q
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}" />
<!-- Windows 7 -->
|ii9)
_"@m|
7=g6H
$[gHy
#X%vX
`|=-6B
.?AUCSystemException@@
%Z^2r]
5!N#g
SJX=S
2oY7\s
qQoN;>
'xX O
nr`NP
FZ(cL
svl*I
P`85N
2[_gGj|
Y1!"<8
)ucM5
2, r4GR
-"G~C
h[-iO
etJAo
_bA x7
']FwW
J7]8l
^q3=#
n~zpk
C+&~b
{QG2Hq
*3Om$%
)--@*
nL\"$
!|93hK
[;LT@
7tv|
u@>54<
:anNvJfnzfN
M9z/\
Error #
9%Tr.
y7 2~(
Cgu0D
QfQH1c
-t>Jy
zVq11
Wzg3+h
[nO=o
\,8iaE
a]`/8
GetStdHandle
H+s("s
Y'U"r
VkaE3
0m4mRR
RuJDv
F}^Ut&
%/c|*
o7X~l
WnT+X
7Yv)N
cJ,,/
yOxc"
($&9Y
yS1q4
9ppEtp
EKnzwU~
ztea_
j|D_Aj
,H2^=
]obHC63
4Ffrw
`,#rd
WriteFile
.PQ<]
\x*96
mfM-)
`sP/gEt
NELG-s
!Mr!;
G)]<-
N]aiE
^GxR0%#U
pVieF
7cT~Pr
Xpn-(
VR)!
d4FQ?_
s=T@t
Zak[9
DestroyWindow
'Od%'
X..\G=
:|T6>
Z^6M9%W
<xEQ3zt?
JMvG1:*
5'>X+O
%Rv>7
)<qdY
IcRlo
z+<GV
4!Ve2
`:7-n
CO!0|u:$C'*E
khz+L
~7E r
q-v.$
kGpfz|
e5TI"
U-2ic
BOe~h
h~1ZE
S,p|Uw*
&h]yXEq
#:sl]
March
7{o1V
a_dzt
xH6_0o
|BK>;-
G^t?1T
#6VbXl
K$2G8
&/gx>S
eF|Eg;
2P9@~
zpe]AZ
z0T<d
n-e@/
tX`q9
D"PD|
%^WJKB
8u".*
E6qYW
cSlU=
H&j%a
j5K22M
BTwJ/
0|%Do
)|&eQ
tm~1H
\#FY*
>st~B
J^Cwy
7{f!#6
uAfE]!?5
i2Q&j
zz,+L"n8
"5|+I
nq-b:
l/Bb!w
` G>I+2
7*v&#
C!2k~
4http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0P
iCxzb
[,12#/"
_9{%O
D!bg{
WIidz
8</g{
w||]g
xp 2r
?9@,1A?
DESu]
+66e$z
v4_aC6
.C1{c
7R{<c
@91r0
rHD{?
x{^!l~
,omv0
Ju)N<
}x/V,
Bq1*A
ShellExecuteExA
lqu2%
S&_3eL
b7A;41
GetCommandLineA
Rlh-f(
bxg3|
Nj O/E
%2H`&
h/u>k:
5wymd
753=@
dddFF
85o3r;`
DNKbaG9O
C5DY:
"VFLX
@qJwy
*U|WK
4]}W^p
*~l%M{Gy
(e{e/
06qRi
Q7iJg
[Cx:cd
@wzSz
GetCPInfo
lU,uI
2^"3<
d'HnY
M:OtP
yjI^Z
G~W40
$;*R
]fp\`
H?Dcr
SKos]
FGP&f+
l@&s'
=Z3Oe
g?])dy
aH=RE+$%
&^ }wdni/:V
^B+C^pj
dobIfpPN
gQ}=-
M;h!
v0:`q
!\J^u
v'B{d~
!]+e6s
UR!_&o
czc!\
EawL?
f:WF6
Entrust, Inc.1(0&
}Mc"r
kEc!O
C 90t
;dM;}
Jsd,hi/
sdB?X
Q4]oP
PE}/a
w~aW^
.%K%8
jJl"'
=tD$:a
Wd>cnr
~fDIV
N=8t
D?F'?{
)b)L4
;3Yp~1
IPyQ:
JMA$(
taw3kX
JJeV#
%f;!x1u>+{
iD8k|vm
-&#=:
TDDyn
:];2c
^Z'Fo
C5IG0
c.eE
!>oPm
|9uBCV
:;=w@Z
{8vo]
`E"/!%
K|n5;
x0[_L
rL'SQQ
s2k|{
!K#0}
O-1p]
!=DdzF
E{4'8
Can not delete output file
ZC*m]c2
I1T-E(%E
gBMxQ
5]FN'
,{z]|
Vk(}a
xFDNe
KPtd;
s]LsX
d]96'
O)F>\
a:=^@
/{,~
S<%Ra
k4(s('
dccu~
9GNe3*,:
JT=}%
Ldicr
]78Y}
W#u+(}1
^ns70>
jX`bG
|Q?r+!W
TBuh^
vl0=~
H,.<7-
;Y(nW>
09d)sey)
p?7rUV
7h_N\D
YNf%t
>u:4C9
P+jof
@|`ZX
$Rb&d
g!~yDt
cH]/>;v
A?31s
4FmQ9RK
UvB3A
OW4bVf
mLwsV
EI;Ys
U[:}F
DVnL:
Wh=O:?~s9
u|T@?
GgI7
0@pHI
e23k2O]
'fI1k
&;dE^
>~$PZg
jEKG;)
:!@)u
DeleteFileA
{wB62
p>m7k
`A{Od
b[2Cv
FL[qH9
o )4cg
% Rv!
@!Lt%
QQ=_Q
r*W7]p
IF8`s;9
#7n)L
>\rZo^
y|BoP
jR!f/ >
L\Es c
M,qyz
WK]l2g
l+ia5aVcu
u/3L)k q_
GetModuleFileNameW
yW709Sf
d@^W`
a-w;n
j6@l32
,QC#u
E'aj8k
gIaIE
)v0h)
?^D\u
@2uwN
3sE;'
x$\<^9
aaQL%
;!];.\
.TK"`!@
RFh]\r
gjJWme
\'o*L
QkI1meO#L
/LBtsi
d^n2>~
u?\( 6
sN$.=
O<F23
I/v?6;
570NdJA
`!5TW
(FeGo2\Z
N.zw<fGa
|><Shj
lU9j]
Krn2'
Ww&aeI
k,d$z[
N~|GZ
}+e|F
s+Aee
zu0h9
V=0,^
H"-F*`B
T3UZi
6V~ub
)&j2/
|{B~$
.0!pc
(l'^;
QN_@j_
lUvL1
0HO~D
A{MT'
c*Zpo
%~u<+(
>4=aG4x
(X!eq
BmtPQ
s~,aK
x28'"r
UnhandledExceptionFilter
pa]pi
UF:z57
R!,f-
+[q"6
N|Hi8
%SGA2
c8}N3
;82eu6
5/w2&
!Oi)D
X6:7e
|$D;T$
g6.&U~
|`m5y
qTr_7
SI:IE
EGuhB?
juSu+
B:gH S
_i]7Pb
y1/j#
*5r+a
w3Tx[
xp{:{/
1l!?'U
I&T-9F5]
*Ws[K
x0Dlj
\c/4<?n
~zr7|H
ej cY
eR6uu
8Jwq$
2t(+
?[E.5
GfmDl7
@7+d@V=
qrRd<9
3 3\*
VS_VERSION_INFO
E*|x`x
y)S[#
-a(BkS?2
<.L'~
j&L&m
}O0Y1
Bz,-|
qz<FGO
hr/.b
DTu&9
1v8;5?m
JOQee
yYhI`0,
KRhWF3
v[,V%5e
\[;<I|
InterlockedIncrement
_`3pCO(fG^R864
:'aK-
!w\3p1
QP-~0
la{fK
85tWs
r#^M.
{pwpa
Zl%@-
WPvW=
ip=UX%
AL/E
OxP:wu
AQ5H_
:8M0e
9"dZw8O
z"2,w
9`6)o1
*9*^^
iJR\;
r7BpV
F{+0fD
aUliM<
w2(y`
x#5,J
4jZu#
'a'7h
\$)?'9
:)Kdr3
<[ez?v
+rP,`
1%&lD
,$kdN
C\^@A
8819Nf
Jd$hH |
/v_<d
:/Day
P=qnwL-
~JNnc
v;&G(
tRj\$3ug
B`ut5N
Sim.h
&)58/
e/xT9
NTb*h
tk2%Q
PgIOy
)0'0%
j^*!]
h=qSQI
ADY=,
5S!R%
|mB7@
CreateFileA
%qpmt
x]T)0
*0tVZ
P{yw%0\
;d>Do
;oMefe
C2ehO
3Cq-Q@)
xkNHs
$EJV%
^_XQO
9c<N@
Cq*#6^d+|
P\\wc
~p<%<
TlsGetValue
=O\7O
I D<$
.qh&Q
'zr[8
Nc|5q
7Gw&n
RPf8{
L7)B"
4vF/~Z0P
+oPP|
"<%2m
0FzME4
PUe[b
f!f[*
j8WF1g
-*-*5&,&.
1JWV{\x
/j09`
;T$hs)
43Mt'
zf4`~
C[ew4
{oNmkb
;54[L
`42qv
\MyUq
n3;uN
2!+w0@N'y
ExitProcess
%v7g`a
?GZ1W8
g!ra4d*9
)\sFc
biHi'.
C>"D~
_2og5
'-kOA
i+.1k
o")pw
6>6xi
"Z-,$
%r;35:
K4+~pR
]IZfc
3IU&VM?
M/I}_
TdfE;J
wt#/J
k&fqe
x(ow
'R]rc
QJxy6z'
6,- -
K"ymM
E68\.
+?7o L
Nm8~&
kxCI/h2
}S0{L
Q**4mD
`fqZe-Q
,m[*p
&^.uT
YW]K+
}iY"2R
Eti|1
JJL7(
3D{*6
_NM$D0
MN@9o
HeapSize
.U3;D
?TzQ`*
~6?1L]
Va<T
V,kx7
hw/g@!
aR8K?2
]P0Bx
&4>Pw
wpv>eF
GJ-%j
V'#pB
+&:^"
B@K.n
Dr,1r
NiT;8c
0:>Dq
r?z+s
p8c)za0
1 KLP
wzeS h
=F|Gq9_R>
]zs'>'
TlD8,
>TJRR
7Gw[Q
ZDCrUc9P
Z0dMe
LY'G)
e~Z%J
tbwHjc
EZ3M%
XSl2u
`Z/&Z7<
mrwmm
%V|/(
I=Ajam
g8^gja
Z;882L}
+ AZ>
FHPPQ
D0Gh~;
f%b#ei
_m*i&:th
RQ"\b
!UaPkn
#>%U:Sw
[O/tk
E+\3k
QnnT]
d9gEx
lBJAX
M^O8.S
3Xe6!
Je\E>
}_b4l.]
z.&x,
z.qnUR
u3kRBiQ
_Z-#sF
;?dqw
?20]r
|<nnR
bjh!
3M}`>
~J 0r
HB(01DPn8Kp(
<`+%E{UJv
31b/b
S28*Amk
.#o)*!
F~){%
`Kp`"
Hvd%P
HSVHWtgHHtF
-LD5
Ch(eI
8HI]<
T KTfA
!Q:xs
xwhv
-MA!^G
X"^dP
93j7^~k
l>w/L6-p
{3Ofz
"~-EJ
jS'-JX<F0
im.z~
6|* ^G
[e|EJu
>P8iW
"k"9v~
0CLgm
dS\%;
|C@Y+
EGKhR
{K1f"
=!2#[
{!l?|
D>K8m
c+h_S!
mv1Hg&
1(*4%
GetWindowLongA
-p3u!
'D)N%
I3fr*mZ
FU`m`
NBM"[
vU Tf24h
]_ed+
's?Fr;
<EYOarN\
[:iuZ6cKp {
MwGo9|
InUfH
qWa)9rd@
HeapAlloc
)xc,y
D8x.tn*-
g$Y+g!4
u91;n
Iq|?*
,@fk)
_^][Y
soye
P<x$L
u+@O.>nB
]rW9S
W;z1+t;
kjp~'
tHTVy
OpDT
lkn,/(
fK4+)
s.QOSs
TfIWG7+u
24935
!xzb|
ijs&.S_
t)It"It
Wiz%*DzK
FreeEnvironmentStringsW
Q^g<)n
r4L}2=
|9_a_6
]3q,FG
y3%sg
98 uz:O
OFi$3
InternalName
([1G'
.'r,XI0o
[)gkj
/P/>h5T
s)=7N
QN;0+
qi)<->u
,supl)
[N-#k
kjy|4
Hyu g1
GhkDA
2n)~-
nc4|6
UdfP%
b7*%L
IKdt[
M8#rT
z,o(f
,.NG@K>
@|qJ*
!:a0(
A2]yWg
q18iJi
Mhqsh
P<<KL"
Awa6n
NqBVZ
ARRE<
Yx8*Y
z>v4A
hs#;X}O
rWSdd<2
;Q%~C
,}aMP
cuZxr/G
^va\\
e$&/fjn*
Dgh%s2
R4 ua
1jj^W7
xoi<[M
_el^0|
>-5_wmas
{_%hNn
gei/0"
vjXeJB
=y,`[T
t-BM+
G-=V0
+k5Yi
4[VW/
hZ~eaIqYAi
d:ojFs
#0tDQ
@\YHBa4903L3k^
Q f9u
BNC&>
vwW2x
Ec|dH
VC20XC00U
;x5hc
= .Qzn
FindNextFileW
O#gmHs
yI]J+
m#Ur#Ne
/t7}m
6xBK1
;Y_)=
pFvI%
6_Ir2
DKHbL&
9d#|)
pPQ?0f
/txaR=EG
j{//s|
}3Rv:
)JJs^
|:_-n
vN&wl|
675Y`
xm}h,
q@eO6
>;ohA
p0#FD
nE0=T
`o{HX
h5sFj
/pfk&zH
(?yg,
Nfw$=0
@;-3<
[w*ZW6C
-K_5V
{NAo"
LYi>a'_
oCeBJ
6M(MQ-
&NanY?
gIMf7
3wf`qu
P:~Df
{1x`j
R6026
n(MWc
p9T"w
)2ZZY
]lul4C6=h
y8H@_
jVx?U
YL~1@
Y*yuP
54O[}
&j.Ex
;{.js
$IZ]K
Tz@&.h
p=5jJ
(@'m*
K_`!(
c/}l&
LCMapStringA
p=6=T
Utm(*D
H/[^k>#
(^ow@R
d )B2
%lAqh3
srd1=
ND)gb
hL?xqt
hMIKTu
7ZlRK
5zWO@
rrE}@
_^OZ<
zzw"O
#&dbD
7>5<M}
[(@t*
W@f'g
o.wMU
^rp6P
gI7Ov
rL:.j
)~Y'v
?4f-O
ibP}QZ]
M]fD<l
Dx7rh
i9ovY}XGM
fS+^9
lI+xzU8b
XLNT Web Services SRL0
KwTNB
T0NF%
ku~[D
yQ%.3T_
723#Gs
FE`g4
sRNGK
p,Ys[6
XSYL,+"
,b_@L)
7@g8De
[W=TD
<j"T}
/e3r+
#ak_y
m5G)c
4br`6
1Aa^B
@A+O<
dQ!0~
[Nhpbh
6 d[^K
^N>Zr
&dd?-u
((hea#
']}pA<
0g0Y^^
Y^Okx}I>0
.4MAj
V0 }Y
XB3uj
klP!,
)d^%';
fWbAX
hK*A#
~mC]<
,AJ-}
yB(A'
[(S("
l7pWA
@c>P\
zAZv5
JnCc~
&7t%NA
0X6bO
vB1lq
E24+,m
;u3k)
&p}g7n
-j1l(|
|G9#gz5
}VO0(
T!?U}
SUF%%
97SbTn
^%4z6u
h)@xfr
`^*t6
)F;:
1hX+
|;k1g?
\sxM|I
Bz72+
|y5;K
'n`t;
Dg^M1|D
,W:cwg
R\mi:
GE4q>8
O^=h>?
[C1j4
\"KZK
t'(fqX
USER32.dll
"\5V)l)Xx&
&fyC^8V
January
L*HER
d]MC>
p03|%j1`q
dtun;
&GlT9O
@k~ .
*ngBdo-H
U.4w20
U[S-/2a}
56YzD
TQ,oG
^7w8rvC
huZcu
t.Il`
@ml'_c@
+u6G3
9NLtp;
Jkl;V8|
ngV |w'
)9@pUA=
Kt^=T
ytGD:]$
^_dxx|$yNNN
7BG-!
<-M7@
qT7Sr
nXS5W
6nw6L
bUX#y(
/ds}x`
I@hAw
dQmoB
}>&>N
-Qr!/VAD
i4Ae?
ldwKjyXZ
;:A\5
EnterCriticalSection
8ytL)
{#PEW
PvJ:=P
IUIdx
My?rH
('W#fQ
ml*m.pIA
{>hR`*
2c!`$
M0)X[
?"DF0
QT5H4
J[s%+slxv
WzxE+
'`<&;
w]QO8
-RB>-B
0T6b"e
_8N>^
vJP[s
zpekn
k7~Z\
!]O`J
<!jsI
]):08
a}@Xs
zM[RWI
1mEK-
y$4xu
e _7uv
TKDHVL
fD5 I
0JdG<7
z=hh!
'c+61*Z
?U)%Vg
K^\v^K
#c$k?
MSTQ>
LkG{VT:
,B{s#V
>O7RDA
OZ^fR
GetCurrentProcess
pYa_7
n.jv{
eq8ma
*_<@Y
FCUA.
}[q:]
1o;,Q
YnY/{
gvvno
hGNF;J
O$ipb
1cU59
i.8`*$A
NKu!I
ul(<Z
V~`+&
sx!;\
R,kmje\
2p+/w
Iq-8us*
M^P2@
FE!)|
&'+L)~
XZg/?h
rTM`Bw
_)?y>p'
"(8o
Lci.S8
e'JEt
GZ,69O< ZVM=
Mc^K~5q?
4t^m]*p
-;-;3@
N$,lL=I7
ncn)y
v"~&!
w<*%u
In\Fx
#0WVb
c(`Yj
$(J?,
T\iX%b3
Vx:_|
%R{ns
/{Wsk
3-)i6
NT{.XB
J8,0P
Yl$ST
Sp*zh
kAnSX
<D:"9QAY
cyntq
;|P|v
M#{>k6
fka>R
-+c&L
FbyS?
KR7Ow
MT=mM
&q/_(
V/| C
|Pj&^
1,pl_
#'WAA
E}gNQH
j~>|P5
x0C;^D|
MoTtb
h4/,5
]:M(4L
^QN-i
IdX;s
="P[N
|o?{+
fp*-0
-(aU@
p}AS=t
R.ntU
fuc2Cb
rNF-p"Y
}[y|6
.+wrY
.]YXjG
<nBUI
X71UC
h\Rr-
.#<<AG
1MH#M
7b :'
5LQ"qV
&oA-L
zQvLY
NEES{
MOLtp?m
|)GeK
;5PZB
]{*|~
Ti-E1b
pKSbC
L';5B
v!.Bx3x"
`yrgX|f
N5oS<G
6yd6O/
Ue|7T
ee0ET
ShowWindow
XEDWE9MD
9M;M)
~;*Qw
{VoGhEr]
;_uQIs
}I3#_
Pfb B
0ym<6
$}mNBMu
s2y)I
40200
L&1#qT
8*";:Y:*
8%my;
f@h{9
3{Evg
]LVt){bV
sYZe-
U/cqG
)D8QC
}\&SZi
S?mt^
DgY\i
p-X7o
-dvtZ
Zz~BGMc
.'>F0E
pEw,5
=u]dMD
vCcmA
2u'Y6
zJs%vK
?m+]^
KvKF@9
0QUTc
O?=Vpqo
\buq
=i.MH
l$_1{
}1m:V2v&t
-XY:v
:lOH6vD
tj"?E
(+l1ph
Vfb/f
K4Li;
P`XT?
PPPPPPPP
[HNl@&
8 e,E
3${'/
SVWUj
]MVNXb
i8j<9[
>2YIH
#U:FOF/
%nHJ-f}\
<@-txM.
#%TO^
#c6!C
"m)[O
i/[E)
1s:Pt
>_,cw
:&Jzi^
L1pl\2lX
sloe({6
>?=mOr
`zi/
?Cf6&I
D(bHS(|
cx4{q
ozFa-.
d^tBX
-"*nV:
-7hFS
t>j,P
3e:j[3
s<O-W
"A;IF
_)9~V
!ETh*
Zg7+u
0xcl'
vsW,gad,
.Q$Hx
N;"iu
K>+[W
aXnvm
O!-le
P-h*:@n,V
wm=,"<O
bZ7Dr
b JZ*RO
U]W^Z
nT6Q,I
g;7pn
8XT|~!
#uUFd
uNZ|R>L
KA@@;
%vKq2
jd12b"
oy[OL
pTMIh
"1.`)
z-e@|
%z|3o]"k
XQ P@
1.0.0.0
TN@n)
g{ex;
{'@F-m
%kB=J
[nNY{ru
,VGaJ
jK'>w
_C)Pj
]_Ac-h
vFajT
GetLastError
!PCI4F7=I
x60/SZTm
Eb/qu
+pQ0e0
dFZ^X<
a$F'd
Y[KQo
#2R9RY
WSFf&
J^`17
;^$0Op
tHtc(c
2wX<?OP
F_hus
(WW`o
hXQA|
owt"?w
<% \M`
Sb:NKm$
b?X`x
r,iXF
PV6yu
N$)Vp
7gyI}
a4%a}
l`D2`
kYyb\
cPioe
|[r<D
L_snh
m2PAMU
JZ2xu
fIZZY
EA}*Y
j`QBB
=.I@T
tQS&=
1Ya?A
yCWg5xU
9~|~!;~pt
/?y.s
S1$OS
;TQX&
*ve)$
gOW<_
9=[-u
OViRm
U{~%N#
#pvw_n
eerY`m%
lS'il.
cuPE)
yP&h.
wcjBb]
mQP9e
^bj|1VS
:Fkec
<>?,"
iNk\p3
%ge/(
*0(0&
]OqN9
sA);jyw
Z*+lzU
oqV?"
]Sr\Sc2
w.1,`(
m)iNe
~P!r,
Ixn"R
!|~Fs
4^6jz
VF<l#
33,R!<
^:#;c
@98`H/R
CGC(j
~a7&?Ku
yyhk'/m
~M@^!
q*a7~8
}kC%-
6<|yYe]
;$[_Y
_bx9s
vyk<Q
9V`B\
SQ:'y
@b?qE
_WY79
n,DNb
zE7 i
qVDdq^
gq:&UA
uyegY
0fh?l
<tqU9
]J}yB
YV7!4
w:d/'
4nSUh
V$ 91
i{S>N
c7ZI(

PE Information

Image Base Entry Point Reported Checksum Actual Checksum Minimum OS Version Compile Time Import Hash Icon Icon Exact Hash Icon Similarity Hash Icon DHash
0x00400000 0x000148d4 0x00311be1 0x00311be1 4.0 2011-04-18 18:54:06 e00de6e48b9b06aceb12a81e7bf494c9 949ed286f4e554088fb9a8244cc266a2 4902308a7bd0d1738102057db8c3749c 92e0b496a2cada72

Version Infos

FileVersion 6.8.3.0
ProductVersion 1.0.0.0
CompanyName SFM001
FileDescription SoftFamous
InternalName 7zS.sfx
LegalCopyright Copyright ร‚ยฉ Adaware 2022
OriginalFilename GenericSetup.exe
ProductName SoftFamous
Translation 0x0409 0x04b0

Sections

Name RAW Address Virtual Address Virtual Size Size of Raw Data Characteristics Entropy
.text 0x00000400 0x00001000 0x000197c0 0x00019800 IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6.61
.rdata 0x00019c00 0x0001b000 0x00004490 0x00004600 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 4.38
.data 0x0001e200 0x00020000 0x00005a68 0x00003200 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1.38
.sxdata 0x00021400 0x00026000 0x00000004 0x00000200 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_LNK_INFO|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0.02
.rsrc 0x00021600 0x00027000 0x00000fd2 0x00001000 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 4.87

Overlay

Offset 0x00022600
Size 0x002ebc78

Name Offset Size Language Sub-language Entropy File type
RT_ICON 0x00027204 0x000002e8 LANG_NEUTRAL SUBLANG_NEUTRAL 3.92 None
RT_DIALOG 0x000274ec 0x000000b8 LANG_ENGLISH SUBLANG_ENGLISH_US 3.09 None
RT_STRING 0x000275a4 0x00000094 LANG_ENGLISH SUBLANG_ENGLISH_US 2.78 None
RT_STRING 0x00027638 0x00000034 LANG_ENGLISH SUBLANG_ENGLISH_US 1.44 None
RT_GROUP_ICON 0x0002766c 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL 2.02 None
RT_VERSION 0x00027680 0x000002c8 LANG_ENGLISH SUBLANG_ENGLISH_US 3.33 None
RT_MANIFEST 0x00027948 0x0000068a LANG_ENGLISH SUBLANG_ENGLISH_US 5.01 None

Imports

Name Address
VariantClear 0x41b198
SysAllocString 0x41b19c
Name Address
SendMessageA 0x41b1ac
SetTimer 0x41b1b0
DialogBoxParamW 0x41b1b4
DialogBoxParamA 0x41b1b8
SetWindowLongA 0x41b1bc
GetWindowLongA 0x41b1c0
SetWindowTextW 0x41b1c4
LoadIconA 0x41b1c8
LoadStringW 0x41b1cc
LoadStringA 0x41b1d0
CharUpperW 0x41b1d4
CharUpperA 0x41b1d8
DestroyWindow 0x41b1dc
EndDialog 0x41b1e0
PostMessageA 0x41b1e4
ShowWindow 0x41b1e8
MessageBoxW 0x41b1ec
GetDlgItem 0x41b1f0
KillTimer 0x41b1f4
SetWindowTextA 0x41b1f8
Name Address
ShellExecuteExA 0x41b1a4
Name Address
GetCurrentDirectoryA 0x41b000
GetStringTypeW 0x41b004
GetStringTypeA 0x41b008
LCMapStringW 0x41b00c
LCMapStringA 0x41b010
InterlockedIncrement 0x41b014
InterlockedDecrement 0x41b018
GetProcAddress 0x41b01c
GetOEMCP 0x41b020
GetACP 0x41b024
GetCPInfo 0x41b028
IsBadCodePtr 0x41b02c
IsBadReadPtr 0x41b030
GetFileType 0x41b034
SetHandleCount 0x41b038
GetEnvironmentStringsW 0x41b03c
GetEnvironmentStrings 0x41b040
FreeEnvironmentStringsW 0x41b044
FreeEnvironmentStringsA 0x41b048
UnhandledExceptionFilter 0x41b04c
HeapSize 0x41b050
GetCurrentProcess 0x41b054
TerminateProcess 0x41b058
IsBadWritePtr 0x41b05c
HeapCreate 0x41b060
HeapDestroy 0x41b064
GetEnvironmentVariableA 0x41b068
SetUnhandledExceptionFilter 0x41b06c
TlsAlloc 0x41b070
ExitProcess 0x41b074
GetVersion 0x41b078
GetCommandLineA 0x41b07c
GetStartupInfoA 0x41b080
GetModuleHandleA 0x41b084
WaitForSingleObject 0x41b088
CloseHandle 0x41b08c
CreateProcessA 0x41b090
GetCommandLineW 0x41b094
GetVersionExA 0x41b098
LeaveCriticalSection 0x41b09c
EnterCriticalSection 0x41b0a0
DeleteCriticalSection 0x41b0a4
MultiByteToWideChar 0x41b0a8
WideCharToMultiByte 0x41b0ac
GetLastError 0x41b0b0
LoadLibraryA 0x41b0b4
GetModuleFileNameW 0x41b0b8
GetModuleFileNameA 0x41b0bc
LocalFree 0x41b0c0
FormatMessageW 0x41b0c4
FormatMessageA 0x41b0c8
SetFileTime 0x41b0cc
CreateFileW 0x41b0d0
SetLastError 0x41b0d4
SetFileAttributesW 0x41b0d8
SetFileAttributesA 0x41b0dc
RemoveDirectoryW 0x41b0e0
RemoveDirectoryA 0x41b0e4
CreateDirectoryW 0x41b0e8
CreateDirectoryA 0x41b0ec
DeleteFileW 0x41b0f0
DeleteFileA 0x41b0f4
GetFullPathNameW 0x41b0f8
GetFullPathNameA 0x41b0fc
SetCurrentDirectoryW 0x41b100
SetCurrentDirectoryA 0x41b104
GetCurrentDirectoryW 0x41b108
GetTempPathW 0x41b10c
GetTempPathA 0x41b110
GetCurrentProcessId 0x41b114
GetTickCount 0x41b118
GetCurrentThreadId 0x41b11c
FindClose 0x41b120
FindFirstFileW 0x41b124
FindFirstFileA 0x41b128
FindNextFileW 0x41b12c
FindNextFileA 0x41b130
CreateFileA 0x41b134
GetFileSize 0x41b138
SetFilePointer 0x41b13c
ReadFile 0x41b140
WriteFile 0x41b144
SetEndOfFile 0x41b148
GetStdHandle 0x41b14c
WaitForMultipleObjects 0x41b150
Sleep 0x41b154
VirtualAlloc 0x41b158
VirtualFree 0x41b15c
CreateEventA 0x41b160
SetEvent 0x41b164
ResetEvent 0x41b168
InitializeCriticalSection 0x41b16c
RtlUnwind 0x41b170
RaiseException 0x41b174
HeapAlloc 0x41b178
HeapFree 0x41b17c
HeapReAlloc 0x41b180
CreateThread 0x41b184
TlsSetValue 0x41b188
TlsGetValue 0x41b18c
ExitThread 0x41b190


Reports: JSON

Usage


Processing ( 99.57 seconds )

  • 69.693 ProcessMemory
  • 27.626 CAPE
  • 2.243 BehaviorAnalysis
  • 0.007 AnalysisInfo
  • 0.001 Debug

Signatures ( 0.27 seconds )

  • 0.062 antiav_detectreg
  • 0.026 territorial_disputes_sigs
  • 0.023 infostealer_ftp
  • 0.014 infostealer_im
  • 0.013 antianalysis_detectreg
  • 0.01 infostealer_mail
  • 0.01 ransomware_files
  • 0.007 antianalysis_detectfile
  • 0.007 antiav_detectfile
  • 0.007 masquerade_process_name
  • 0.007 ransomware_extensions
  • 0.006 antivm_vbox_keys
  • 0.005 infostealer_bitcoin
  • 0.004 antivm_vmware_keys
  • 0.003 antidebug_devices
  • 0.003 antivm_generic_diskreg
  • 0.003 antivm_parallels_keys
  • 0.003 antivm_vbox_files
  • 0.003 antivm_xen_keys
  • 0.003 ketrican_regkeys
  • 0.003 geodo_banking_trojan
  • 0.003 darkcomet_regkeys
  • 0.003 poullight_files
  • 0.003 ursnif_behavior
  • 0.002 antivm_vpc_keys
  • 0.002 browser_security
  • 0.002 limerat_regkeys
  • 0.002 recon_fingerprint
  • 0.002 remcos_regkeys
  • 0.001 accesses_netlogon_regkey
  • 0.001 antivm_bochs_keys
  • 0.001 antivm_hyperv_keys
  • 0.001 antivm_vbox_devices
  • 0.001 antivm_vmware_files
  • 0.001 browser_addon
  • 0.001 bypass_firewall
  • 0.001 file_credential_store_access
  • 0.001 registry_credential_store_access
  • 0.001 registry_lsa_secrets_access
  • 0.001 disables_backups
  • 0.001 disables_browser_warn
  • 0.001 disables_power_options
  • 0.001 azorult_mutexes
  • 0.001 cryptbot_files
  • 0.001 echelon_files
  • 0.001 qulab_files
  • 0.001 modify_uac_prompt
  • 0.001 packer_armadillo_regkey
  • 0.001 medusalocker_regkeys
  • 0.001 revil_mutexes
  • 0.001 modirat_behavior
  • 0.001 rat_pcclient
  • 0.001 warzonerat_regkeys
  • 0.001 tampers_etw
  • 0.001 lokibot_mutexes
  • 0.001 suspicious_command_tools
  • 0.001 uses_windows_utilities

Reporting ( 1.26 seconds )

  • 1.143 CAPASummary
  • 0.113 JsonDump

Signatures

Checks available memory
Queries the keyboard layout
SetUnhandledExceptionFilter detected (possible anti-debug)
At least one process apparently crashed during execution
Possible date expiration check, exits too soon after checking local time
process: FileCoAuth.exe, PID 5504
Anomalous file deletion behavior detected (10+)
file: C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.newcfg
file: C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.tmp
file: C:\Windows\System32\wbem\Performance\WmiApRpl.h
file: C:\Windows\System32\wbem\Performance\WmiApRpl.ini
file: C:\Windows\INF\WmiApRpl\0009\WmiApRpl.ini
file: C:\Windows\INF\WmiApRpl\WmiApRpl.h
file: C:\Windows\INF\WmiApRpl\WmiApRpl.ini
file: C:\Windows\INF\WmiApRpl\WmiApRpl.ini
file: C:\Windows\INF\WmiApRpl.ini
file: C:\Windows\INF\WmiApRpl\WmiApRpl.h\WmiApRpl.ini
file: C:\Windows\System32\PerfStringBackup.TMP
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2133.5764.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2125.4072.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2052.6960.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2028.1120.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1913.1964.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1854.2316.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1845.6048.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1816.5756.1.odl
file: C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1741.6072.1.odl
Guard pages use detected - possible anti-debugging.
A process attempted to delay the analysis task.
note: GenericSetup.exe tried to sleep 1080.25 seconds, actually delayed analysis time by 0.0 seconds
Resumed a thread in another process
thread_resumed: Process genericsetup.exe with process ID 5392 resumed a thread in another process with the process ID 5392
Reads data out of its own binary image
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x00000000, length: 0x00022dbe
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x3030785c3030785c, length: 0x0002ffc0
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x30785c266538785c, length: 0x0000017f
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x3263785c3838785c, length: 0x00000025
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x5c3030785c22280d, length: 0x000e367a
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x785c303163785c3b, length: 0x0000014d
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x785c305e3738785c, length: 0x000062b4
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x785c3230785c280d, length: 0x00100000
self_read: process: OpenVPN.exe, pid: 6652, offset: 0x785c3231785c280d, length: 0x00100000
self_read: process: GenericSetup.exe, pid: 5392, offset: 0x3030785c3030785c, length: 0x00080000
A process created a hidden window
process: svchost.exe -> \\?\C:\Windows\system32\wbem\WMIADAP.EXE
The binary contains an unknown PE section name indicative of packing
unknown section: {'name': '.sxdata', 'raw_address': '0x00021400', 'virtual_address': '0x00026000', 'virtual_size': '0x00000004', 'size_of_data': '0x00000200', 'characteristics': 'IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_LNK_INFO|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE', 'characteristics_raw': '0xc0000240', 'entropy': '0.02'}
Drops a binary and executes it
binary: C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe
Creates RWX memory
Tries to unhook or modify Windows functions monitored by CAPE
unhook: function_name: ShellExecuteExW, type: removal
Checks the system manufacturer, likely for anti-virtualization
Process: FileCoAuth.exe (5504)
registry HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
Touches a file containing cookies, possibly for information gathering
Process: GenericSetup.exe (5392)
file C:\Users\Packager\AppData\Local\Microsoft\Windows\INetCookies
Yara detections observed in process dumps, payloads or dropped files
Hit: PID 6652 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 6660 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 7000 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID 5504 triggered the Yara rule 'shellcode_get_eip' with data '['{ E8 00 00 00 00 58 }']'
Hit: PID triggered the Yara rule 'embedded_macho' with data '['{ CA FE BA BE }', '{ FE ED FA CE }']'
Hit: PID triggered the Yara rule 'INDICATOR_EXE_Packed_SmartAssembly' with data '['PoweredByAttribute', 'SmartAssembly.Attributes', 'Powered by SmartAssembly']'
Hit: PID triggered the Yara rule 'INDICATOR_EXE_Packed_Fody' with data '['ProcessedByFody']'
Hit: PID 5392 triggered the Yara rule 'embedded_macho' with data '['{ CA FE BA BE }', '{ FE ED FA CE }']'
Hit: PID 5392 triggered the Yara rule 'INDICATOR_EXE_Packed_Fody' with data '['ProcessedByFody']'
Anomalous binary characteristics
anomaly: Entrypoint of binary is located outside of any mapped sections
Attempts to identify installed AV products by installation directory
file: C:\Users\Packager\AppData\Roaming\Lavasoft\Quick Launch\QuickLaunch Browser\Application\quicklaunchbrowser.exe
Attempts to identify installed AV products by registry key
regkey: HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Browser\Update
regkey: HKEY_CURRENT_USER\SOFTWARE\AVAST Software\Browser\Update
Enumerates services, possibly for anti-virtualization
Enumerates physical drives
physical drive access: \??\PHYSICALDRIVE0
physical drive access: \??\PhysicalDrive0
Attempts to create or modify system certificates
Attempts to interact with an Alternate Data Stream (ADS)
file: C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-100000000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-300300000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
file: \??\Volume{01989354-0000-0000-0000-10e03f000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION

Screenshots

No screenshots available.

Hosts

No hosts contacted.

DNS

No domains contacted.

Summary

C:\Users\Packager\AppData\Local\Temp\OpenVPN.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\de
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\es
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\fr
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\it
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\pt
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\ru
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe.config
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\de\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\DynActsBLL.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\es\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\fr\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\it\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\pt\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\ru\GenericSetup.resources.dll
C:\Windows\System32\MSCOREE.DLL.local
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\Microsoft.NET\Framework\*
C:\Windows\Microsoft.NET\Framework\v1.0.3705\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\clr.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\machine.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\fusion.localgac
C:\Users\Packager\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\GenericSetup.exe.log
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\security.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\security.config.cch
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\enterprisesec.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\enterprisesec.config.cch
C:\Windows\System32\windows.storage.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\Wldp.dll
C:\Windows\System32\wldp.dll
C:\Users\Packager\AppData\Roaming\Microsoft\CLR Security Config\v4.0.30319\security.config
C:\Users\Packager\AppData\Roaming\Microsoft\CLR Security Config\v4.0.30319\security.config.cch
C:\Windows\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\45cef8929f7918524d50f1f75c04b1c3\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\45cef8929f7918524d50f1f75c04b1c3\mscorlib.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\e4a1c9189d2b01f018b953e46c80d120\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\e4a1c9189d2b01f018b953e46c80d120\mscorlib.ni.dll.aux
C:\Users
C:\Users\Packager
C:\Users\Packager\AppData
C:\Users\Packager\AppData\Local
C:\Users\Packager\AppData\Local\Temp
\Device\CNG
C:\Windows\system32
C:\Windows
C:\Users\Packager\AppData\Local\Microsoft\Windows\INetCache
C:\Users\Packager\AppData\Local\Microsoft\Windows\INetCookies
C:\Windows\System32\propsys.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe:Zone.Identifier
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe.Config
C:\Windows\assembly\NativeImages_v4.0.30319_32\SFM001\*
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.INI
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\Ninject.Extensions.*.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\Ninject.Web*.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe.Config:Zone.Identifier
C:\Windows\System32\tzres.dll
C:\Windows\System32\en-US\tzres.dll.mui
C:\Windows\System32\en\tzres.dll.mui
C:\Windows\System32\dnsapi.dll
C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
C:\Windows\System32\en-US\CRYPT32.dll.mui
C:\Windows\sysnative\en-US\CRYPT32.dll.mui
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\IPHLPAPI.DLL
C:\Windows\System32\IPHLPAPI.DLL
C:\Windows\System32\winnsi.dll
\??\Nsi
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\WINHTTP.dll
C:\Windows\System32\winhttp.dll
C:\Users\Packager\AppData\LocalLow
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
\Device\RasAcd
C:\Windows\System32\en-US\WINHTTP.dll.mui
C:\Windows\sysnative\en-US\WINHTTP.dll.mui
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A37B8BA80004D3266CB4D93B2052DC10_*
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A37B8BA80004D3266CB4D93B2052DC10_5F5F520ABA6509FB550A7DDEB645B50F
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\630AE2A884AC3F3B1C00FFFD4230AF21
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B59C386ACF967256F47CEB4C030EC6CA_*
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B59C386ACF967256F47CEB4C030EC6CA_1DA36F2FD94728033984C2E6DBDB1DDA
C:\Users\Packager\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DEFA7369B0FE856E40B07AF48FE3A34F
C:\Users\Packager\AppData\Roaming\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\user.config
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\user.config
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql
C:\Users\Packager\AppData\Local\Adaware
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.tmp
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.newcfg
C:\Users\Packager\AppData\Local\Temp\GenericSetup.exe_1749642178
C:\Users\Packager\AppData\Local\Temp\GenericSetup.exe_1749642178\BundleConfig.json
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\BundleConfig.json
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
C:\Users\Packager\AppData\Local\BraveSoftware\Brave-Browser\Application\brave.exe
C:\Users\Packager\AppData\Roaming\Lavasoft\Quick Launch\QuickLaunch Browser\Application\quicklaunchbrowser.exe
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.pdb
C:\Windows\symbols\dll\System.pdb
C:\Windows\dll\System.pdb
C:\Windows\System.pdb
C:\Windows\System32\rtutils.dll
C:\Windows\System32\en-US\KERNELBASE.dll.mui
C:\Windows\sysnative\en-US\KERNELBASE.dll.mui
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en-US\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en-US\GenericSetup.resources\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en-US\GenericSetup.resources.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en-US\GenericSetup.resources\GenericSetup.resources.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en\GenericSetup.resources\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en\GenericSetup.resources.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\en\GenericSetup.resources\GenericSetup.resources.exe
C:\Windows\System32\wbem\WmiPrvSE.exe
\??\PhysicalDrive0
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe
C:\Windows\System32\SecurityHealthHost.exe
C:\Windows\System32\vssapi.dll
C:\Windows\System32\vsstrace.dll
C:\Windows\System32\en-US\VssTrace.DLL.mui
C:\Windows\System32\samcli.dll
C:\Windows\System32\netutils.dll
C:\Windows\System32\samlib.dll
C:\Windows\System32\wbem\repository
C:\Windows\System32\wbem\repository\WRITABLE.TST
C:\Windows\System32\wbem\repository\MAPPING1.MAP
C:\Windows\System32\wbem\repository\MAPPING2.MAP
C:\Windows\System32\wbem\repository\MAPPING3.MAP
C:\Windows\System32\wbem\repository\OBJECTS.DATA
C:\Windows\System32\wbem\repository\INDEX.BTR
C:\Windows\System32\userenv.dll
C:\Windows\System32\profapi.dll
C:\Program Files\Windows Defender\MpOAV.dll
C:\Windows\System32\cryptsp.dll
C:\Windows\Globalization\Sorting\sortdefault.nls
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Windows\System32\kernelbase.dll
C:\Windows\System32\drivers\acpi.sys
C:\Windows\System32\drivers\ndis.sys
C:\Windows\System32\drivers\mssmbios.sys
C:\Windows\System32\drivers\hdaudbus.sys
C:\Windows\System32\drivers\processr.sys
C:\Windows\System32\drivers\portcls.sys
C:\Windows\System32\drivers\monitor.sys
C:\Windows\System32\SystemResources\monitor.sys.mun
C:\Windows\SystemResources\USER32.dll.mun
C:\Windows\System32\en-US\USER32.dll.mui
C:\Windows\System32\rpcss.dll
C:\Windows\System32\kernel.appcore.dll
C:\Windows\System32\winbrand.dll
C:\Windows\Branding\Basebrd\basebrd.dll
C:\Windows\Branding\Basebrd\en-US\Basebrd.dll.mui
C:
C:\Windows\System32\secur32.dll
C:\Windows\System32\srvcli.dll
C:\Windows\System32\logoncli.dll
C:\Windows\System32\schedcli.dll
C:\Windows\System32\wkscli.dll
C:\Windows\System32\dsrole.dll
\??\PIPE\wkssvc
\??\PIPE\srvsvc
C:\Windows\System32\wbem\en-US\cimwin32.dll.mui
C:\Windows\System32\wtsapi32.dll
C:\Windows\System32\winsta.dll
C:\Windows\System32\wmiclnt.dll
\??\WMIDataDevice
\??\PIPE\lsarpc
C:\Windows\System32\OemInfo.Ini
C:\Windows\System32\OemLogo.Bmp
C:\Windows\Temp
C:\Windows\System32\wbem\WMIADAP.exe
C:\Windows\System32\wbem\Performance\
C:\Windows\System32\wbem\Performance\WmiApRpl_new.h
C:\Windows\System32\wbem\Performance\WmiApRpl.h
C:\Windows\System32\wbem\Performance\WmiApRpl_new.ini
C:\Windows\System32\wbem\Performance\WmiApRpl.ini
C:\Windows\System32\perfc009.dat
C:\Windows\System32\perfh009.dat
C:\Windows\INF\WmiApRpl\0*
C:\Windows\INF\WmiApRpl\0009\*
C:\Windows\INF\WmiApRpl\0009\WmiApRpl.ini
C:\Windows\INF\WmiApRpl\0009
C:\Windows\INF\WmiApRpl\*
C:\Windows\INF\WmiApRpl\WmiApRpl.h
C:\Windows\INF\WmiApRpl\WmiApRpl.ini
C:\Windows\INF\WmiApRpl
C:\Windows\INF\WmiApRpl\
C:\Windows\INF\WmiApRpl.ini
C:\Windows\INF\WmiApRpl\WmiApRpl.h\WmiApRpl.ini
C:\Windows\INF\WmiApRpl\0009\
C:\Windows\System32\PerfStringBackup.TMP
C:\Windows\System32\PerfStringBackup.INI
C:\Windows\System32\wbem\WMICLNT.dll
C:\Windows\System32\en-US\kernelbase.dll.mui
C:\Windows\System32\drivers\en-US\ACPI.sys.mui
C:\Windows\System32\drivers\en-US\ndis.sys.mui
C:\Windows\System32\drivers\en-US\mssmbios.sys.mui
C:\Windows\System32\drivers\en-US\HDAudBus.sys.mui
C:\Windows\System32\drivers\en\HDAudBus.sys.mui
C:\Windows\System32\drivers\en-US\processr.sys.mui
C:\Windows\System32\drivers\en-US\portcls.SYS.mui
C:\Windows\System32\drivers\en\portcls.SYS.mui
C:\Windows\System32\drivers\en-US\monitor.sys
C:\Windows\System32\drivers\en\monitor.sys
C:\Windows\System32\wbem\en-US\mofd.dll.mui
C:\Windows\System32\en-US\combase.dll.mui
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\CRYPTSP.dll
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\Wldp.dll
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-11.1845.5504.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.aodl
C:\Windows\sysnative\en-US\tzres.dll.mui
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-11.1845.5504.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1741.6072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1816.5756.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1845.6048.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1854.2316.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1913.1964.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2028.1120.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2052.6960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2125.4072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2133.5764.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odlsent
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth*.odlgz
C:\Program Files (x86)
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\settings\PreSignInSettingsConfig.json
C:\
C:\Windows\System32
C:\Windows\System32\
C:\Windows\
\??\MountPointManager
C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-100000000000}
\??\GLOBALROOT\Device\HarddiskVolume1
\??\Volume{01989354-0000-0000-0000-100000000000}\
\??\Volume{01989354-0000-0000-0000-100000000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-300300000000}
\??\GLOBALROOT\Device\HarddiskVolume2
\??\Volume{01989354-0000-0000-0000-300300000000}\
\??\Volume{01989354-0000-0000-0000-300300000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\Volume{01989354-0000-0000-0000-10e03f000000}
\??\GLOBALROOT\Device\HarddiskVolume3
\??\Volume{01989354-0000-0000-0000-10e03f000000}\
\??\Volume{01989354-0000-0000-0000-10e03f000000}\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\??\scsi#disk&ven_qemu&prod_harddisk#4&35424867&0&000000#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}
\??\PHYSICALDRIVE0
C:\Windows\System32\clusapi.dll
C:\Windows\System32\iologmsg.dll
C:\Windows\System32\en-US\iologmsg.dll.mui
C:\Windows\System32\slc.dll
C:\Windows\System32\en-US\slc.dll.mui
C:\Windows\System32\sppc.dll
C:\Windows\System32\en-US\sppc.dll.mui
C:\Windows\System32\en-US\storagewmi.dll.mui
C:\Windows\System32\Syncreg.dll
C:\Windows\System32\en-US\Syncreg.dll.mui
C:\Windows\System32\tapi3.dll
C:\Windows\System32\en-US\tapi3.dll.mui
C:\Windows\System32\vdsutil.dll
C:\Windows\System32\en-US\vdsutil.dll.mui
C:\Windows\System32\en-US\vsstrace.dll.mui
C:\Windows\System32\wbem\en-US\wmiutils.dll.mui
C:\Windows\System32\msasn1.dll
C:\Windows\System32\dhcpcsvc6.DLL
C:\Windows\System32\dhcpcsvc.dll
\DEVICE\NETBT_TCPIP_{CC6EEB36-5AE2-46BE-81A9-5F0B62ECF81F}
\DEVICE\NETBT_TCPIP_{27E3D6D8-A922-11EF-90C1-806E6F6E6963}
\Device\Afd\Endpoint
C:\Windows\System32\drivers\Synth3dVsc.sys
C:\Windows\System32\SystemResources\Synth3dVsc.sys.mun
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WorkflowServiceHostPerformanceCounters.dll
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\en-US\WorkflowServiceHostPerformanceCounters.dll.mui
C:\Windows\System32\lsm.dll
C:\Windows\System32\en-US\lsm.dll.mui
C:\Windows\System32\HvHostSvc.dll
C:\Windows\System32\en-US\HvHostSvc.dll.mui
C:\Windows\System32\drivers\pacer.sys
C:\Windows\System32\drivers\en-US\pacer.sys.mui
C:\Windows\System32\FWPUCLNT.DLL
C:\Windows\System32\en-US\fwpuclnt.dll.mui
C:\Windows\System32\pnrpsvc.dll
C:\Windows\System32\en-US\pnrpsvc.dll.mui
C:\Windows\System32\azroles.dll
C:\Windows\System32\en-US\AzRoles.dll.mui
C:\Windows\System32\FXSRESM.dll
C:\Windows\System32\en-US\fxsresm.dll.mui
C:\Windows\System32\drivers\afd.sys
C:\Windows\System32\drivers\en-US\afd.sys.mui
C:\Windows\System32\drivers\fvevol.sys
C:\Windows\System32\drivers\en-US\fvevol.sys.mui
C:\Windows\System32\drivers\spaceport.sys
C:\Windows\System32\drivers\en-US\spaceport.sys.mui
C:\Windows\System32\drivers\refs.sys
C:\Windows\System32\drivers\en-US\refs.sys.mui
C:\Windows\System32\mispace.dll
C:\Windows\System32\en-US\mispace.dll.mui
C:\Windows\System32\drivers\vmbkmcl.sys
C:\Windows\System32\drivers\en-US\vmbkmcl.sys.mui
C:\Windows\System32\drivers\en\vmbkmcl.sys.mui
C:\Windows\System32\drivers\smbdirect.sys
C:\Windows\System32\drivers\en-US\smbdirect.sys.mui
C:\Windows\System32\cscsvc.dll
C:\Windows\System32\en-US\cscsvc.dll.mui
C:\Windows\System32\iphlpsvc.dll
C:\Windows\System32\en-US\iphlpsvc.dll.mui
C:\Windows\System32\drivers\dmvsc.sys
C:\Windows\System32\drivers\en-US\dmvsc.sys.mui
C:\Windows\System32\bthserv.dll
C:\Windows\System32\en-US\bthserv.dll.mui
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelPerformanceCounters.dll
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\en-US\ServiceModelPerformanceCounters.dll.mui
C:\Windows\System32\umpoext.dll
C:\Windows\System32\en-US\umpoext.dll.mui
C:\Windows\System32\drivers\tcpip.sys
C:\Windows\System32\drivers\en-US\tcpip.sys.mui
C:\Windows\System32\drivers\winnat.sys
C:\Windows\System32\drivers\en-US\winnat.sys.mui
C:\Windows\System32\drivers\http.sys
C:\Windows\System32\drivers\en-US\http.sys.mui
C:\Windows\System32\WindowsPowerShell\v1.0\PSEvents.dll
C:\Windows\System32\WindowsPowerShell\v1.0\en-US\PSEvents.dll.mui
C:\Windows\System32\drivers\dxgmms2.sys
C:\Windows\System32\drivers\en-US\dxgmms2.sys.mui
C:\Windows\System32\drivers\en\dxgmms2.sys.mui
C:\Windows\System32\wmp.dll
C:\Windows\System32\rdpcorets.dll
C:\Windows\System32\en-US\rdpcorets.dll.mui
C:\Windows\System32\drivers\srv2.sys
C:\Windows\System32\drivers\en-US\srv2.sys.mui
C:\Windows\System32\netlogon.dll
C:\Windows\System32\en-US\NetLogon.dll.mui
C:\Windows\System32\drivers\USBXHCI.SYS
C:\Windows\System32\drivers\en-US\usbxhci.sys.mui
C:\Windows\System32\drt.dll
C:\Windows\System32\en-US\drt.dll.mui
C:\Windows\System32\advapi32res.dll
C:\Windows\System32\en-US\advapi32res.dll.mui
C:\Windows\System32\w32time.dll
C:\Windows\System32\en-US\w32time.dll.mui
C:\Windows\System32\drivers\mrxsmb.sys
C:\Windows\System32\drivers\en-US\mrxsmb.sys.mui
C:\Windows\System32\appvetwclientres.dll
C:\Windows\System32\wevtsvc.dll
C:\Windows\System32\en-US\wevtsvc.dll.mui
C:\Windows\System32\PeerDistSvc.dll
C:\Windows\System32\en-US\PeerDistSvc.dll.mui
C:\Windows\System32\WsmRes.dll
C:\Windows\System32\en-US\WsmRes.dll.mui
C:\Windows\System32\vid.dll
C:\Windows\System32\en-US\vid.dll.mui
C:\Windows\System32\mprddm.dll
C:\Windows\System32\en-US\mprddm.dll.mui
\??\UNC\WORKGROUP*\MAILSLOT\NET\NETLOGON
C:\Windows\System32\en-US\ACTIVEDS.dll.mui
C:\Windows\System32\powrprof.dll
C:\Windows\System32\en-US\powrprof.dll.mui
C:\Windows\System32\wbem\Performance\WmiApRpl.h
C:\Windows\System32\wbem\Performance\WmiApRpl.ini
C:\Windows\System32\PerfStringBackup.TMP
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\de
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\es
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\fr
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\it
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\pt
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\ru
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe.config
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\GenericSetup.exe
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\de\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\DynActsBLL.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\es\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\fr\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\it\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\pt\GenericSetup.resources.dll
C:\Users\Packager\AppData\Local\Temp\7zSCF974D31\ru\GenericSetup.resources.dll
\Device\RasAcd
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.tmp
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.newcfg
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\user.config
C:\Users\Packager\AppData\Local\Temp\GenericSetup.exe_1749642178\BundleConfig.json
C:\Windows\System32\wbem\repository\WRITABLE.TST
C:\Windows\System32\wbem\repository\MAPPING1.MAP
C:\Windows\System32\wbem\repository\MAPPING2.MAP
C:\Windows\System32\wbem\repository\MAPPING3.MAP
C:\Windows\System32\wbem\repository\OBJECTS.DATA
C:\Windows\System32\wbem\repository\INDEX.BTR
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
\??\PIPE\wkssvc
\??\PIPE\srvsvc
\??\WMIDataDevice
\??\PIPE\lsarpc
C:\Windows\System32\wbem\Performance\WmiApRpl_new.h
C:\Windows\System32\wbem\Performance\WmiApRpl.h
C:\Windows\System32\wbem\Performance\WmiApRpl_new.ini
C:\Windows\System32\wbem\Performance\WmiApRpl.ini
C:\Windows\System32\perfc009.dat
C:\Windows\System32\perfh009.dat
C:\Windows\INF\WmiApRpl\WmiApRpl.h
C:\Windows\INF\WmiApRpl\WmiApRpl.ini
C:\Windows\System32\PerfStringBackup.TMP
C:\Windows\System32\PerfStringBackup.INI
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-11.1845.5504.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-11.1845.5504.1.odl
C:\$Extend\$Quota:$Q:$INDEX_ALLOCATION
\Device\Afd\Endpoint
\??\UNC\WORKGROUP*\MAILSLOT\NET\NETLOGON
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.newcfg
C:\Users\Packager\AppData\Local\Adaware\GenericSetup.exe_Url_2hnm3fjgs3phgs05hbzheab3gauxjdql\1.0.5.5537\0ptsousd.tmp
C:\Windows\System32\wbem\Performance\WmiApRpl.h
C:\Windows\System32\wbem\Performance\WmiApRpl_new.h
C:\Windows\System32\wbem\Performance\WmiApRpl.ini
C:\Windows\System32\wbem\Performance\WmiApRpl_new.ini
C:\Windows\INF\WmiApRpl\0009\WmiApRpl.ini
C:\Windows\INF\WmiApRpl\0009
C:\Windows\INF\WmiApRpl\WmiApRpl.h
C:\Windows\INF\WmiApRpl\WmiApRpl.ini
C:\Windows\INF\WmiApRpl
C:\Windows\INF\WmiApRpl.ini
C:\Windows\INF\WmiApRpl\WmiApRpl.h\WmiApRpl.ini
C:\Windows\System32\PerfStringBackup.TMP
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2025-06-11.1845.5504.1.aodl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2133.5764.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2125.4072.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2052.6960.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.2028.1120.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1913.1964.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1854.2316.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1845.6048.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1816.5756.1.odl
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\logs\Common\FileCoAuth-2024-11-25.1741.6072.1.odl
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\ResourcePolicies
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Policy\
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\policy\v4.0
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_CURRENT_USER\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\OnlyUseLatestCLR
Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\policy\standards\v4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\v4.0.30319\SKUs\
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SKUs\default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GenericSetup.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_CURRENT_USER\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\NGen\Policy\v4.0
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-64934406-199802361-3218922526-1001
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\Servicing
HKEY_LOCAL_MACHINE\Software\Microsoft\StrongName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\STE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration
HKEY_CURRENT_USER
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\ZoneMap\Ranges\
HKEY_CURRENT_USER\ZoneMap\Ranges\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\Software\Policies
HKEY_CURRENT_USER\Software\Policies
HKEY_CURRENT_USER\Software
HKEY_LOCAL_MACHINE\Software
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_URI_DISABLECACHE
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_URI_DISABLECACHE
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\System\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\UNCAsIntranet
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\GenericSetup.exe
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\*
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_DEFAULT_DRIVE_INTRANET_KB941000
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_DEFAULT_DRIVE_INTRANET_KB941000
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PropertyBag
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\3
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\3\KnownFolders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cache
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\PropertyBag
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cookies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLEAUT
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\FeatureSIMD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\AppContext
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 024
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SystemRoot
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\BuildBranch
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuild
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuildNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\RegisteredOrganization
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\RegisteredOwner
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentMajorVersionNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentMinorVersionNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\ReleaseId
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseActivationAuthenticationLevel
HKEY_LOCAL_MACHINE\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\GenericSetup.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_CLASSES_ROOT\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\AlwaysReadHKCRForCLSIDs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32
HKEY_CLASSES_ROOT\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\WMIDisableCOMSecurity
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\System\DNSClient
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Elevation
HKEY_LOCAL_MACHINE\Software\Microsoft\AMSI\Providers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\FinalizerActivityBypass
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\TZI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\FirstEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\LastEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2006
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2007
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Display
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Std
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Dlt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Display
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Std
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dlt
HKEY_CURRENT_USER\Software\Policies\Microsoft\Control Panel\International\Calendars\TwoDigitYearMax
HKEY_CURRENT_USER\Control Panel\International\Calendars\TwoDigitYearMax
HKEY_CURRENT_USER\Control Panel\International
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Cleanup\{A7F4C378-21BE-494E-BA0F-BB12C5D208C5}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\State
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\Safety Warning Level
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\crypt32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagMatchAnyMask
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Wintrust\Config
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllPutSignedDataMsg
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllGetCaps
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllGetSignedDataMsg
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2\52C64B7E
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\dnsapi.dll,-103
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7\Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Cryptography\ECCParameters
HKEY_LOCAL_MACHINE\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CertDllOpenStoreProv
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllVerifyIndirectData
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllVerifyEncodedSignature
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllVerifyEncodedSignature
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllImportPublicKeyInfoEx2
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllImportPublicKeyInfoEx2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\Root\ProtectedRoots
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\AuthRoot
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\AuthRoot\AutoUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertSyncDeltaTime
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\ChainEngine\Config
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableMandatoryBasicConstraints
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableCANameConstraints
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableUnsupportedCriticalExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlCountInCert
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxUrlRetrievalByteCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalByteCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalCertCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxVerifySignatureCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxIssuerDepth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxPathCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetPreFetchTriggerPeriodSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableWeakSignatureFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MinRsaPubKeyBitLength
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRsaPubKeyTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\ChainCacheResyncFiletime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableStrictChecksFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CI\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartyAfterTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartyAfterTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakRSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakRSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakECDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakECDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakECDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakECDSAAllFlags
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\CA\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\CA
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\CA\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\CA\CTLs
HKEY_CURRENT_USER\
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\CA
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\Certificates
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CRLs
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\CA\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\CA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\109F1CAED645BB78B3EA2B94C0697C740733031C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\109F1CAED645BB78B3EA2B94C0697C740733031C\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\D559A586669B08F46A30A133F8A9ED3D038E2EA8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\D559A586669B08F46A30A133F8A9ED3D038E2EA8\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\FEE449EE0E3965A5246F000E87FDE2A065FD89D4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\FEE449EE0E3965A5246F000E87FDE2A065FD89D4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs\A377D1B1C0538833035211F4083D00FECC414DAB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs\A377D1B1C0538833035211F4083D00FECC414DAB\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\CTLs
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\CA
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\CA\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\CA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\CA\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\CA\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\CA\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\CA\CTLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\Disallowed\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\Disallowed
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Disallowed\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Disallowed\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\Disallowed
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\Certificates
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CRLs
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\Disallowed\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\Disallowed
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs\27748148BBE67A43CDBFEC6C3784862CE134E6EA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs\27748148BBE67A43CDBFEC6C3784862CE134E6EA\Blob
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\Disallowed
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\Disallowed\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\Disallowed
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Disallowed\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Disallowed\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Disallowed\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Disallowed\CTLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\Root\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\Root
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\Root\ProtectedRoots
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\CTLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\ProtectedRoots\Certificates
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\Root\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\Root
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\0119E81BE9A14CD8E22F40AC118C687ECBA3F4D8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\0119E81BE9A14CD8E22F40AC118C687ECBA3F4D8\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\06F1AA330B927B753A40E68CDF22E34BCBEF3352
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\06F1AA330B927B753A40E68CDF22E34BCBEF3352\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\18F7C1FCC3090203FD5BAA2F861A754976C8DD25
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\18F7C1FCC3090203FD5BAA2F861A754976C8DD25\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\245C97DF7514E7CF2DF8BE72AE957B9E04741E85
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\245C97DF7514E7CF2DF8BE72AE957B9E04741E85\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\31F9FC8BA3805986B721EA7295C65B3A44534274
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\31F9FC8BA3805986B721EA7295C65B3A44534274\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\3B1EFD3A66EA28B16697394703A72CA340A05BD5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\3B1EFD3A66EA28B16697394703A72CA340A05BD5\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\7F88CD7223F3C813818C994614A89C99FA3B5247
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\7F88CD7223F3C813818C994614A89C99FA3B5247\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\8F43288AD272F3103B6FB1428485EA3014C0BCFE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\8F43288AD272F3103B6FB1428485EA3014C0BCFE\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\92B46C76E13054E104F230517E6E504D43AB10B5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\92B46C76E13054E104F230517E6E504D43AB10B5\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\A43489159A520F0D93D032CCAF37E7FE20A8B419
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\A43489159A520F0D93D032CCAF37E7FE20A8B419\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\BE36A4562FB2EE05DBB3D32323ADF445084ED656
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\BE36A4562FB2EE05DBB3D32323ADF445084ED656\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\CDD4EEAE6000AC7F40C3802C171E30148030C072
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\CDD4EEAE6000AC7F40C3802C171E30148030C072\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\AuthRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\4F65566336DB6598581D584A596C87934D5F2AB4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\4F65566336DB6598581D584A596C87934D5F2AB4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\51501FBFCE69189D609CFAF140C576755DCC1FDF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\51501FBFCE69189D609CFAF140C576755DCC1FDF\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\742C3192E607E424EB4549542BE1BBC53E6174E2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\742C3192E607E424EB4549542BE1BBC53E6174E2\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\CTLs
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\Root
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Root\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Root\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\Root\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\Root\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\Root
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Root\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Root\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Root\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Root\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\CTLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot\CTLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\TrustedPeople\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\CTLs
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\TrustedPeople
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\Certificates
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\CRLs
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\TrustedPeople\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople\CTLs
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\TrustedPeople
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\TrustedPeople\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\TrustedPeople\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\TrustedPeople
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\TrustedPeople\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\TrustedPeople\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\TrustedPeople\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\TrustedPeople\CTLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\trust\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\trust
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\trust\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\trust\Certificates
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\trust\CRLs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\trust\CTLs
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\trust
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\Certificates
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\CRLs
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\trust\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\trust
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\trust\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\trust\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\trust\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\trust\CTLs
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\trust
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SystemCertificates\trust\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\trust\PhysicalStores
HKEY_LOCAL_MACHINE\Software\Microsoft\EnterpriseCertificates\trust
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Trust\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Trust\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Trust\CRLs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EnterpriseCertificates\Trust\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Diagnostics
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\System
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GpSvcDebugLevel
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertLastSyncTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertEncodedCtl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableAutoFlushProcessNameList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlushFirstDeltaSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlushNextDeltaSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllImportPublicKeyInfoEx
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllImportPublicKeyInfoEx
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllConvertPublicKeyInfo
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllConvertPublicKeyInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\RootDirUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\SchemeDllRetrieveEncodedObjectW
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\SchemeDllRetrieveEncodedObjectW
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-64934406-199802361-3218922526-1001\ProfileImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\DnsClient
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\DNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableAdapterDomainName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DomainNameDevolutionLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AppendToMultiLabelName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenBadTlds
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenUnreachableServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenDefaultServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DynamicServerQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterClusterIp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\WaitForNameErrorOnAll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseEdns
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsSecureNameQueryFallback
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableDAForAllNetworks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryIpMatching
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseHostsFile
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AddrConfigControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartNameResolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PreferLocalOverLowerBindingDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryNetBTFQDN
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartProtocolReordering
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UdpRecvBufferSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableParallelAandAAAA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableCoalescing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterVPNTrigger
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMultiHomedRouteConflicts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ForceQueriesOverTcp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShareTcpConnections
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationEnabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterPrimaryName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\EnableAdapterDomainNameRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterReverseLookup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableReverseAddressRegistrations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterWanAdapters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableWanDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationTTL
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationMaxAddressCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\MaxNumberOfAddressesToRegister
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateTopLevelDomainZones
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DowncaseSpnCauseApiOwnerIsTooLazy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationOverwrite
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxNegativeCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AdapterTimeoutLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ServerPriorityTimeLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCachedSockets
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableServerUnreachability
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMulticast
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastResponderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderMaxTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsTest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\CacheAllCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseNewRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistrationOnly
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\NewDhcpSrvRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessPreferLocal
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableIdnEncoding
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableIdnMapping
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShortnameProxyDefault
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableNRPTForAdapterRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutHistoryLength
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutRecalculationInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllVerifyRevocation
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\TimeValidDllGetObject
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\TimeValidDllGetObject
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\UrlDllGetObjectUrl
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\UrlDllGetObjectUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetCachedOcspSwitchToCrlCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetMaxCachedOcspPerCrlCount
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CrlPreFetch
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllEncodeObjectEx
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllVerifyCertificateChainPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCertificateChainPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\InstallationType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\chrome.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\chrome.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\firefox.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\firefox.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\svcVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\msedge.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\msedge.exe\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\opera.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\opera.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\brave.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\brave.exe
HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Browser\Update
HKEY_CURRENT_USER\SOFTWARE\AVAST Software\Browser\Update
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\360se6.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\360se6.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\UCBrowser.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\UCBrowser.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\quicklaunchbrowser.exe
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\quicklaunchbrowser.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Progid
HKEY_CLASSES_ROOT\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\InprocServer32
HKEY_CLASSES_ROOT\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\Server\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\Server
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\HWRPortReuseOnSocketBind
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Net.ServicePointManager.UseHttpPipeliningAndBufferPooling
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseHttpPipeliningAndBufferPooling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Net.ServicePointManager.UseSafeSynchronousClose
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseSafeSynchronousClose
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Net.ServicePointManager.UseStrictRfcInterimResponseHandling
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseStrictRfcInterimResponseHandling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Uri.AllowDangerousUnicodeDecompositions
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\AllowDangerousUnicodeDecompositions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Uri.UseStrictIPv6AddressParsing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseStrictIPv6AddressParsing
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Uri.AllowAllUriEncodingExpansion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\AllowAllUriEncodingExpansion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SchUseStrongCrypto
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Net.ServicePointManager.SchSendAuxRecord
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SchSendAuxRecord
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SystemDefaultTlsVersions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v4.0.30319\System.Net.ServicePointManager.RequireCertificateEKUs
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\RequireCertificateEKUs
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\EnableConsoleTracing
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GenericSetup_RASAPI32
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GenericSetup_RASMANCS
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileDirectory
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\LegacyWPADSupport
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys
HKEY_CURRENT_USER\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\WMIADAP.EXE
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\ProcessID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Elevation
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{00000000-0000-0000-0000-000000000000}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-0000-0000-0000-000000000000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_LOCAL_MACHINE\Software\Microsoft\AMSI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\AMSI\FeatureBits
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions\000603xx
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Sorting\Ids
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\ThrottleDrege
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WmiApRpl
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Updating
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Help
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Help
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}\{a4b0515f-2c2f-4fc4-87f5-b3a3a8747225}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}\{a4b0515f-2c2f-4fc4-87f5-b3a3a8747225}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}\{a4b0515f-2c2f-4fc4-87f5-b3a3a8747225}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}\{d049a97f-9f42-4c11-ad73-5d8c68b30258}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}\{d049a97f-9f42-4c11-ad73-5d8c68b30258}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}\{d049a97f-9f42-4c11-ad73-5d8c68b30258}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}\{8a922684-7993-4b38-9929-b7366f01ec4a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}\{8a922684-7993-4b38-9929-b7366f01ec4a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}\{8a922684-7993-4b38-9929-b7366f01ec4a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}\{2538387c-08b7-44b8-86d3-47f59cf6d057}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}\{2538387c-08b7-44b8-86d3-47f59cf6d057}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}\{2538387c-08b7-44b8-86d3-47f59cf6d057}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}\{d11168c5-9f29-43bc-9269-0548637a62b0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}\{d11168c5-9f29-43bc-9269-0548637a62b0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}\{d11168c5-9f29-43bc-9269-0548637a62b0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}\{ef82017e-50e2-4ca2-b9ec-b9895ab70e08}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}\{ef82017e-50e2-4ca2-b9ec-b9895ab70e08}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}\{ef82017e-50e2-4ca2-b9ec-b9895ab70e08}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}\{687d8f80-ffea-4de5-a41f-3e1c83378839}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}\{687d8f80-ffea-4de5-a41f-3e1c83378839}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}\{687d8f80-ffea-4de5-a41f-3e1c83378839}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}\{c73dfef0-11b8-4a3f-a1ad-0dcbbc5186ef}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}\{c73dfef0-11b8-4a3f-a1ad-0dcbbc5186ef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}\{c73dfef0-11b8-4a3f-a1ad-0dcbbc5186ef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}\{82fa211f-e7f8-4ab5-a04c-cc523073b971}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}\{82fa211f-e7f8-4ab5-a04c-cc523073b971}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}\{82fa211f-e7f8-4ab5-a04c-cc523073b971}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{2f66fd0a-9f6c-4d91-9f2f-2a1b5e41b7dc}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{2f66fd0a-9f6c-4d91-9f2f-2a1b5e41b7dc}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{2f66fd0a-9f6c-4d91-9f2f-2a1b5e41b7dc}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{370e979a-377a-4f30-b2c4-9a0fd072890b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{370e979a-377a-4f30-b2c4-9a0fd072890b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{370e979a-377a-4f30-b2c4-9a0fd072890b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{42cd0051-9dd9-4fe2-8db9-d37885d2d749}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{42cd0051-9dd9-4fe2-8db9-d37885d2d749}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{42cd0051-9dd9-4fe2-8db9-d37885d2d749}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{52bc5412-dac2-449c-8bc2-96443888fe6b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{52bc5412-dac2-449c-8bc2-96443888fe6b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{52bc5412-dac2-449c-8bc2-96443888fe6b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{b4fc721a-0378-476f-89ba-a5a79f810b36}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{b4fc721a-0378-476f-89ba-a5a79f810b36}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{b4fc721a-0378-476f-89ba-a5a79f810b36}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{ed83b00b-6afd-4063-9420-16fe0fa3b36f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{ed83b00b-6afd-4063-9420-16fe0fa3b36f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{ed83b00b-6afd-4063-9420-16fe0fa3b36f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{f596750d-b109-4247-a62f-dea47a46e505}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{f596750d-b109-4247-a62f-dea47a46e505}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{f596750d-b109-4247-a62f-dea47a46e505}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{2617bf8d-bedc-4231-b92b-1dd2d34ee225}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{2617bf8d-bedc-4231-b92b-1dd2d34ee225}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{2617bf8d-bedc-4231-b92b-1dd2d34ee225}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{4ad2297e-ee20-42b4-9cb7-13f6f1598dbd}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{4ad2297e-ee20-42b4-9cb7-13f6f1598dbd}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{4ad2297e-ee20-42b4-9cb7-13f6f1598dbd}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{59ceb84f-55ff-48c0-80cc-df0068501814}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{59ceb84f-55ff-48c0-80cc-df0068501814}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{59ceb84f-55ff-48c0-80cc-df0068501814}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{882d9f58-d338-4a83-bc3d-23f5b0a98fa9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{882d9f58-d338-4a83-bc3d-23f5b0a98fa9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{882d9f58-d338-4a83-bc3d-23f5b0a98fa9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{987a3601-c362-48e4-a856-e28f070efb07}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{987a3601-c362-48e4-a856-e28f070efb07}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{987a3601-c362-48e4-a856-e28f070efb07}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa205-c3ed-4acd-a911-6554d156b095}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa205-c3ed-4acd-a911-6554d156b095}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa205-c3ed-4acd-a911-6554d156b095}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa206-c3ed-4acd-a911-6554d156b095}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa206-c3ed-4acd-a911-6554d156b095}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa206-c3ed-4acd-a911-6554d156b095}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c0fe4189-5cfa-4659-9eba-10541cc395a0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c0fe4189-5cfa-4659-9eba-10541cc395a0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c0fe4189-5cfa-4659-9eba-10541cc395a0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c5a19aba-349b-49cc-94c8-f36404082727}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c5a19aba-349b-49cc-94c8-f36404082727}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c5a19aba-349b-49cc-94c8-f36404082727}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}\{6ca1716d-53cd-468a-a1b3-59032c19c166}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}\{6ca1716d-53cd-468a-a1b3-59032c19c166}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}\{6ca1716d-53cd-468a-a1b3-59032c19c166}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{c3cf1c57-275d-4b71-a5a6-e4e90401b821}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{c3cf1c57-275d-4b71-a5a6-e4e90401b821}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{c3cf1c57-275d-4b71-a5a6-e4e90401b821}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{e363bd27-bfbd-4581-a142-ecc006a7b82b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{e363bd27-bfbd-4581-a142-ecc006a7b82b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{e363bd27-bfbd-4581-a142-ecc006a7b82b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{f961fa1c-6b9b-4d16-b414-499ed1f6d6f2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{f961fa1c-6b9b-4d16-b414-499ed1f6d6f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{f961fa1c-6b9b-4d16-b414-499ed1f6d6f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}\{a44a45c2-664d-476c-b68c-6b123eccc31f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}\{a44a45c2-664d-476c-b68c-6b123eccc31f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}\{a44a45c2-664d-476c-b68c-6b123eccc31f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{d30c5234-f79d-44a9-9803-2f9d5feef791}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{d30c5234-f79d-44a9-9803-2f9d5feef791}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{d30c5234-f79d-44a9-9803-2f9d5feef791}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{e6e560b2-062f-41ca-89ab-f6987f2b7a25}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{e6e560b2-062f-41ca-89ab-f6987f2b7a25}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{e6e560b2-062f-41ca-89ab-f6987f2b7a25}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{f4681672-32dc-41db-8669-fdf490345ba5}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{f4681672-32dc-41db-8669-fdf490345ba5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{f4681672-32dc-41db-8669-fdf490345ba5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{d9ff82a4-a6a2-4fa5-899e-086ead3bab21}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{d9ff82a4-a6a2-4fa5-899e-086ead3bab21}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{d9ff82a4-a6a2-4fa5-899e-086ead3bab21}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{e0e99beb-f7d6-4402-ab36-e510d7048f22}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{e0e99beb-f7d6-4402-ab36-e510d7048f22}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{e0e99beb-f7d6-4402-ab36-e510d7048f22}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}\{6f1a94cb-68ed-4a84-9668-64e671e1ffef}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}\{6f1a94cb-68ed-4a84-9668-64e671e1ffef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}\{6f1a94cb-68ed-4a84-9668-64e671e1ffef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{227419d5-f6d8-4fb7-85d6-2cac1725e4a9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{227419d5-f6d8-4fb7-85d6-2cac1725e4a9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{227419d5-f6d8-4fb7-85d6-2cac1725e4a9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{978c167d-4764-4d9c-9824-14747351dc81}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{978c167d-4764-4d9c-9824-14747351dc81}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{978c167d-4764-4d9c-9824-14747351dc81}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{be2139c7-ab81-424d-b107-d87f7c9322ac}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{be2139c7-ab81-424d-b107-d87f7c9322ac}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{be2139c7-ab81-424d-b107-d87f7c9322ac}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f802502b-77b4-4713-81b3-3be05759da5d}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f802502b-77b4-4713-81b3-3be05759da5d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f802502b-77b4-4713-81b3-3be05759da5d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f9ed01f5-8f3e-4956-973f-9f05bc96f489}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f9ed01f5-8f3e-4956-973f-9f05bc96f489}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f9ed01f5-8f3e-4956-973f-9f05bc96f489}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}\{faa17411-9025-4b86-8b5e-ce2f32b06e13}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}\{faa17411-9025-4b86-8b5e-ce2f32b06e13}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}\{faa17411-9025-4b86-8b5e-ce2f32b06e13}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{ac5e8416-9f39-4166-951f-88ee9635b1d8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{ac5e8416-9f39-4166-951f-88ee9635b1d8}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{ac5e8416-9f39-4166-951f-88ee9635b1d8}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{b790d108-d503-47ec-9d7b-b39737b39dba}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{b790d108-d503-47ec-9d7b-b39737b39dba}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{b790d108-d503-47ec-9d7b-b39737b39dba}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{e4a2b264-7187-41ca-aa73-7dc698d49ed1}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{e4a2b264-7187-41ca-aa73-7dc698d49ed1}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{e4a2b264-7187-41ca-aa73-7dc698d49ed1}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{08fb768b-1e55-4040-b153-e0ddbedd8042}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{08fb768b-1e55-4040-b153-e0ddbedd8042}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{08fb768b-1e55-4040-b153-e0ddbedd8042}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{21a64f86-6cbe-47e1-a497-261226ca12f7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{21a64f86-6cbe-47e1-a497-261226ca12f7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{21a64f86-6cbe-47e1-a497-261226ca12f7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{60aa43c9-c1b7-41bf-9b4c-b7f6cc1d93b9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{60aa43c9-c1b7-41bf-9b4c-b7f6cc1d93b9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{60aa43c9-c1b7-41bf-9b4c-b7f6cc1d93b9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{65faa5f0-141d-4f38-acf0-c79bb0c7be2d}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{65faa5f0-141d-4f38-acf0-c79bb0c7be2d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{65faa5f0-141d-4f38-acf0-c79bb0c7be2d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{c0df9671-a0ea-4576-9f81-853127cf8d28}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{c0df9671-a0ea-4576-9f81-853127cf8d28}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{c0df9671-a0ea-4576-9f81-853127cf8d28}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{3c8cb362-147c-4105-b98b-11fd7e671dd7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{3c8cb362-147c-4105-b98b-11fd7e671dd7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{3c8cb362-147c-4105-b98b-11fd7e671dd7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{7b08ee8b-88d7-4cad-a06f-70d1c4b65ee7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{7b08ee8b-88d7-4cad-a06f-70d1c4b65ee7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{7b08ee8b-88d7-4cad-a06f-70d1c4b65ee7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{06ebf20d-17fb-4338-a08d-7a99f17ca678}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{06ebf20d-17fb-4338-a08d-7a99f17ca678}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{06ebf20d-17fb-4338-a08d-7a99f17ca678}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{ad8644c4-ae02-4b22-990d-52b491f91c26}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{ad8644c4-ae02-4b22-990d-52b491f91c26}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{ad8644c4-ae02-4b22-990d-52b491f91c26}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{16dcff2c-91a3-4e6a-8135-0a9e6681c1b5}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{16dcff2c-91a3-4e6a-8135-0a9e6681c1b5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{16dcff2c-91a3-4e6a-8135-0a9e6681c1b5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{8ebb0470-da6d-485b-8441-8e06b049157a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{8ebb0470-da6d-485b-8441-8e06b049157a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{8ebb0470-da6d-485b-8441-8e06b049157a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{e829b6db-21ab-453b-83c9-d980ec708edd}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{e829b6db-21ab-453b-83c9-d980ec708edd}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{e829b6db-21ab-453b-83c9-d980ec708edd}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}\{115b92b4-7191-491a-a9b5-93c8e9fb641b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}\{115b92b4-7191-491a-a9b5-93c8e9fb641b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}\{115b92b4-7191-491a-a9b5-93c8e9fb641b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{2b048375-f829-4b1d-b117-681e9ead1d50}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{2b048375-f829-4b1d-b117-681e9ead1d50}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{2b048375-f829-4b1d-b117-681e9ead1d50}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{c71cfb00-0ecc-43a3-bf5a-a90ca7718033}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{c71cfb00-0ecc-43a3-bf5a-a90ca7718033}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{c71cfb00-0ecc-43a3-bf5a-a90ca7718033}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}\{66f19dff-a4dd-4802-8fbb-29e6a54af9da}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}\{66f19dff-a4dd-4802-8fbb-29e6a54af9da}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}\{66f19dff-a4dd-4802-8fbb-29e6a54af9da}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{042478fc-1449-4b04-a0d8-ba5660ab739a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{042478fc-1449-4b04-a0d8-ba5660ab739a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{042478fc-1449-4b04-a0d8-ba5660ab739a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3ab34489-ec07-4d11-a4bb-677b87cd58d9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3ab34489-ec07-4d11-a4bb-677b87cd58d9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3ab34489-ec07-4d11-a4bb-677b87cd58d9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3f0903d7-5b0b-493e-abf2-a36fd7ce2601}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3f0903d7-5b0b-493e-abf2-a36fd7ce2601}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3f0903d7-5b0b-493e-abf2-a36fd7ce2601}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{6800b902-8b06-11df-9561-f043dfd72085}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{6800b902-8b06-11df-9561-f043dfd72085}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{6800b902-8b06-11df-9561-f043dfd72085}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{7495d5d9-ea6a-444d-afab-e3cae27c047b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{7495d5d9-ea6a-444d-afab-e3cae27c047b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{7495d5d9-ea6a-444d-afab-e3cae27c047b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{cd376bd3-9f6b-48c0-840e-1816b7a50fdc}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{cd376bd3-9f6b-48c0-840e-1816b7a50fdc}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{cd376bd3-9f6b-48c0-840e-1816b7a50fdc}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{1045bf74-023b-445a-9e2b-2038ff4789a6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{1045bf74-023b-445a-9e2b-2038ff4789a6}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{1045bf74-023b-445a-9e2b-2038ff4789a6}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{86b34670-d4bb-40c9-8301-33fb16675d61}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{86b34670-d4bb-40c9-8301-33fb16675d61}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{86b34670-d4bb-40c9-8301-33fb16675d61}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}\{bd4b1f37-d1f0-4fc5-996d-d4a21290f212}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}\{bd4b1f37-d1f0-4fc5-996d-d4a21290f212}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}\{bd4b1f37-d1f0-4fc5-996d-d4a21290f212}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}\{06f6022a-82f9-48a5-bc16-074c1bed416c}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}\{06f6022a-82f9-48a5-bc16-074c1bed416c}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}\{06f6022a-82f9-48a5-bc16-074c1bed416c}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}\{4e590c2e-2ad3-4138-8f61-4b08771dbbc8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}\{4e590c2e-2ad3-4138-8f61-4b08771dbbc8}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}\{4e590c2e-2ad3-4138-8f61-4b08771dbbc8}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}\{19b5bae2-18c5-4ab8-99de-255f0e96760a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}\{19b5bae2-18c5-4ab8-99de-255f0e96760a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}\{19b5bae2-18c5-4ab8-99de-255f0e96760a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{135f3513-bc27-4360-b281-0a36caceb1f2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{135f3513-bc27-4360-b281-0a36caceb1f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{135f3513-bc27-4360-b281-0a36caceb1f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{19b5bae2-18c5-4ab8-99de-255f0e9676a0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{19b5bae2-18c5-4ab8-99de-255f0e9676a0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{19b5bae2-18c5-4ab8-99de-255f0e9676a0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{8bc1703a-939f-4ee1-8785-b0fc5837feb2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{8bc1703a-939f-4ee1-8785-b0fc5837feb2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{8bc1703a-939f-4ee1-8785-b0fc5837feb2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{cc16fe4c-d638-492e-a924-519185396ebf}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{cc16fe4c-d638-492e-a924-519185396ebf}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{cc16fe4c-d638-492e-a924-519185396ebf}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}\{35a002b8-38a7-41eb-bedd-6610bb93f046}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}\{35a002b8-38a7-41eb-bedd-6610bb93f046}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}\{35a002b8-38a7-41eb-bedd-6610bb93f046}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}\{22ca1519-4394-4a5f-be88-84a5c853a4aa}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}\{22ca1519-4394-4a5f-be88-84a5c853a4aa}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}\{22ca1519-4394-4a5f-be88-84a5c853a4aa}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}\{fb01b3ef-bb4a-4c48-9ab8-dc1871675e6d}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}\{fb01b3ef-bb4a-4c48-9ab8-dc1871675e6d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}\{fb01b3ef-bb4a-4c48-9ab8-dc1871675e6d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}\{d53266b4-c9f5-4808-8a0f-d17bbf493416}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}\{d53266b4-c9f5-4808-8a0f-d17bbf493416}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}\{d53266b4-c9f5-4808-8a0f-d17bbf493416}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}\{b851890b-3e61-427a-ab94-461e088d4827}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}\{b851890b-3e61-427a-ab94-461e088d4827}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}\{b851890b-3e61-427a-ab94-461e088d4827}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{11ace151-4bac-44b0-8a82-0a859a5355d9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{11ace151-4bac-44b0-8a82-0a859a5355d9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{11ace151-4bac-44b0-8a82-0a859a5355d9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{1cc9da8b-58a5-4c92-9a4e-f05f2a2ae7a3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{1cc9da8b-58a5-4c92-9a4e-f05f2a2ae7a3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{1cc9da8b-58a5-4c92-9a4e-f05f2a2ae7a3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{28d00a68-8309-4a3e-bf1d-0ebd27c75787}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{28d00a68-8309-4a3e-bf1d-0ebd27c75787}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{28d00a68-8309-4a3e-bf1d-0ebd27c75787}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40990512-fb18-4bbd-95e2-f72e8cdae178}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40990512-fb18-4bbd-95e2-f72e8cdae178}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40990512-fb18-4bbd-95e2-f72e8cdae178}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40e6824e-1b9b-4329-9a6e-e94c8fb03a3f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40e6824e-1b9b-4329-9a6e-e94c8fb03a3f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40e6824e-1b9b-4329-9a6e-e94c8fb03a3f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{58276884-7f29-450d-bcfa-5be4b7266334}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{58276884-7f29-450d-bcfa-5be4b7266334}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{58276884-7f29-450d-bcfa-5be4b7266334}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{63c158d0-2a4c-4509-8d27-29e935b69e5f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{63c158d0-2a4c-4509-8d27-29e935b69e5f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{63c158d0-2a4c-4509-8d27-29e935b69e5f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{6b81611f-8998-47c2-9550-f7dc0324e620}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{6b81611f-8998-47c2-9550-f7dc0324e620}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{6b81611f-8998-47c2-9550-f7dc0324e620}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{7a030929-9547-485c-ba6c-3e891612c2ce}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{7a030929-9547-485c-ba6c-3e891612c2ce}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{7a030929-9547-485c-ba6c-3e891612c2ce}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{83a3746d-a9ec-47c0-830f-6dd440b07666}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{83a3746d-a9ec-47c0-830f-6dd440b07666}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{83a3746d-a9ec-47c0-830f-6dd440b07666}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{9815b8f4-d337-4eb4-a468-fc9a83bcce65}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{9815b8f4-d337-4eb4-a468-fc9a83bcce65}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{9815b8f4-d337-4eb4-a468-fc9a83bcce65}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{a30f983f-321a-48b0-85c3-cab02781dd02}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{a30f983f-321a-48b0-85c3-cab02781dd02}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{a30f983f-321a-48b0-85c3-cab02781dd02}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{aaca5b25-a859-438d-93b6-924f63a2cb3c}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{aaca5b25-a859-438d-93b6-924f63a2cb3c}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{aaca5b25-a859-438d-93b6-924f63a2cb3c}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{e6e73867-856a-4574-a0ba-01c066d376f5}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{e6e73867-856a-4574-a0ba-01c066d376f5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{e6e73867-856a-4574-a0ba-01c066d376f5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{51bda498-67cb-479f-b898-57d2d73788f0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{51bda498-67cb-479f-b898-57d2d73788f0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{51bda498-67cb-479f-b898-57d2d73788f0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{811bbce5-7327-4ad9-ab62-a8b955f61eef}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{811bbce5-7327-4ad9-ab62-a8b955f61eef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{811bbce5-7327-4ad9-ab62-a8b955f61eef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{9ff69334-839c-41fe-96e0-c5189ac431f2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{9ff69334-839c-41fe-96e0-c5189ac431f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{9ff69334-839c-41fe-96e0-c5189ac431f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{a8180dab-81d0-4e05-b76b-eb4c5fb37357}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{a8180dab-81d0-4e05-b76b-eb4c5fb37357}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{a8180dab-81d0-4e05-b76b-eb4c5fb37357}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{c0c9c676-ac38-40d4-a23c-69f05d12a306}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{c0c9c676-ac38-40d4-a23c-69f05d12a306}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{c0c9c676-ac38-40d4-a23c-69f05d12a306}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{d7e69761-f919-4bfa-bbb6-bece1050a2ce}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{d7e69761-f919-4bfa-bbb6-bece1050a2ce}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{d7e69761-f919-4bfa-bbb6-bece1050a2ce}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}\{fc9e399c-c70a-4458-8430-ca249c371eb3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}\{fc9e399c-c70a-4458-8430-ca249c371eb3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}\{fc9e399c-c70a-4458-8430-ca249c371eb3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}\{1f7207c2-0b8c-48de-9dcd-64ff98cc24e1}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}\{1f7207c2-0b8c-48de-9dcd-64ff98cc24e1}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}\{1f7207c2-0b8c-48de-9dcd-64ff98cc24e1}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{7d937e49-cfd5-438f-af4f-b3047d90a5c3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{7d937e49-cfd5-438f-af4f-b3047d90a5c3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{7d937e49-cfd5-438f-af4f-b3047d90a5c3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{f3e82f6e-9df4-425d-a5d5-3a9832005b16}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{f3e82f6e-9df4-425d-a5d5-3a9832005b16}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{f3e82f6e-9df4-425d-a5d5-3a9832005b16}\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Object List
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Library Validation Code
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\SafeProcessSearchMode
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\PerfIniFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Base Index
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\1394ohci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\3ware\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AarSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AarSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AcpiDev\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\acpiex\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\acpipagr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AcpiPmi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\acpitime\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Acx01000\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ADOVMPPackage\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ADP80XX\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\adsi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AFD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\afunix\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ahcache\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AJRouter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ALG\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amdgpio2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amdi2c\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdK8\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdPPM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amdsata\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amdsbs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amdxata\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppID\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppIDSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Appinfo\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\applockerfltr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppMgmt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppReadiness\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppVClient\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppvStrm\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppvVemgr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppvVfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AppXSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\arcsas\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AssignedAccessManagerSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AsyncMac\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atapi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AudioEndpointBuilder\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Audiosrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\autotimesvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AxInstSV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\b06bdrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bam\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BasicDisplay\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BasicRender\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BattC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BcastDVRUserService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BcastDVRUserService_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bcmfn2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BDESVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Beep\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BFE\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bindflt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BluetoothUserService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BluetoothUserService_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bowser\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BrokerInfrastructure\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BTAGService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthA2dp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthAvctpSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthEnum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthHFEnum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthLEEnum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BthMini\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BTHMODEM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BTHPORT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bthserv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BTHUSB\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\bttflt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\buttonconverter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CAD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\camsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CaptureService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CaptureService_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cbdhsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cbdhsvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cdfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CDPSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CDPUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CDPUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cdrom\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CertPropSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cht4iscsi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cht4vbd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CimFS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\circlass\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CldFlt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CLFS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ClipSVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\clr_optimization_v4.0.30319_32\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\clr_optimization_v4.0.30319_64\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CmBatt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CNG\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\cnghwassist\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CompositeBus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\COMSysApp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\condrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ConsentUxUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ConsentUxUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CoreMessagingRegistrar\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CoreUI\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CredentialEnrollmentManagerUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CredentialEnrollmentManagerUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CryptSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CSC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CscService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\dam\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DCLocator\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DcomLaunch\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\defragsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DeviceAssociationBrokerSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DeviceAssociationBrokerSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DeviceAssociationService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DeviceInstall\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DevicePickerUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DevicePickerUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DevicesFlowUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DevicesFlowUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DevQueryBroker\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dfsc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dhcp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\diagnosticshub.standardcollector.service\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\diagsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DiagTrack\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DialogBlockingService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\disk\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DispBrokerDesktopSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DisplayEnhancementService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DmEnrollmentSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\dmvsc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\dmwappushservice\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DoSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\dot3svc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DPS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\drmkaud\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DsmSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DsSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DusmSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DXGKrnl\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\e1i65x64\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eaphost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ebdrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\edgeupdate\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\edgeupdatem\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EFS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EhStorClass\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EhStorTcgDrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\embeddedmode\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EntAppSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ErrDev\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventLog\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventSystem\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\exfat\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fastfat\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Fax\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fdc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fdPHost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FDResPub\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fhsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FileCrypt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FileInfo\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Filetrace\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\flpydisk\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FltMgr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FontCache\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FrameServer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FsDepends\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Fs_Rec\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fvevol\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\gencounter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\genericusbfn\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\GPIOClx0101\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\gpsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\GpuEnergyDrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\GraphicsPerfSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HdAudAddService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HidBatt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HidBth\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hidi2c\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hidinterrupt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HidIr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hidserv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hidspi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HidUsb\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HomeGroupListener\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HomeGroupProvider\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HpSAMD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HTTP\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hvcrash\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HvHost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hvservice\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HwNClx0101\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hwpolicy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hyperkbd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HyperVideo\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\i8042prt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iagpio\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iai2c\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_GPIO2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_GPIO2_BXT_P\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_GPIO2_CNL\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_GPIO2_GLK\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_I2C\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_I2C_BXT_P\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_I2C_CNL\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSS2i_I2C_GLK\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSSi_GPIO\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaLPSSi_I2C\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaStorAV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaStorAVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iaStorV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ibbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\icssvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IKEEXT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IndirectKmd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\inetaccs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\InstallService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\intelide\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\intelpep\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\intelpmax\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\intelppm\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iorate\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IpFilterDriver\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iphlpsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IPMIDRV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IPNAT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IPT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IpxlatCfgSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\isapnp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\iScsiPrt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ItSas35i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\kbdclass\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\kbdhid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\kbldfltr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\kdnic\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\KeyIso\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\KSecDD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\KSecPkg\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ksthunk\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\KtmRm\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LanmanServer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LanmanWorkstation\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ldap\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\lfsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LicenseManager\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\lltdio\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\lltdsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\lmhosts\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Lsa\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Lsa\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSI_SAS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSI_SAS2i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSI_SAS3i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSI_SSS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\luafv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LxpSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MapsBroker\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mausbhost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mausbip\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MbbCx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\megasas\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\megasas2i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\megasas35i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\megasr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MessagingService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MessagingService_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MicrosoftEdgeElevationService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Microsoft_Bluetooth_AvrcpTransport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MixedRealityOpenXRSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mlx4_bus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MMCSS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Modem\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mouclass\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mouhid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mountmgr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mpsdrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mpssvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mrxsmb\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mrxsmb20\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsBridge\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Msfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\msgpiowin32\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mshidkmdf\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mshidumdf\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\msisadrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSiSCSI\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\msiserver\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsKeyboardFilter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSKSSRV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsLldp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPCLOCK\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPQM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsQuic\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsRPC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSSCNTRS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSSCNTRS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MsSecFlt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSTEE\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MTConfig\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mvumis\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\napagent\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NativeWifiP\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NaturalAuthentication\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NcaSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NcbService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NcdAutoSetup\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ndfltr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisCap\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisImPlatform\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisVirtualBus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ndiswanlegacy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDKPing\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ndproxy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndu\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetAdapterCx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetbiosSmb\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\netprofm\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetSetupSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetTcpPortSharing\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\netvsc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\netvscvfpp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NgcCtnrSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NgcSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NlaSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\npsvctrig\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nsiproxy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NTDS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ntfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Null\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvdimm\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvraid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvstor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\OneSyncSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\OneSyncSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\p2pimsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\p2psvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Parport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\partmgr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PcaSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pciide\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pcmcia\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pcw\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pdc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PEAUTH\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PeerDistSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perceptionsimulation\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\percsas2i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\percsas3i\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfHost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PhoneSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PimIndexMaintenanceSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PimIndexMaintenanceSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PktMon\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pla\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PlugPlay\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\pmem\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PNPMEM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PNRPAutoReg\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PNRPsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\portcfg\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PortProxy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Power\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PrintNotify\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PrintWorkflowUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PrintWorkflowUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Processor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProfSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Psched\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PushToInstall\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\QWAVE\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\QWAVEdrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ramdisk\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAgileVpn\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasSstp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdbss\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDMANDK\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPDR\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPUDD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RdpVideoMiniport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ReFS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ReFSv1\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RetailDemo\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RFCOMM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rhproxy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RmSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcEptMapper\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rspndr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RTL8023x64\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\s3cap\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sbp2port\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCardSvr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ScDeviceEnum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\scfilter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\scmbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCPolicySvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sdbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SDFRd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SDRSVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sdstor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SecurityHealthService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SEMgrSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sense\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SensorDataService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SensorService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SensrSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SerCx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SerCx2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serenum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sermouse\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SessionEnv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sfloppy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SgrmAgent\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SgrmBroker\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedRealitySvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\shpamsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SiSRaid2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SiSRaid4\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SmartSAMD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\smbdirect\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\smphost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SmsRouter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SNMPTRAP\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spaceparser\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spaceport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SpatialGraphFilter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SpbCx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spectrum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sppsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srv2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srvnet\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ssh-agent\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SstpSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\StateRepository\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stexstor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\storahci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\storflt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stornvme\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\storqosflt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\StorSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\storufs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\storvsc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\svsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swprv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Synth3dVsc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SysMain\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SystemEventsBroker\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TabletInputService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip6\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TCPIP6TUNNEL\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\tcpipreg\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TCPIPTUNNEL\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\tdx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Telemetry\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\terminpt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Themes\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TieringEngineService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TimeBrokerSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TokenBroker\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TPM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TrkWks\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TroubleshootingSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TrustedInstaller\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TSDDD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TsUsbFlt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TsUsbGD\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\tsusbhub\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\tunnel\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\tzautoupdate\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UASPStor\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UcmCx0101\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UcmTcpciCx0101\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UcmUcsiAcpiClient\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UcmUcsiCx0101\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ucx01000\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UdeCx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\udfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UdkUserSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UdkUserSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UEFI\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UevAgentDriver\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UevAgentService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ufx01000\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UfxChipidea\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ufxsynopsys\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\umbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UmPass\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UmRdpService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UnistoreSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UnistoreSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\upnphost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UrsChipidea\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UrsCx01000\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UrsSynopsys\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbaudio\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbaudio2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbccgp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbcir\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbehci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\USBHUB3\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbohci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbprint\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbser\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\USBSTOR\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbuhci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\USBXHCI\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UserDataSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UserDataSvc_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UserManager\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UsoSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VacSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VaultSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vdrvroot\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vds\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VerifierExt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vhdmp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vhf\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Vid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VirtualRender\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmbus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VMBusHID\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmgid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicguestinterface\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicheartbeat\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmickvpexchange\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicrdv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicshutdown\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmictimesync\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicvmsession\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vmicvss\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\volmgr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\volmgrx\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\volsnap\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\volume\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vpci\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vsmraid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSTXRAID\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vwifibus\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vwififlt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WaaSMedicSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WacomPen\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WalletService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wanarp\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wanarpv6\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WarpJITSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wbengine\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WbioSrvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wcifs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Wcmsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wcncsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wcnfs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdBoot\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Wdf01000\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdFilter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdiServiceHost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdiSystemHost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wdiwifi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdmCompanionFilter\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdNisDrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WdNisSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WebClient\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Wecsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WEPHOSTSVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wercplsupport\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WerSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WFDSConMgrSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WFPLWFS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WiaRpc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WIMMount\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinDefend\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WindowsTrustedRT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WindowsTrustedRTProxy\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinHttpAutoProxySvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinMad\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Winmgmt\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinNat\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinRM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Winsock\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WINUSB\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinVerbs\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wisvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WlanSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wlidsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wlpasvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WManSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiAcpi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wmiApSrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WMPNetworkSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Wof\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\workerdd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\workfolderssvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WpcMonSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WPDBusEnum\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WpdUpFltr\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WpnService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WpnUserService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WpnUserService_1d7e26\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ws2ifsl\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wscsvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearch\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\wuauserv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WudfPf\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WUDFRd\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WwanSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\XblAuthManager\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\XblGameSave\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\xboxgip\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\XboxGipSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\XboxNetApiSvc\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\xinputhid\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\xmlprov\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{0825E3C8-F6B1-44C5-9707-BE5A20D7A8F5}\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{0B3CC30E-0931-43E7-8F7B-5BE2FCC6F17F}\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{B6767322-347B-409E-8D77-0268B7AAA738}\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{CC6EEB36-5AE2-46BE-81A9-5F0B62ECF81F}\Performance
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET CLR Data\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET CLR Networking\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET CLR Networking 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET Data Provider for Oracle\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET Data Provider for SqlServer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET Memory Cache 4.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NETFramework\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ESENT\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LSM\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MSDTC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MSDTC Bridge 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rdyboost\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SMSvcHost 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TapiSrv\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\UGatherer\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\UGTHRSVC\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\usbhub\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Windows Workflow Foundation 4.0.0.0\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WSearchIdxPi\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\PROVIDERS\Performance
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Data
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\WDM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\WDM\DREDGE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Refresh
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Refreshed
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableUmpdBufferSizeCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Cimom
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmiprvse.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Log File Max Size
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ACPI
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NDIS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\mssmbios
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\HDAudBus
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\ImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\AmdPPM
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdPPM\MofImagePath
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\portcls
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\monitor
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\ImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1109958850,Name="C:\Windows\system32\kernelbase.dll[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1871506606,Name="C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558520124,Name="C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1107771162,Name="C:\Windows\system32\drivers\ndis.sys[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2647819754,Name="C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780570,LowDateTime=3245592320,Name="C:\Windows\System32\drivers\mssmbios.sys[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2629702478,Name="C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=551801554,Name="C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558676975,Name="C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=552738554,Name="C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{49353C93-516B-11D1-AEA6-00C04FB68820}
HKEY_LOCAL_MACHINE\Software\Classes\PackagedCom
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\OneDrive
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\FileCoAuthTelemetryRampStatus
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2025
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2024
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SystemInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemProductName
HKEY_LOCAL_MACHINE\Software\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\Com+Enabled
HKEY_CURRENT_USER\Software\Classes\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\AppID\FileCoAuth.exe
HKEY_LOCAL_MACHINE\Software\Classes\AppID\FileCoAuth.exe
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\MaxSxSHashCount
HKEY_CURRENT_USER\Software\Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{389510B7-9E58-40D7-98BF-60B911CB0EA9}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\ThreadingModel
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer32
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\AppID
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\LocalServer
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\Elevation
HKEY_LOCAL_MACHINE\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\Elevation
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\MainAccount
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserFolder
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\cid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\DisplayName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserEmail
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\Business
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\SharePointOnPrem
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\FirstRun
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EdpManaged
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\RootAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\TenantAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\HasMadeFirstUpload
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\IsUpgradeAvailable
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\CrashDetectionKey
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EnableADALForSilentBusinessConfig
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastKnownCloudFilesEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\WamWebAccountId
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\AuthenticationURLs
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\Tenants
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal\ScopeIdToMountPointPathCache
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\Accounts\Personal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastMigrationScanResult
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\PreSignInRampOverrides
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\PreSignInSettingsOverrides
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905E63B6-C1BF-494E-B29C-65B732D3D21A}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PropertyBag
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PropertyBag
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\UpdateRingPostAuthConditions
HKEY_LOCAL_MACHINE\Software\Microsoft\Office\ClickToRun\Configuration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\EnablePreviewBuilds
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\OneDrive
HKEY_CURRENT_USER\Software\Policies\Microsoft\OneDrive
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableEnterpriseUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableOrgInternalUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableTeamTier_Internal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableFasterRingUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineId
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\LocalServer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Elevation
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\ResourcePolicies
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\OnlyUseLatestCLR
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full\Release
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\STE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\GenericSetup.exe
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\*
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SpecialFoldersCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InitFolderHandler
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cache
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{2B0F765D-C0E9-4171-908E-08A611B84FF6}\InitFolderHandler
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cookies
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\FeatureSIMD
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SystemRoot
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\BuildBranch
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuild
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuildNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\RegisteredOrganization
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\RegisteredOwner
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentMajorVersionNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\CurrentMinorVersionNumber
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\ReleaseId
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseActivationAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\AlwaysReadHKCRForCLSIDs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\WMIDisableCOMSecurity
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\FinalizerActivityBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\TZI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\FirstEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\LastEntry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2006
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2007
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Display
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Std
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\MUI_Dlt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Display
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Std
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dlt
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5}\$Function
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\State
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Security\Safety Warning Level
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\crypt32\DiagMatchAnyMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\dnsapi.dll,-103
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7\Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertSyncDeltaTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableMandatoryBasicConstraints
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableCANameConstraints
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableUnsupportedCriticalExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlCountInCert
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxUrlRetrievalByteCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalByteCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxAIAUrlRetrievalCertCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxVerifySignatureCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxIssuerDepth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MaxPathCountPerChain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetPreFetchTriggerPeriodSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableWeakSignatureFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\MinRsaPubKeyBitLength
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRsaPubKeyTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\ChainCacheResyncFiletime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableStrictChecksFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartyAfterTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakMD5AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartyAfterTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1AllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1ThirdPartySha256Allow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CI\Config\Default\WeakSHA1AllSha256Allow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakRSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakRSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakRSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakECDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakECDSAThirdPartyFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\WeakECDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\Default\WeakECDSAAllFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\109F1CAED645BB78B3EA2B94C0697C740733031C\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\D559A586669B08F46A30A133F8A9ED3D038E2EA8\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\FEE449EE0E3965A5246F000E87FDE2A065FD89D4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs\A377D1B1C0538833035211F4083D00FECC414DAB\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs\27748148BBE67A43CDBFEC6C3784862CE134E6EA\Blob
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\Root\ProtectedRoots\Certificates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\0119E81BE9A14CD8E22F40AC118C687ECBA3F4D8\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\06F1AA330B927B753A40E68CDF22E34BCBEF3352\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\18F7C1FCC3090203FD5BAA2F861A754976C8DD25\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\245C97DF7514E7CF2DF8BE72AE957B9E04741E85\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\31F9FC8BA3805986B721EA7295C65B3A44534274\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\3B1EFD3A66EA28B16697394703A72CA340A05BD5\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\7F88CD7223F3C813818C994614A89C99FA3B5247\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\8F43288AD272F3103B6FB1428485EA3014C0BCFE\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\92B46C76E13054E104F230517E6E504D43AB10B5\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\A43489159A520F0D93D032CCAF37E7FE20A8B419\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\BE36A4562FB2EE05DBB3D32323ADF445084ED656\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\CDD4EEAE6000AC7F40C3802C171E30148030C072\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\4F65566336DB6598581D584A596C87934D5F2AB4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\51501FBFCE69189D609CFAF140C576755DCC1FDF\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\742C3192E607E424EB4549542BE1BBC53E6174E2\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GpSvcDebugLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertLastSyncTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\DisallowedCertEncodedCtl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\DisableAutoFlushProcessNameList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlushFirstDeltaSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\AutoFlushNextDeltaSeconds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\RootDirUrl
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\AutoUpdate\Flags
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-64934406-199802361-3218922526-1001\ProfileImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableAdapterDomainName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UseDomainNameDevolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DomainNameDevolutionLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\PrioritizeRecordData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\AllowUnqualifiedQuery
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AppendToMultiLabelName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenBadTlds
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenUnreachableServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ScreenDefaultServers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DynamicServerQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterClusterIp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\WaitForNameErrorOnAll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseEdns
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsSecureNameQueryFallback
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableDAForAllNetworks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessQueryOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryIpMatching
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseHostsFile
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AddrConfigControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartNameResolution
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\PreferLocalOverLowerBindingDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\QueryNetBTFQDN
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableSmartProtocolReordering
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UdpRecvBufferSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableParallelAandAAAA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableCoalescing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\FilterVPNTrigger
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMultiHomedRouteConflicts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ForceQueriesOverTcp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShareTcpConnections
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationEnabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterPrimaryName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterAdapterName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\EnableAdapterDomainNameRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterReverseLookup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableReverseAddressRegistrations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegisterWanAdapters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DisableWanDynamicUpdate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationTTL
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DefaultRegistrationRefreshInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationMaxAddressCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\MaxNumberOfAddressesToRegister
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\UpdateSecurityLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UpdateTopLevelDomainZones
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DowncaseSpnCauseApiOwnerIsTooLazy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\RegistrationOverwrite
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxNegativeCacheTtl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\AdapterTimeoutLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ServerPriorityTimeLimit
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MaxCachedSockets
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableServerUnreachability
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMulticast
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastResponderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\MulticastSenderMaxTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableMDNS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsTest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\CacheAllCompartments
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\UseNewRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ResolverRegistrationOnly
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\NewDhcpSrvRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DirectAccessPreferLocal
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableIdnEncoding
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\EnableIdnMapping
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\ShortnameProxyDefault
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DisableNRPTForAdapterRegistration
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutHistoryLength
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutRecalculationInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Dnscache\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\DnsQuickQueryTimeouts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetCachedOcspSwitchToCrlCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\CryptnetMaxCachedOcspPerCrlCount
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\InstallationType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\svcVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\msedge.exe\(Default)
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0A29FF9E-7F9C-4437-8B11-F424491E3931}\Server\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\HWRPortReuseOnSocketBind
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseHttpPipeliningAndBufferPooling
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseSafeSynchronousClose
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseStrictRfcInterimResponseHandling
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\AllowDangerousUnicodeDecompositions
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\UseStrictIPv6AddressParsing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\AllowAllUriEncodingExpansion
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SchUseStrongCrypto
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SchSendAuxRecord
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\SystemDefaultTlsVersions
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\v4.0.30319\RequireCertificateEKUs
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\.NETFramework\LegacyWPADSupport
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\ProcessID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-0000-0000-0000-000000000000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\AMSI\FeatureBits
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions\000603xx
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Ids\en
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\ThrottleDrege
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Help
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Help
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}\{a4b0515f-2c2f-4fc4-87f5-b3a3a8747225}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{16fa106f-26c3-42a5-982b-400779ea8970}\{a4b0515f-2c2f-4fc4-87f5-b3a3a8747225}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}\{d049a97f-9f42-4c11-ad73-5d8c68b30258}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{1ffc4a37-aabd-49e0-8b3d-fce8b099febb}\{d049a97f-9f42-4c11-ad73-5d8c68b30258}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}\{8a922684-7993-4b38-9929-b7366f01ec4a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{20fe1a3a-af21-413c-8a7b-b7fbf6c9a059}\{8a922684-7993-4b38-9929-b7366f01ec4a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}\{2538387c-08b7-44b8-86d3-47f59cf6d057}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2538387c-08b7-44b8-86d3-47f59cf6d056}\{2538387c-08b7-44b8-86d3-47f59cf6d057}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}\{d11168c5-9f29-43bc-9269-0548637a62b0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2a32a3f9-ee0c-40ff-8a75-e1e747d15b1f}\{d11168c5-9f29-43bc-9269-0548637a62b0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}\{ef82017e-50e2-4ca2-b9ec-b9895ab70e08}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ccb0d8d-ea94-4235-986b-c97f61f63969}\{ef82017e-50e2-4ca2-b9ec-b9895ab70e08}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}\{687d8f80-ffea-4de5-a41f-3e1c83378839}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{2ea0b998-e7e8-41c6-8abc-093083ea21d7}\{687d8f80-ffea-4de5-a41f-3e1c83378839}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}\{c73dfef0-11b8-4a3f-a1ad-0dcbbc5186ef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{31a5ebe2-c765-490a-937c-b0ab2787fe15}\{c73dfef0-11b8-4a3f-a1ad-0dcbbc5186ef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}\{82fa211f-e7f8-4ab5-a04c-cc523073b971}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3817cb9c-49a8-436b-bc29-5518877d3c3a}\{82fa211f-e7f8-4ab5-a04c-cc523073b971}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{2f66fd0a-9f6c-4d91-9f2f-2a1b5e41b7dc}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{2f66fd0a-9f6c-4d91-9f2f-2a1b5e41b7dc}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{370e979a-377a-4f30-b2c4-9a0fd072890b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{370e979a-377a-4f30-b2c4-9a0fd072890b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{42cd0051-9dd9-4fe2-8db9-d37885d2d749}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{42cd0051-9dd9-4fe2-8db9-d37885d2d749}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{52bc5412-dac2-449c-8bc2-96443888fe6b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{52bc5412-dac2-449c-8bc2-96443888fe6b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{b4fc721a-0378-476f-89ba-a5a79f810b36}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{b4fc721a-0378-476f-89ba-a5a79f810b36}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{ed83b00b-6afd-4063-9420-16fe0fa3b36f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{ed83b00b-6afd-4063-9420-16fe0fa3b36f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{f596750d-b109-4247-a62f-dea47a46e505}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{383487a6-3676-4870-a4e7-d45b30c35629}\{f596750d-b109-4247-a62f-dea47a46e505}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{2617bf8d-bedc-4231-b92b-1dd2d34ee225}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{2617bf8d-bedc-4231-b92b-1dd2d34ee225}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{4ad2297e-ee20-42b4-9cb7-13f6f1598dbd}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{4ad2297e-ee20-42b4-9cb7-13f6f1598dbd}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{59ceb84f-55ff-48c0-80cc-df0068501814}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{59ceb84f-55ff-48c0-80cc-df0068501814}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{882d9f58-d338-4a83-bc3d-23f5b0a98fa9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{882d9f58-d338-4a83-bc3d-23f5b0a98fa9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{987a3601-c362-48e4-a856-e28f070efb07}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{987a3601-c362-48e4-a856-e28f070efb07}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa205-c3ed-4acd-a911-6554d156b095}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa205-c3ed-4acd-a911-6554d156b095}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa206-c3ed-4acd-a911-6554d156b095}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{9acaa206-c3ed-4acd-a911-6554d156b095}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c0fe4189-5cfa-4659-9eba-10541cc395a0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c0fe4189-5cfa-4659-9eba-10541cc395a0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c5a19aba-349b-49cc-94c8-f36404082727}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3def464b-f31b-4117-8fb7-bb829a0e1a15}\{c5a19aba-349b-49cc-94c8-f36404082727}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}\{6ca1716d-53cd-468a-a1b3-59032c19c166}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{3e785595-30c2-437d-96ed-677d14724610}\{6ca1716d-53cd-468a-a1b3-59032c19c166}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{c3cf1c57-275d-4b71-a5a6-e4e90401b821}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{c3cf1c57-275d-4b71-a5a6-e4e90401b821}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{e363bd27-bfbd-4581-a142-ecc006a7b82b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{e363bd27-bfbd-4581-a142-ecc006a7b82b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{f961fa1c-6b9b-4d16-b414-499ed1f6d6f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{408443b2-2164-418a-ad52-c761f93310f3}\{f961fa1c-6b9b-4d16-b414-499ed1f6d6f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}\{a44a45c2-664d-476c-b68c-6b123eccc31f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{420a6c98-914e-40fc-9a0f-80c7db801780}\{a44a45c2-664d-476c-b68c-6b123eccc31f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{d30c5234-f79d-44a9-9803-2f9d5feef791}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{d30c5234-f79d-44a9-9803-2f9d5feef791}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{e6e560b2-062f-41ca-89ab-f6987f2b7a25}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{e6e560b2-062f-41ca-89ab-f6987f2b7a25}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{f4681672-32dc-41db-8669-fdf490345ba5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{4d4bac91-2b54-4f84-be36-cf74389f8f49}\{f4681672-32dc-41db-8669-fdf490345ba5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{d9ff82a4-a6a2-4fa5-899e-086ead3bab21}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{d9ff82a4-a6a2-4fa5-899e-086ead3bab21}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{e0e99beb-f7d6-4402-ab36-e510d7048f22}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57683f06-a08b-4708-8825-5c26f410744b}\{e0e99beb-f7d6-4402-ab36-e510d7048f22}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}\{6f1a94cb-68ed-4a84-9668-64e671e1ffef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{57ec1e30-406c-48ee-8e96-5da71298991f}\{6f1a94cb-68ed-4a84-9668-64e671e1ffef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{227419d5-f6d8-4fb7-85d6-2cac1725e4a9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{227419d5-f6d8-4fb7-85d6-2cac1725e4a9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{978c167d-4764-4d9c-9824-14747351dc81}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{978c167d-4764-4d9c-9824-14747351dc81}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{be2139c7-ab81-424d-b107-d87f7c9322ac}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{be2139c7-ab81-424d-b107-d87f7c9322ac}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f802502b-77b4-4713-81b3-3be05759da5d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f802502b-77b4-4713-81b3-3be05759da5d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f9ed01f5-8f3e-4956-973f-9f05bc96f489}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5c3b2414-fd1d-44fb-8b00-e3194209dd1a}\{f9ed01f5-8f3e-4956-973f-9f05bc96f489}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}\{faa17411-9025-4b86-8b5e-ce2f32b06e13}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5db760bc-64b2-4da7-b4ef-7dab105fbb8c}\{faa17411-9025-4b86-8b5e-ce2f32b06e13}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{ac5e8416-9f39-4166-951f-88ee9635b1d8}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{ac5e8416-9f39-4166-951f-88ee9635b1d8}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{b790d108-d503-47ec-9d7b-b39737b39dba}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{b790d108-d503-47ec-9d7b-b39737b39dba}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{e4a2b264-7187-41ca-aa73-7dc698d49ed1}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{5e6554b3-ccf8-4769-b82b-798f4cce5483}\{e4a2b264-7187-41ca-aa73-7dc698d49ed1}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{08fb768b-1e55-4040-b153-e0ddbedd8042}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{08fb768b-1e55-4040-b153-e0ddbedd8042}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{21a64f86-6cbe-47e1-a497-261226ca12f7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{21a64f86-6cbe-47e1-a497-261226ca12f7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{60aa43c9-c1b7-41bf-9b4c-b7f6cc1d93b9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{60aa43c9-c1b7-41bf-9b4c-b7f6cc1d93b9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{65faa5f0-141d-4f38-acf0-c79bb0c7be2d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{65faa5f0-141d-4f38-acf0-c79bb0c7be2d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{c0df9671-a0ea-4576-9f81-853127cf8d28}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{62706b23-4f66-4c53-b6cc-c6600ccc2752}\{c0df9671-a0ea-4576-9f81-853127cf8d28}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{3c8cb362-147c-4105-b98b-11fd7e671dd7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{3c8cb362-147c-4105-b98b-11fd7e671dd7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{7b08ee8b-88d7-4cad-a06f-70d1c4b65ee7}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{71cb4f3b-e29c-4619-a5d5-5fd6a68120ad}\{7b08ee8b-88d7-4cad-a06f-70d1c4b65ee7}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{06ebf20d-17fb-4338-a08d-7a99f17ca678}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{06ebf20d-17fb-4338-a08d-7a99f17ca678}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{ad8644c4-ae02-4b22-990d-52b491f91c26}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{74800676-866f-4bbd-8680-dac6a6fb6c8e}\{ad8644c4-ae02-4b22-990d-52b491f91c26}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{16dcff2c-91a3-4e6a-8135-0a9e6681c1b5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{16dcff2c-91a3-4e6a-8135-0a9e6681c1b5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{8ebb0470-da6d-485b-8441-8e06b049157a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{8ebb0470-da6d-485b-8441-8e06b049157a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{e829b6db-21ab-453b-83c9-d980ec708edd}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{890c10c3-8c2a-4fe3-a36a-9eca153d47cb}\{e829b6db-21ab-453b-83c9-d980ec708edd}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}\{115b92b4-7191-491a-a9b5-93c8e9fb641b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{898a4828-e6e6-4ddd-abb2-5751e3949aa4}\{115b92b4-7191-491a-a9b5-93c8e9fb641b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{2b048375-f829-4b1d-b117-681e9ead1d50}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{2b048375-f829-4b1d-b117-681e9ead1d50}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{c71cfb00-0ecc-43a3-bf5a-a90ca7718033}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{9eeedeb1-de39-4fba-9cd5-6521b9f19984}\{c71cfb00-0ecc-43a3-bf5a-a90ca7718033}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}\{66f19dff-a4dd-4802-8fbb-29e6a54af9da}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a18453e4-433b-4d33-ac66-2551e3bba9be}\{66f19dff-a4dd-4802-8fbb-29e6a54af9da}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{042478fc-1449-4b04-a0d8-ba5660ab739a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{042478fc-1449-4b04-a0d8-ba5660ab739a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3ab34489-ec07-4d11-a4bb-677b87cd58d9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3ab34489-ec07-4d11-a4bb-677b87cd58d9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3f0903d7-5b0b-493e-abf2-a36fd7ce2601}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{3f0903d7-5b0b-493e-abf2-a36fd7ce2601}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{6800b902-8b06-11df-9561-f043dfd72085}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{6800b902-8b06-11df-9561-f043dfd72085}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{7495d5d9-ea6a-444d-afab-e3cae27c047b}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{7495d5d9-ea6a-444d-afab-e3cae27c047b}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{cd376bd3-9f6b-48c0-840e-1816b7a50fdc}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{a3886623-dd46-48fc-a1f9-e3da35125995}\{cd376bd3-9f6b-48c0-840e-1816b7a50fdc}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{1045bf74-023b-445a-9e2b-2038ff4789a6}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{1045bf74-023b-445a-9e2b-2038ff4789a6}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{86b34670-d4bb-40c9-8301-33fb16675d61}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b1c6de93-e020-4ad9-9ca5-4dd5553004cf}\{86b34670-d4bb-40c9-8301-33fb16675d61}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}\{bd4b1f37-d1f0-4fc5-996d-d4a21290f212}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{b9fcf33d-ba8f-4654-a5f2-bf58a5866ca8}\{bd4b1f37-d1f0-4fc5-996d-d4a21290f212}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}\{06f6022a-82f9-48a5-bc16-074c1bed416c}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ba888490-8281-4ac7-b0de-8cc46b314d43}\{06f6022a-82f9-48a5-bc16-074c1bed416c}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}\{4e590c2e-2ad3-4138-8f61-4b08771dbbc8}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb44ecb6-d88a-4b33-a39c-d6a9c03142a9}\{4e590c2e-2ad3-4138-8f61-4b08771dbbc8}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}\{19b5bae2-18c5-4ab8-99de-255f0e96760a}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7308}\{19b5bae2-18c5-4ab8-99de-255f0e96760a}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{135f3513-bc27-4360-b281-0a36caceb1f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{135f3513-bc27-4360-b281-0a36caceb1f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{19b5bae2-18c5-4ab8-99de-255f0e9676a0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{19b5bae2-18c5-4ab8-99de-255f0e9676a0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{8bc1703a-939f-4ee1-8785-b0fc5837feb2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{8bc1703a-939f-4ee1-8785-b0fc5837feb2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{cc16fe4c-d638-492e-a924-519185396ebf}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cb6d8ddc-a302-4349-88fd-9fcf6d3a7380}\{cc16fe4c-d638-492e-a924-519185396ebf}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}\{35a002b8-38a7-41eb-bedd-6610bb93f046}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc549940-0edf-41b1-8298-74c2627b6af9}\{35a002b8-38a7-41eb-bedd-6610bb93f046}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}\{22ca1519-4394-4a5f-be88-84a5c853a4aa}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{cc629d13-f318-4c40-b1ed-d70bce524515}\{22ca1519-4394-4a5f-be88-84a5c853a4aa}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}\{fb01b3ef-bb4a-4c48-9ab8-dc1871675e6d}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{db314ee3-3157-4e56-8fd9-2184874d195d}\{fb01b3ef-bb4a-4c48-9ab8-dc1871675e6d}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}\{d53266b4-c9f5-4808-8a0f-d17bbf493416}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ddf417dc-4cc3-4529-9ffc-1d04eb678da3}\{d53266b4-c9f5-4808-8a0f-d17bbf493416}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}\{b851890b-3e61-427a-ab94-461e088d4827}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{e08d5971-88fb-4799-b066-6978845f73c1}\{b851890b-3e61-427a-ab94-461e088d4827}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{11ace151-4bac-44b0-8a82-0a859a5355d9}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{11ace151-4bac-44b0-8a82-0a859a5355d9}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{1cc9da8b-58a5-4c92-9a4e-f05f2a2ae7a3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{1cc9da8b-58a5-4c92-9a4e-f05f2a2ae7a3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{28d00a68-8309-4a3e-bf1d-0ebd27c75787}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{28d00a68-8309-4a3e-bf1d-0ebd27c75787}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40990512-fb18-4bbd-95e2-f72e8cdae178}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40990512-fb18-4bbd-95e2-f72e8cdae178}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40e6824e-1b9b-4329-9a6e-e94c8fb03a3f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{40e6824e-1b9b-4329-9a6e-e94c8fb03a3f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{58276884-7f29-450d-bcfa-5be4b7266334}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{58276884-7f29-450d-bcfa-5be4b7266334}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{63c158d0-2a4c-4509-8d27-29e935b69e5f}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{63c158d0-2a4c-4509-8d27-29e935b69e5f}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{6b81611f-8998-47c2-9550-f7dc0324e620}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{6b81611f-8998-47c2-9550-f7dc0324e620}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{7a030929-9547-485c-ba6c-3e891612c2ce}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{7a030929-9547-485c-ba6c-3e891612c2ce}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{83a3746d-a9ec-47c0-830f-6dd440b07666}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{83a3746d-a9ec-47c0-830f-6dd440b07666}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{9815b8f4-d337-4eb4-a468-fc9a83bcce65}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{9815b8f4-d337-4eb4-a468-fc9a83bcce65}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{a30f983f-321a-48b0-85c3-cab02781dd02}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{a30f983f-321a-48b0-85c3-cab02781dd02}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{aaca5b25-a859-438d-93b6-924f63a2cb3c}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{aaca5b25-a859-438d-93b6-924f63a2cb3c}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{e6e73867-856a-4574-a0ba-01c066d376f5}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{ef63b92d-c5a6-4314-ac9f-cc6b1c56fb9c}\{e6e73867-856a-4574-a0ba-01c066d376f5}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{51bda498-67cb-479f-b898-57d2d73788f0}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{51bda498-67cb-479f-b898-57d2d73788f0}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{811bbce5-7327-4ad9-ab62-a8b955f61eef}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f25a20a5-fd7a-417b-afc3-76295ebac77c}\{811bbce5-7327-4ad9-ab62-a8b955f61eef}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{9ff69334-839c-41fe-96e0-c5189ac431f2}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{9ff69334-839c-41fe-96e0-c5189ac431f2}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{a8180dab-81d0-4e05-b76b-eb4c5fb37357}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{a8180dab-81d0-4e05-b76b-eb4c5fb37357}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{c0c9c676-ac38-40d4-a23c-69f05d12a306}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{c0c9c676-ac38-40d4-a23c-69f05d12a306}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{d7e69761-f919-4bfa-bbb6-bece1050a2ce}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3991d9d-fc17-4f37-b12f-8984a43e1aeb}\{d7e69761-f919-4bfa-bbb6-bece1050a2ce}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}\{fc9e399c-c70a-4458-8430-ca249c371eb3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f3b975e7-e068-4f66-81ef-b23e0a0e64c9}\{fc9e399c-c70a-4458-8430-ca249c371eb3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}\{1f7207c2-0b8c-48de-9dcd-64ff98cc24e1}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{f6c5ad57-a5be-4259-9060-b2c4ebfccd96}\{1f7207c2-0b8c-48de-9dcd-64ff98cc24e1}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{7d937e49-cfd5-438f-af4f-b3047d90a5c3}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{7d937e49-cfd5-438f-af4f-b3047d90a5c3}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{f3e82f6e-9df4-425d-a5d5-3a9832005b16}\First Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{fd0dce36-af57-417b-9ce6-2d10633b4cf9}\{f3e82f6e-9df4-425d-a5d5-3a9832005b16}\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Updating
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\SafeProcessSearchMode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Base Index
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Lsa\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSSCNTRS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Data\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for Oracle\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Data Provider for SqlServer\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NET Memory Cache 4.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.NETFramework\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ESENT\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\LSM\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdyboost\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SMSvcHost 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TapiSrv\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TermService\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGatherer\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UGTHRSVC\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\usbhub\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WSearchIdxPi\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableUmpdBufferSizeCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM\Log File Max Size
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ACPI\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HDAudBus\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AmdPPM\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\MofImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\monitor\ImagePath
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\FileCoAuthTelemetryRampStatus
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2025
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones\Pacific Standard Time\Dynamic DST\2024
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemManufacturer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SystemInformation\SystemProductName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\Com+Enabled
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\MaxSxSHashCount
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\Interface\{6A821279-AB49-48F8-9A27-F6C59B4FF024}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\InprocServer32
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InProcServer32\ThreadingModel
HKEY_CURRENT_USER\Software\Classes\WOW6432Node\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\AppID
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\MainAccount
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserFolder
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\cid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\DisplayName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\UserEmail
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\Business
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\SharePointOnPrem
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\FirstRun
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EdpManaged
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\RootAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\TenantAddedToFavorites
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\HasMadeFirstUpload
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\IsUpgradeAvailable
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\CrashDetectionKey
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\EnableADALForSilentBusinessConfig
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastKnownCloudFilesEnabled
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\WamWebAccountId
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\Accounts\Personal\LastMigrationScanResult
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\MSFTInternal
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\SQMClient\IsTest
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{905e63b6-c1bf-494e-b29c-65b732d3d21a}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\DefinitionFlags
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\InitFolderHandler
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\UpdateRingPostAuthConditions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsSelfHost\Applicability\EnablePreviewBuilds
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableEnterpriseUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableOrgInternalUpdate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableTeamTier_Internal
HKEY_CURRENT_USER\SOFTWARE\Microsoft\OneDrive\EnableFasterRingUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\MachineId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E245105B-B06E-11D0-AD61-00C04FD8FDFF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD450835-CF1B-4C87-9FD2-5E0D42FDE081}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\ActivateOnHostFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\AppID
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\UNCAsIntranet
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4\Blob
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\EnableConsoleTracing
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GenericSetup_RASAPI32
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\GenericSetup_RASMANCS
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\GenericSetup_RASMANCS\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Updating
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Counter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\PerfIniFile
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Object List
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Data
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\WDM\DREDGE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\DREDGE\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Refresh
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\PROVIDERS\Performance\Performance Refreshed
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\kernelbase.dll[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\mssmbios.sys[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-15
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-14
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-13
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-12
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-11
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\2\52C64B7E\@%SystemRoot%\system32\powrprof.dll,-10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\8CF427FD790C3AD166068DE81E57EFBB932272D4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Object List
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Library Validation Code
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Updating
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiApRpl\Performance\Disable Performance Counters
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1109958850,Name="C:\Windows\system32\kernelbase.dll[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1871506606,Name="C:\Windows\system32\en-US\kernelbase.dll.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558520124,Name="C:\Windows\System32\drivers\ACPI.sys[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\ACPI.sys.mui[ACPIMOFResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=1107771162,Name="C:\Windows\system32\drivers\ndis.sys[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2647819754,Name="C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780570,LowDateTime=3245592320,Name="C:\Windows\System32\drivers\mssmbios.sys[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2629702478,Name="C:\Windows\System32\drivers\en-US\mssmbios.sys.mui[MofResource]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=551801554,Name="C:\Windows\System32\drivers\HDAudBus.sys[HDAudioMofName]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=558676975,Name="C:\Windows\System32\drivers\processr.sys[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30780576,LowDateTime=2622663310,Name="C:\Windows\System32\drivers\en-US\processr.sys.mui[PROCESSORWMI]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\WMIBinaryMofResource.HighDateTime=30915190,LowDateTime=552738554,Name="C:\Windows\System32\Drivers\portcls.SYS[PortclsMof]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\System32\drivers\monitor.sys[MonitorWMI]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\ndis.sys[MofResourceName]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\WDM\C:\Windows\system32\drivers\en-US\ndis.sys.mui[MofResourceName]
ntdll.dll.RtlWow64GetCurrentMachine
ntdll.dll.RtlWow64IsWowGuestMachineSupported
.\GenericSetup.exe
C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
C:\Windows\system32\wbem\wmiprvse.exe -Embedding
C:\Users\Packager\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe -Embedding
C:\Windows\System32\SecurityHealthHost.exe {08728914-3F57-4D52-9E31-49DAECA5A80A} -Embedding
wmiadap.exe /F /T /R
\\?\C:\Windows\system32\wbem\WMIADAP.EXE wmiadap.exe /F /T /R
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
Local\SM0:5392:168:WilStaging_02
Global\ADAP_WMI_ENTRY
Local\SM0:2124:304:WilStaging_02
Global\RefreshRA_Mutex
Global\RefreshRA_Mutex_Lib
Global\RefreshRA_Mutex_Flag
Installing
Local\SM0:3976:304:WilStaging_02
Local\SM0:5504:168:WilStaging_02
Local\SM0:5904:304:WilStaging_02
smphost
No results
Sorry! No behavior.
Sorry! No strace.
Sorry! No tracee.

No hosts contacted.

No TCP connections recorded.

No UDP connections recorded.

No domains contacted.

HTTP Requests

No HTTP(s) requests performed.

SMTP traffic

No SMTP traffic performed.

IRC traffic

No IRC requests performed.

No ICMP traffic performed.

CIF Results

No CIF Results

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Suricata HTTP

No Suricata HTTP

Sorry! No Suricata Extracted files.
Sorry! No dropped files.
Sorry! No CAPE files.
Sorry! No process dumps.
Sorry! No process dumps.