MalScore
100/100

paint

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 5/68
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
File size: 772.50 KB (791040 bytes)
Compile time: 2018-09-10 06:38:11
MD5: 931fa8310a74b4174d8e54030964d632
SHA1: ba0f320908f548ee0da2a77c2a8430f0c52d36ca
SHA256: 6ca2cd6528ec2db04ed88fbe1daa9fe6e7307353038e667cf3951e575320c111
Import hash: 6ad36651fad621695268ead39c7f33fb
Sections 3 UPX0 UPX1 .rsrc
Directories 2 import resource
First submission: 2018-09-10 16:38:43
Last submission: 2018-09-10 16:38:43
Filename detected: - paint (1)
URL file hosting
Antivirus Report
Report Date Detection Ratio Permalink Update
2018-09-10 09:47:56 [5/68] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
UPX0 0x1000 0x106000 0 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
UPX1 0x107000 0xb4000 737280 4f0e0fcca5a6b8bb464532a8a0c08098 b8038b94222bafff7e4a3b6568ac686132549f62
.rsrc 0x1bb000 0xd000 52736 39b22f9810b47fb23881fc6b6acbb964 48a58d46f01da90da2feae83ef0a907bec131c76
PE Resources
Name Offset Size Language Sublanguage Data
RT_ICON 0x1c6d04 488 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_DIALOG 0x1a7a3c 100 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_ACCELERATOR 0x1a7bb8 112 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_GROUP_ICON 0x1c6ef0 90 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_VERSION 0x1c6f50 792 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_HTML 0x1a8f90 1956 LANG_ENGLISH SUBLANG_ENGLISH_US
RT_MANIFEST 0x1c726c 1484 LANG_ENGLISH SUBLANG_ENGLISH_US
None 0x1b2dcc 9149 LANG_ENGLISH SUBLANG_ENGLISH_US
None 0x1b65d4 1307 LANG_ENGLISH SUBLANG_ENGLISH_US
  • API Alert
  • Anti Debug
  • API Alert
  • Anti Debug
Meta Info
LegalCopyright: 2006-2014 (c) Piriform Ltd
ProductVersion: 2.7.5.5
FileDescription: Analyst Address Aggregators Telinit Exceptions
PrivateBuild: 2.7.5.5
Translation: 0x0409 0x04b0
CompanyName: Piriform Ltd
Comments: Analyst Address Aggregators Telinit Exceptions
ProductName: Boards
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
UPX -> www.upx.sourceforge.net
File found
FIle type: Library
ADVAPI32.dll
SHLWAPI.dll
OLEAUT32.dll
oledlg.dll
OLEACC.dll
UxTheme.dll
WS2_32.DLL
IMM32.dll
GDI32.dll
comctl32.dll
opengl32.dll
ole32.dll
RASAPI32.dll
MSIMG32.dll
gdiplus.dll
USER32.dll
SHELL32.dll
urlmon.dll
WINMM.dll
KERNEL32.dll
comdlg32.dll
crypt32.dll
IP Found
2.7.5.5
URL(s)
No URL found
Piriform Ltd
MAIL_MESSAGELISTHEADER_ACTIONS%MAIL_READINGPANE_DRAFT_INWORD_ACTIONS
VarFileInfo
2.7.5.5
Comments
IDR_OEMPG_FI
Analyst Address Aggregators Telinit Exceptions
MAIL_MAINWINDOW_ACTIONS
IDR_OEMPG_NL
StringFileInfo
PrivateBuild
Translation
IDR_NAVIGATION_ABOVELOCK
Boards
VS_VERSION_INFO
040904b0
REBA
ProductVersion
FileDescription
IDR_OEMPG_ZH_CN
IMMERSIVEITEM_WORD
LegalCopyright
CompanyName
Analyst Address Aggregators Telinit Exceptions
ProductName
IDR_EDIT_PERSONAL
2006-2014 (c) Piriform Ltd
g~tNV
}z|KN
@.wJx
A?O8
8WQ6A
C@
I[7[
*hKI
A Mx
4q,Z
QwEx
%@6\
x"y`qB
(A4Z7
YEo:
l2h(
i/dx
^V6<l
oupOh
NUti)
oOtt |
"6B.
*NKI
-@HP
Xl9<
MHHR T
7iG<
}vt@
&p lGnx
eLwK
8IQ
iSA7
w3xp
nJ~!
2af)_z
GuTH[
412Ib
E?|(
DsL=
hk1aGP
x=O%
H FU
4.oP
VH!P-#[/
.8}
XtD TI
!F;u
x$qv^
P4i>
j(,<W@
X%R*)B&v
=I}
c}lk
Mf'%1g-
<OAq
%, |
- SD
4jPhT
{6P9
M`z l
<OA{
hgNov
]L#
, t
7u @
u$9
p{xW
,8j$
())h0Xc
L2XJ
#0mt
,]cqDX
\ ; g
`f#Z
9 CRT[
_+<W`@
)9K$Q
CBpb
@PHi;8
3:TJ
F!<J
*a0
ArQ<+M*~A
fe4F
0cc@(
?9Sht
oJ<P
Pqkd(
SOURC
YY`,ep
"tSJW
B%<3_
fADI%>
IMW3
_7|@
:=A =
r'-,
L=@v
ooN01
2iA)`t
Kf%
* mA
Pm
X ]
v+n8
Mh60
H_ $t3
K,^3
r<o(\
w !{t
@d;^
Z @/l
NN44
C ,;wah
% 0F
nQw
gKs!
1a?
vP.f/
8BMZ
fBr+
V;&i
TexO
%E7hl
lm4>
2$S0#
1^M=Q
maq2
6 f$
-bBj
FmC 2
eH}%
H9|
LQt%Y
i"kLs
`I
9xx.
ADVAPI32.dll
GAx
QYDca
P*6+
B 2
|Q/Nc
+ U(
xBn 4
&6 ^
x6~c
tO$O
Q3U,@H3
M16
)Hwn
u tm"
{:>HR
|Nx/
WpSvY
C3t!
qX%%
FV_
}@YYq
lc5
I5DV
+"KX
AdFD.
@21L
DDDDDDD(uUUUUUUUUUUUS
kVt6
x@DH4
E<2
-^+#
0SM[_
'OBJ
ldI64dol
8 e}
!Ma
@2Dc
% u%yA.
=_YF?
wf93t
E nJG.
lU-FM
0^`4
u .RG4vW
{;V;
nX@2S`eYH
5yW,4xV
`H&y
(K'"a
2x41J
_/:>
] h@
w.tU
\6 y!
:OqK
#}@hk
`VPi
Zn(`
MBku
UH q
$]
F\IS/F
[~!g(
h =.
h%q;
\jKF
d$oW
~e$x
S?+u
\.tx|
TRUE
jI6`
$4{!4WP
ng~<g
E(c
KxBg
= r9
C:n[
SHLWAPI.dll
rru2
Zgq$
Atl7A
$}H4
S <B
Rrw>
4g:"=_
Swib8L
@$@D999
0"Nu|
Q]Xp
|?Kk
@GWnl-
L"/j
08<D@
Sh#k
B_u@8H{
{ @X
~)l^
/[RS
1 {IO
>u*8
]G{xO`
RFX0
?uG7
T ~>`4/L
@ ;FRs
8xu?'
G'%Bl\i
dCzX
>ogw
[:8jF
PXr;+
$hr}
>/eB
Xx &t
lcuO
a\ .
1|Bx
MaB&(.
}gl:.i
$0((
FS!dZ
o"r$W@%
~HXRQ
'S~@
W;9{f
* 9GY
S9~8
=Tma
)<Aug
{Bv%
CrKE
D,|
+".Y
mZ{:
bRR
r ]^
0+t
@<aL=l
z b@J
xmY
=ufn
XPTPSW
U Z
{aM"
Vd:{
$`Bb
u ^
4SYEQ
Nvls
]K@Z
Zuth
D }6Hv9
pD8_V
O$B;
8zrr
y<sq
.x
6I\PRQ
Sm8c
O'kv{
135G`V
wiC8
C is_
nRS,
GU9<
(7vA
4t^!
r7G
+j 8
8U U
m[;o
8LGp<eT
j7Q7
n "0P
,)\-
loYp
WMG
` (J
uC0-@
gu)f T
HDJXa
Ot/f
G;m|
''''
Mi d
(|L&a
`B XS
B +q
g/{@
`>fQ
,PguJ
r$,,44
S A4
^1q*
5'hj
i(J 2Q
@}(SmB
p8qm
4]2"
c,c
rXgZ
<a"h
s B/
XD|J
%NZrL
=x'
*eSS
s$aU
.TK#
* L-
BT_A@
|apG9 V
Z/-4
) GW
c 'z
^+jN
_o<X
O<XX(
/d"y /
KRn0Hg)
N%:C$
z&DN~
_2ba
@\ j
W$`v
)F4YY
lt|~
!;>'
+A `<
d v~
=Xblvq
/uHkm
?mU^Jz
MKHl
L fW-
D$Y)
5m 9 |
PS&u5a
klWdh
@ v/
JvRS
cWGh
m oW
6Vub
@\\|
"MbO
?Dj0Q:W~
! |1
( t!
hPb`
,oJ.O
m }YDC
PjBr
7L(;,
U3$s
.YM+X
2?xdx
*%O#
NOKW
s@1k
"v3O
}'T _T'
0|h|}r
-D H
GB)J!
6SSV
N"TKJe
t0c(
SK0*
:12n
no01
1`MJN$J
wA X
0 X#]_O
6*RoY*
{MM[
CjbS
au#Pd
E<l@G
K J$
p]l$8V
\WoV
yl&`,
xci p
"v3
.l P
[CB;
!v+i
&8)}X!
PH
!AX9pv
"CiC*
'p&hsVFO
H~ pa I2>
x ?g
0KDoW
(Y .
1sdl
<Q0<
D<eJ
Y!8$0[
?)d
?8-p
"v3=
! PPb
jS%\
Afx"100s
3=1i
mPPQ+ q
(4t4
FPmE
|J)~
Upj I~_
Ny?\
lXPH4
|HH}
8mk8
nLTt,X g
%DFR
#Ku(
^FdB
Iyi>
#)lX
1zi8u
BAd8
aum
=VI B
u~f;
pU40]
*L=%
,1<a;
u '
n>VY;
;uPQ&
Gn-[E
K_!H
0P6U
tPLrr4
Znbz
7iAQ
l[h
NA<
@NSo
)^}x*
,PY/B
CZ+ d
_OVj
FILLk'
e:W
01]+
|+$V
1K9L
}>!%PH
KO|y
9F r0
YP?]
vvP'
0&oJ
Vu)P
VtGE
DSp&a0
2p$^b
u ND
+"n"
,`3 7aQ
?_jKV!
QWS@
?xNP+FD+0
:yfS
Bq-#
;$v">9
a]T=!
h&; ?
5c-
R{tn% os4
W <*u
FOx^
5/u1S
CP\ @ "
t+II
CG+AV
l$|XB !
8uwAp;
aAV
eKI
l G6>
1A?Y2
Ja*&n`p
9|`@a
7SF/}
Es+k
Q"""""0
uJ'y
\4$
[L )
-1 8U
+BEc
<Jb0Rn
q) !
v; [
-`p B
%;P
L@;
q cu x
"Y@%
T(.+
N$'y
@J6m&
(3a3A
U!tQ
dH @
'"(!
?u F
0T/UU
> ak
H tz
g?kj2
)+EI
fo.\
0074
[z m-
;sD:
qCD`
0 <8
ZCx%
!8@J
DA__Fz
!<c|
B.AD
&(o
1e f
%[jd
V43x
d7gt
K"e8"
{gJH
w2.R
/@\o
FW9b%
$ vt
w"dq
Q01M 4BB
:!?Y
Og(I
V-< <
CJb1
i*P
VXO
O:)9
)1W%
<344{
%Sz(%`5Bm
!a`V
-&_ }
H%dx
v0R.
X<4;
y5Qd
%4F
$ec`
`h] E
D+wL
OLEAUT32.dll
%wP-|
^+R P{
d]S_YWl
0bOQ
zwvXJM@l)
]OR!88
S@(j'W
]M,G
1v3S <
%{45j
CCri
k UQPXY0
Y5W>
K*ex
"2ie:
?Ev>
`SWc
*#pD
*nT^
s7/F]
}wWI&C
#|_k
\ <]
bb26k
3Idu
Pi<o
2aUD
oledlg.dll
"-?@
+5QVKW'?m
cq7!
{ "$
i_Y4mY
*_8PQl
|3uph
qDuut
%5@KN
ahVVw
V$e-
7V;
%5~%
#CXhe2
V"<
S8@OBc!
E,fj
\.,4
y.9y. .
Ee9LX
@KOV
*y t
3ciJ
;@tn
3: k" YFR
:OwQ
S[xt
-c*D
VRk)
;A]K
HYL8H
ptt?
N$4
&t@
YPZY
Ox_hypot
w)2 a
te)J
+4@V
\wAB8
>y@
N9-/
3 o
+,%y
>\+h0S
$8\!
]A$h
4~i
!+2<
E y<
$;^(r
FRB.
BT*~
fu&Ut,<
liy
4_ 5
y8u aI
;6H&
f* J 9
,q)xI
8W\$
.hLq.hL
knE_?
%x==
p.{j01
)h$m<
}4M[
;P!X
M;OI
VH w |
0*/qB
d~wW?$
$$4,
@7MQ
Q&IH
(]bW
5x'J
<<njC@
VY9{s
`pi
322_k{
;&h!0
Sq[E
\9.B 8W
'^v
e e
WSUPERk
E|H h
0 <L]
q!1&
%I\S>C
a'4q
_XVgD
v?LP|
H/T%
:eil
C rVOu
. '
9nB#
26ysMh
agqlZjm
[{dO
_VSDot(Look
WAYs
1ng_`H
Driv
1\'T5
tobj[
*YDRM
`:K(
u,SR5
BDJ9
M|Qxe:
*(,P
E 7d?
hF?N
M~(
_0-!< \
!)<
3@ #mU
%j'G
msctls_s
&=(&
3 P[
/PG{, ^e
_Mi>
Eqm
_P[ !
t@bP
n8J(
cY9F
)*TK
!7Pw-e
HjR6
kzJ5
Q"'H""38
z cE
G:#Y
;Bb7 A
cP@K
o@+/
3{KR
r[U((
Ir1B
Eu.`W.
R5CF
k77~[
uUUUUUUUUS
XfA&0
'pYM
+ C2P
y' 5 C
P* *
Az``)
q4U(('
tu%j
BX!t6
A 0
Hps.
q[Hp
0E XL
[tSDY
)UC||
NS`(
/l .
Se M w
L?` h
^XtI
f)PY
WW7
4GSC
l9NpeH
NRap
E$6
+C*t
J |i
m4PVt
G;|b|
,[V |
ZG }
[G.=
jq#Q
|@e/
WF$F@$
B.X
h$]X
pPh6
~; #
/xx!
ai PP
QP$'
BwbM
XtKFT
s( .
Q""""tI
]B@&p
;(XX
A iS#
@ t;H
ck X
oZ:R8
qA9 yT3o
lQ[Z
Z`bH
t1uB0
Zb"""'I3336
1h
L!
,04
'Rz]P
CX" c
X WI
8am*
{B "
smKz
tUSw Z
IR Jy
9'Ml
JWYH
M(<n
&_{
01 t,X
;vH k
v`;*`m
(9U(~c
;_ w
,: 5
eb(O
K6I
:F$:
t4ts_c
XM d
^ 6q
m'_t6
KQ,40
5#[<
#TxDa>
(A
P<-f
0 &Z
J L`(
Y&iSan
Ey =@.
@0I"=
XHu` `
0H B
j1^c
{ZkW
]FT@ d4=22
DL+P
Yt5 G
~.K&$)U
i$\
(@=g
BuD
%GlY
WoU`
sn(",
G&^}
sH V
]R-8o
&|M
PF O
8* V?Y
`tc5K
f}WR
zh d
/h-9
!uj3m
^@}(k
71}T,
_Dj7/P=
M| P
t( ?
VhV~N X
h$ Y
7=m'
$`$P8
\PolD
V@W:
t"@z
A`Seu
*ZW=WhS`
0VMG
F-K9
|$tCdRdWV
,C# bH
l[SH
I-.
BFzY;@[\
!` $
_^sX
VQ;q
?[`"L
&H19yht
Nph_
"( #
:A ,
XVOD
4U#*
\Z `
%0A<
amHi%
e c9
, hV
i NS
V$P=
'%tW
Z|V&
dK8WC\
"-@B
k Q0
b)[
%:^!.
j7%P
|m-
etk_
VXLt
NE4p
Pjhk2
ztUT
Jq)8{
r ~
JM+ZD
Qt5,
qa#Q
: 0XcJ
@ `t
D :
W0Yx'
bt 5
Unregis{
^O;bFA
;^8|
5qea
)KCz7
_S^?
}E<V
4OX
DH#\@,i
Ahpc
$wIt
ET,0
80(
f.w*
L6R`
En,o
L<BW
}mS]
DbYW@
e '.3&W"N
9 ttz
O> m
w~?Q
aBAhN
\X6LA(
1e0-1
7,f 5a
[o9a
ap&D
%{6i
HT4
+S X
{Rng
\BB'
[t
IaHH
ITpIJ
UxUCC]n
?If.
t-j+4
;Np$
6}y!
tX xJsey<'px
nSu,
RaLh
{0c1
{{_KE
KwgP!
D&bWW
t5Kod
T gN)
BtcD
}A $
9\PaX
.;@c#
!-=k
u? A
'ZO.
(RCJ)N
AaDM
V@&V
?(6*
;YuL<
}=,i
c!Ch
y3nij
^MYw
8X s+
A#X
.H>)
Bgs`$
@cNg
lWW,o
DLHE
D0 (
3i0z
ePrH
0p*8
yv3pv,H`
jAfu E
ALCLAZ@
?\as
yK;&
jDDD(uUUUUUUUUUUUUUU
ix"
@8z
vq[[M
kQr 7
,h]M
T/r38
%b+_^A'h
b Zd
b<_ed;
OovV
xx@o
'"L2l
BASE
] S?
#"=J
aw %
`CA1$
e5wdH
&SW9
?5a}%
.Xr''
bW<i
@/\mz
] \js
JZm
WhAx
.} G
<XELy
y `H
!`#'x*
,p ~
?%yn
c\PWU
nHLID%v
m\ tc
5wKJ
X ^;
.@I}u
S.1
c(!t
>'"B
!MeQ
zrpq
.hL
,`3iG
5^rH
+|4/
+7<;
` xt@
\# e
n Pa
!@,xh
#vW(
E,SHC
mB #
3cg(
% j/
mb5 2
q){
PGP.
`4%,xa
V V"
@ypH-
Lr,%L
]dy$G
)k d O
"$x&
SS+
x25'
#GQ6
T-X\
Q+NmB
<F&Rbt
k]|Y
Q:xJ
Y;=~F
^Frk2G
o^GJp
=0bM
Kt 6
F/=
Guk{ #
xtuV
UUUUUUUUUUU1
b,7K
C Zp
[#/WX
u N+
XPT?H
Tinl7z
g%Vr
wxui
* %<
FhqFY +R
)4Pf
,Sod
izf3
2C3J4f
3Z>IZ
;;{6
Qx4d
VS
V(!L
@PhXQ
<yV2
* 5p(
at*HmI
i |#
D4x-8bg
QnqX
',[)
_ ;!
@zzTL
*Wu<
aB#1
qeFa
zl-~
prr:-4
zBw
o|wHi
9^T G
X7e
Th$s'Wed
aod Hq
lE"4
4IIIII
]8cq.
0\1d
8zSJ
o.l8C
[Pyod
BG^
.iLa.iL
P D~
iBjS)
d`=bV
O PSm[2
EHQ/
7< `
}(ni
4}I
R*?=
,tV_o
,O,&##|(
L2$v QP
RD.-
[3JB
w/ d*
XhAhn
bC-I
tu
y`5.
,-|
3aRu
oa
\hXX
$.Ly
Hb7>q
_P=
8z+}
8p&!
95S+
QQ\]
K.ZW*
jCP}&
"j%_
Q!yh
yBNp
|d4W C
\j_%_
]fox
a%C>
)2.l
4r,z
GAwP?
QShZL
V8M=)
^N<2
7 :x}`
VjX|
@,+P
c I8
vML;0
g:c"E
Z9V<
h<E}S
RcRe
ckGuvMd
>!U
m2W`
e )o
| ,),)a
;A u%+
,x$Dn
lw:]Bg
,9Xx&
::j7X
GlJ7}
L:1@
?J-V
+n8]H
0YO 0
w,g!
`)r t:
+t|9
PeJ&
04HD
E%QQ
^+ >p
p/`M
2E( `
LGe,
< G 4
(4(B
TvK`
6}v"H
j_/__
+P4BC;
3@;Rp
?V!5Rf
n dtW
l!ex
"7+'_
N,W(E
H? 2
t c
x&`B'
v`
'B*!
@@ '
9H!t
OrgH{
AR N
Pw
mP" =
Fu+f
Td%Q
!4eq
yXZL3
L \Sj
QCu]r8$
~4Nv(
`t49
ssN$
0 |Q
s~x
G"_M
I0F<
PPXD
_ L}
~E2Q
6e!d
E -Y
&R E
1)|K0
B"SW
ZQfP_t
DW\$
, 3M
w':XK
CnXd %
"Nl5
-#A
tD5"
399u+"
;Ek %
v]04Yf
"qz'
G\OX
+3@m
vl(.
v+i64'
okmi
sC^E
cC<-
~3`5X
H SN
/aJju$
O"lx
$ jm
t $3
vHBx
%HX
bsex-
Y7W8Eo
}jvq7
uqSQ]G
"x;_i
$2`<
K[ ;u
;DCA
a!G%
'*e8S
qFPu
iCiKHCC0_`I
Aoz0
2?9h?
WW!PL
2V \
N<D,
, FX
ZgP9
zpUd(`
5:ll+
Loi[!4
(rQrQ,0rQrQ48
u PQ|
):B>CFe
h.Md
D%Qu
Rmw5
1!fA:I
Fjf7
{ #Qo
UWPA
dV_q
'pY('
K!`$"
M5
9{L]
Glengt
pvuDE
!h3=:
2Kjd_PBR
aSnG
~hf
"FL<
'&Vt
(*, o
eNilnhG
\)N\!
Ecee
B81f
M (
_xhX
UUUUUUUUUUU];
,fyNm[/1
tb5]X
"q".u*F
Qf9A
`DQXTB
/U(QK
L\8k
II?Q
^-Gen80
HS8(
o`M0
rnI
R_`*X
Pi#4s
ib0i?@x
Bl [t
R1lZ
BputHa
4Ws@P
V/ab
EceY
hlpt:xd5
>$tD+,n"
U+$y>
+WZ[w
sTt[B&
'^mW
Hc$
O*(d!7
<@j:
eS|F
PC5^
RMM$G<
%S C
q(+q$F9q
Z ZhS
Og,NMa
)#yy
~o9!>
:7<S
a|S]
$v}i
,u @
4\T`ck'p$^
/i^(
|S$!\G
StQ"
$N}P
0uoN)
^/5p
Y@Yb
$0LA
a0Sj
bzz&
G=v|
K NJ
Z Xu 73EPX
N SCQ
R"!WY
8VhH
mJZS
_+T'(
# +*
%X R
%@!Y=
Vu fqNIG4 ,
ZEV w
KF^2
| '2
0Gp!
d (o
H<wU
:KGy
pczH
F<`MV
V+g
AH,a
wv
G`1OHJ
Sp o
o!Q?
0|Vi
BB=o*
?a_u%
]J3u
Z5 -
Fa%\
?xs#%
6"RT
;Z&V
B,(n
@WQQ
IGCl
Ph@Xj
Bd$,
B1wA
|h5R
HRB&
hLgB
6pIA
S7ue
< xb2
8(8/mN
p 2~
Cp !
euNB
M_>Tt.
2Y}?
r9%E?
tZ4U8p0'@
/&8T(
!SPP
d*i$ 3
d' a
Rr85
DragFinish
h > T
hb9><
t{ttJ
\%3c
)Ifa
HZr
O+y1o
!JAFA
Bv&4)L^
lu }+
7
XTIE
t5N]
sNUt@
rTpm
!v T
u.^
.tfVU
LxTxx
kuPD3
tV3
zxLZu
EOJ8
RYG0
c, k]
65uR-
wvdN
;" 'm/ RXc
.v78
cOBKA
Ea`E
?
)*X1t
D"JSt
^+ C
_[~
'[.sD*mwMH
uQ2v2
QQSv1
h {9
-*
3Lp
w Wk
94+)s
``+3J
cw%b
z5e9M|@;R
) W
A*H%Q
M^WJR
' ` w
D/-0mvV
pG;OK
Y\rH
7mA#
k['R
6|uZS PP
UUUUUUUUUUUS
c)k<
lSS
' V2
Sx*F
,h4(
a,ww
^ H
) +h
C| 6
-" 7
X&eAqDmX\YQ
}@W)o
T.io]
1,Ec
&RO5n
FP?{
J!{A
5L=P
Yt
]]`fV
H]j6
W Rcs
N/`_0t
SctH
vKg4
13PAhCW
Z:3n
aR/^
hAw $p
Mbl9
' `H
`bZd
U5LE
Q KO
_ Bh
I*<a k
4VJ`
$HH!
#&[l
%SoZ
>(g
.`:_n
`u: \
e1)
t6B.=B6e
mX \
D n\:s
wc$tJ
SyBb
?GY!
M6m^j
3W=d
$2|P
k y'
8 X1K
[k2t
z\gj
8M-B
Z<y*2
-QPAD,A
w$WS;2
SCYg
U6pL
/CW$
PlaySoundA
y0NH
,?tY
y[Z
L(,0$
?p]0
GgSW
eX9
B_|QNP*
>?,H#-_`x+
mAp@
CQSq
^{aD
8WXM
+60DVB
~o>,
%KOB
32lY/
k[xDta(
"V(PR
`U$0
cTH?
f:]L
A%!u
E-JI
_{X
#"G'
M8RS(
X5YV
SG`k\F
}eqC(d
(ZX`
hg:e
`PlS
5{o+
uBv@
lZ5`
)64W
5g/
?B CA
BK[I
=6, '"]
terTouch
(vkp
uha0
+ADH
o9{lt8
nR1.L
}HPXQ
uE6"
Ii \
@u$<p
2jed
@^S
Wu(6
>o6u.q
:W S
OCsL
QQCXD
}Cxo
.iL\.hL
,%`(
)P 2
C-$o
A&N!u
<.Rg
"(JSD(
O(*Q`
Oz;C
*!`!M
"CJ%
Z,w'
h!H)7
>mRxa
+4R ,I
aY0z$61
/tR0
4V/J
07V
K wv
4@C%
WAU*
$/5}v
P#I=
;SSI,
q_UWe
6`q
u}Su
C/<}s
a*=
hx|N
N J
rj*X
PYwPf
K#lR
Oqi>
>Qm6C
@|
5yW_5yW
$(,0
;=u(!.b
jZ^v
P.\,e
95_9@t>J-l
k>,*
Pq\
-%P
^d<
XAv'
-GG4
2NLe
0q` k
J0PW
FdPb
$aVe
!Jj$x
8X0k["
SfJ>
F<9MF
0X7
hvD D
upqS
$HFrw
;rQj4
m[e$Ft
Ns X
:4 .`
!/C/
G
8-mO\
$(,@
o@B
\Z"4
VPaj
u H<*
~ B.b
Z J9
ht5D
ewFj0
J$ _
\xMLh|
JV@
dR9
((Vt
F10~^
`fCq
d&U,
sp+~
nruX
~Frix
VDf#u
[P,VW
$B5a
?p0[
&}q+mJ%Vw
ap@
vl2 8[w
AeNc&
4~=2
A!HG
UUUUUUUUx
YC,4
j Mx
5J2
I@DI
+fQ&(
w& t
u'o8X[az#_0
MB,Dv
>LhY
!Cs2
nKra
[4pP
DlgEx
uZ_c.
n$/8
M;he
@_jHT
AO.u}
) h??
UZb"""
]Rx%!
+3(%([Ha
) N$I
T3C/B(
Ov.+
-x,z#
ijW
XlyM
[O(q)]W[
!AK
qV$9
\" -
i`HP
!CT
@p%_
H(P
5t'D
}Qk_
0.Ulw
vo 74
& []A7
9 tb
_Pu.
'h}?
?8/F
CHANGEVISUALM
@s/
7`dc
aC-
K<P(^
J}ij
SGruJ
?ziLY
{b'h
{A,7+W
'<S&
y.9y
)y`K
.Jd+
u1+c
sp%enz
vXEd-
)):).
$`o
fx!v
jXm9x
[?i3>lz
]H.9q
eada R
2.x#e
wr C
UUUUUUUUUUUUUV
LDm0CH
UUUUUUUUUUUUUS
K -.
a0a@>
TT`` &
!This program cannot be run in DOS mode. $
^Kx/\
RV"8
VXnoSaC
SH X
GZ7Y
* )
w7~
" O4%
+PRqP
MRUWidth
Yt+!
SgIN'
< \
_1Tu$
g||rCy
6 < {
5yWe5yW
NC`F:
n%YE
zTE8p)
X K
sBFA
<4\@<
I; q]
8#I=C
D|+9
(PgV
Xb'_
h-@*
cbMT
0;=,
Q"\`&
PF*hB'*
M.6%@+
4^MV$`
4xVj5yW
0HVw
u"D4s
|JNul6m
>Rfv
mmV<Kj
'%x&
P1#QNAx
w)J0
`eh %V0
9C+<
&x
`,ct =
BQ
P ;FX
$(g
/Top*/ID
9KvS
qQ%/
.NotSuppor
mrQp
t ]
a&<~
r!gg
ACPgR/
n|0 WV
?uRh
=SJ;*
6%@N
[d$ty -
YD L
zw)\
45Im
(O"Q
+glr9 J\
.+CW \
c@G!
x[gGa
Awd 6-
5 r_(
rX*%p
WCD`p\A
\\Le
SK%'
DDDB(
0\Micros
rKTh
&=7mK
+4*h
Gh G
<5I
hBm0
0:_i+
J@S.
r}W;]
T{K>]
\ p5
1`Sc
+~Fp=
UUUQ"""33?
6x]<
Z-[P
L?}
STKh&
8"}Q%
f-~sg4
s (x86)
a$aT
eY(4
CYxLc
.k ^".@
N uP_M
|'[ [
LuV
X*.t
=ITI
{Ygi
vN(.
X6Oz1
9*'\
K 4=
|POPUPMENr
0,X|
vDC]
2P 9
Vz+>71
D5>
6x,
S(2co
.0X
;6,
+pa]
")4!C
]WK=QAN
Off(
gC6`
'[UC
U;F LF?~
]f+1
'a-h
Nhc{
PlaHb
@!81
Z( - /
5sK@
!3l|
%W>l4xV
' 2FF
s ?
p71$92
?/SHX9
X+Fp
bu(H
tOi5
:X\<
,j{<
S>k;
K)9!
QK"]
FE?
YQdj
UUUUUUU
NJVW
NgpktM7
!HDaY
8tVU
#a %
)ki[uU
UUUUUUW
>XQQw
A0g"
q-@D
$'H)SL eGOSu
YS&0X
{H5h
/!jK.6
AbAhtFLJ
5N)4
W?%$b #h
h#Y_[?
"9w>
J5Jc
S)l
E?,z
a{?:,
v><2
" u
j|#;
f U5C
gH0PolSN
hH!n
!U^
Z! P~.
"{ux
g#(XA]&F}
d o
b{$#JH
>gqbcR8U
/QoDT4P
ql@Z
K.Z
\LTB
}*!W
i,SC2
LrD)
0d<^
s}!I
yK a8)
ZB"yP~
sK h
00E/
Ge Q
pR au3
AAIa
Q}=J
*@o7%bu
sP0
: Eg*
9SB/
~L#
jh5y
C!j h
%mCP
] \r
9Hos
x] 1{|
d 6Jy
<w" #9
+\E@
:i@)N
02wK
# =+ #
. _x
UUUUUUx
J1u)
{*%
pr!r
OLEACC.dll
:d@C
3V9qX
KG),,
x<eo
=9^Ltk
K##I
-^}Q
]AFQ7
j]? j
Qa5!
X9[4
Zv
6*A=
",Xa
" n
L>~DD
: 2O"
u&ght
>~ &4p
.5x]0
gNE@
/ ve
_SEPA
Lti_"
}*`@) /
ISm
*67X!
Cg s
C"fP
l& 5@
<Vers
Bxl7
}l
x1&5
m(Px0
X7 -
Mh
+Yh!8
Wu*j
I=e!
pEE;0i
H3!e
`e,;_d
+CT"3
!L H4%
3HlT
'wNR
: @V
IFl&
^,Z;
3d$d
~?^u5z1
D `4
lb<sqw`s
'=t/5
}nIf
4<K"
l8<6
D7@E
V![5q
=unS
a%G
<[,=Upd
lCa1
,84@<
4$JY
8_q/@
;R`b
2I rT
81{Q
5Qc|mw0)
o_J8
NBx
v8WE
~Zv
$2P0R$P
^*7%
!L1'V]
eaVj
ZbBz
l0YHi,
(<_]
dF@-
Ah[-
v`@z
7'E`
hia]
oy'Lo<
, t)"g6
+x2 0
q( ld
PE`N
{x_H0
c^ 6
W_
%obk%
)FP8
tu0Q p
Q4LJ
HJ
' 8z
h31/
Ak}qE
=B5pPv
9ali
Ga>
%f6
0w4`
.0#
ww_rs
_oXM:pa
!FdabR
|,KD
/%t%p
+txF
4tV7
ZU +
MKD7a
].g
NGQD%f
P9 |
|R" {
m1cC)E,
Cf8I
Fhbu
yPH8
A(@(
1ZhW0
SbYw(
4y97{
.ouh
Lo#3
l>JA
`Swd
$ G9
!,N1`
'MDIFrame#
h `j
KERF
%md[
NH?q
2\,'
,?U(
kBht
D|eP
7"B
wX"8@
2=dS
0I$#,
q "8
<CMT
_0.JA
"%kx
,LS8
ItO _S?
8IWC9
`;J7
E--A
rJr
E1?#
w UquW<e
3Ec
Mj;?
>`)A
KA_ *AK
Xs#A
xJU
M-e,
pz]jX
#XuL
@+8D+<-
4mV
!.P:
W6b +
^ID+rB>1
<E~ ,d<
txS
k@@r?
RHWJ[Sz
FreeSid
.?FW
GxH;
r+CT+SP+\
1LxjP
lpP}
sZ
S >mL@
l;EN
:NPAQ
NMm$
||l\.
!b
90:0
^u %
u(S]
Re'@
]t f/
LWIoa
<&18<
> ` m`
A_[i
_@t.
- `@I
ej"E
7?Ki
&pc%
h3EY
Dei!
g\\$
~"qv
K9-d
@HABH8oI0
H!M
rkMH
!bD
Xms7
sV)`
t K3
CKi%
AZwE
S#H`
([>W
]l@-
Uoa
2WP<
5/Nav
B50<
`DOh
-V#|
Rl9*
[HF.
))_<
7M8*
P<Uk
j '
p/C_
a5.'
S;HF
2IyC
Ed)P
^&XK7,et6
N|#S
(44'
1C
3# W
XngP4
?GRM
$ R
!Lr2+
_h9X T
WTJ$^
C 'o
,D!
3#
Z F9?C
a3 P
k7,I<
@<jd
3,&6
RH8($V
;H$r
w4'M
=, 3
3t F
F4c^$
mi`@~,
81pI
!*5C2
-0Tx
#@g"
d 'VV
;H+ P
.PGh
g H
\ Be
/E=m)-f
PA/*<p
pm#}
E8yGz
0m+Z
eKNcoj
tSj=3
4 f}
Q+|
nZz5
t2*Ct
<wLGY
PHaS[U
"; Db
`~}n
QWeX-
*'9x%OZG
11 W
^ C(
Y8; S #A$
`m5o
[$)S%
TIRV
n;Qz
oB6/
Y)tI
m<?;
lW"j
"-Cx_
hPbj
2a
](2/
ZK=
V ,E]
E+82
ZM7u
~",b
.Msg
nX5.
};tMK
"4ljv
WQrX"~
?!xW'
v+1%
33P(
@ W
Z 0
})DbQ5 %
W`"
_ F ;
[K\\
G C`
H^%SW
kWWC
tOeD
e<M$
{|^R
sfFu Za
D X\
~ #C
f Fp(
Ku" 7Ke
H=K`
u <QuL$
"krw
7A.O
_@<J
6(a(
z hx!
YXtqS
Q"""""I I
=qP.
H`+HX
:RH/
%}({F
*3,m
{Dt,i$
)$E_ C
R\rPu
cAz,
hDg5
feu$
ypvi
-*Yb j
C_`;%
mF7$
kN+:>
* L@
k^_E
guc%
]V@I!o
(Q^&
[p4Pj
S _m=
eC[ttq
X`
$L0.
&"<
vI@b
pYcM
(.ig
j j;'
x->Ab
EU?>
*k>m
NBChd,
wU66jX
-r*b\
Vja(M
|`AC
pzb!
r5P
(C(C00($^
4gbh
la k [H
JQBp=%7
{ `t
aiLH=
!JM6
`mWF
7DzY
Vj
f@NP
Vj
?Gjh
=|.
tBp!
N~a
+.t';=
n@:@
pa."P
\M4
V?Xx
F %/^
Tn_a<FbG
3cNk
3@`A
2b9.
j /yq8}
}-#0
C;1|
CX
2Fi\
IzUT2
O6p1
ElZ
.OtFx
%<RRQ$
Im~
mMVkO
?j$Px
6P
^.W/=
6DXT
K"0Y
;ayt7u+
B^Hh :
bO#
E !G
#H+K
++)^[
Ll:t#
N&*l
#u3$
0jH`
MvR
(NBxW@
)P
X 0Ik
H)pL
Bz##
V2 0
<V_[[
Z zPB
%@K$
_z_{$
N #}
er#-
@js%=xNE.
<3 #
:1S/F;F@
hfi&
xNAf
-Ec
d"HHq
IDTH>f
_$@E
y5k1O>
`~5
00wd!
?g4"
ozlS
Z^D7
E}PZ
P %f
Q-%i/
V~~s
q?oY
Z\cdJ
!} T
H,d $=
~)f>
Xr\T+
hR @ q
MlKU
Px[8&
VFV9
/S 5
6)_ZP
&$xXP
saAhD
R;
;G r
24pG
W E%
upm"
8](M
Je&.
6<"
</>4!
@k 5%
5yWE5yW
Nx&||
u"q
~SWa
y(e"
dbQP
o-bC,
+Sp*E
SMcP
mm#9
E;w(
k"#
~+?j
-(K$*l
Qk :
] 0$
y4&K
Ii'+}1M
9hT 4q
[v^@
l)%`U@u
2<-m
48X
Qtjo!
#p<
)s0g|+
)jW[w
)nzP
$| 8@
tCV+D
H}^v0K
PWu,
MHPvJ
F''A
b ;tk
`(E#
% A!
1,Jl
%$L;
1pp3
=.J:
{R~&R
_Ptm
XU9J
RdB^
=@.-
AnOU
9t Nt
= 'e|
a"AZ
d%USIc1
~pW T
ocj4a
@rKJ
j2Xj
m$7D
th`XL@
1@*ZL
;7I4
O$/.H
Y|w(c#u
Prev"P
Q.Q(D
z5@@ J
XPLz
^3C
c*QYB
'l$4
$p 8+
3H3 H(
0#EK'j
3)OZ
uSJB
j([
(X;r}
8o(
J
P 8$&
7\WhI
LA ]
WV9B$S8
2K%1
-*?6;
iMO P
KHeh q
|NSZ
A\HC[
{ X2H
nPyv8k
]k+7Uo
j bX
trSvjlDa
%z8&
Z't$'
"A`F
lN A
7w <6q=PK
t&t3!8
+rm-!T
T>
Au
+Xm1A
ngVy
+5sO4=nJ
0'1k
qV ]
h`7`
]9m+w[
sZOM
0^eu
Gej
}Od>ce
27Mi
U}!Y
[c= 2
>pq{
lc\ `
tbd])
: ([hM
,; u4
h* 0
0I;IF
F SB;(z
KTr##
<lPU*z
!=
` 5dC
T#gx
p!zB:
7libship\atlm
_P#!%k@Wy
4>*!7 <
6<QuSS
.rAe
^DSy
CClie1C CUser5
Ktge
bb)
QX00
W@8M
xC--
6Z`^'
!xK>
pH5
~(;
LT!@h
[3cV!C
WZXu
U{ f
dM7%
m#Be
g4H
@k{,
7#LAx
e96]o)xT;A
7WgCx
>}SX
AO3N
#R,@!v,+m
RpC8
X5^Q
w[S)
BI$;
")T4
]HG0zZ
1Fl`
*#C'
ia;i
$N3
z& I
~dcA
](t0
(t#*
-Mgr7
[]xgo
C4E&
C1ud
@"AZ
<&/ :
<y&sL2
p S
pqISE
u|D]NL
O`gg}
P;u(
e@K !u|
@s.u
z$/
pa '
fH Phq
}Ga4
tzWW
~IdRi?
I+Jo
}I$xL
M3d}
R1jK
2Q]%XmS
!&7. &
0 ^p
ZTU` !
^A A,
LtY#p
MOcU
Pausg
!`k!
U B_
uJAc
YP)$
?Ap_u
3H q3
?r!E+
=TB
o<xh
QOsrc\
= 2
*@Vfv
`BDkf
TRj
DDDDDDDDH
t'hl
NMJo+t
%Sp/
e(tL
At9
x(C|
9#.R
De,&g8D
oB>t
V9; x
X9Q;
RPKS
\]$D
'P#
O$]0"
;8J.P
8,@[j@
t'5N
Pi//
m`JH
aU-%
wS#H
eX/9
pvUPd
\~ @Q
PZMd
v j<
09 H
t%F\
^tx_~
fHTK
=Ma '"
3sDL
eU C
20y
oamU
p8H8
bt[-
h*jXlpDVsS
=h%aHJ
fY=I
.rt*
vwtZ
4xV<5yW
f!q\
ni 1B
WK(z?@r
A-M \
H<M`
B ScP
)#L
xhH]X
zdM(
t3id
9,m
O bb|
YmTV
)EE
DP["3
WX=<
GHIJKLMNO
D2 <wU
d5Z+
dvLi
;L P
kd}
3,G 0
H W^;@
L(l?;RW
smK8
H:S!
Nr$F8
ummy#
Pxni$
Q|?=
@,A
400U
;E`EHX
2A{j
@'@7h
&qeY
kJaQ+
3.Y.
g'*BX
PZpO
Xe [_
"xTF
Xn?
n)h
0N.E#
oOpH
0:=Q]pW
= l [
L-dM
3` W
! %
j746
~1&+
j j
Qvv bw
0/$0
Nw&W
TQ;s
}&lltv
(04CW
@iP
Lf-O
OlHw
}_){
{58)
Jj% t
(\ciq>
,K8k
UxTheme.dll
r['$3
Wgu]
P8Q{
tGWtCp
4Efj
W)9Ga{
FM*<
2l[_1
dGBxAA45^T
>,r/
h TV
VvWZ
*K1X<.V
E &,
QxA;^
Hb7@
P8^wR
@a \
n|M~z;
9C|t
*~FO]
90]l+ @<
JobA5-J
!l7^O_
:WV2
PjpT
i`9s$e
oue l
ZK;er 8
x01$_
ak,MN
Q! Q
Aw$PQ
Q%.(8
o)4
@ -a
ufqa
a1gs
$R+Hp
b&]X
?W2l
Ft+Fl
ABMBV*
!!!
85~
7MdF
K`<`
>o0s
|d*Q
t$f2
4aOv
t2p
cY0)?
)9m'
-}Vj
e 2 !C
?*+eo
% RS
D#IO}
N(V
d(Jp@[
_LAB@
}d{x
F vU
(aU
fB>l3
{-KT@!
P3.V&
I$0 B
S R-
!nwG1
D#~H
!0h-
ImmGetContext
+KH[
I2=H
>O7R
?aUY
a"$T
5tYsKe=4
i||T
b 8@
pl7e
{8r|b
I?0c
uHPIR
\>'%4
MSSDI
a+e
/7^M
DJg^z
jpm<x
f:/`
fK.C
WF)Zb
,048<4M
]D s66
\"[uDlk
+ Qho
Ihfa
u&CFG"
hk~
@G}f
J@pd
jA:p
XMIu
@UPWm
$= y`0u
9/z!
R/kH
=pl9A
,YSF
)0 2
lsyc
:`QO
L ((5
Z/qL
4="x
EGM>
2ACP
t5ct"
n5s&-
A**o
<DK8n
VTO+Sw
8(aZ7
sAGs
(K4"3p
75A%8
^ t(
>XmD
:VFj
k~}!
%z~o
Od5`
V[2RE'aH
w+8!
: a$
i`kD
K*$$
Y1Zu
lbfc$
>y^ a
p :4
H-"q
5)B`
U?)x`
Y]\S
K:kd
!Da*
YYW$
X{WL4A
kR_A
W,3C
Wcv
&V !f
eUUUUUUU\
00YD2qE
&C o
Np@RI
$uRd
Si*M
eAQRV4
DDUUUUUUUUUUUUUUc
{$=q
34ANZla
t*]L
k
{WSuX
K;(dF
Zr`{xB
6( t+
!1"}
Oo[u55
ra,=
m|:>
R['aI
w2W!
bfy"Vu
#9;O)Pt
LXP`<
! 8E
%tT)
9F4~
!3MT
`_WR
_>
RYF
`-Sm
K }$
3! +9JB
M23G,
3vS_
d$^"s-
^"I
$QRC@
%qw
0rVD
E*"t
>EI@
nSwt
t<7
O!|/
.hK%
.hLl.iL
wvpMwP@%
xfwIt
z?Q\LO
L8S&
h5 c
dP)n
_IQ`A f<
.hKF
Y6/rEN
QqHe
#|9Z
J"lfB
=OEf
a<H(
!K @*
'c1
d'tL F8or
uGWh[S
|za~
>Qv~
QBFZ
PiE$
x0))s
WtP!
q@v:h<D:
n@ 7x
|lWk
+} N
.hKt
-qw@
9^L|xe9
;B<}
PLc
Pk[X
bzqh
x dj
HtnHux:
"3>Ydoy
;|Rich
fK q
){QX\
c_us
Za (
*FBNtK
[kC
Gvi!
OJq7]
6&pwf
%AO`
WZq7n
][R47
&
+R )
" u"3
V&IB6
p>`d
pv
q.Zg
#LP
s >`o
5`E"It Iu
g]3n
O z[
h HS
]P V
8e;7K0
xP(V
>CS?
P?Kn
P.#5
w 1+
/;Vx
%;:u
`.R
c ,L
_/0
iQh6
58`
G,Bl2
F;1|
P p$
VU4k
BLEQ
Wf]^
NeH
CCG
we{e
BM=a
e@E
e{xP
lf5Cs
:h<K
]kh1
}F(F5
t*ex
Ori4
t0wp
diW<
:(/S\
ui"s
P\ d
W}k1
t>,'
?VB
HxPV
3 QH
j^ D
$n`p
nAiP
u*pt
Bj?E
"0r%(U@
2,9X
f 7C
UHh@,
0,4Y
={y1
wl@!Gul
v 'O;
n9s]
N8bW
S;y!9
u4(
txt$4
*4\ Hr
L$+ HJ
ExitProcess
$1H
umn,u
VDwV
Y}xu
"O0d
=NjE
"tfw
:O`H
tdDG
oW#
~tQuo$
/W(9
y*I{{
P <p
V8[@M
} 9Z
Mx j5M{
Z8`H~g
K`yu
DU:u
@~[]OSG
j(Xo
:_AZ
C%N;@
gB>L/\p
e[K
%@*05E
8$q
Z!V#
FCQX
4|7!
8/6+FD
t >
a{#C
[EZfv_
m*96M@V'7
f R&
UUUUUUUUUUUUS
MGSi"
5qsc
4HX%
M|pu
0(ft
bgFR
RY_p
UjV"
X 54
_fHgA
'48W
' \I
04v,F
~K5 X+
-}R 1H
W Fj
z1 a
z]mg
eX
@FZ)
Xz m
H-Et
>;.CH
, R
vd l
]r;2
Af"N
4/X:\
&4 \
9p0/
Q/ (N_l
\jXs
2= u
j hk
aP $
%9, %8
<t7<
+~ 1
S bu
XJR0
u6Ih*!]
9WCWSd
Va'@
DvTgn
QAaR
6$hP
i[B b
ZK7G3
YuG
[ R
UUUUUx
raSmb
J C
hQT" :k
80"h
*" P
UUUUU_
tD{:{Ez
UUUUUU
UUUUUW
KCxu
UUUUUQ
9 r"z
[3-dXk
}Qx-
"lvE
Kc2
8Er$
S($K22
NX d
iD*?
&2a&
%lZG}
EQE$
}C <Y@
^T|dq
Fj5p
s u(
{:-G?
tBKb
^v-i
cg'{
1"l%
djwWpQ
_8'}
2~lZ
rRC}V
Q -X%;i
X H`
VPS7
9f.m
f6,K
sG%T7tj~
Roy!
vYQP
[,ADB
@66
OwrG
@urx
&Ta$n
?8 k@
M#;J P
3,&
nPFe
zXl!
94'?`b
bxt.
2Px*
& K o
$BhA
X qU
%1!yB
H)I=5
Wn8E
.'IBMu
}}3l
6; 7
Gbpla3
$DDB
T13S[
3 AN
^p9Up
$,3j
pQ3t7.
=2 <u
?/#@
Y ,A
9t-,~R
vuV1
+M`E
YM!S
Y#"Z
u+uw
Vr]`
|'^\%>
3-nSS
.$<>
HUpJQh
c2t0
R{?h9
y) /L
M@]I;@O^
Ut|s
S;WTT
<; L
|UDp$5
9G_f
RttGB
AV,!:
P C@i
b036N
?2A|
Q]6N
F[,\y4s
_0]H
~#,9C8
L}^zN
,&w2
%.KwA
rC+2
&t,Ax
VuPU
>8 H+
6 5HU5( <D:
$d:`mm
glRD1
".:Dy
nmlkj
#N$j
?X++6
2wx.
R[&##
q8ML &
u Sg
RQ7dkM
w4 [:
B=0F9
*>Sp0:|t`[
BZ>S
Pak&"D
URP\@QR
* 8e
Z( u
%YE?
2.8;
fLKE
$>NMy
LC +
n>y,T
fbS7F
nn] d
+R#.
1't(P
r0Bx(^
"r8'
0 W7
JS ;
zrz4
LU4L
D_a[<
r;;q
fa@k
a"cVi"
, >5
}A:+g
_ WKJ
M#yV
HtE
ci)i
7pS 3
[F(4^$
]G
)eBm
jpA&
$2X C#>!k
bl:A
LC R
w ,
H {tP
a].
WKKO
j)t-l
]`FJ
SW5A
3-o'
4{Ei
-IlA)
m gd)
6$^<
9)%3
?vE>
ZJ)U-
<ii*M
K\r
v4 S Uz
3qMN
+SkE
^,\i
[Hq#;
9eW(
oD[Y
F'D~h
C J6
mDkD
U2lB
4XdT
rBkm
$9ue|
\* <Xt(
8 T(
0@GY
u c*u2
KOX[7
txxX
B,%77M
zAB
R0m0
9{$u
HP9*
BQ"f
KJS*
6 xT
D $_p&
35Q%V
2347)
P%ibE
zj-E
X/\F@ +
|e_ F
7\QZ2
dOgC
ToZC
Wbm|,'
. 8d
]H(.
5!pb
4$@F
3w m
W>V
IbM0}
!,D!J
6 V${
~Bk
Gg:82\
5h;PQ
8,r:N
HtF-W
fv"^
xY\"9
GP>@
XT5D@@
;|4 |
rdDo
-SpI
_i@:
Rkt
\Z:G
v s'
Z8APjK!
<& q
S!CUo
M|.Explo2r
PW.Y
VMM t
Ygn.x
E Hi-
e]2<
;(
!X +
!!@
5Db!e}
i]+j
i?G eI
;lD[
_.j +
!$%>
t=3q+
}'-|
sP]%
X9PC(Q
VIEW
qss@
Qcaw
T- #BI
DDDDDDDDB
%t9B9
j;.
FVF]
20H}
!dcj
_CEmvy
^ x
{304
uOANCELB/
A Hx
< HL
:b S
@.)b/O
(%H`|
~`+E
(a :I\i
! +A"0
?RA
*SEh
dcGZk
x|*
>\nwZ
/)V#
K'X v
7WS$GF
=1%t
eC,+
0aVR
VL <D
-xyT
$;V
`<a>
noa
Af{ i
Nt Bu
<SSd
@P*w
L?&Q
mdic9. OH_
l w
Wa[8!
)u;FK!%
a>4<M
q sG
, 8#
script$
^EO0
H!% 6
tbk`
;F s
(;dA
(3DOk
Sh e3
uXZP
cH\$
!uEKICH
P;^#WG
-uQ8
gW9e
SRDd
hrkj
*! 5]3l
p*QKy/J
9~$h
UqP_
"7ilc
@5#+S.
qJ{P
NFh6
;MPd
'Hw|f
FXoPA
s1m-*h9`
\j XL
?9(o^
V$_C?
r64@)
Ui?-
krC
@/]
"< ^d
?VD"
C1I
&(KW-F
d YpB
Temta
NQwn
<h_q
I+C
q;JG
X1(
ItIJ
_e'st
48Jr
slF P
VH p
AC9He+
sXL h
[% -\
RPOf
?MD}1H
o/<.,4
N Ce
Gm{'D
@XN3
M ;-
'( I
v[j8F
43<s
4 XL0
@S%#
+(DZeB
@=~q ;Q
Sz^x
HKZWYYLKhMl {
g27h
R!s
JA69,
/v="
hvg
W0'k
8xA@ bS
:Hpu
998!
q' a
}*a2
)Hx2
5F Z
Q]F}
`}VGW
\$Wp
`h{r7
v8.=a@
h4ac
XhmJ
a;_hD%
F;@|
a).w
=/r1)
#$0
nz" ucD
-\,<M
tLBe`JCkP
|um:nh
f6ok
q7.>
@.54.
y>Yt
0g]^Gl
GW?n
n.Z?*
.OI%
uxKpU
- 9\
5p T
y}|f
R\$
atK @B
8LCJu<
%%h7PW)
0s=[
bT"~
#s=A
WEnb
E9m*~
u-@)
W:Et
Fm9~
X z9
6$&*x0
rDLV-V
tuSv
>+Fe
<h1 7
R!^W
A^8O
3_c\
hX VXA
{YQ[+
.%x
~B<1
|-Ea
=L9o<
S:' m63
M(Hu
vhS]4
pm&<a1a2
F 0ut
c@a,
R&"#
G[>K
T7|Q=;
p~ %
R`Pi
=%K'
\2$
lqB4(
9h[7
v,98'-
.lt~
}\n%
y-5W)
HSJN
1ru
==H .
D`7N
`Ub'
K^85[L
$O0V
7cHs*
)dXc
fb"D#b "
Tn t </
wI}q
%Uqg
sw1E}
Wh T
!IR!6
]5/q
?Ht~H
2wa,J
?-L3uT
Bj4'
n' <s
P H
%UWX
%vK<
}MHO
_w
MNI#d
b VBP
VbG0
+FPJXA
EbhJ
|#x$t%E
cNI,2c
tKW<
p "0
r@j-
7EG3: be
NJ
igK.8
7H,"9s$Ns(
M\m
oSSA
y)fX
@#^ Uh:L<
EJp
KfQ@G
zn +m3
t0@x(
j9N#a
R`/w
,K}B~
.lR1
@&P!
HTMLd
Ct3
3t)H
K0:\:A
Xj'W
1aJ
Q:?8-
K)1*
+QZi9
!B7`
3$sR
"02
r RS
"t@+>
0wY!
CC M?
+LE=O
et_K
U SD)
Nl,"
C~ :0
lFAD\t
z{5)
^H
AScJj
i>A
Nxjd
eXVa
.rU3
#f_h^
p0t<
nWug
0 TB
S90S
'>xF
&@)4
NY$Lz
mBh"
?Ik j
^jA]Z
5j[P
(QP\
'BpK;
/ 6N
T #
t72$X
Ca 0
wD]R
FN@>n
G> ,
ahIa|
Ha V
j ]"5
I2PI(
>sHA
!HSs
P xp l<
wH/j
1imq,]
wU6,
JV0
H4l
x7,7
F[_,
N,]CI*
t2m#a
<Mw8
P!i
2h/HiO
Rj<85
td1
7c-8
&**!
YuD9
\%-4
ncLm
uUUUUS
p is s
sX$zK
=!TR
B^G,
xPd0@
62yF
r W
J7.I]
QT (,
zW9
+)l$n
k;<kb c
14>M
o!5k
s_!U
vwx<
#:#+[
6?,Wd
0LO-
C 3
e\k&h
D8=[ a
3Chk Q
6p(T,]
/l}W
@TT7
8 |$
>F$fz#
#<zLJA
)5 J
Gus-
'V sI
jU 48@
humoC
HJFM
.s u
xF/#;
!&~K
)\.))~.
JR9
)7/@
a\O5
h)q7
XKl=^R
TVKt
1erAnA
xH:;
F`Y7
Tx+
4&/y
)@iy
/nuQ
"=Snz
QY'F
wrKP_88Ww
.4@!
mkax1KgG^}Y
/FrF(
PIiP
///#N
6CZ7
(0O-'
%Ik-
o[+X
* E
`e$9
:Cf
`=%`
?%Mx
Q""""-DDH33
W=3-
b-.U
>6KtP
/01i
c[abP31
q@WM
Nj%%\E
3^q'@
A51C$
$#txxK 22||
g : B
OVN.
Iz+ #
R 3A
Huq@jM
9u(vD
\dX8
I7>
,]A=
=9 O
pk}2@
\`sgc>
|K%9
j2Q
'VL|U
9 "y
WW9P
}java+
lWPs]I(
or+s
4Iq 9Rr
7_BB_b
(u MPV
1)%`
'of
C.a
m, 6
><>V
H Yh#
: uGBX
}M-R
#K`6
_0~M
E 6# (i
$*S-
o2^J
g971pQ
J223%
.t,r
@ _ 2KU XU
o2;nJ
WS2_32.dll
./'v
FXV"
FK{T
K3Y
*p<B
g009N
umA
GCJ#U
/mi"R&
19E9
qhX'S
'U@*
=})
hJN2
+RW[u
_F;l
vi/R5
-!Wq
u?V
'U@:
uS~b!
U]M
&>H^ j
JmCm
7pzc
pq&b
p)3a
SW& l4
D_>"
`{E&
Vq6p
VH PG
P~ML
eTYC
: N=
L5O.%
P{7BJpE"
[{ i
fvnv~
W 4
{ts=
S/^J| x
t<[x
E t+^&
X"}.
!RYm
bU=>
9&VOK
S,p7
@x8#Y
)hu a
S*ZK
# WH
2>M7
N# (
olwBo
Q[l8;W
BI(J}
!(+#
{8Mri
<C;v|
7-|i
EdQ"
=^($
|.0 L
[=P4
A']%
W4q,
;AXXTuS
x>Vh
;% 3
MDMk
K D >
'oj5
{M gv
s?cr
0YtMd
DB)H>j
5MHLPb<
WXpr
65Pg
6&[3>8
{&{G9oam7g
J_|T
ngP/
zP
S S;
;j f
T@J>Oew"
B1d1
.4xu
>,,p
Vx+4
%QPA9
s Vd
g^X
0 o*$
AqW+V(m
iL3H
t(CL
&7:
C\PT
4?'O
O'&O
AlphaBlend
80&
iODZ`m v
= mA0}
P6T{
uW!@
sN l
l@W
a3}a
h5$up
X( HQ#t
amg7gD
~lTg~Y0
^4j/
RZax
C3a<
-]e L
)&|>`
}1D!
{9Q h
l (
-Z kX
ahm=/
lwtf
6 kP
N=)h
^68 $g
xI0vD
HHHHH
'pK;
Y|I:
#W2`
F;BP
RQSw
Q""t
`eM\
7,2xD
s3=@
" }$
4Wf~
H;SpJ
-+:(
C0c)X0
EZ@qE
t{2AyF
@Y2LxA
?ChR
MTg
o-oO
: aNNH)
0;L
eP(P
aGC%
4D#H0
Q""D
YaBD
S3 H
|+feN
eL2m
lSM%
JjpA t
& O[
\tu=
E#SW4
! DV
Zg/t
B[HV
Q)LlYA
"91[
[Wmc
t ?vQ
].
#P34T
GC|
Vt2{I
(E!)ji
(~Zl
@[>8+
t PP
InF{
r\ A
F F
C <&
et*bm?|'_
Q (
)Ijp
mQ $
q&\
r;$h
_%d File \g@S
5RP+
jPANxn
DFtts
SHj`
)C$
TLQJI
sCis
KaB\
j]_G
tM$'
K'@,c
yZft
@_U-
@)3{_
fAK
(xC|m
<&Z
-}H XJiOi
[&YWS
LrY
HtmlHelp
Yj!
#8icR
90-z
w-p1
c xx
D\K$
AT*+e
(H~
CByte
8M8u
LL UYet
ffY0
b(BcK
Pe [`
\XlEw
GH-L
uH,X
- W
-ytp9
N4b :}
Nm\m
[2`A
D927
),Ex
I)fj
_nj^o
MH'1
i\BW
W!oC
~ukSST
.ZKQ
HoiA
?-0/mN
GV(!
=lneGD
7h4'.
}8yGF
E&`
;\Mm
6 DC
9GDuY9O@uT
l*V?z
z |_
P<t4
VB:ncl
Zn:C
=AtUJ
Dzf#
kg]T`K
9q7?
b$->*
0SNF/
3 \SH
Mrdp/x/D
,04g=p
V.I4
PS0j VjV
UHe_
C o
q4@$P;
O6x_
QHVS
Rc+SH{>
Ya'i
G;Wt
xS$Si
t55i
tl@X
$$E
SNM<9
\HQ9
, }C
cLY_
lPnI
fHgJ0
` U#6
oOutl
p0#qa
e t
w3N@g
$xYhh
| g!
:A?D
Tex
CJAx=
LrlT
Coyy
xDPngQ
pD_FuH
XBpW4
x;gv
p Sh
v040u
U%``
+8TH
7&e4
WV9-
udio 10.0\VC
% ]\4
PQ 4
WX(h{
TO `.k
i.5wK;S#
:,m-)yp?c
MLK
+ 8
SXFWD'Sr
#Ram
ga%
-R#h\./
5 8Z
bu?P/Y
5l_Pd
>? z[#
U(@&
S{1llF
8(VtnjB
F]MdA
,ugc
+Bp[
#_KZ:{
JX-uT
//S#
*=O]%
N2o1V
dY?
X)#F
%A B`
+ ) `
Z "
4Vv5
.YDD
e1$ue
N4&
TBmOK
wVbd
lMYP
x2 $4
/ *a
$kq6
dfH&
N M
^S W
B,<RLWw
h]SY
.yCtL
Nw_
Ab\U/
oV@Bd<=
/bI=DJ1$
Y@:S/SF
y0r,9Y
!jl@
t9 jK
!1K&]
5[^b<
pl|BJ
U-&<*
zCQE@
0ZIc
TL;cG
k*ao
w xm
I4h
y>:!
):9?' ?
l\*skt.
]ZCE "
_d^n
2h Y
(^P[
9D(P
,7fs
D%
XKoVOfJ-
G, g
<GC,
|Sj[R
CEh~B
Fa
2-V)Y0
/Ijd
'M%<
a(TG
S8$+H
U-sl
69[:
}WuEm0| L
*Y]bk
:=4 6L;
4FyB
UG2n
VjV(
8%N1
(+^ P
u v@n
$Se!
7[jC3
W4bC:DB-"
4fH`B
{!.*
vwxyz{|}~
! DHc
!1j
qM 8
$U%{
8d~J
$tp-
S@mU
9 LZ
;!0hx
? ceZq;
Pa!x
rd%J
H%6R
NA0k`
[>Pu S
+ctpA
TS{8
'g{
}:i
\]1Y
f6M#
m/(S
aqP]L.
S%`4
327pa'l
\EpY
jt*n
?7~w9
0=,|U
1P y
WYW9h
W@"k1|P
6?""
yJh%
HH S N
JS^&
9Gx;
m wrT|
4"_D
pd#,
<D\?*!
:WS4
u 2p
)wZd
ol\%V
0tUqW
IA
qR {
@DIh
(t [
XBW\:
r`\XTPr
"uEPD
D:`l
mqXX
jA'k^
_{
q@"i
Ra#
TA@b
b`2
8,r@Gz
} 9Q4L
+4dx
0iw[5*:08
s5:!
NPi]8wX<
=[)g
>J tB
)$M
c}ex[
V0i2D
=UDi
V*H,
Mon!Su
r@
&"_v
L(g[u
OR9A
VGi|
CaOJF
u'FLu!
NSu
7*dF
qJ0 (
[JjU
x@tE
. 5
'PBSP
uVVR
llor
laB4 L
1u`D
#@%i
8# 8
eJCDFVS:($
y 4YPGI
Ft B/Y
74,4C
+EqM
wDhp
+++G3[[
i-xi
\}G4
u@k#
sx=I;
95`}
|WIND
4CN@/
rYwp0
'2(#
,#"%F>q
'7@
<},u
YG<Y
V jH
l1m
hg%4
>I4\
On !
G`zfx
AJ!?
$`dh
s J
v$ }
F0[S[P
P1twF
*GPEr 8
DCTX
XD3(:
`hQf
#J2M
# l!
swLT
IMM32.dll
g4Px
EV0]>$ 5
:PESV
OLS[R9>G
Tj@T
epX\
l,kg<i
:#<
~9V;
D$yp@(
v@ewV
SF/&
aTKpD+
"6Q#p
I\lY
;&SA8
c?E n!
jB -GQ
,~G[Y-
8m.&
!:)`
vDH.
y*L-@
6^G
uJ\Hp2gRe
t'Pj
H~yi
d<@D
~~DM
T/sI
~WS.
&s;R
*s20p
hCy>V7
=5-%
"t7f
*M'\
WHHj
aFw(
eHNh

4txw
<*IDD
<Jbv
"ps y.
j2h\
rMrR
f*NT
+vhh
!s8Q
&_SR3h
%B h
i>6gf
W!LdX;Ykr
E,\Kw(
'c@//
Wz1@\B
M^ZrV
UM-o
,\tt
^\*R r
XDGH
w#I &D3<
!c}H
2*,G
leD$P
2%/*4%
6yV8
D#HeP
!6`-K;
ol] *SJ
)j)"
gkm:)
Nff4
FJ<Tj
ZUQ|
)xp
gvHF
tpgt P
4VSf
HZ+K
E9 U0
K$
&r}wN
<("
kg@V
vnTe?~
M^ s
6fZx
GDI32.dll
UUUUURDDDDH
gBx
!5&2
.]Gp|
QK }
Nl S
~aI(
pD XC
%@TDC
'JJ
c #0c
l"|A
pyZW
^J{T
a&0K
G,Rah
OOHsfY
5$GC
#vOG
h V
Ut8/
JPF!j
7U[J@
n UV
rr
$^V\k6
gBxB
Yp#
)QKy OD-
$VD-
^nz<R h_
_u#
X\w$
4><4'<
GBuar
"Kje
#" JB
x~Z%
:05b
t27NA
,`H9R
l&"D_RA"
}hJ|9E
H_Wt
)}Xb
{tI/
m$jv
* Z 0
O[p1
`bm c
.hL1
V&Qz
oVk
m7<W
<JtC
zj?hD
h`%BH@
3 F:
kiJ*f
X~4-
o l
&?)5
q['>R
Go*0K!
;!/t
[yC.
0u+l
$.#L
{tfpJ
b=!%
Jep_c
_jx
$h]>
QV9<
+&/Mwa
aS S
)TX|
<PT{4
kOh
dRcm
* K# x
9_\ !
Q@(
"P9T2sS
Mr} s
,A1CJ
/r@AMP
Vi_2
!e"
#6j1
h>p3
6 4
0 V#
0L xpC
VvO
} j5Ha
J5oBj*
! -X
g[H8
a?[W
]v|X
!Gr2~
yBVD
EB` =
aL`/;C
:R:|t)
% zV
SVZS
=38L
b89yt_R\
[SK,Tpp
Mc"-j
?"%z_c
{NF*
- <?
"5OD
'p52t
5N #
S3h4,<
0vOR"
i8Vj
794-
X9t
9-| )
<@P`
:tk/
.8v Sx
HU|]
H8$A
?A+n
y'@Cu+B
0Sj
=0'\
Ig9H$u>;
)1`O
9mH.
z-YP>
ZO'6
zCg d
X3.U}
/E;J
0 $
L|T!
<aV
1bM46
VkoU
U2Fy^
iW!
(y+8
4@a#|}!+
V 6[
Fo5@
JXjJl
L24:
9${Bu?
z5-U(W
jqu(
DDDDD
##JB
XH8X9
03mx
j |<
[,p%
e7#
XT147L
(Sh1"
1@B*
2LxX
,u{S;
[9@,
d3}c
JVQW
4{q8%$
WW}n
i^I;
Pk$
/At'
eaAQ
D N
o.J0
KWK`
b8lB
u /jBDI
J ;4
Mw9u
DDDDH
~$~Y
6ea
H` a
Sn0m
Z5"E
#7Mx
3DZX
s'Ex7S
x
LD~:~\U
t,<rt"<w
RI1OC
>$-8
rG9S
(; A
6>63
#>-|e
SK^
Y CS
BIv
>)go
9)u+I
(r!g
<LdJnkKD
qaC_
dJNX
'$E
Ayw
QA %
B&M1
# B1
Nu8Er
8J4
G$6Q
p?PXw,OQ2
UUUUUUUW
`\~Y
UUUUUUUS
esCF
@` l:1
R^u(
kT6m)
;*YQ
{Y
+}H3B
"V W
9oVS
.XP*
^"uNt
@"pa
E2U
P8 F~
#[L&
oPi6_Z
B |
t24!$
UUUUUUUc
b%DM
CoAp.@
O2^q
YgH9V;
}Yxm
A-%3
VVmt
oRrM
|<D
SEX
T!TG
And Divi6
H'S@
Zc'u
]5Y-
u*"$
[ Zh
c0-I
7w9A\$
p`aht%
DDDD(
Pd[E
CtM_
.B!&
?3yE
ihgf
SSM4H
S\v
O JPQE
^(;Xux`P0.
%lU
l)QA
`'|
U)}Y'
ZG2p
(@9 ~
?<|@ I
YW('K
uDZ0
)H4
n8ED
3!Ys?
8a\_7&
MiOu
-i()w
{lSKp
.@`_
wglGetProcAddress
4tB
\jt{3l
^ R_
8Q\Q
,H \G
@NZ'
pH@h!
=FVu
L+EJ
"_pm
2 vP
M<FT
1TIQ
. _
7k *m%S
R~?&
dG.5XlhR
c;O`
R3DSK
Ug#
%wq8
TC|.2
d L
hq:8
EH`;
hgAy
xhN37
M>Hjp
Z A Q
4/A%
$.)^ >
CAkqR
('W? a7
E&@i~
([We|P
~P<PuU
S"(X
<0"w-
}t@ D)
E5X49
o(K j
W*(j
4NARt6
;Et^r
}+le
A< `
H2Kn
tRVy/
#.,a
t/GO
? v^$
X& @
lXqlx
^huepu
acIC
*jWX
455q
m";X
vPHxB
>bO{
xaM-
f(X1
t5zn3
B.J
H (
wnNM0
wpFB c
CrCJ&
6>pcq&:C'
k0t P
Qj0J
PT8x
/XeH
K";y
91,vtK
.-'P3L
< qH
@^R
\-U8dx
t% q
W&jX
($v\>H@,
JQ_Fk
bwAp
UdIo
0e<
@IbJ
DDDDDDDD
wh S
J.AE
4F v
AhK[
wK
COMCTL32.dll
Q,~/
H,V0L
DDDDDDD(
yVFR
}G2
9%My
^[D[
rK=)
9p F]
IKX-
cT: kY
]1Ly{D
$/xB
%<Ef
:oiOA
Ig%.N _06_
R+@>/
6<ZI S
4xV@5yW
&yIG
W4[w.
7Q|8*
BB'r4
QGRD
tSDS
C1:_
9x u
pX-!+JD
xoko
$6"s
WykZ
),"H
P C
rJ6]
<;>N&
C$+G
+9Wq
].)
mm WH{
C+z@
,bU`
@%H!q7
+ (\
!w k/F
&pw
IaOX+
\1}R
[]Vp
{ VG!e
W+R0J
V.O
N_:@
!9u B
xAiA
UVx_s
$UP@
+HGh
6Cnu
\2 hfK
H[eB
r%"}i
t'?g
QpSG
"@etY
)F %
>% E
'>cW
tJVn
)P %bQW
)j4
S< P
I=kt
,[ g
[Oth
4e`0Vjq!
]t`F:
8IaBcL.
sv@S4
L^"L
, '
m1_C
(a$8
[)E7
SUMmGBXb
nG6M
LB%>
(<LiSK"
DDDDDD(
kS_
} .E
!OWV
8aKq
?mpL
@tl]
pL({
-Q3gH
2+R8
q2|L
5:!y
h"SI
.3'W)w
;Q25/
S]m#
[jyd[n
j2,
R @w|
uYV#
%7 CO
eV6c
@k5k
zH0u
E53aM^F
y".@T`
^hN
GJCW'
F<vv
m-xX
hAX5P
uo4'&@
-V4
;(/
/iZ
6B(~
AQSO
|&<<
9shu
d@Lv
Zgx!
;bR?
RQ tf<
ml2-
# v0
@H$G
#EGY
_I\Z
nP0a{G
8H@&
}AiJ/
eYV\
%s
'QR 8"
y (0C
Bw3)
Vw#!
m/&# 5
t;,\
ufSy
CB Hw
dB2>
(>/)
FIl.
^q,_e_
A.vH
vcw
'Wqr&
D, "
1@w<
URLMi
*dGTB
AF|WD
qpbx
P`/
HA(2
~0aE
ZJCW
UUUUUUUUW$DDB
oihtZZU
8P@73
,Of[
=%,G
Z` w
38X%
vr+D
X"@j
szC-
RV4lo
HNn^
D0Nu
N'(
HP|Ci
R<<<2!C
<m0R
9_$UZ
Af=r`
S"@kon|
lS/Se
t=(7L@
39w u&
C2OC
DUMMY8
AxAA%
9p^\
u }6-
'\Ut
X du]
E2p-
7$,4
N C
,0,271
Kt q
~RRENT_
`67etx(
8.u @?
~U
mEC_
a#*"T!
dB~3^
I@72
#&+J
el8+
\NH
6QcZ1
5/E4
_)$@
P#<99
[)"k
l *`
q(QS
iZ"~
t#)u$
Coc1K$'}
|l)'
bRF
hlPE
UUUUUUUx
'\$G(
PoZF
W&58Z
&kBB
&,>
;."Hm9h
qX;-
Ae8}
KVX
.1M Q
o>)LB
:,R
]O7>;
jD
"ep=~
Za
{V3*
5g, |
UUUX
m >D
JT)j
1'd!
*p(c{
3w:M|d;
Q8@2
4us
?O?D
leML
E j"
@ <:a
B.:*
VV7
fNdQ Q
8 V
H!)3
\tVS
"T/<v
72(4
Q+@'
66K5
nl!IsQR
U$!
zd;j
0400*
M\49~ht
V7.\
)m!c
PwP@
bJ3u
v+UB(
niz>
H S4
Dwr
Lkb7
!S#g?V
L$/ "
9x|/
Rt8[
^:-_
Kdtmh
%t,ehb1l
C0"b
% +0
b w\Zv[x
S6FX
9 ,#W0t
+F@|
n 6%
(BwB
}% 5D
l/mN
\!X@
PI6G
u%UxR]B
$SaK
,
gG0
N/,e'-
aL^^
uUUUUUUS
A Y+
<:Fk
? [hm) y
dVHX
4I|P
,k &
YU?_
`\O|
-{om
jh_=
G'z)~l
P wIO
$NKOY
K 9B
"`:;
i.si.
<P3GF
Oo K~
7 RGh%
F}%MXA
|]$vFE
DD<p
hSM/@
"`. T`
U\2"-D
f8 .X
%P2R
BJ.O{aA~o
tTUK
Arm
B_@"KVR
= )
)QKu
hDWMAP3
]0t5
VSQV
j$Yx
O@ j
;Mv
r $(
5FIC
"va3
W73l
.:0A`6p
;CjJ3
! 'N
e,iJLH
eOIQ
;"Z{
3r ^Ji
$%M}!
ECKE8YMINIFRAME
0hgAD
\SWa
$ify
RZJH
WW#W
^yCT
oGSV
1!?I
06>X
_l,!h
~t0/Z
fO
gft\
"zE2
~ X@
ne'iDjE
d \ u
Y0h(
=Hu:1
.hK
\4Xy
| c&\
g?bj
H-XL
SSOWVQd 6
~= >
n*u[W}(
tJ
\E%
FjCI.
InA\=
A`0p`- ku
&RG_
v m.2
zQ%6L
FN /
ujvHoS
t6+
7Cp|
w;Gl
M e[
1E xn
=|B39%
45+=
. /(QJ
$RNU
I6BD
/5Bh
]B +
W *G
T cQ
GX^w
^13e"p&`
\HGWT
ypB`
xvf/
G>*$
HtX4
YC\`
79 3
pt
eDH L
ZxFR
5, aLx
&: X$S
c[V49
=r36
)D\.
,*NR
_hvt
Nuj~[V
;8 8
p+QWp
Aa"Y
rq?H
bljK
Z8j
t4(m
m$.
[[[^lA
NP-0q
CiP5
9@Ej
jm n[
08@H
}Q^'
gG9!
V@Dk
rx4ZB
N^*b(
IAnJ
3OVS{
r -@
ss h
1e2O
\\`,u
gPg"
PSVWD
x_],
V'%S#
-!Fk
NzpEB
kFY%j
|x% 44
mS-m]
$TPc
9I,J
%G1BIT
i@8R
www]
V ^0
@V`|
n9P)
'('~G
XmE]
kBjE
InE8
w+) S
QMC@
wwww
On =
zF^XVH
KpgA
p{u"
[ ]:
rB}p!
~m
o/`Q
5=(O#+
J@ZE
Lm'Q j
GX0L
7WWW
BNav
.%8@
jm) 3
48<@K
Xql '1
" DE
.gK0
-JV3
B+tx
1"z%.w
HZQ=
68Bfj
/ 0(h
SQkB
uw)t
BD{6
@F@t
Ah$P1
9N$`L
B"H&
HG |
).Wn
/jM:
-XqS
<1F d
5yW$5yW
hJPD`9
y~<
,yPLk
Dp`?uV
?k=?
[EW.t7"
%PEE
P\`9P
k1;n
T*cK
\V&
`DpWBxc
TX\`d
^28p
35+<
@<at6qZ
D k
'E[6'e
'qS_
,\_wr
ZUUB
Ehc_^
'??>\
"AK/
Nv?W
W$]0
VQRS
KJvy
OF)&
f/ kaz
ecBi
) \d5*
AE@V
& jd
N297
qURm
Khw*
' Upj*
@3-v
&JSE
j VQ
k{C{I
exp10R
` yH
qMf<
eA{j
dSt K
&0 V
`TRA'a
= At
iwHC
<840
<kT^p
$[a&j
+xAm
+kf-f
-t `R
e o$WW
\Rj
XQS~
J*xn.[
:7 /M
E Ek
j"
ls ][
7RVs
PS-'
C5u5
q +a
wSQ~.
4bWu
P4qD
_&ya
dh+9
VP*
D:{q<Ero{hmV
8p9 o@
;Ps%
#Q:
.j0M
.>Xl
1~xuF
"%1
y,>L\j
SXSu
,Bq(
~IQ@h
N&3ud
j@2Cf
U..$
/643
x^s T
hn~
g`,si}3
, H7
cA?D
K e}:
1eRHo
G2Md
.uU5
e}5O
u*Py
&chM
3)c1>
g@t/[
&nZ;X
`&p>
ypa
U"
&WEr@
[g j
,g`' Mr
tC%B[A
7I M
ACTIV;G0
D 4y
44#m
~ 5O
.\QCts
D2R@
u"m
d^@En[vP
(*I;
*Xwp<
6VV40
kBmC#yS
F%0)
Cqe4
t;",&
I\*dj
U15E
j,_!
&`VE
,kM&
b"B5<
CfmA
"ppt
!15$
{XF
zVWV
^p `
:SFd
Q %`D
u'rwG
GHk U
_AuxUs
: 2
p80R'
bE$^
b**)M
3e~cp
=H3,%K(((tvl<X7
U- &K
qK A
HU;vd@
s6]$
I<N'
U<0<
}Gh8G6
79?UnNRp
~&B7CJ
Hex={
f@ph
}.;
,kM
Ot !F m
HBH>
wKgo
5 %`
OPENGL32.dll
BRj0
:RBG
~ .X
4`}e
&Q]d
ed7In
PmLQ;
?os!
"3.1
y b#
GvG
I|"
,|*
5yWT5yW
7MP,
P] :$
fs--
.hLg.iL
0#!G(<
4IE8g:d
)aa#n
`!YB l
6HZf<
klH Q
(8nc
;lW1
gO2a"
E07
ug;@
Ct;_
1T2j
S=H@mP$
p|DA
3!W'j
JA@_
g+RR
1vFpu
Q_]z>S
*`!!
gX][o
LCt)a
AlphabicZe
|dK+
` 2B
e)\
pQXd(
Ywq"
Zv>5J
>shT
GRJu
fxG
*Aw5
{Vq K:
+t0;
dwY/
GqG1
]`)U
+Fh
jBXk4lj
|J0v m(
| t%
CH !
$$ ((mt
$c 5
-jHid{
? u$
"[`:r
\ 4-
3bo2v
kCC%
onA \
Y4 J
,.&X
n{=
sE%
X$RQ
4@h
%YS
8(XKP
M@}B
}I|v
80tT
Lyc>
bB8`u
![.OL
:u,fX
>^xE
.hLH.hK
AtV#
]1 H
i EEg
@,xjSn`
UUUUUUUUDDDD
j?/f 8
-pl$
4"T2
=m~i
3!}}
tNNd
h,&C
qD%t7,
+A*M
t[s[0
dhlp
u X(
2@DlL IX$Q
QYHy
cXibgn
FB|B
g BVB
<AKS
?a u
6w$G(
Z& l
/9.$i
PEP7E@ Nt
B%A<
l!'a
& HS
@'~(_
Q#Gc
xf{t
L;au
.u S
KgD
@;0
8^WA}
b %l
/"cuOpz
oCuM
GYL~xm
tV%#
pytaU*
Q8h)
FTj3
bJ:<L=
@.P)
yh`XLD#
2@Dbz^
C'/L
W o(
2> u
9%dA
F,=0[
>~<`1P
\i[M%
ZBr8
=V z^
FFTm9
3?6
w4K)
-Ho
'< X
*6n-
I 1I
LA0m
XgU{
|uX
@mH@_
Mkw[A
l:>l
K[4/
A`1$
ageQP
i6sT
k"WN
I 6<T
humbna8
;Vv N+0
8r 8
z(u3
rH8}
dIk4
Gd u
<A|1<Z
<~\;<e
LU[c
ej0
tqL
n/$b
Um+!/
/ 9w
88Ha
P-qM
X 6T'
R#.t#0
;$> aI
@S0@
QM |
ZHH(
EJ7J
:W?+
k*UAK
l\` w
~tp
fe LrUQ8Y
cP.-"
TAJy
A_|u)
6G?s6y
O_u#
($F!O
S`{7
V$QvL
"1_W
@PP;
J]"$
u;Yx
BVSI
.bA?o
bBuf
_~uZ8>
3-Y{
!aj2
0-)-
SAlignQ
W,xx
&)a-
aM!!q O$
d8Q
Kb ;
p?A
H aE
{/v!
E-ao}
y{ 8
[f<f
MU#J
="o`Pu
yZs|
1->%BI
6/aL
h |g
KTyuN
wm6JZ
P2pF
fs{lm
?|{rb
CvWQ
#]Y8
ikwde
R8m"T
h<u$Ym
] &h
ubXu
x@jO
\0~M
^dn8
t3_q
DAh9<
R9{Q
X?i$N`
uR tK
Fj _W=
he 0
u ,'
rpH=
F"47
N ZWj
d7 s
S*?<>|
"mn:i
:\P=
+@g9 t';M
T & 6PiB _
/FN
k7\G
ole32.dll
X {
P/R
u)9*
BZ,.
h:/jp
t*q4
%W2%x&
aK[G9N
bf;T8
MOkFk
B Ko
Z9j2
F'HQ
BF>]
QQ/_
dHwuI@
ZYkc
SNtC<,
)]gf
ehAL
[j@a x|
s@v
D)*Ur
YYYs
D xY=w
APiv
ws<Ppo
Fs x
D P8
;O3R
<C-
.GUL
\HlF7/-
UUUUUUURDDDB
|{QH3:
~SHh<
`u5{G
r]lK/
ZHw-7
)o[he
P9Vh6
k1/I9:xAPr
0r#
;p(:
nV|<
? Yv
\Vv_
^Mq^
Iy4u
i.;E
5yW#5yW
X {]
,Kv
I&$(,
1C|<
wIC+
| +S
V :!
40,(
4M* 8
NL3m
Bs+3
PS?n
8T(^.
5@9b
QdCm
([.,
v%'9T
p pT
a9g{
7205
8v9*
%p``Kd
xBy6;
FF}
jm|&
%9} t-S
6P$A
9Ah"1
h]H'
PwxG
HL!JH
sosi
ZF L
&QXd`).
W $ K_
7RsH~,&)
;$Qf
|7#P
GnQ
C<$h
Kgq/Mi
@7F^
^g 5
K~ w
grou
}[kt
Z80v
1bcQ
CZj{
*uI4
?Zd;
5T2q
d, M
rU{B
X N
6GYp
a(`^
4ON}
\"7%
7 tG
%#=M
)`/i
#0 &
eq[uC
jpno
h6Y(:
qa J
Lb] 1iA,
8?1WL
,|]KJ
X)8 Vg
w0BM
^ SD
_A7InvalidArg.
I(,`
U bJ2s
&4{A
!:vL
9NSp
ArL9(
070I
(h$pnR@b
;q>
w7rA
4BEBVBy
XMDE9
ly&yL5\
:PQysD
}b1lA
{imr
5( Ql
5E^[
`TP
P#P("
L'5/
x4>laa
Cl0~S[}
)K(
p+ 0yhr
@k$@
<)1[
!1p/nj
#jMJ_
$/-\a
i( c
"arf )
LB)i
`FWnx
%SA-
TIBU
u7R2
.=yFx
Lc%
s,<<
PA N
Uf!
:`FV
(HXGo)
2J_}
N8^;V
I)n
cP<_)
!>BX
N!U#\
vSP+
3SMZ
famO1
w<x%L
@-GA6
^O/E
l<H7
3]S$V
(N%(
X.p='SO
-=K
y9R:G
n?`;
[,6sty~{d
w<\No
ruD8j
Cj)S
RQSQMr
.dTE
'qr
:Dy.
88EK ;
z@34`1q
/Fo(&
#CNr
PP9G`@e#
H&00,h
-tjw
YfX7
'-B*
|N5$
WF`
gsN A#
j'BA
*Sw
4.Mn
%ytZ
E8jT
)`DN
W-(*
_<html> ]
d^,!
oj t
$.-U
KZl
]s!Mf
iy =
/E1`
u ,.
W8pp
g A_
IhuC;
C]P3H
Q"'N2"33
WC@SY
Fd )
u;x)
X!XX+X`
S6UP
4fY
B ]
@<&VZ,
W dhC
%u@f
*`G|
DX+c}!
_t^VN%
p@U>eHT
eVB0
owXn .
'gIj
$>uU
xj8$
G0.[
N8b_s
ovd{
|"%a
;$n9d@
Q Bj
%p%^
~|A8u
Z*%*
\h~,
,qDl
w_# P7
K&4Y
>e9e6N*
+H14\
~b t
}+um
7gw\
UUUUUUUUUDDDB
@g`i
c9Fu
m65z<|
!7nMP
o"N8Y
J9 \
0pCj
U!3Y
dX sA8|I
q]d
r6,H
$'_
[x@
SIpd{
^ g
uAF`
$ FD
1V!6
r85Lo
@.||e
{$-
:*H5
HLPT@S:9X\
tV#p
!A\% E
Wrhf
slsjcpyA
s(
wpA r
[BRG
ON& ?
PoXcB
buxjj
})87
W>&
Vpc
3[mXW
,G"d
Gu(8
[!1Lm
$`u@;
}i T
d}| ;7
pT ME'
pDh&A
>9"R
%L9M
9QF}
Ht-W
uW>p
FQ.6
mQ2^
\ltg
X (O_
te&.
ymQ}H
cS']
JAP
Vp$board"
cNhP
uGh~
%:QBR
P7zU
k)24X
VPQW
uUUUUUUUUUUUUUUS
QRCEF
dpXr
'una
D*{j+^
jUa
%`v%_\
JW2
3\`+B
3% !
`#Pt
u*m+YGYr
Root<
pd%% m
lS0_
1!h-E)a@
rR25
/@Z1
-@@=S
i0K(
&Y:&
f"R4'
)CM<
Dm|F
v YY
3WCON
nPo
4 (}
P[iH
l LM:
6)}h
*.GSE`G
ot(
KDWh
@ 35
>u _
HHTI:
+=nz
hVQA
y&
dXv+l
K ZL
K4 z0
1oQ7
XA7^
!#D08
2l,
:Ml{H
(l%g
h<@
p;w
n5&g
UUE+y(U
?5@$(ta
DKiH
4@DHLP
,{PO&
XA7|
}SAR
s?Ra
Sy, U
g`-y
LQ()-
u` L`u
_<o.
7+@u
A8")
h ; [<,
/c#
#jQ/
S_BS
G@ lG
["W2
CH:Xx
r43K
:/ Y
j0RV
}VLAw^L
\D%UUUUUUUUUUUUUS
?8]
\dlA]
v8 iR
I q6X
N#;6
CaHo
u Z
">KP
i ^C
G,n!,
1kU+7
0r4D;
K a
"^s`&
_I a-
` @bgG00
Z8 f
W"lx
HfKo
I6N
R3)
t Z
!VMpn
!\Ko
. Ox
$`lW
0Tme
g OXV|.
,TIbhN
;tx"
4R*l#'
[kh'gx
fpGP
g `MU
=#SS
Q)$$
( T;R
pJ6 ;L
!&Lh
A`KD
X#P)
<s 2F
>)i
APJi
wner
BP`p|
3o5A
su3c
S9x(( #)W
i-L ^8
)!%C
,%ud
bRR m
_~X[
Z%X3`
5yW)4xV
!:0<s
, oW
aQ 9Grrr
N,WPa
784Ul
$)l4
RASAPI32.dll
`6-)4P
K jZ=ucpe
3M0@
q0#J
7u H
;Z!hLeIh
#xh|tcC
H 9[
}$V$
G^$O |\
M6&K
u3Mn
EpR~
\*l@b
2WB
o j|
P\rHs
9&PZ2
v)A/
5yWr5yW
D"uw
s,2a d
l`P
CXZc
j?$KI?
% -WVKJ
(Ti&
s8b[*
PlI8
)'SG/A
+}"P
hVJ>0(
,3NM
k!iyP
E$u,
xEy`
h B$
7$n?
IQA7{w
Vt Rx
M|~
@ JH
t2>:
ZV:u"
E$/X*)G
I8IG
@h$tGGE
RW8Bi
Htx|
R!\to
7SP
TWH8
FY0)*H
WHP
!im6
PNG^
2 =IH
tKDw
tKDu
rLT
^p
^XTE
&+\ h3
KSjK
U$<%4
iJWWZ
@]'h|
&iDock
VE7w
u8KAb
G/q@
V?}CO
&K&9*'=
e5cUP
'@I"
!'Wr
@|j7
q-V
BMx |
+ |wZ
CJ?$
1S)
Zih%
Q^)1j
i|$(
yJSU
n3 =FDR)5
i y.
S|@b
g odW
%/4W
yZlk
;y>T$
#R1.[
t "2
RhVx
mQM
b'V!
}-!U
#@%Bo
SP H
]g q
+. G
KDI6
2\LX
XE_P
<MTk
{HAH
f@4V
*Yw"_
-f/
AHK@
m&aFm
9x:
jmIW
Pt0hVI
h'vy`
,9Hv
ex(P
aS39
$h$i
/wRMx
QXn_Oq
(W>L$
tK @
3d=z
|I,}
Oo;R5V%
St*d
;pSy,
|]rNsR
p1k-
;0{-
k5@+
[,"X
IwWw
'T/_
jMBa#
Mi0~4
' K`u
ar%L
Nr.6=W0011
extxI
A_j/
C,T}m
`x +
%vGx
uH\k
t`"ej
Vpy(
R[s~
:92p
g469\
lVHl
AEBje
DosMq
]{f
-BZ
(+SB
"N?h
CalLpG3
0{s)
d L@
j"V>`!
*>uY
IQ@,`
1a8l:
[#Cg_
/eW^Wa
TR FD
c/]|
u'S,
; S?
oXkb
p=9
r088
JV p+
/vQC
6oo
Hl1o
4M3)
I{e$
#u_
Ny '
"B[X
< /Ef
Of- 3
-]j3-#
WU"q
B0#A
-a!G8
DX4V
aJW7
81l=
)9}x
V*x
@F
!f@XK.
UU];
P pa#
3=kVW
Jd["
c-oI
v<B *,;
*x'iA
CGs^S
?^hVP
8jd(= w
.Te{;
0PC=
^ "C
0dCo
T2]<d<
fT?#
=$0
.iL*
aV(@o
,\P?s v %
G/ =
.iL%
a+/
k~md
1AaU
.iL>
.iL<
.iL3
Gh!_
'H^P
&K\i=
.iL6
Nk/a
tfxE5D
q8@c
LlL]
.iL
H4hi
U{$# \
Bx/T
;A:%e
O@2i
xl<J
6W'A
.iLW.iL
%m+'
v`M
7H>Ih4
jciiKxe`[[
s(4 Fm
P2[X
#v2a
`t?@
!0Xw
;Db<u
+3}6t
4C0
3DBd
< %n
zX(y
6CG-#Rt
C&XL:
81e S
s~}u
.iLA
bf o
AX Sq
64BW5
()u!
u)b&MT6W
DDDDDDDDD(UUUUUUUUUUS
~#=
s sT
S\F<
,2dP
VbC Q*
aId@
Rnbon
|1:I
k4-
ba iK
l&p&R;<saw
Di^
$W
cA4ui
' ]u]
$#1s
q N.
i0pD
w >o
wwwY
;Bla\+
;ATt
uh
r#
f* J
-ta1
q )9485
A6 "V(\p
1H8B^
ac@~q
k9 +
8kWm
;-
rr-%h60
Wf;P
D)"@
q6*,
qVvG
gOW{
#<o_
Jf q
4.3pcR
'}5r
>8fW
2gQa [o6
/x&Q
0? &ZXX
^NZ
>RL\
4xVo4xV
,@(Y'``'
yU l
Nf G
"yxs|
"|eP
vs|E
ZfFf
| "~~
IJHl
5IA1v
t/< @#
FFY)u
* E+
gcdP
ork!
aLT'
X, G
w4yf@
0 c1W
" ?h
X!Cg"}
4 x2X
j!l$
4.l\
UARK
$Mz],pq
4%PI
%ScKR
F04
YT8
hx#nId
NA=:
H@RC)
/a;4
~K46C
@Yw!k
\u"R
R@ '
www}
+XHM
Pm2/7M
(d S,
L./s
tlBgp
B>"<
YO-6
+h@\
qa$<
'.-_
Pg(4
x!Gi
S6::
9--G
~'Za
RS`aS
w#.T#
@J' "
\td@
4q+
UUUUUS
$H;Y
\V.
g\ @k
yw%Y
PZ}m
6d(K
W8h
:Ft
>`5S
5uL5
@i0M
teOB
2SST
! ?h7
6jIC
u|a22T
48{8
ppJP0
}dVK
u;U+
K?;8}
cUlD
hck`
`["=K:vQe
-~Z:
H|@\X
PADx
skSq
/~YY
voGvb
}y)~A
3.94
`A$t
;vX~i
m,,j
qtH
+5.W;
6q5P
PS 7
{+y:
:@xd
n4<]NT
048I&
?RnP
EYR
<@A4d-">
[Qeh
]x B
t>5E0
D9{
C,fy/
0rO95L6
~(d"
C\D$
\VX]
q B#[5
aIx
AW-!
'<<e%c
ba1F!
} <
3Kgd|I
{ 6 k
tA
2qoej
0YWO
q,f%
0063
WX6$Y
#[i@
8&zZE
Gw5B
`mAO
6} F
%p4 | _c3
`lp
3x6L
h!XA
`*7_0PZ
$B_i
a)#Ht c
V: %
b-!f
XAAAp
$,&i
CIBb
o 5U
##m F32
%sM#
.SbQV
BPpg
Am>(
oTnsb
&f -
Puwg
Vc2^z
F M8
S;W'` Z
^ Al
6biA
C&DXL
z%2|
G'Up
n$cH}
0{<hV(
06h[
SM2\
?a}*i[,j$
HP+H
wC U@*
^WC2
, -N
v 8' .s)
y@*<v*
X}`
t_%_%
pcp,
W!W$lBC
C b%p*
nA 9
`-x
_`Whh
,*<2'G
XS U
-NH|3:
J DB
tdT
?.ls4
{!uQ
6.I8#
@"\:K>0
5q>y
D,TjD
g?T~
( Y?
` K2
n'U2Ez
W)2!7T
Cz8U
~ u'
oFX_WM*
amA1
%-$c
\O3
!"#$%&'()*+,-./0123456789:;<=>?@B
>SzB
]SLB
P!gp&
Rt/2
XJnn
CreateUri
2z 7<@
C 8
dWJni
Ck%LE"BE
tUH@s
04}5iM
z;d\O%
"Pue
1`yC
=?aD
lt@X
Visual
uBK~
Jh#t
lYf;I
=vGV
en2
Zr)(mN
ISc,h
4p@
)=sR
LX4C
Cd}"
|,Z9
Pl X!
UI Q0
e^h S
0LX3
ZgC7L
#?K
JD M
-t6V
iDR7
w+oJ?F ^
"OK0
>zu<
w rs
1# Wl
Fo=Tq
!X]!
JCMf
GB(m
c?n}
hSPF
p e`
ebV$
H?)k
d#>@
%GY>,
qF;*v
kB8S
%T_K
_ h\
)Nti6
M _6
-8O
\}u:
Y_&IE
TW! YY
h{CB
X+
h$nIBx
!d 6HP
Qj a
d(!`
$5aP
c}%$
?%>
B7
/72a-
H(88%HH
Alt0
B$`j
`P`HL
Y8,b4
]Mgu
6OH^
tk`c
\YY-
!.8
Va^\;
AWeW
L{TE
M3g^5
H{Y4
:o9pO
C )+
'$d+j
$Sz7
ZD6P
:\dd\v
o08lX-ms
ZA?C
Ue1.H
+w/9^<
eeV+
KmB
(gM
MSIMG32.dll
:5@)IR
-hCl
8,82
f`QI
m_SW
/6GK
&kZ+\
j&w
QIxB
[t
,N#(
7 u M
>Ram
r++v
pPY !
2wn
Xj@2CIi
/u;&h
#Cd|
50yibC
T"gkS@/
2y H
/KS?
K$kR
LbT!P&
j .@[
[`x c
C1pKHA
!1hX
VPdu
C<&d
/ 6!/Xdh
^H04
:&@_
S{%S<d
98r|
Floa
y9}~
9q8'V
'VSt
ZY]\Y
U SmVk
+C-
EF\-
VbUi
[ ?
;j--
e='^
Yq$c
]I
UUUUUUUUc
J@m}N
)6qN
-!a%-'
`!r\
p+}
qab&qU
-^5,
*@,:.
;.>x
-m[{d W
s*Zu FC
IohTD
>m,*
$~")s<
Kake
0 <j S
D954~
&\Jxtc
n'p
gdiplus.dll
&8t*W
O8 _
wo_OGt"
DIhB
`99
@FA;
0 qP
l!?N
;P=c
oB.8
0 .j
k;Yi
/ow:o6r
7UP
XR{V
<(" "n
\RTG
?&mb
l6o0f@
^J:9)F
%Tz!!HH
v aH
~!
h"R
Hi"J
p9t
ptXz
O=H>b
!PQ4
SWpZ
u<D8
3$c%=
P<9pv
)^{"%
Z%D+~
.4W^0
DOy3S
,b /P
gLQnD
D h0U
%WK)
D] (
BvXH<
CC;{
;@s<
aTfY
ko:@-
A{HP
[T;B
L6p
pWMU
q&p$0"
gO
H Ip@
lddH!'
vY7
LF68
u;hK_j
JxvAtkB
`\`
B+Y+
B/__
Dr r
AD^W]
4Ht'
/6 h+X
@!ZP
ex[H3
igNg
2$2.
9`P[
!E_@x`E
JOsH
!.d<W
>\F-W&4
(Z0R
:-hr
m<; vN
N*Q`$
" z^.
nYCt
k!B
I
.B_6
/H$-#E=
XDvU
!C0@
Hs4l
iAtr
{L;Z
GN_
E)n.
N%X(@-
Cyc+V
29h (
!qt
s\kj
90VI
fhTI
t +
D(~j
h.#{
,$2R
;;x|
UUUZp
},]: s%
\ s~B
j0[3
KCCH
!47
;R0"(?
Ph|LBWD
Co-X
;(8AF
529"
08<:o1 z
!W>d
Q"""""3
:|Sa
k[PP
nI#u
40p V
h\gw
<7CT
,'BEC1
U"iDc
-a
aK 3*
'14.7
<@o<
A@:WM
\{J +"d
$OV.
:AS
UM<V
3$SF
2R`<d(
Z@7!
Ake
=ZqR
W<@h5
PQ 5
3|(+
$xDF
F \8
R 4K
(&Va
J<<O
)D)>
UUUUx
b&,t]
RWx\
NV8F)
? 3~0.f5
w{K;&0
XHa*
X) 1
!:m9
'?>V5
#G^+
C99Q(P
~3
Ix|l
VirtualProtect
4vNM
^#Te
`7M$
8UB:
5yWZ5yW
0L*q.
HWC(
,T0
v,v1Ut
xZHp
YS9<
!8C^
SQRpw<
uRht
[$.d
MCcQF
T?`A
(XR-
fGCP
[.8
,-, !
_tJS
$v~\
`_t$3
Ca"(_
I;F&
Vz>>
s{_^H
@8*L
/iVFoz
DUpj
</To
7THT
\*-Lt
d#WB
Zn$dErroODL
wQG"$G
@|Nt|6X
SOCU
iT1p
H@MI
A r
;7?$C1
<sBK
@QXI
dHN,
XyoN$
1IT S
Z= *o
#A Z
p4{X
5GmJL )
ux*+z
ba3 G
c+X|
=h`G5O
+)d7
^/VG!0
2}%HO'=
< 8
V;&q
Z_Qe} 8}
Ch "VCd
Ku SS
UMB
oKW}
FTTa
;x_2
`DgUe
[[ oO
WSV
|KkLf
HQiV
b Xb1 \
PIF
|^Pk/
Wa\c
(@hh A
W$!?{
yp!
hRZq
o'5y
^hC up V,
y2Dv1
q,`x
Cf/ p
=M3='=
%1vuy
k''<d
o"Z8P
G<9GU
R50;
u= B.;;q
C !" @
<( : >
t@%L
(CC)q
n5p`pf
1}YBb/
(8X
7\ d
a_+
i-keLMwr
=&yB
Zt7V
cJR)
u%`s
\dcB
-Ut 2J
r 0
YUQW
p*x5
)"yy
'3
5 3t
6 e8
n6 L
- X(;
e^kVjH1
w2tV=
+N|]@`
3K[Od
J#58
S Aw
pm`-LW
;WXRC
KD6
S@1
{GaeK
>J+a
| _s<A
0z K
@#J
; r8$
#W{.
-79S 1
6`*,
B-eWY
\ni?
p[||
;kV<
hHx
O&w
qSv
EJ b
]P~3
lCR&
d.{'
tVT^D0
XdCH+
S +S
['M\(B
>odQ
/Z?/
_TAB
V3rH
-V\^
@0YYm4W
?AJm
?Zh%J]3
H L
`uB&W
7qW
*n88C
-T+Y
af '
,YhJM
(m+V
vAZ
D( X
snFA+
2,lM!`
bdZg
',XAT
9XPth
h)f
Kt ^
$|Ih
V^&;V!
/Up+_R@
PQVV
H~tF
}7z;
8 + f
WAe 817@
OIE/%
;Cg./
C;b1\
H}t)=
g k
R,
i@ xy
}7%C
o Ti
08~
K'Wd kL
eapd
&o .
'}
Pg]]
] tF3
xU.6
&q ?
w<h`
kc E
4F;8r
B$Nt`
{\t< ,
"jB0
2>='
XVWt
.8) Lk+
#[_O
v J4
v#3't
U8(t_>$
GetProcAddress
GT0r
v;n
S fK
>$v
m0_$@
*5"F
ej?*M
Wh@`
.GD D
u69+
xGM`YEa
=1S s)"zVWm
ejkf
k=}5
gS
X{ {0
! "C
( (D
2Z3~
gI]q[
fu2
V-i-`
hQI!'
Y0>#
L Bc?r
#;d
[VG*KE
X Fii
5yW 5yW
?Y@;
sMpD
^*b|
tCW3
>E<,d
6PO8-
fb)veC
YPw@p
L+.J:
"N3^
<?;`
JN u
QB_h
uF(d
=lNS
7\ %
t/l
^Hfrm.cpp
`oAGhYG
u^ (H
YOUT
gFw X
(a c
p&%d
}7i;7
SiG
9hu`V
*,<j
2 :y
CNtR
XL'9
I C#
Hl-h
{<6w
+Gl_
,, P
Eug[Xv4&
xrKkDbrWH<Q
bS o
(V/e
I9K c+0
A]R <
OehV:F/
1H{o
]W2E
1TPXX
L)L^
T%$U
B xMQ8
N)LT
H< t4
j Yf
ZPM>Q
hPeT~
|OK8,
/PDS
bEbM
Q6_ux
_M/I
?Zg
h
@X j
2KA>
zP2FK
WgAK
,g?y
XpGS#
9o~';~
nPDTCF
/H/!
* %A
{MXQW)
% |6
21B%
9&v+
xa^k
_,Wk
&/Pt
MnFj
Vs%
utH0
@~,w
llp(
2%@ e
U)W_S
%9y 'j
Iy^w
;C0v2
_|:3
USER32.dll
u:hP
a<<%
+@ES
= q)
oaAIZ
a Y
LR |C5BY
Hi O
h^CD
#0E9
I=.H
]t+X
P#b
HZJMUA&y
`c]P
ZZ%
|nL`
WtuHH
n&eB
qP5V
mdTarget
[W[C j
&xd[1
PX+P
EYCm8lG'H 6).
FnW~
i!] I4
VV=
7$2C
4I\ _
t`l0
~ |}
CVmY$Y~
PW4D
A x+ I
yu?9M
0;1tb
/]]n
_/_O
@4/
rt eGt
u0T
&L^2
7GXa1;
s*Hg'
F,D^
-$,-
YY_xk
=5Ay
DINn
-uG| s~
^^t Wy
BAjW
;=\}
-00f=
O>d:&S
Qa7h=
c,S\P#
2w 2
~ O4W
*9lk
g &*g
2U8v
/[r\
Q1bNj
W@)TM\7
Gp!MH
{Wan
#yUe
u+Z6r
IUF<!@J
v<'*6
[a0[*
U i&u
w:cX
M0a@
D9TL
TA _
(b_/~
p3<
_/_-
h_CS
Lu =$nu
FL+X]
S#
+@M 64
>,)P
-9=Gp
-H[ 0
~B(
13'4>S
fr7t&
Zz3RI
@j/!#/d
sjR2
,$4b
s;(r
&8`
WySo
h.L1
SRVVmd
?!9g
=AjZ
hN<4
"}G(
jv"D <vz
x; )
}Qd0
`",i7
&'SY+
06sy
AoA4Rec
|fgn -8Q
&dJ^
G&~I2
Dwm$
WB?!$a
FXPuWxt6$4\s
Yh@K[
* tN@o
>?Z"
6pTm
`r\.@
D=!{ 9
P;s//
LOG6
` VP0D<W
*MC!
\vLV1.
d/lS
(o7n
; wc=
;+ I
eSkQ
ue !
H|Tw3/,
c`.g`
+u!XF
M[%8
|N:`
6*!}
H.tR
#HL\
PSoA
IT7Q
uc$j
h3 #
6EF-
ue
t lK
.yYa
DD g
T||\
!1+P|lj(
~SK6
.fY
DH\=
Kk@e
'%Ep~ V
${kgK>i#
|HK{
Y*D`q
p0U{
9][!
6*!=
KC&X
^<xKg
wUqDRR
{Xrul
A0jM]
%e|
6X/YAA
z%nB
uk'g
\ u
)$1Fj
rXG{
&4FC
@Km+B
=)Ej`
w .Iz
P4kEW
~"nh
X x\
Wu O
nj L
Bplg
~ A Oz
@C =
VW!N+
NQiX
}fWPd
`"9~T
UUUU\DDDDD
dcmd
ITB*
ZHo`%
RL*
CC>AO
@ N"
uvc`
DDDDD(
sM:y
pA
We@_
KiLiO
xD$`!g
'z "
|FIy86
pS/T
e]
$}Pu
Y2v
[MIm6
I0xQh
M h`
*-8%
X[PXnw
)G,i
^ \C
.(%e
Q(:PJ
*KHFK
N_MOV@O
So]0
_of@
Cdd8
K91Zt,.d
v'Ow
WKN.
+$rkDT
!t'5
4z$GG
q^;6-
PP<@ m
`'<j
&&BC8
=o7.
#-u+u
4a*1
88i/
0gUr
>o#
+7h3
hYa(
DDDDDDH
q(~E
hp xo0
98 <
,k% .S
;TEr
!wqQ
j=^
h#BhX<
yH ,\
U '8K
j RE
%<8R}
Chi ?
a a%!
%3liU'1
$at6
ot '
!K6l
DDDDDB
Z_ s
\Z@&
=yw
!4A(
JHLXP)TF
0lLYu
h? h
c]bX
.
2|u!!
C`e|ka
uN8
/]aG
!cP@
'J?#(-
=s8o
;CGL
AG;QX
&q A
5ThQ(
GvXP
,TX\`k7M
?m;,tHh,ps
bw)^4
IWct(
31R+
>%H(
Fta Z
EWP%T
IW!4c
{XZ9
O5S(8AN
7O.X
mM7t@i
_?p-
iXP09
CB?n
/*%|
89X
3R96
!hA{
!G<0
.=Jt
V,&>
Dw=U
FA["
.9eI)$3 ;
QG
} 0
cUC
2-4F
b&8f
Rq,
.|$5
V@8*
5MkEi
mte.
An|T
$ N2
ut/m
i@@
~YxXb
&'
|(w(
Fve7@b
P@Z3
lC59b
A Pz[
4iLjS
nug@
Qb!A
+x G/[H1"
clude
G= ET
SwBhN
(X1J
YJ4A |_{G_6 C
#O, 4
B OqF
)ZRbad
_/_/Qm
KS
H h
ehdot$j
&?;D
d-]K
aCO_
YttTPh
2-gPba
1*P+
NLcU
?gC%
i`X9
8(=
[=P
W+6^
I> VY
YjDB
-U ^
c U%
_^i_
E<3usw
9bV)
sr C
QSI_
PLR
CertOpenStore
ck e
ld:L
sb5 0_po
MHQX
,m1dg
fxRm
%@ARt
P>q@
+ k=:
HVz#
fAy0Xf
k9sHA
ZP2pE]
dj.8
rb82Br
Rrb%
BO:MoxBp
w5PK
J$j
pOLQ<#U
PN?0M
1{QG
Hx;3
AlL,
0kI=A*
v#n%O
>?8a
SHELL32.dll
tw u
7&OR(m
Tk,$ ye
zM0V
'(,.
;p@h
2AxM4
%/hBl._
20}x
x m|I
rxdyHzy
EH@ Q
D[g
RHtC
;RK+
TipC6
[&S"n6
Cp.V
IAC!^#
110M
X`999dhl
PX@
T(R
L-
_ VSw
PNA b
8mC0
NNN
PFA8
- sA
McME]s
CrNc
J6j/
x"0c`
XX]#
W{2z
omgw
XX]-
r1~?p
,AX5
3Pon
A!$:
yl|
N\BX
tLuUbB
_~2l0
[N kR
E}=~6SX?; %~
qeQX
'!(y
H?-j+
~":)s
UUUUU
n ^O
4hwJ
D*H{
:`\)w
yph\PL
NGxK#[
uI~g
9S}a}o
]A0O
1"
!d d
C@Zqb
iAX
MXt*
9W v)
a wI
]N:H,
CWi$
@")R
4^M
&L*iq
n@or&
Jopo
L%#'
=WL$!
H4ct
MKU1
xkx0+
S 5s
q;nCg9
/6;]W;KdA
|@;l
x%U2
lt 1
Imagen
0d|.Dj
?ADBEv
> 0!`
v^M-j
X!vQ
OMt
}!,0
u<"Se
Sm ,
#v H
MSMX8
PHgT
\LPTX\.
bugg0
p!in
`gScw[g
|NpJs
WKWMj
i`w<
N+
N}|S,-
"#R
l9fK
}A7F7
LoadLibraryA
&-Z
c).n
wVlC $j5
vXgD
uv)W
.A?x
O@XHS
P%[/
_rQ|
tpTZ
5 IV
FHC!
8` A
s://
PjRh
ppI!p
(FSA
HY8kK
`i8o
w^$"-+
qt q ,M
!bw( r
T%]:!
,kj<
6Vv`1Jq6
/AzQ
.4 0
DjcH'
I-..
*$<).
]L`K
C?$4V
]JJ
5f(l
3a!]
keRotZ
P7bL
h0E =
,R m|
3NZ*
7p0\
3a,2I
!<xT
;C"-V
|855
G;?S
sxG5G
|D|M
Vf3.S<
_@BdXAX
oV~ R
>QVPa
K9DGr
!M_d
odfif"
V]Gh
{97 t5
CSld
J]iL
/GDp.V
:tPhL:P.
b,R;
"~ 6
Lz+b
, 0LwW
title>Goog C
,xx51
l3p$`]
WNWl
Softwa_
S+-Z
v} S
j :lBHNE
U@=]
Ss
GbP@
RZIl
GW}]^
0p,[,b
4lX1
H[Tt
aS#4%
tjHt7
A]"B
tI6 :
5c <
&y4
3@@S
/I4+;
aZ#$
OCJ}
+u!ud\
"0n@
(6>'Q
$r3S
bH}k
.@hP4,
} tO
Nao:
+WZ\
W< 8
,04b
m-`-A\t
W|x{
?g@|/
ijC=
-++b$
_Z?
|9tmH
#r ~xm
EKW#
X-`
UUUUUUUUUU
UUUUUUUUUV
!SQ{
(Det
pp{y
2}o`9
V j 9
Bh1Ri
>/ -a
hf< Lf
i!WZ!;
\V vM
BL_d8p
UG[@Z
zl9w
!2+S
X?Vda%
[$*2
1]uK
&#tuHM
W2>a
aG|
M(q&
8R$-
j f
uUUUUUUUUUUUUUS
&OpT
BNTeTnG
*7@
PD`u*
66@$~
[d)[c
o( %
>0u
!xl<
"xX!?
PJ!jG
L9jF[x=
"`Mp" o
*&[P O
U>?P
#fX8
Lf P
Px0[
_6t: n
\t0F
'o/
R YN
@H8FZ#f
;mGR@UPTBe!
, g)
l<-:n
-b0,
H%$)
8nt%`
rGAZA
F!lCS
j BT
N8\=
~4 },F,
]9a}{
2gO^
` \A
"L4A
0uX0
Li(
E(Q}
(u4e
u'9-
9fO@
rJOv
"c zt-[d'T
wOz!
ZK([
B QFa
;6KP+
:6.A
RasDialA
t ZRI
M5"
]e4I
k].|
02OB"
IsUC|R
XtbQQ
0#)
BGNv
/HLP
Oss,P."Hf
I%@K
de $
:t i
& 40V
/$.\E
L |
e !
Ze +
+?3,
j YS9[
r-(5
3tsG
kD (
$ROi'
?S&D
m -L<{.
dGKPN
I )X
X=\z
ePo~
Srrr
2=+$s
l9r~cAE|
!DE
r2rD
OpTKeyTr,s
0bR/q
h"u
<#$$(R
8GtK
mc-
7^t&%t
[m[!ow
(,f8
)_aP
~B\,
Kzen
9.WJ '
N60} |
D$q
X#`
)oL,'
Q!Ix
]8 PXT
!/5;S|h?
`bHj7
.T!{
wWWA
n}!t?
Q: &
&u;OS
ZIHd`q
)@@e
p N]
pqYs3
S80l?
C?!A(u K
v'ch
@z4
nNua
])
!yI90
<%a
b8$K
Y5[i[q
0>8.
<%}aQ
w0t]p
gc Z
D>F-Z
.:`KX
Jic_e
I @_
e^9wH
HFx;
dUILa
HLPCHM
vtgv
C= j
RP#W
mwp$(
(m|/
V KQ
cj8E
* Y''
Xw&Gr
`)Yt
AeZkD
-pl
UnhOdAk/P
9i \
UUUUUUUUtDDD(
t(W`8
i5*D
<:q~
jmC_P
E[3O$
Bjdtp
+x9 7
6p~
Z%`5
lOY?
; c6
Eo/ Hr
\`dh
#p-+
}$-g
? W+,5
t*G-
KQpC
_6.a
~;H
Lc1
^zuKj
21\j2*\@
I0'=
%v_|
R;M}J
2tk,,
dc'P
BwJD
' $U
^$0T
C@[pZ
Lk8k
`Z[1LF
*^SJ)
QCKP?
|22
i6dL
d@alQ
VF
BY@0
HTBP
z$hQ!G
Z kxYS?; $
2Bl2P"L`
uLK@
"vFTW
J!" H
oRup8x
rrI@|
'{;
A^#/
w((S
o 7bD
but1F
hM}47
#,M+
5TDkO
AJUi
P[Tp
c J
+`]p
H0N
WP;Y
%;%p&
C< /
tq
s-Te Of5
5 )u@
jd@t
^)=6
bu 8
|F+Q
WKT($k
fYXFF
V<ltB
>lLH
,<Z{
z"A#
\++-
=LV,
7 Pc
5yW;5yW
EfZS
af^L
YSWS
w u)
#kn}x"
Ge,!
D:.%
j _p][
xUHWD_
W7@cBwv
W!F;yp!
LVE
(Gu<J&
!\Ki V
89{D
AZ8G
aP|Q
X(%d,
wzcE
j( OI"
%k y
{N1pSdO
H0i@
I G[
N& ^8
+<^|
j~$L
Wspt
tX"
d|forQ
BqCPi
@} )
9;M5
?]Oom
i7x@
@.M
SX:\
G5l4
?}x<t
L2DL
c6Nc
![K
QR5'
%a2
k"(F,E
\.(,04
I^@f+6
TX\;
9?jw
-od[
) ^
#Hu}
23+-N^t&e
N +N
r)tP`
S3sE
DS"X
K 0V
GZ%uM
HtJHuGl
UUUW
UUUV
<XpL
![Kx
UUUS
6B$+h
+M~S
H`%8
qik~
lSr|
%gEM
8l0/
cto|
>l")
3&y,
@<+<
8QQ=0
@S2!
`Q?m
)`Wj
J #&
%'BN2
XW ;
C;W|
UUUx
@g?d
= *JE
_}-}
HgximIx
!4cx_
t+VQV
{ &v
Bg
{jV@
IJ1 \R
NDQAa
+6=U
h+%"H
}SBg
.iLc.iL
8\or
@^6_
eASIK
[/L3R)-
*[]g
~$S
P}PY
_{8895b1c6-b41f-4c
A!: 3
B.Wt8pQV
x_0MVG
s9q5
3[;0
b'yn
WPo]t
%*Xx@k
g;0A
-@ss
#L QG
P`XQ(
L_ `
0-dX
';5N`
$}?Rz
$+2*F
QMP%
4 U,
ASS-b(
}(
LOiTP
PZ=g
^wi"
x6* g
UUUUUUUUUUUUV;
1^t #
8Eu/
VVmm
zi J+
sHwL
L; FN
S3+P
|` h)
E2w\
A` =
"<-t
H0ngGf
5j: 3
8 WD
6*d*
4xV04xV
{ou-
ik]&
Adj|A
iv="
SGWj
*qEp6
DbZE
KN.HS
vv"g
t'0z
<a+[N
bkQc7
t&%P
ue}?
q/)P
'Dx@
%n'$
4@aT
q" kw
)|3%
K]lm
&+ZS_
fY+
a5&Z#!
m:F0
0DfS{
6~9u"W8h
W1- ?(
t Wd$
i < 11R
rmQ</
n( );
0JE%
0)g C
`)HFz
XT4p0ch
&KZ[
~6zM
a! `
j*,T<
.*;L
<WVc
4DmK
M(6?S,
-=pE
na~]
\R,X
A C0Z
%uuV"k
/;.K
y B J $
q :C
xDlt
mP'H|
f-&A
>kMfi
_#qFF
u=_
`t,HuV{
2+hEM
fH%
o9YLI
u4+bW
m,Dt-b"
5(IY[
-5:(/9 `
kj"a
4 l|o/
S7
'1@`AY
6A< *$tJ0r
XkXq;
N"u9V_
4|(S
H. QI
vlCOG
axV1
CMcx
M=Wj
:[_4^Q
}ae|
MGP=
! ,ah
D X@W
bOA_
IKD
/Y,M
<4A|
a;d<
fq
$ps>2
.U-y2Q
>MWP
z}+|
@AZ `_
AFTE
,?. x3
'TZp
`YB/Y
nZ>f:
-?7'!
g"x(^
%h([
:sm&6
lBM+5m
~pBU(p
c`Rg
I ld
TAO !
%IPC(
:[e/
N p
;4Ro_k
$[OWs
Z*WSEa
/g0!
o sD
a!04
eA .
{j_ s
4Hp
* >mm
_4E+*
E\|V
%!HYYu
+\!C
``;R
xp)!/
'b1
5J (u
%-dR
zkS,
\E9 K
PQj
oikeussopim (EULA)</u
BC6Tl8
iEo:
}aPp
G;^|
.-XL/)
U?$F)jAXt
ekRLij
Z m/
r.5^
P&c423
.Ig
p?dj3P
^h&P TM
$"pW
hlc=
7TPeP_
XD M
:<!)
Pa @@U
J8]
xb K
'Ec0J
(l|s
*.7+
\'gl
-#_%
lpt|
a*a!
4^)M
'*a8
yXltH
BExPAP
99y&
wY `)a
wKT
O&p!
O| %
@ <[e
RB};
I uj
A15F
_=2:ei
z~$W
6+Gy2
N bo.y
V.@<
M}Eh4>
E.IM
J&9U
l@(i
'R'q
th J^
5yWI5yW
V,gOiS
$$t <O)
rjmG
N]$P
kFn.pdb
}M9mp
t'>X["T?
p(PVo
(4P
v_D^
r!.q
.EG
7!da
G_C!@?
NNN.}
im]ugk
''dP
HtbHH
gm94RU
~QvD
u}90~ <.A
^W^[z
S%H|u
/;v
:P/ G
AG2CX
vuZEeu
E3fH
&VFA
b( ]0
4C $=
&F6~ Y
,bEc
L (2
n@=~
( m[AC*X
OW3t4FV
hH~j
$cn+
FyIs
X?SX
5QX
etVg
@FrS
700WP
!VkX
goe UIwS S
WQHN
PathIsUNCA
urlmon.dll
<zQ}
ll%9D
e">DV;
@ $u%
j 1V
a9{,J
,h>
K9?e^
(Sq/X
|?,_ uy!
r [D
U>c{
px|Zu
7jsnp
DrawThemeBackground
YGH>:N
ga{2
t )u
o~72
O'w<
$Bp.
\jQ!`
xdr@
JL@
v`~p0g&
HC*8
eg%^q
`#`SE
A oC
j%pv/
MN'_
Y/!|I
TPSP$
xW& R
e72H
Pj4?Xd
/r~7
j XJ6
GHe
ye=0
Q /
pQ0p
/?p=uv
ifra
YG47}}
%|#L
F+$a
i;X`
-`J3
/@8R
<2e-
6Z} <H2
^+V[(
/udIQ
kGl
@x+|IhZ81"ACa
.@[NlS
/ Sm
GJx1
<uPVX"
+M#M
P6h ,!Gz
8Dt
u`brr6
1E34
K%O?l
T$
R7fC
@x'%t
u,w@t
]B>X`
gvlB
.hL
`)d
u%2m
oK>C\b
A;PI
UUUUUUUUUUUUUU_
p6Tc
ff[?8#
UUUUUUUUUUUUUUU
"Iqi
)h%_
oHY<
UUUUUUUUUUUUUUS
[M;V
0@v>t4
L\eG
*1N|
Q7&F
50Qz
t!'S
YTRy)Nz
nscm
K|h
q`Gu
)Zgr
I5q`Kn
]wjn
OI$z%
ibuw
bGTj
J)7_
x2S@
@2n8
`PWD
8XX
~ZZRh
~$l|
C\,a
5pSC
j (
-YA6
?/L[
`$@H
9x t3A
7E.@
8 l$
G*{&
M C%Y'
iqC\6
}de(
99Z9
V#E
dXL4$O
vkS_
DELE
"lckAeZ3
ma>h
X$`a
JD"
0 (%
M;lu
Dm3]W
r`dhlpr
ZfS]
. $4y
]y_ko%
qv]]
ARAp
1}\FC
?w%Au
H $p
xYY|P
aG M
'($T
,3(M
'kI]Y
QXSZ
%Y]
E cW'
;Gh-
%XCJ
. .d
OPSV
he?<
-c){$m
C'9T
C[D$ XM$
x<X#%
nh}*:
8+_ 6
|>J.
ZB@p
h ic
=`P!
a4:$
x'h_k
DgHr!
f ++
%FUU
CkKc4k
L 85
k 3V8
JSx&X
_TjX^V
\S8+{<+
XeNOI
u CZ VP
PE<>s
4!,2IS
"o)G
l$P>hW
k~3#b
u3rl
|t P
eNB
e xc
cI;HM
$@RC
j$RXg
e\H
\ ?
unW6ZmJHQ
?u(E
jZiHB
kX VD
wv"w
e
l _V[% m&c(
a@`
YFU|R
ZDfA
^oGx
6 n@
Vh@Vh
v890@
RC`F
T e
\`/?
50+:"
nh ;
`-Te3
6Rrd
9Aew
i](Y$YE
4.iRUmb
fG_$%
x8W<
Ax A/t
2jsk0
6)D`1B
Q$ `< C
&yyU
%aR4
c#S
[dIg1
2nbt^
UUUUUUS
wP[
eA
_*FD
5If}\
U9p
?JpW
e|3c_
ax%
VhPa
sU#!
UB[N*
X#au
A)D
,L3[3
o5G}
lBS-5
pxeI C
G {
cerD
'4`h
h.Vq
,C66]
+s|M
Nt"
xrQM
QF F.
<$Xf
&C!31
+9N
]0TP
h4d"
hpP@j
5& -hK
1"b
YJWV
0 g2
Y9*u!
/ %|$
EZzm 5
r8Sx
$d,Mj5
#%/6=Ceu(
sn[x
S(>*
qai.
'S RD
Vl X
(q$6
H me
[P/S
@Jw5 i }
ErvEB
:]"b
aXI5
/#[m
7a=J
/!a
OtYH^
ULEK
(s6R.
Dey|
" t4
}E'<
GWp
H|i Fuc
7k/x
w%h1PS
1D-G
p3X<4
mtNK
(swy
@")
:\UO
dCh,
e ,B
BP/H
MR ik
!t$ ~o#
#8yB
!H#m
/R%=98\
!X@yZ
{1bG
NaB3,
:@vX
<w;{
'I/9
` l
^_,b WN
pLH#
R`Q
=9Nn`A
"ga]
^% hI
UTF-8
]'d=&
5W s
DXkhCb
sBN[
l3yy
7}U.y
YxU8
HLHf2
De+s| _
w WR
%9#C
f4t
eHt/
8X'e
= D
X0i+
9^dtO+
8% n
Dx v
$.A`
$t/vY
Jl ~@
_S__ o
$%d%B
PzR1N
H"Q+
Q8A
dWK*
Sg k
x~&j
QG|'
V@(Z>YZ
t)CW
1_
Q r@
K i5I_"
JAgI
qin{`
0p1!
a #T
TL)6
Q;}7
bw'Y7
=0"D
@\xQ-2j
(d|!vL?
bxe"a5
']9+
+)FTY?D
E8 D
.hK,
?W>2*
0p1
QLM(
#Yyj
w NK
I2[
WordToOb
<>)-
p# @z
Pu!@
Wwww
6|3<
=mk_B
A!V()
_f#h
_CSS.
FX8h
aCl
zhPf
<PC"
3tJPH
L$/
_nI3
ch;C
!2CTy
`-N '
Y &h
)e@%7jV@~
Q 06
t<w u3
}1;~
Ctx"
x84
,XD3
V`h%
E 4m
C @
PV <
=TGl'
Bh_
p WWo#
D&M}
dH5
4m Gq
'YQzpP$
lppttO
8(:[wa_S
u*]j
lL.O
fB]]G
MS`j|Z
'M#J
@55 m
4yW 5yW|4xV
akCA
U<%:
{S7
-'~$>
WINMM.dll
i4ZdP:
j }F
VD6G
XtDP]
0hSg
a4SJ f
8B0nP
6 chK
L
kP Ba
h @@`
>?w
`B`!4
Pclg
m Q
aU n
qzNu
.EAs
.8WuWq
acx-
(rVSCA'}
o7;>
X@vH
O 8VT
"VnzN
&OnB
>Vh@B}
eJ2@
[Al%*
7lxx
W%\D
Dllx
CyDy.
_D
1 r4;
f_C*
K?cD[ iS$
d,
vPEt>h
#b
.NP8
*v "p
.:3q
, $9d
\CoWP
fJy{sM
!/kX
^|4+
J .t
& ]%
p]$u
k_A.
HXUG
>lA9h
hxa97_uM
?Du!
O(#@
^ Z A
7;W'
DL\p/]PI
n9Uf
*i(%)l
EP:@`s
p +p
|j@F
|F P/
&`FZ
v@X+
|q<
&`FH
^[VhvPZU
+6qg
\T A
RB2MS
*Q``
WZpe
#(A1
Ag1'
TZ@(
KC`c vC8
ofId
-i@n
t3!mB
rAbM
>7/3h
T%i#
UYaU
',42
)WE
~w+`@
J$00|S
MV]:
Ss3
XFg3a,!
J gW
s h(
s7Q5
!iF !
0Ah6
kUHJb
ii2sR
>T@q
P|EWu
VC20XC00CB
f&JX
3<O-F
`!0g
9h9>
*j@r3k!
?@<$
#{Ai
sy"j "
F=0x
N|BC ~~
H u.c
-9F<XI
LOSE_
p l%
,YPb
gde^
S0|en
,xP ?
wutM
3{6e =
tp 'Rweb
V!A -B
^n7(
'p|3
Z_R`p
vMFAL0
{`SW
awv.
1))D!
3RGJ
GX1x
aI ^
cvFu
jlv@
orTc
Tx{i
UUUUUUUUUUUUUUUS
[M%D
W q
Q3E]
Gtp%
qtd.
Q8'81$
|6Dx
s gx,
H|MnSpa
?o*S+
}iC)
0 \pE
pGdmC
- .'
Obk'
RJ\J
3tv/
57h L,5
8M?~k d
Sh$< R0
V^`
9 bB
vl#W
FEcPCe
c.2I
iC #
96eJ*D
o+9Hlv~i
u) ca
#.%w
`$m
)QQx5
ehy/C3
K V
P<88 Z`
f H
p5.F
p,N>v
GD,
J^ ,
9)8I
=&S)
E*N7
"[X59f
IOs~
qC&P
/_9P
e!1
*y.n
Y1ja
9X4HK
aGE>.
P`x:
+@MH
GlSdh
0aQ(
,% Q:
oo;q[
;E|K
x"NG
J l
$.X1
4fC \
\C]HE
YCua4
d;)XPCn
IhH1
2[/PT
DCpV
+ICB
mlc3
Xs[(
z<{ c'
x :
D\iW
z4l8
!aH
b98 A
_!?J'
Fha
Rcg/Add
\{Vy
! F l
P5vS
jhUs
Ii|I
0vM;/q
uUUS
5}yaK
/gKf
AOg
0 652
xH}Q
(Q Y
4/wJ
qG2#
Ax{
E8cSPl
NQmhE
S,@t86 8~ @
$p B
oB{[
I>H/
DOTL
Q]VVb
0a3(b
@')Bm
M=52'
uvx#
E80+H
)Q `
V1W
&ABJCQ&L<
+"`),
iS
I|-'
;tv-
/8)!
t K&
E GRH"
_A"D
7wZM
?1CB.
1#j%
StatusBl
b7.<1
7&CO
i|Xu
)Lt &
#t>3G
M+.8`,
K1vI
d6;}j
{K6/
+_,8k>cyY
AR9B5
@fI G
r@J0
<l c
%"PQ
q4gC
Dv[
r }'
&
h<ORV4N0m
%:uN6
eZxu
Q=Di
xPR6C
"W*K#b
bA'&
JBMG-D
3/TC;
EvM9;
^<ty
H&AbtOS

9gCA|
Gi|
/y5pO
Bitmap
E56?
!=I
9wfe
6 vmu5PF
_"pY
ReQ
C'@N%IG@9
SPGRI
Yo@p68
99V
:{C {
@ mG)
g=9Bg
UQF/m
>lzd6
)008
a;xG
hB-]uI
g8]u
(K<@p:>
0(lh
hi.2
8<cDf
V!5u
rl_DragL
$iYj
N3)1qh
2AL%j
MW..@
PDw>o
7a?`
':KH
T,@T
PQAa
7R!,
n`JI|
/rIJ@
L<X8S `Z
I=T $
#+`N
=)iN
XHs@l&
a6)\e-
&aI.h
sCM"`
e'F>a+ !
zc%C1
5Y6}c7[/#
!804f
8S8#
**'?
mK98
j?/^I#
l(#
"^
#PE2
G1x^
Dy.
/z:\D
V0RL
nL[*h%-
'\^,
A.ou
W+X8
M pZ
J,kP!
pn*7
8W"ZJna)O
OO(4
O"H7
Au "
S8<&
JX(
0"^t
p_$aQP
$/99
PW?
D\FV
cG!p
F$Ek(
$~>M
<xYC"
ik{x
)$e)
OMWj
9M2&
KOO<
v~OTdd^
8VR/
0e(8
\\p w
To|-
R*C C
=.h$U|
mA3
& pZj
oC 7RM=^
+\A|BU`0v67M
:%j4I
Z9,#
L@8
xX$a
.p_
Au @
K}K&`4
Ct6D
As<H
pb'Z
~4^ tB
9d#
Ax;-
%5 A]
8hx5
C\ T"m0
\$qx
z 4 B
(^r
)<14d
Em[VV;gyF
4C36\
Q1 ,
?V^(
S}S*R
@. "
DaS&
UWP
dVn<
)V=9=
!G#W
IF/S
#~ihujdis
Pba
=L\; _c
E{uX
E`U]
]CoJz:
g[tHb8}
CgdQ
mj1 z
l L[
gWYg
U<Pf
g aO
0!SI
F*xEw
+mfS
895
V3sM
qCK
bngY6r
Q""""tDD
?R&L9\
`?tujE
QtSP
[t$;|
Mz)u
QJ6@m
`L(sp
op%1B
K#&,O
h TT
eO.t(a;
-{|;h
C&!Z
h Y`#rw
<RPR&PY;
75PVNb
i/>`
,Au2;h
KSfBB
odO0
q~v=
0D:{
_9ft
MPWV*
nwk`
u S=W
"f]
@ LKDw
~_ SF
U?0+
#s0~
tD!>
/bAe
OhxmAH
S <%
YW[0'
Ww:GB
^6P;_
3vR@UP
)57WRb
!ccp-
>-%9
x LE
x^#\G
Clpx
g0Ne
Xg7N
@0r7_
tS%h1H
RI '%
F$Z_
7rrQ0
#00
9] s
y&dL
K8 /K
`&f^
6;pJ p
PvMQ
CT9#t
Bw'T
Kuk
"gcv
>i!VVa
. M0Df
?7)E=
^+-e
448=
G\[c
<srqpo
RJ!I
tSh|
/npu
$GWz
Q!5
rp`p
6X8z&
?j R
rmGo
@P x#
(~~b
%u o`+
Ze#Gi
!xQT
.8ts
C $_S.Y
)heG
T H
SCP`
E7bQB(
LH8U
{Db(#pAPH
JX3+s1)2
$Po<E(
kQ?C
3X`cJQ
" d`
E&?Z
'r$sI
l"$)I*
L17i
-P #>q
|c^"
Ik\s t6
ZP\V
@B8B
Fl[d
>Iw8W
]W<7
.][W
$~Hwh
VZ9LO
K@h@6
Vhk*
qM|$
QMv#
|j<@
Pe<T
#7%O m
CM@lG
pP; )u<
%kf
0^W_c
RYc,
>w3 !
"J.>c
{m~FD
@K`k
wh!;
kh Xp
t0(o
^v%BCX\
B'r)
o@
E[W|
oVr){
!lc!
~lu"
8b ;
t@CCIP
)k L
o~(Ht%
gF5
3B3-
LA'<
B EA
..!-
1puH
P 7T
{-K7
?8P9
!#ir;
omoO
Bu9C
=MO
`(x\
PxS\
'0
|Q7
G^ }
8#In
!Ah@x
'[Bu5x 5
dXI
}-
2%tJ
P<h
_%gd
X~sP"
S MD
oR
diObje oiHDC/W
7;`-He
KyfX
8_>R8
g7 =
?H`$
")rm'42;T"
;C P
k6~
Vm@_M
*oE_B
49U O
8vxW!a
z;B4SRl
%]=)
.\g_ 8
=l*h!
F\>
`P[P
2tR`
Sj}<
4qui
5f`G<P
EteMk
;W&G
4#
71eM
HDPL
vC*:
:W+
Cu8,
R@;A
'@K5
G -1
Zi=
9=
H#:|H
_"VU%
8SEGI
t:bF$/@` ]
PE[-
r}y
+;q$r&&
Adjk>C
W7 x
- M$8
Iz{"
OH^'
al-5
^l{V!
uL%$
&g\X
p++Yx
(D &(
^ii.
P' R
vQ |=
oBjD
S7a
2A<)
_#Libra
x}[d
7x`R
i SY
M0Z(f
`sm`
iBTb
_bM,.
0t @(
_%
+$$:1
Q#X5
Jf>~
@uNN
L#]h)
# 7q
703Vl
Ke @s
)Yj$
iBT<
3H,6C
_ T$
$`^6
UUUUUUUUUUS
JAr[
M_&hP
A`f$F
F d
;}"L
RWWfP!
l\ "
[/U,=
<?xml version="1.0" encoding="UTF-8" standalone="yes"?> <assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"> <assemblyIdentity type="win32" version="5.0.0.0" publicKeyToken="6595b64144ccf1df" name="Lying"/> <!-- Windows User Account Control level --> <dependency> <dependentAssembly> <!-- Describe metadata for files --> </dependentAssembly> </dependency> <trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"> <security> <requestedPrivileges> <requestedExecutionLevel level="AsInvoker" uiAccess="false"/> </requestedPrivileges> </security> </trustInfo> <compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1"> <application> <!--This Id value indicates the application supports Windows Vista functionality --> <supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/> <!--This Id value indicates the application supports Windows 7 functionality--> <supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/> <!--This Id value indicates the application supports Windows 8 functionality--> <supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/> <!--This Id value indicates the application supports Windows 8.1 functionality--> <supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/> </application> </compatibility> <description>ProjectRp.exe</description> </assembly>
!3v?
<8=TW@P{H
j@Y()
0Vx
$eM
%`#Z
UUUUUUUUUS
O- V
E2@
T^O!QcSM
V.V )R
xk!<
Palette
8Xp
Xk%,Z
f*IH
Q!C
C`j
d7w$
qT>^
\!p@i
guK0
*!^[
\Qe"
.^v"/
bPih_tO
8Ibf
:AjR
RrH BF]
T/9$u*
#K-L
X` 4
">rD;$
<3C2{
S1\M;Z
F}
A9O 0
j,u7
w0+N6sd>
CEl
]|PJ
WINSPOOL.DRV
g5<0
8<`0
Sh(N3Y3>j
Q<h
K4bZ
,ICb
t8`+
3r%d
,t!8
E"T-
U35H'
^Dr%G
q7xO
+& v
u%Iu_
uWp!4
Z@VEY
B?Y%M
chIs
>O V
tp\}
hZMw
67_$
AO>s
aZ0*
Vu!u
D(zS
h>q
8R<p
OpFt
^+}!A
-cK0
j-\/HW
dgS^
o=C
@*"A
mb~t
C0N?
#P[C
oq2H:B
&tP\
\ tI
o`u 9F
/$m`
n(Rq
-gOL
KFA7
m?Vfa
=y.9i
hk2P
\SC>
I7vf
1Hnl
$U"@j
^ 3,
(Rlr
4ZbW
dg<W
$C-a
e?a1
A'?z
PN;VCv
TX\
l, y.
#aT E
`AcK
ciP@
yrp
, A
d\`hT
Dr8f
1+% U
QX
+ `V
E ;Q [I
SI4stY
@ DOt\
'GNcU
#^L%}*2
=V'y
G <5}
0>x#
$oer
Af9r
S>(E
^* iPz81P
#Sd-Ic*
: k
TXh
UI Goth_
FYF2
aG_&
M;mi
7e2C
b<V!
&I ~
r<Tw
>`G
HpN0
Ca W
!qZD
[ %gnz
34Q&
BlyM
.pW<c
$_P
!h4^
90uO
RQbPS
|CMenu6
;\@}
K.vdTo@
ORkN
?LN
T6a$F[
e2eX
!D/?i
VSGu V
F -t
aAF
t(e(
Pj-
]<m
EKWb
X0wx
K qF
.3cO
~E Ll
/A T
-+*G|
xD+H
U,|
C^]@5PZ2
\)W
)YOwP
c)!a#w{
2P[!
m%M0 t
HmBm
pF;-
$nCa
t88>
j+BE >X
~\3
t hR
iiJd
7oPt
@&S|
q&`ej|
h5m8h
pe@.,W
N(KF
mhTi
d-#
#s2^-I<
zh tpd
P0dG
X1a(
|b9,!
U 7N
n@DgT
THHa:w
-a562-
t,VojsPsGB
hN5t
]Pb&
"?&K
u Kh
S<Q8
nB%8
i TT``d
X18
'V}Gl
NZ/Xp
Ne.m
1| iH
5XmI
|T"+
9h/\
M1&X
k;=
'RP9<
|-NlP
I k7
; "/h
%?b K
tx\.
hvC=
I=>
Of 80
1L,R
)+uB
F, )
UPX1
UPX0
_e0@
RW G
`!am
.hLn.hL
iP/P1*
1+q$[
M>$AM02
pvcb
,`H)R
08*xbtQr
;`f[
_Bl5
rt6h
HcG
+khm
-d*a
AMT]xi_
X~ L)
qEf[
]Sl:
j@SS<
vwZ:Ao&>
/i42
CUV@W
A|.6
kEpu
&o
WC9J
D?W%
uBMu9
y'd
X`0St
&yUI
![?#,
D'Mvi
MG
*aW?%
G :D
[ZhgF
RgF<
&<P^<
-d*!
mB*r?
ss0A
}^HSh
?:%n
>:P)\
vXW.
GKN.
8a}<
,U`]"
a=m$I
J ?
yFR^lz
9V p
w-5U
Z eYn
@t4L5$
6[1P
O14:uX
$ki}%
@ >(
nT!+
T` k-
4^^}
<J A
i4B#
?4j<
^HX]m
p(@L
B$rI
~ j YE
RI}1
]{hO-Y
R/3P
m|.\h8
tO]itsC
x ?V
? w0
=<2
0Al
:?g`k
:sVw0V
".MAj
$}k
VKUW
bai(
(Z!K
=V1P
tT^0
Z| p(
aS#6
&&@k4
9gLdT6 #q
MoMo
@AYu
MxJ{
De|Ou
7Me+7
x!T!
'YGZ
S t0
TM ]}j
"N0rt
5^sx,
4R8g
WU{t,
B')C
|1r*
m 9HL
9G t
ucW7
)-qC
Gy#P
j+uyV
>1$5
+y!C
^)xU
+@7,{
?M-@
NKeb
-;D"
6AA
@`0dW
>~<i
%I_(h
5bR
yFxs
DZ=N
Kl_/_
7I%s
@$}oD
SS%O
PT^I
AS$,|Y
HRh X
vo2NGFO
LD|7
\K-Ta
wB#m
@.s2#
W.I,
j051t$
48ZJN
}7]P$
%Z40
B(^@
]H+\
jF ]
\$ +W
-|\<
QBo:$G
h:.& {i
Rfm'^
uMlq5Q
V5 6~
( l
,>H%
`+rj
4v29
N4#u
:@0t
0N?6*
NZb7O
)#W3
vut<
D\}(,(
tP#uJ}xt
m8u,
z @q M
: cuuNq'A
+>I2y
Wj"3
d~np
W|+b
0Cp 5
J"pJ
tM}mS
4tMS
8CSugG
`'gp
WC]c
x ,&2
| FJ
;999
r5K!t
+GLo(
bsBC
'`c
%V(;
/3e`
XCCY
"O}*
K^3+-
nuZ5
fBkdl
G]F(no
SwC6
HSX(~
LWE_
VMI{R
cC6OS$
o~Z,3
W{LzQ
M #G
8%!oJU
Mm;F
TD"5
KERNEL32.DLL
9L&c
A-s 9;.
LBGc
X9%4<
n k&auZy
P(Mcj0'` =
oD9<C
^Ijt
ws6R
m # v`UQ
mLu$<T
''CI
)RXYZ[\
>HQt
X!&y}
S1hc
WB=`
hA?out_of_r
oCY8
0v AW
m h&$
kgH dZW
PatBlt
J2h
Mtu W#V
88XJ
"iDgPB@12
X$$dQV:
pR49
pT-
J BP
1PA:j
UUUUUUUUS
5A$Y"
)Sf
D v
`h`%
W;svQ
{4g
PQ2n
l]3t
LgUpAdWl
GaxL`
mdbpW
}sN
6\ (x
hd;~x
v\#(
u4-h
xP
4_WL7
>V:WX(
B$W#
Zu@!
Xx\1F
(7`<Hw
+g -
{TWh
N@ f@
% x(@xl
o5([
5HA`P
-X a
#i+!H(
TV/`
P80>A8#p
5M[g
T("WV=VF
.UxO
g.,u%
_X2
;`$*b
N)g%
B0
~ Cg9
>dty.
u2D9
Wd>K?2
CA3,a%5
A!rA
ujt`i*mf
zlK s
VG$T
MS|w
F 9Q0K
999<
L0@p&/i
voke
pB@N!
l s{
;H=%
K[ PW
%e]Qe
/QG`
9V\u
tv,$@
iX P
nn(tIP
egxfa
1"'A
/:^
)@u$yhD<
n(PX
ASDX
4>\b
fGH
20bq
pU(6
v^/{q
>os.
/GZ|x
pq DHL
&%d R}p
^|aa
4O R
`Aac
*o
JV@*
1$ V
FW7K
LKAL
3hxO8'Z^
9|zr
A2oC
)PL u
2=HQd
i+f f
*'B&
/ u"}
`u,p
HPh$P^j
\CA
4W)%7C
\xXck
P!A^
S;M{21
CDia
/V)K
T]:e}YOnEV
OQQZJ/
',#k
1(0_
_LaMn
Jl%9;
8Qpe9
-.SM
+B9|
D, H
j,0W~%
X%&}l
0S.^<
K g
)![o
DIL[u;S<
$!/"
/DFS
%PQx]\R
98<@
3Hx
LR Dp
D{?@
Z!y.Hn.M~
{a)`
ON\cR
Bv,(!#
v%PR
t{M1
:V~W
~hp<
2DxX8
Jb
7 g7
P Tx
(j1,
vpa@
zJ2l
L/A r
YhkI
?sksFH
-khsp
&Resour
Q#=*=
V.H@
0@m2
Z:Wd,
'*"pI
Hb5
4?V
}fhc
(8<I
beRkmak
$z;e
-Auj-T
P+u(
-J V
x`d<
)H30
<Iak5
QJS 1S
'b(V
'R)D
yBQ!
"@3@)
!NpA
~?j
\] _Kl
tKV[
TweXC'Y!
3)Y2
b4(1
v\>n\
Ffh-
( Vg
mh l
cQpp
glm5
K>'.
v H+
&@o?0
$U8-
|PpC
T|Pm
KsYS
"tFO
KsYW
_t CC
P_=L.J
(!h
|LKH`
71|.
cXfw
n~u"
mqQm+
f_Z5$5
S/Xp
v5w.
A[kP
,H8Q
R)|d
[H'opup&qs
H{WM+
g _0Y
X. -
7 k[wv&g
CMA]~#
L0GegLF
UtA|
uUUUUUS
9+/t#C
= 2E
WSV_
SPUo
jzqH
<7<SbAZ
`)WF
PZ|\+A*
:ya4
mP<C
y|\a
#IN
4DO?[Z
@OMOg"rO
#0>E^_
k'Busy8
b4M
HLPT
zp(S
Z8Y6
pNqA
>P`+P
v+Ui
Fi*7~j
z,R3
iRJU
}L'H
$G[[
6*z4
B4. }
j`g+
4Suu+
@!1AdY
&8$s
+bmZb
9z<--
q-|x
EBYCc5
s M@
%R"J
.b!=
Rrv\
e ;F8`^87
clmT)
$<$"U
$FRZ!B`
%jy$
jY_9
RVj^
u,`(
ru Z
]Etcg
wv"V@
K_ 6
kHSR)9
}\ '
V7(a)
aHwG
( 8PX
UUU\DDDDDB
gi*s6
$V/F=9
TCW]
TZ,r
<2;m
\&mA
H3xc-
?` K9
S/-|
?Y9M
gpH(
C+kQt.
e?@j
pV \
8V@W p
t`"+TN
K418z
0Zohz
4M!'
64!w
&K:{z H
pEcO
CTPnc6u2o
x> 3(8Y?(h
B{eH'A`
9.2/
Y mhd
~1uL8
vW-Z
s [h
/ ]*N%
u}V v
dxk|H"
)+ajp
\:KF
[Ra-4%
lu).
VYiK*
K;M
4P u
_ XO
0@Ja
VQpS
9y.9Y
9B(,
0M!4
ELL_
t5]ks8
~|/u[
c1$ AZD
94<D
M U&
5LxdG+!
Q1~Q
&r9(d
~Y*Ip
GbDY]
+ 5I
Co N
,"3z
0u1`
iSWK
sd@.'W
|)t0
CA$d0
SYSq,%=
{GSG
)?u>
O8vO"E
QX-b-
c ]IK
+T,}9L M
}A9}+
R>Q_"
^t?5
'L;|
Rh`K
f_`G
($0\.
Y^.
IY? ?i*
(&%1
l#7)
H.@4
rfBfSI)^
=u 5Pa
m,#p
TGWmD)7(
ct(,9=
3Afw
Ot>C
pVaD
`O\ v
#7k5
QO sv1
9^i`e
?:ZN
G\dx:3
y`XPH@
{4Hx.
x[}$3
H5]e
H<Gjv
.)r&
%q K
gCz@*
MQ1 '
}Px[3
nC-e
%*&1Se
SS3a@u
5yW14yW
Vp_T
ce,
a&_yxU
I mD w4H
_VVOi5-i
2UP`
^M^tt
iLHC(
|tld
@"=3
Tbpx<
:6H*
8|Az w {
Hu[h
#D%`bm
GjTA
Xq#)
fF!q
qP
J (<
$glU
GhJu
$fE&l
<8gE
c{lF
1t\"
^mi0
47W+7,
! =U
pz51l
a|{t
1G<_
Lg"%
@4pf
0d 4250836f}
x(0h
Xu0?
WV2$>
B3I~
lGtg
9QR
LnL
< /@ rHV
ww'6
8ezQ
P k_%5!
i@^M
Vib{
0@'I
9Q<tKh
.rsrc
\+?<z
G# -
dgo7" P
`T`&
.gy.c
Uo a
a@ p,%|
&u-?^
EB4=V
.U!P
J!=C-
'l'
b{xj
neI!
q`Ykh
4x~66I
S \cX
H _e4
E.|"
QuBmd
w.9y.
unch
*-~,
h<C&jX
FHvJb
_ |h
;CT
lG]Q
B`7@
hlpl
{u %6
UBBJ
/9I)
!C|9`k
]*i`i
IF[|
h $l
!LE=
Eq2
\u0W
*EaY
@;&y
w/qC9E
>&f
nW_
' X
1/X\I{
='fF
.tFZO
CZrol
wUXJ
UUUUUUUUU
0 Yx
N DH
:NV
p/<uu&z
]P&
J_m^74b
cK!
~q6uX^
y % #
#l f
_xE^ED
YHPR
ChnFM}
i>"q
hF`H g
*)1e
.h8&Xu+
G6M{
5 P$E9
4'H%
R4MkV
`[PH
-64OS
{G,8
#|wL\x
~9$L;
I 1x
H [!
p]6T
!=Z2`
[(}w&-
P`LF" `XE
f@Rx
ukV#
3@-i)R4
)g 0t
P~5
O+l
fXcAE
(,CxD;b
fR]cjk8
-`inc
){=O!
exec
ZFG;|
C2/fW#
HKoU
V>*K
x+r
"G^$
Nx3S
!3Wh
:lYMar[
|I%V
Fn=w
+X1fr
FVf
hTOW
_SKT
Wx'yJ
k lo
h w
St4 hv
AX:>mq
W+Rr
?h\X
>c ;N
AC&t
R#D
<K-CX
8]<Or
<'Xa
ZNtP
!4*5J
[KUX
t_g@
BlPv
Va.F;R
WEqA
uE&$
%bdW
4xV.5yW
Am{4
:tjX=
dTD46
3hj
Y8, q?
9Spa
'YzO
sh_v[s
QOz}
bBC|
/lup
WnhH
/1Rxb
tLw&t"^$
g+aI
IAI;
2fb
1.IXq
PT@NS
/ 7<
jvO
ZDXA
|wf4<
` 5
oB>W
*(u9
#tzZ
&)$#XY
z2e
x9Qu"
{0EOB]
AkhB5
jW
5yWl5yW
6#gE
S\-H\Qp
Zm0~
Nq*7{x=
,j^
><uF
EOW9
M,yw
2%ec|
) -L
rl #
C]X
/EC&C
ARI.
&kX93
F.Nl
^)(VM
'1 \
#]tK
i?E x
!IX{
L!pK3
SQSS
O/ !/
XX\\`g
Kp$]
jR'
FV"L
$ i1
* #p
8_Ho
5=DO
&p0W
uDL<6
A!i& 0
sx {t
<HH
un =
?Z@k#Q
P7Sl@
V?O.
C}&i;
| yN
@"CWPiM
9 N6
AQIj
[Raj
jUUUUU
Gd^;
>o)\
paC/
t'L,
A7r{
c')(
[W)S
"t+;
8 <u?
<d/^|k
O@aLL
c88J:w`
\ON.
csi
j<U
S $
pw u
sH[ 6
8bM+ZE
}_UJ
`"Ki
sCRC
R;@
5yW55yW
I^Yq~J
&yYp
jAjd
"33D
'/ .
mWwtN
z,L=
tx|I
nmnLb
vm9V;eH
@TQX+
/X
` /5
1._1"
$PS`y
- G b
9%\NI
j1,* _r
DXOrAJ
T3Z
+K=[
QGh`c
5 nT
15 S'
B
*0GX
h@ji O
8 /
SR& w.
ZvFD4
8 `WE
[%kK
YkAah
@7Z
epcS
* _,eN
vr,>
cs9BE
!wh
6FAFLF<
P@H0
:0}
sL|I
hwb995iu.(
|p`0}SS
f8 u
=|M S
Z[JN
i4<s\
.y j
X)u]
qkxk
0@i617
Y~&uy
oCp"
A
S%S#!NZ!J
~E+bU
V(c c
GetDC
,7%
%w =
& gt
U1B|I
i~C#
K6 N,
M SD
PA![
H8O|sd@
LD@j
hF&}
F_S
v=d}
q*%{
8<@f
gA'YD AX8
81-o
@0Yx0
pEaA
t-S ,p
4 !V
Can't c
XIqu<\
NHk0=+$
Xk>i-
.h96
3! ^
%b,N2
DDD(
hGeWG
V&5s
{,Lh
%4!*
4wU84xV
JK]&
Ov3ma
^th$
sM`2p
bRx
,dVS
JH U
xTX
O B
n7Jc
DDDB
SLpZ
DDDD
DDDH
HVtC
*beQ\
w1z4
Q;@w
B|WG&
!=@"%Rs
UE)|
@ ;h
F2R!
`E`
4f["
%io
BN/LA
^ODH
jK1[
Fn,'(CK
#sok
AQq\
N,`J
t7!w
.Ekd
,J f
2U$Z
1$5.
2 dM
}n&:w
ht:>
t7!E
:D,P' u
8UyH
j5hx
ukd
< O0
nc $[
uC q1CM
WR8x
7F?|
2F ,x
auxdata
4ot A
0 vP2
@ :d
0`cS_
7Ww
z<u
$*.|
r X#
,{u !
T@GN
k,atC
< 9zb
_O`^
Z*fD
nHZS
al+7
~l ?m
vJafzR
eNW8G
73-\Q]
#T#2WC
L5u,
9(1Z
23P?Lm0K2nj
F0xb
!tl>4
;u(h
-2$q
BNnl
Dd66G(
v$WG
it S
e59y
S:HU
{9C\
it-6
9H%3L
B\]
GETu
9p u
5 6HfSI
< G
^hu/>
?tu l
SHOW
h`@p
L_,~
MX+
r*($
5EJJ
jcw'
^du!
gI4M
UPX!
bzm m
B3
7429
};2~6T
/$KSS
"GM ee7`x
9^ X
xDO0
.ua
j0[~
?./&C
FX+4
m+7
-VZV'
N'SK
ty\a
0*5h
5WP#
W-9C
p^'JG
(K~6
$XTXYX
(.A}u
"\Yv
N};*
DDD'UUUUUUUUUUUUUUa
h9 =1
$^2r
p1!3^_
l; \&q$
~ ~K
!,H
V-C+g
XZ(7
u*(>@<I
!?5C
LVH
k`Hgb0^
( ;Xj
hd 4[
u1*ak
| ;>
UZ/u
w &
Fp/+
.iLt.iL
< I L
8P uGd}
4PVR
$\(j
<g5h
i&<Rh~
m`Ktj
jShY
6#J
W h]
d?#T
Cur.n
?Sii,b.<
(K#'
D8h|
=\iclth
968 <S
DW9yttRB
Y"axL
;CX}
d !j
;RXy
Z fJ
\& oP
>L>~H
E,;Yp
.Wh!x9
t7?2IH
zFXq
hhKe@
H.99
H \
EA8~
p-k"7
[7BG
U&-5=/Y
tl&8
CO@-
ivg!
@/|*L
9PkQ
w,-@d
nH*K#
L|H#
x<uv
"c?x
!.?k
m@.@
6]iO
HF`m4
Mi+;
tGvO
2qbC
XPbp
" B#<ZX
NIzp
&R!I
b)*B
U' j K
" ~#(
'CUS
E":V9
Jc p:
<>.
xv[/
9'Ig
Kw{qg
LS(N
IB s
h^{l
(F_
71@I
'XH#
*zX)8
UUUUUQ""3?
#1N\}
vB^0
t)y,
x8-|
PtR=
qu H
ZCUz
S~CZ
# 02Z
A,&cKhZ
FJ!H
k(>p
W 2
ye,k
hoRqA/
M#'
Eh;,
} W@xK
UUUUUUUUUDDDH
9=P "
(9Q8
[\Qj
#RSm
L7eE
4*Dm
GC+Gdh
<v,Z
RIC_
"BSB
y%@^
]1GPA
RFk[Q
-WS H
0jhW^%)
(B%w(
`E0I
V!P[
|Ea,
)6"}
zbl+
mo'd
-)'}
|]9}
rcXPJ
x!#/
CW:%
W'-
AG H
'SN#0X
Pul=
fJw
N_Dow'p
V9#f#
XUPJ
'$7I
TaiqPt
v3"W1 (
LresultFromObject
dIVG
Org+`
kDCH-
GH % :H
N0Dl
e &
,VU
LJX\(9
fN.
&p.
[w@R
(3*"H
z;_|[
L`#mXY
n#/Z
5iNW1
DCoS
S<EH
jdZ+
I:A'CS
HSaE.
[u
<TE4
ZN>.
]5(L
hP8
sy $
#! !5R
9mmS
"n~U(
QGV
,` BC
Yn!#
C$#Gp
[8ZP
7@H%
hP'
lLX;
U+ Z
rUwcaYNN+
Ma$c
FIH
paA8
/"g
tfR`
$|c
K/~~#O3
x nv
p3jM
C4+#PA
_fX;
-C<"Iud
9tlNu}
K~Gi
wAz
\4T-KPd
'unz
0Jzu
QPLqYR
)PGg
V)h
7?'Gwx
o_Z9
gc@?
4p@ o
=(G4^V
mwt+
9V;$
DNCN
#9mz
"4&9
6kr+
@eDHI&
UP N
A0Ee
RvQW
_,*
5Vu}pZ
B* #m
vKPc
9csm
kO|/
I &j$
a%u#
oQ} @
k t
D7 C
\&CN
g[#
FP<T` \
HMQB$
|{<7
V XP
5dSe
WT c
`i7NQ
w? D
Uj6ac,
~"ap
Pvua
Get+
@1HuDj
@ ai
S2B;
8 "y
* ]'
.) TL
sD ~d}
Xlk9
>yU9
K ]ss
o71+
0 L`
^[(r
2]v"I
c=uc
+0eQa
U oF\
5O91y
44X
0U5ElmQC
cWh
=D'4
oQku
5|,s|
qX8
/vSS_C@\S
=s<
xPiU
5s3R6
0!a=N<
V'wXtR
%Tb
DLp@i
{@PP
MIZE'
| l.
2LyN
t!XiZ
b@mJu
5@
4RiN
BRLS
m?I{ B
&K
zcMk
?}3>>PJ@
GUHBo s
)$n@-m
, bw
3JaU
zjq)
S l
$5u#
j]"
lTu)
>Q*m
q<1[
Va| ^
8@ o[b
?4
`PVS6j
6HIb$
{G?R|
37t
.hLw.hL
Gux6
WSWS:
uUUUUUUUUUUUUS
h\k$
ET4`
ND-J+aIam%B
(K8"
itRotMxtHS
<&A@
\=@|he
^B`W
.J[-
v}B
HS{DC
u(p"
Xth
B &0
7I#o
t=;j
{TNN
:d`K}+
Nb9B 2T4
LOCGh
-Bd*
xr@\
s @p*
l0UZ0
_I~(Dkm
Y{Z#
>34u
5lcU
|)TO
]*$~
Ov4m
Bk+I
pzx+c
E9 Xb
%4[7
u#]n
A%ld-
CG^
Mal$
ak*
?W N
=5kD Hi8
o@88
"lJ\
=%VMh
fKN/h
0fC
2q4
@H8V
-G8p8
kzuKku
eCh2
? d
4.(=~bU
L "p
?*gOther_9
!` O
<lI
F<j,
O6MNB
;k ^
n O.
+uxu&V
E r!
%O=4v
+E'4
+j!V
@sgtqd
dF>|
+(Ewf~
-q|`
=|Pv
<lGQr
RWPK
z"s3
Ld._F%
_9h;w(
t{95
)OL"
C2lJ
~PP tF(o9Np
VT*g
-]`iMv
'Ya6
t7v>
3pU0[
z-U2
@ t1a
Et&
'eJdr
MDo/X
>DXQK
pY Z
,hpZy
"RIU%U
PVpNo
o}A-,
R1 n
^(c-
(}x
+u+Y
z,,t=
1kH
l<-4
&7d pfB
K0>`
QNDZ
Ht;OT
o:Ll
S$1"
p2h<P
RZX *~
Mh8
D$N:
dHaAp?q
..H
lIDBFdp
[YhKr
8 z!
cKh@
V -h
$!a:
/RT"
_&NI
!PEf
)si
9 3t#8
w?BY
_Qxn
JG-
d F2D
? mC\P
- .
&Cl g
tVK
zeg
0KY c
2$*|
EPe
fCP)
, &SV
V4L
t B h ^S
BUhG
kh f
#uPaw
G+P
6. j
Drjw Fa
NihaLE
&~bi
D#l$
XgZ.A
\X\d@
$L
m].-
M|{1
_ \J
K@;dQe_+
!]0
$nk%) RFcg=`jw
d")8`L
\"%}(-
MAH2
%" J
ekKWud
Pp)E!
w Bvm
/K`3
.<(y
fVpu
, xv
,ELm"
$~+ {
^J_ i
zKH7.
R[?D
Q$r
3UP+
0XF*
a8_[
!TxI)
KN.y
PEa 7
W qn
B!ucg
COMDLG32.dll
t`abcdefghijklmnopqo
-m+F'
jOHi'
0>/
uR{#F#
Valu;
DZm
TN\*VdR/
COF!
M y
? l+
H{,-8j
. 8
;5| 6
<RH[
_B [
I7X<
]A*qib
xU 7
D? \
gLaP
D? Z
6NQu brP
@ pN
BR@, XX
SQ%
6.[G^S
4TWn
`4yC
X 2\K
l r Q
/Z>!:
.O=A
FRAS
$>Vj
PQ4V
ppBa
t^k]
*5(]Q
EKg%
Wi-Y
khDi>h
iM|w
Wg0v
gB plgJm0
ORD/
O249
kA=LR"!
oBP8
{<O
^y6~#
!yiWuH@
&0f6=
$@mhA9
|{:pC
O_XuF
f _.
^tJy
UUUUUUU\"3eUUUUUUUUU
`%ock
G \)]
|":o?
B`cG
]LX.
!( t
ZF--
eTeu&
zkO)pH-
9Murj, }
3QhbS'
h4!<
95x tL
$4VM
to+&^aultI
aypK@
@M@K
-_J"4
j 9r
7 (Q
Gnr'i
K8,X
X\Nx
Y~ []
.6W.a4
9O\dD;
iqI;
^wC0
d d Etu
\y` dm`
qex &
>Jj,
>c4>
#os/
"pd$
egCDk
V%Wh}
Ox3yA
C<-D
!$3
Msgiw
ISQz
23Ai
H-4m
z/ #D
7\~=l
XYz/
K7/0
3";
RfHW
<<LD
+^-)
tG\
R )Y
M P-S
PD O
ttNhpC
|@0JW
X`<^
G2B@
wri0d
AGd i
LQt"
TlX I;@
& f&
B.K\~
GGY<
]MC#
Wgx$
lT8h+
e} [y
SHUU
fZi3
eE-:
AH I
/<e$\
DoDragDrop
Bp)Bg}
]bU
F|$l
tOnm%
c>,*+
X4u:8
;XoX
{gGan
&P.Jl,
w _QV
< vf-
i66._4
?DAU
&+K$D
LPTC
o|CA
%X'4
80sM
|byD2u
8!4H^2
a|aO
EdS3
wS@PZ-
&$pXg F
4G2
,9F?
$M $i
kDJ#m;O
meR#h
,U?q
gwZC
xQ't/`MH2 ;
,3[i
00 S
@5#l
5PAP
S 8?
<lw_
)00C8
TCkJv<
}9;w|
hyiM
PbkA?
V/9L\
f76%4TP
Alt,
$/a
\}ZUgO
X0B6
] k
v,C0
J\8_/T
!2E6*
|L_?]
0~ (P
BX0xM
(~ &m
j Y7
( s0
uUUUUUUUS
sYZXd
p!,~
C a(
MN.
.hLP.hL
5(w_
{(9=
`4s@2
jX:ts
asqn:
%V=]"
k02[
MXc~
86 C(-
O7 W
3} q
mORBCtX
X0Bp
IV!et) L
HLbQ
p<$uk
nD#
M}y
`!<`
ZK%LO
7no8
4=n?)j9
lJq7
@5 =-`
8RB%W2
S LL0
~Vp i`
J{"CT
'25@x#
8 CQt
kGb`
tAHt.H
8eTdC-
&CLg
'pp8
%tA0
-aKl
OX
"g<0
ZXD~f&kwf
vH<!~
_=dG
;*"
v:ti
+hM}
-9^t
1E=&
Tpik?v
k,8
UUUU_
a`LDC
tU9_ tP
UUUUS
gjOnYAY:
;!QxV~
UUUUW
2'LQ
nh=`
tE0(O2
? [g
qs'm
{<w
xsx^Ws)
DjG#3
1)<1
A_r9,
$q_a"
Nr 4
96b
'4 :h
EHesU
l<`8
l O Q
Sq@,
*U]
#=)EM
_2B5%
s:LW
b#J
@@/}}<x/9
4P #
\u_^
pgH2
XJEX/a
)d&@
W,C)0
fq$q( F
KXt&
/:0iA3
!I l
h\WT
lldP
cOu)s
ye#FV
)0!C
F[6T
}IXo
%!m<
-4pQ
%QS
pdXR
u/QS
;Y0B0a
(j5D|
US#P
p'>|k
:O%s
N'7!
[?SC[g
H@ JP
20"^
H'L<
'I8M
}Ht(
|Fi!h
AX>3
1 cf@Q
-_[
*4}8h` W_k
`` D
@M+%
@0 L
Yr%'
%p"+
7"/AF
b$h%dub
0r(V( E
Co_T
fDu`0
V&ViL
J=:S
) N@
w.Z*
~X G;
7}Me`
|H_
qK
=.9y.
*j%g
44Ux
5gX a
((X/
&K,!$
FJ\
lap&04
GbyK 6
]["a
MUI`
FH:mm=?
U08E
&bh
(Z A
b0,L
Wz_(l
\3D
uG-,
UUUUUUUURDDDH
Q^Wx
i8$85
h8iBj;RK
(Jp'
4UWBd
"F_o
2Zp
G ^vtI
oS/F
aP[G
uh83
'2xb
x;Ap7R/
.hLJ.hL
:Ot>t9N
Su!%
OOtB
yo 96
s7%|
_u;;
l@hU }
@biK\?`
5P`Z
M`t-
B.nsS
&pB
W4p )
T,Bok
Wc`c
VeXmBx
M::EwY
e9{|
^c'l
]n?-
vReB
E]DJK
^i+>&
][BX)<vv4
W> ,
88@4
@qaA#
u:j0^
W81G
B:i{
$&k0
`0*'
NNN.lt
&Save
\I{r
7sE/
H ~t
]9G4tX
WOwP-8
8 t7
0?4.
R`C@J
hPEE?t
8nk8
%,SF
6+dB,8
XSS
Excepti
20 [S
l#%f
8cV4
C <B
YXhR
(D`
CN(S
(8'P
P\m\
WyihI>
{ 2
{7~i
N)4P
\ "t$^
;S(^
VoP P
*vnU
7\3;
+[
pb6Z
l H(wu
X-`h
?""~
T:A6
32.dlP@
P <hJa
p+Qs
sRbZd
u}^6F
Hu.
6`hy@
iGkc
"u!S
q1l{
+{%/
c&~Y
qwe;)2
T/4D@
'd4<
=HB >y
H^P-
L248<
0C"a
Hu0V
Z9v(AsQ
NDX
5yWb5yW
,-L^
!!V+U
(to!
!/dB
YV,i='Ki
sD(b8 5svFu%
Tt`c
*7J%XX
\tKA,W
N( >
$9*^?
B01R
)P,_
V,)0
IBB&)
%,&!
o 99i
GQ# l
a c
67u5
}t&( t!
7L>:"
>M,BRw
u[W)
5oR f
Lo@!v
qj &
E@Pp
{h\c1
{ N*
pt 9
cy6Z
Fdih
i*~A
GetFileTitleA
ZpP+
qtOy
93uf
_I2x
nK$u B
9M 7
x(Pi
ly0piJ
2^ 3
0!U~
x0Ou
WEIGHVQ
wV <9P
tq`X
_tt L
1"
y Z
n$bTq
a75yW
#,m^[
6Vae
k(2\
o/)P
0 i5t
6wZb
Vj )05
_Wa<Zi"SvG
:jA? B
q93 hhEK
InsT$
I} (
G@~Xm?H$
o:-E
DoAE,
I4Bv
w Hu
0 S)
qpCR
=xt$
%4[HO
5,0
t_}-
;GW-
/[#P
{@pY/
p 7|$,
5yWN5yW
H cQ
)2*!]m
5yW 4xVu5yW
Hm#
\3tV
5"/A
el}u] &
uhb3-
X8p+
^H( R
h-RS
M_W+c
Y2T
.ve
@rXl+
k&G8
f Ax
OEA
"O"vA
pv!I
f7 87
K8u
AI
7RighZ
6woO
'cA!&a
qYpp
DGGH
#9@P
nU+k
]W+N
Rodd
6XHal
x 9V
S<,x
>///
BHZM
=Db=y
;V `
wA)W
)[]"gP
LH3$
PS6:y>~a!hA
~pAB
B $z
t99w
nitrmmxK
Ju[ >O
M_h)
&v$R
@7 r^
rw~%e
ELgTw\g@V
hxr)
v\Pv`
B8Y(x
CRYPT32.dll
hp cH
lI
;,#.
mW1@
+U +
o"-o
P,DQk
d Ec(2
bp>d
tr6
234I
tp|I
k F(K
UUUUUU\DDDD(
0lpb
,P [
*O (
KUI(
WNqN
' CE
:< `
GP{Y
)*p8@z>o
>/? V*B
(N= 8
l*^-|p=
71!A
C@<sC
5)F !
8&Ch
W']"d
r85<
O_''<
1pgWu
3&ai>
B' #
TS80
X_,F_
7#A#
1t$+:
i1$S
D-~)
"xrvTiD
eI H_
B`E'8>
8OHPX
6VcGO2p
8z R
At+f
x?J
$ZFt~AOu
+W:=
>SQHP3
0<\Z
??wjW
w32
aajQXj
bJaq
`,X+
F iE
P[Kz
-248 N
+PL`*w<
;ElfO
Gq@+
X?$Mmau
!$>$Z
%Y^m?(
#N1K%
/j@l
)XQQ
|),]>
G7$C
XaIo*
Sq(4,
oiM l
Z L:7
&}tsh
w }PCP#
{fHn
@6a^
EZ6H
q#h
@T L
Kho_
OC@k8
A($O
I8Ei
ujt)
"YZ !_C9O
cu:`
9Flt
G1}tc
n#''
L y@
) %m
zyoxYX
O}!u
Ts;B
N*ZST
uWHy
u ,
NEs:VSy
whO\x
5)
7;q
XQgN
RD-sU
`Y.W
C14GXcYE:
|4W+R
!(WD
ws#D
nFP<
/V?O
.TWH
!8!x
t.It
# At\rt
aT$
3{Ht
;o\b
X1L\}>u
4Ww~
90ve
q#B
`8U i
+jLCi
= *t
XY[8
>JVlw
tR^>/
%aAH
4nh46~h
rV!_c
:QF&
g\`B
B{7\
),a4
*V`/o
! wh
(w!V7
lc1/
w5h1jn
+d7YZ
Ad%
V3g00
[xk
Bu5u
~I) P}
_P:k
bM|
QMe"
\jCwm
X ZF
^) NS
?Y0j\7#H
julf
/CkO
r]@u0\r
KS
6`.
lom[
{iOSSd2P
~GT}
BX-m6,d
j<KEb/A
jI X
d+ (4&
LIBOX
][Fp
MA>@
|6Yx
RB%
.fA
m&s`P
F7"E
*3J3
Q _
9"!D
JKO_G
X `M
)n9AO
XS+]'
w K!
JPDt
z{i1
J_k| ?8
2wmWq-F
3= }
C bc$|=
#,IW
222r
N-&W
}% E*vP:A
Gz@a
(V(oQ
@C!/QCj
h:Wj\
pbpS
T@M;
tXLR
^`Sj
dt@@
>U L
9B
4C6fP
RQEh
gU,B
e`
c9"V
-!- H
]]x%3
=RCC
dR{q
yh 0U5 &2
tXL|
AQ{Z
~) J@
YjQx0
CGRn
olC#
p7j0UF
2 |n2
IQ71
:_Q
dPW:,
iS`'Y
u }.0P
C#?R
af7:
'3?Je<
NU ?
Y@_)
[PIG
kFc8
|7T9M
tvE^(
wD%
o`50
vD K
ppN(G{^,
fHBp
2@@DX\&
A/
)u[+
ELcr%-^
|dXD$
r^r;
P E
"J;x
@vf@
[<CA
g-y4+W
-F7V
= v
=&q6N@X
)3A\
9}_E
kYuH.
5?B X
?aii
T2ApK
dkX
(,<
*HE}<
lf@=
\ $i~u
G&HWPRGu4q
3 \E
u9PK
DId"F
ej/E
Tm,w
B/i(p
bA
<XA ;
yoCS
ka[
$VRX)}
0[6
vaUo
$J rI
`n /
B!%;
4sgk
,0h
bd ~
nw8 $O
F$NVbe
3GX0L1iJ_
|XW_
|tt;
(mMv
T`MOkZFL
_body dT agV
GdipFree
;&{Q
P+b(
<`pM
8W}>
Jtj8
qaa`
k4-t#
[D~mBkZ
2W `
= *h(G
D:Dy
SojF8 %
Z_#9J
:qyp
s@u'
tB:D5
sqrt2 "
1/?`
d~8 O
Gt-V9E
Y@K)
g&9p}
6SJe
M)<j
)|u%z1`
l ]x
[b[5
QZct
/KdZ
WIU*
1BS
jJ8#
B&9+(
Q&.;M
l,[rG
#[jd
H*p8
3PKl
2F0pO
XSUS
Cx!O
x#,<
ATED(
]n?N~c<m
r"A5
4'UC/
w;/0"
!<8@
LXV*%OO
pdii
u'u=
H6h
<8bunz8
=WrD
hq6q`
sVGB
LzXy
"tDDI
^kj f-
V5p3I
UIP
GK{F
dTDW
Y[I"R
/PR&
%( K :
Y"UW
G7@L&
qL X
&PU|
M!DFW0
FD?^T
=&xuR
D/VVh
Bt!L
Hb/0A
Ij(G
8=pZ
_$tm
iK-6X
7t
S.+6
QPuj
X5QM
b7 9
#N4:
(Hx
h9btc +\z
mfnD
ETn+
:P D
P1 <SW
R*jG$
M$RM
VwTA
STATI
{ t3
@ I&N
$O
E0xd
KWv)
>#7&"
G@UeA
Ob~d=
%|~a
Q=h5n
R*~
[{=,
zh(3W1
SP`m
P~N:-
:d E
cM77\N
!%TR
_IZ
.K%q
up.4e/IDR_
JRalqE
'?AV
vd< C
qIq!
EhuT`
.i*8L
Bxv|
SW%)
;;A<
5ft0
|6.A
#bs,;
t9r"
!OH^_
ZZEZ
o 1Z
:FhJ
TPu(
1X \ tr
|),:`
h<p<
VF/
@iA$
+<t[
@dxA
Z[_|
xWAac
82@r
,ae8)
Wd~
)GXa
`_:7
[I038
/B w;
Ko;6+Ap
Sv>If
are3j
=xvc
)| yZ
hn}B
iop@k,
FqCE
K>;CW
:<4J+]T
~gcZ";O
AqG|
?tu
`WQI
h8Q[G,
r8 M
+?!G[
J0h8
ZhFG
6Hq.:
MQ &
%4ap
bOxQh
;#!k(
"D,p
=L:K|
tp@
+?'|
NQ_=
v=y_
nIp(4
EauB
Mo!I
&.-j
n,jK
P pL
z$S(e
R |0
1l]i
!s;u
kL%S
XA~8
,}<T
RRH>
!N+W
Q/II
sbWm
kG6~)|x4;
8Dat
HBG:
d"yT
,/l/
nNDTL
L@*HI`d
c8ltN
^!<AY~
C]J,U
@Ia0"
s@Mh
YPu.
Ot)*
H~~)>im
(zG
LHtL
Y&!d
0j@^j
QGW
$DDDB
$DDDH
aW!1I
UI@@
&L|. }&
59pd
)#+J
nfDn
v;cR
{Font
"+!B,
*>t/
tXvR
2: %
ct2.N
%% !
fY L(
;8lc
:){G
H]QG^
(zC0
5e a
OAW$pb
<x79P
Sj0[R
X`j#s>-
/Zo]0
t#W
,a`PL
/QsQ
M K
2d4
=laL+I'
?rl5
{b)"\
_2^O
MPGWK}
)dqK\
uf @P
AXTdhJ
[Sm}
ASBSa5
*WBT
FyDW35
\vJb\
G/N$b
S %Q
_i`r
U0gl/K
'hHEY"Nm
x~~#
$xUk
u?) %=
~] '
j[5A,
xrhx
eb,;
WTrU
xtCd;|
pCsjr
Wt$W^0
HN _
J'tk
d:A~
&C+Z
5W+`
;@AUJx
SX6w
CCCG3
hG_; ,T
S`#u
H ;p*
|$%( g
\Qi
NE{v
.P7Cm(
/}^=
1fy"
u^Ra
CHZ ]
<5CuA
8f-p
3}vbyU
$P;|+
wW ?
*~3O
nXru!i Y`v
sxh
%d%x'
]/ ]@
v6{t^
{uYI]
FrQ4
VMVK
$U :N
X a`O
vq'P\
tV 4
7ygV
Lrj/O
~c[= HW"
6>leO
H Fx)
K;Cx
(P>O
HjfO
7 sX
WFX H
V#1w
_O*D7,^
4dJ*
95}-@ ,L
1Reb
\'_Oh
Ry|vvv+
*c;=
iq #ME
2 b>
'NF K
bWOJT
FBIXQ
a;x4pB
K:A
"}@e
!P/D[X{
pY+
UifvP
,DYR
taD=
0ze:e
~eA]]
Q{Ai
QDEC
4Py~
rwhW
HMXB
Z^,_\
WdH
4Ji =t
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2018-09-10 16:32:18 2018-09-10 16:35:21 183

15 Behaviors detected by system signatures

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2018-09-10 16:32:18 2018-09-10 16:35:21 183

11 Summary items with data

Files

C:\Users\Seven01\AppData\Local\Temp\paint.exe.2.Manifest
C:\Users\Seven01\AppData\Local\Temp\paint.exe.3.Manifest
C:\Users\Seven01\AppData\Local\Temp\paint.exe.Config
C:\Users\Seven01\AppData\Local\Temp\paint.exe
C:\Users\Seven01\AppData\Local\Temp\paintITA.dll
C:\Users\Seven01\AppData\Local\Temp\paintLOC.dll
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\SysWOW64\ieframe.dll
C:\Windows\SysWOW64\stdole2.tlb
C:\Windows\System32\mshtml.tlb
C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\sysnative\it-IT\VssTrace.DLL.mui
\??\PIPE\samr
C:\DosDevices\pipe\
C:\Windows\sysnative\wbem\repository
C:\Windows\sysnative\wbem\Logs
C:\Windows\sysnative\wbem\AutoRecover
C:\Windows\sysnative\wbem\MOF
C:\Windows\sysnative\wbem\repository\INDEX.BTR
C:\Windows\sysnative\wbem\repository\WRITABLE.TST
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Windows\SysWOW64\it-IT\USER32.dll.mui
\Device\KsecDD
C:\Windows\SysWOW64\wininet.dll
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
C:\Program Files (x86)\Internet Explorer\dnsapi.DLL
C:\Windows\System32\dnsapi.dll
C:\Program Files (x86)\Internet Explorer\iphlpapi.DLL
C:\Windows\System32\IPHLPAPI.DLL
C:\Program Files (x86)\Internet Explorer\WINNSI.DLL
C:\Windows\System32\winnsi.dll
C:\Program Files (x86)\Internet Explorer\sqmapi.dll
C:\Sessions\1\BaseNamedObjects\
C:\Sessions\1\BaseNamedObjects\Isolation Signal Registry (8F75CE37-B506-11E8-82E5-0800274633C1, 0)
C:\Users\Seven01\Desktop
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
C:\Program Files (x86)\Common Files\Adobe
C:\Program Files (x86)\Common Files\Adobe\Acrobat
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX
C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll
C:\Program Files (x86)\Java
C:\Program Files (x86)\Java\jre1.8.0_74\bin
C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
C:\Program Files (x86)
C:\Program Files (x86)\Microsoft Office
C:\Program Files (x86)\Microsoft Office\Office14
C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\
C:\Users\Seven01\AppData\Local\Microsoft\Windows
C:\Users\Seven01\AppData\Local\Microsoft\Windows\
C:\Users\Seven01\AppData\Local\Microsoft
C:\Users\Seven01\AppData\Local\Microsoft\
C:\Users\Seven01\AppData\Local
C:\Users\Seven01\AppData\Local\
C:\Users\Seven01\AppData
C:\Users\Seven01\AppData\
C:\Users\Seven01
C:\Users\Seven01\
C:\Users
C:\Users\
C:
\??\MountPointManager
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\Low
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\Low\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\
C:\Users\Seven01\AppData\Roaming\Microsoft
C:\Users\Seven01\AppData\Roaming\Microsoft\
C:\Users\Seven01\AppData\Roaming
C:\Users\Seven01\AppData\Roaming\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\Low
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\Low\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\
C:\Users\Seven01\Favorites
C:\Users\Seven01\Favorites\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\PrivacIE
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\PrivacIE\Low\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\PrivacIE\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\Low\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IETldCache
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IETldCache\Low
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IETldCache\Low\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IETldCache\
C:\Users\Seven01\AppData\Local\Temp\Low
C:\Users\Seven01\AppData\Local\Temp\Low\
C:\Users\Seven01\AppData\Local\Temp
C:\Users\Seven01\AppData\Local\Temp\
C:\ProgramData\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\ProgramData\Microsoft\Network\Connections\Pbk\*.pbk
C:\Windows\System32\ras\*.pbk
C:\Users\Seven01\AppData\Roaming\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\Users\Seven01\AppData\Roaming\Microsoft\Network\Connections\Pbk\*.pbk
\??\Nsi
C:\Windows\System32\it-IT\IEFRAME.dll.mui
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8F75CE39-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DF7B2578E66FAC1D88.TMP
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Windows\Fonts\staticcache.dat
C:\Windows\System32\url.dll
C:\Users\Seven01\Favorites\Links
C:\Windows\SysWOW64\shell32.dll
C:\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Caches
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000012.db
C:\Users\desktop.ini
C:\Users\Seven01\Favorites\desktop.ini
C:\Users\Seven01\Desktop\desktop.ini
C:\Users\Seven01\Favorites\Links\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8F75CE3A-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE89A033B9442CA9A.TMP
C:\Users\Seven01\Favorites\Links\Raccolta Web Slice.url
C:\Users\Seven01\Favorites\Links\Siti suggeriti.url
C:\Users\Seven01\AppData\Local\Microsoft\Feeds
C:\Users\Seven01\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
C:\Users\Seven01\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
C:\Windows\SysWOW64\propsys.dll
C:\Windows\sysnative\propsys.dll
C:\Users\Seven01\AppData\LocalLow\Microsoft\Internet Explorer\Services\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\seven01@bing[1].txt
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CGWYKIHT\favicon[1].ico
C:\Users\Seven01\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Program Files (x86)\Internet Explorer\url.dll
C:\Users\Seven01\Desktop\url.dll
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\*.*
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UBH7DYFU\favicon[1].ico
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms
\??\pipe\MsFteWds
C:\Program Files (x86)\desktop.ini
C:\Program Files (x86)\Internet Explorer
\??\PIPE\srvsvc
C:\Program Files (x86)\Internet Explorer\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\QLX5PZJV2FFPF5459C4R.temp
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89956f.TMP
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
C:\Windows\AppPatch\sysmain.sdb
C:\Program Files (x86)\Microsoft Office\Office14\
C:\Program Files (x86)\Microsoft Office\Office14\*.*
C:\Program Files (x86)\Java\jre1.8.0_74\bin\msvcr100.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\deploy.dll
C:\Program Files (x86)\Java\jre6\lib\plugin.jar
C:\Program Files (x86)\Java\jre6\bin\javaws.exe
C:\Users\Seven01\AppData\Local\Temp\JavaDeployReg.log
C:\Program Files (x86)\Java\jre1.8.0_74\lib\plugin.jar
C:\Program Files (x86)\Java\jre1.8.0_74\bin\javaws.exe
C:\Program Files (x86)\Java\jre1.8.0_74
C:\Program Files (x86)\Java\jre6\bin\java.exe
C:\Program Files (x86)\Java\jre6\bin\client\jvm.dll
C:\Program Files (x86)\Java\jre6\bin\server\jvm.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\java.exe
C:\Program Files (x86)\Java\jre1.8.0_74\bin\client\jvm.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\server\jvm.dll
C:\Users\Seven01\AppData\Local\Microsoft\Feeds Cache\
C:\Users\Seven01\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Feeds Cache\desktop.ini
C:\Windows\SysWOW64\it-IT\urlmon.dll.mui
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S8KCABML\gN4ohN[1].htm
C:\Windows\WindowsShell.manifest
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat
C:\Windows\System32\it-IT\propsys.dll.mui
C:\Windows\SysWOW64\it-IT\mshtml.dll.mui
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012018091020180911\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012018091020180911\index.dat
C:\Windows\System32\shell32.dll
C:\Windows\SysWOW64\it-IT\SHELL32.dll.mui
C:\Windows\System32\ieapfltr.dat
C:\Sessions\1\BaseNamedObjects\Isolation Signal Registry (A23EB551-B506-11E8-82E5-0800274633C1, 0)
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{A23EB553-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFF2DBD17302503E6B.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A23EB554-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE25AB493DB72ED90.TMP
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\GODX0B9801NL1IVKGI1F.temp
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89693f.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RUCPI5OU\tZ[1].htm

Read Files

C:\Users\Seven01\AppData\Local\Temp\paint.exe.2.Manifest
C:\Users\Seven01\AppData\Local\Temp\paint.exe.3.Manifest
C:\Users\Seven01\AppData\Local\Temp\paint.exe.Config
C:\Users\Seven01\AppData\Local\Temp\paint.exe
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\SysWOW64\ieframe.dll
C:\Windows\SysWOW64\stdole2.tlb
C:\Windows\System32\mshtml.tlb
C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\sysnative\it-IT\VssTrace.DLL.mui
\??\PIPE\samr
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
C:\Windows\sysnative\wbem\repository\INDEX.BTR
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Windows\SysWOW64\it-IT\USER32.dll.mui
\Device\KsecDD
C:\Windows\SysWOW64\wininet.dll
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
C:\Windows\System32\dnsapi.dll
C:\Windows\System32\IPHLPAPI.DLL
C:\Windows\System32\winnsi.dll
C:\Program Files (x86)\Internet Explorer\sqmapi.dll
C:\Sessions\1\BaseNamedObjects\Isolation Signal Registry (8F75CE37-B506-11E8-82E5-0800274633C1, 0)
C:\Windows\System32\it-IT\IEFRAME.dll.mui
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8F75CE39-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DF7B2578E66FAC1D88.TMP
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Windows\Fonts\staticcache.dat
C:\Windows\System32\url.dll
C:\Windows\SysWOW64\shell32.dll
C:\
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000012.db
C:\Users\desktop.ini
C:\Users
C:\Users\Seven01
C:\Users\Seven01\Favorites\desktop.ini
C:\Users\Seven01\Desktop\desktop.ini
C:\Users\Seven01\Favorites
C:\Users\Seven01\Favorites\Links\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8F75CE3A-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE89A033B9442CA9A.TMP
C:\Users\Seven01\Favorites\Links
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\seven01@bing[1].txt
C:\Users\Seven01\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UBH7DYFU\favicon[1].ico
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms
\??\pipe\MsFteWds
C:\Program Files (x86)\desktop.ini
C:\Program Files (x86)
C:\Program Files (x86)\Internet Explorer
\??\PIPE\srvsvc
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\QLX5PZJV2FFPF5459C4R.temp
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll
C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
C:\Windows\AppPatch\sysmain.sdb
C:\Program Files (x86)\Microsoft Office\Office14\
C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\msvcr100.dll
C:\Program Files (x86)\Java\jre1.8.0_74\bin\deploy.dll
C:\Users\Seven01\AppData\Local\Temp\JavaDeployReg.log
C:\Users\Seven01\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Windows\SysWOW64\it-IT\urlmon.dll.mui
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\index.dat
C:\Windows\WindowsShell.manifest
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S8KCABML\gN4ohN[1].htm
C:\Windows\System32\it-IT\propsys.dll.mui
C:\Windows\SysWOW64\it-IT\mshtml.dll.mui
C:\Users\Seven01\AppData
C:\Users\Seven01\AppData\Local
C:\Users\Seven01\AppData\Local\Microsoft
C:\Users\Seven01\AppData\Local\Microsoft\Windows
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012018091020180911\index.dat
C:\Windows\System32\shell32.dll
C:\Windows\SysWOW64\it-IT\SHELL32.dll.mui
C:\Windows\System32\ieapfltr.dat
C:\Sessions\1\BaseNamedObjects\Isolation Signal Registry (A23EB551-B506-11E8-82E5-0800274633C1, 0)
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{A23EB553-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFF2DBD17302503E6B.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A23EB554-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE25AB493DB72ED90.TMP
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\GODX0B9801NL1IVKGI1F.temp
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RUCPI5OU\tZ[1].htm

Write Files

\??\PIPE\samr
C:\Windows\sysnative\wbem\repository\WRITABLE.TST
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
C:\Windows\sysnative\wbem\repository\INDEX.BTR
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8F75CE39-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DF7B2578E66FAC1D88.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8F75CE3A-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE89A033B9442CA9A.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CGWYKIHT\favicon[1].ico
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
\??\pipe\MsFteWds
\??\PIPE\srvsvc
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\QLX5PZJV2FFPF5459C4R.temp
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89956f.TMP
C:\Users\Seven01\AppData\Local\Temp\JavaDeployReg.log
C:\Users\Seven01\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\IECompatCache\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S8KCABML\gN4ohN[1].htm
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012018091020180911\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UBH7DYFU\favicon[1].ico
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{A23EB553-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFF2DBD17302503E6B.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A23EB554-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Temp\~DFE25AB493DB72ED90.TMP
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\GODX0B9801NL1IVKGI1F.temp
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89693f.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RUCPI5OU\tZ[1].htm

Delete Files

C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89956f.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8F75CE3A-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8F75CE39-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\index.dat
C:\Users\Seven01\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012017011320170114\
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms~RF89693f.TMP
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A23EB554-B506-11E8-82E5-0800274633C1}.dat
C:\Users\Seven01\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{A23EB553-B506-11E8-82E5-0800274633C1}.dat

Keys

HKEY_CURRENT_USER
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Network
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Comdlg32
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it
HKEY_CURRENT_USER\software
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File1
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File2
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File3
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File4
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Settings
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Settings\PreviewPages
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CEIPEnable
HKEY_CURRENT_USER\Control Panel\Desktop
HKEY_CURRENT_USER\Control Panel\Desktop\Style
HKEY_CURRENT_USER\Software\Classes
HKEY_CURRENT_USER\Software\Classes\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00000000-0000-0000-0000-000000000000}
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\System\DNSclient
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Domain
HKEY_CURRENT_USER\Software\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\Version
HKEY_CURRENT_USER\Software\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{0002DF05-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{0002DF05-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{0002DF05-0000-0000-C000-000000000046}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{0002DF05-0000-0000-C000-000000000046}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\TypeLib\Version
HKEY_CURRENT_USER\Software\Classes\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\TypeLib\Version
HKEY_CURRENT_USER\Software\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}\4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}\4.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}\4.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}\4.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_CURRENT_USER\Software\Classes\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ServiceParameters
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LaunchPermission
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LoadUserSettings
HKEY_USERS\S-1-5-19_Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\Elevation
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_Classes
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_CLASSES\CLSID\{0002DF01-0000-0000-C000-000000000046}
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\TreatAs
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\Elevation
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\TreatAs
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000_Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\Elevation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\Path
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomVBOX_CD-ROM_____________________________1.0_____#5&106af171&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomVBOX_CD-ROM_____________________________1.0_____#5&106af171&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomVBOX_CD-ROM_____________________________1.0_____#5&106af171&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\ActivePowerScheme
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Power\User\PowerSchemes
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\ActivePowerScheme
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\381b4222-f694-41f0-9685-ff5bb260df2e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\94ac6d29-73ce-41a6-809f-6363ba21b47e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\381b4222-f694-41f0-9685-ff5bb260df2e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\381b4222-f694-41f0-9685-ff5bb260df2e\238c9fa8-0aad-41ed-83f4-97be242c8f20
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238c9fa8-0aad-41ed-83f4-97be242c8f20
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94ac6d29-73ce-41a6-809f-6363ba21b47e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\DefaultPowerSchemeValues
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e\ACSettingIndex
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\ValueMin
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\1\SettingValue
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\a7066653-8d6c-40a8-910e-a1f54b84c7e5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\381b4222-f694-41f0-9685-ff5bb260df2e\4f971e89-eebd-4455-a8de-9e59040e7347
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\a7066653-8d6c-40a8-910e-a1f54b84c7e5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\DefaultPowerSchemeValues
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e\ACSettingIndex
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\ValueMin
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\0\SettingValue
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Power\PowerRequestOverride
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Power\PowerRequestOverride
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerRequestOverride\Driver
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\Tracing\WMI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\SessionEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Level
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AreaFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Session
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\BufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MinimumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFileMode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\FlushTimer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AgeLimit
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SYSTEM\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Safeboot\Option
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\VssAccessControl
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\Rpc
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Settings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag\WMI Writer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\IdentifierLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\QueryLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\PathLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbThrottlingEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighMaxLimitFactor
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbTaskMaxSleep
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3Mult
HKEY_LOCAL_MACHINE\system\Setup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Unchecked Task Count
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Build
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\MOF Self-Install Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Default Repository Driver
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueCoreFsrepVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Cache Spill Ratio
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckPointValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SnapShotValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckRepositoryOnNextStartup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NumWriteIdCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Item Age (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NextAutoRecoverFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Enable Provider Subsystem
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableEvents
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssToBeInitialized
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Low Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\High Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Wait On Events (ms)
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\ESS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Merger Query Arbitration Enabled
HKEY_LOCAL_MACHINE\software\microsoft\wbem\cimom
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerBatchSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ClientCallbackTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerQueueThreshold
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Tasks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SetupDate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Async Result Queue Size
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/subscription
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_CLASSES_ROOT\CLSID\{fe9af5c0-d3b6-11ce-a5b6-00aa00680c3f}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{fe9af5c0-d3b6-11ce-a5b6-00aa00680c3f}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{fe9af5c0-d3b6-11ce-a5b6-00aa00680c3f}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\minint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2\SCM Event Provider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Cimom
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\CMF\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\Config\SYSTEM
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA\AccessProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmiprvse.exe
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it-IT
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it-IT
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CompatibleHostProviders
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\CompatibleHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\DefaultSecuredHost
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000\State
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000\Preference
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\Log File Max Size
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE10RunOnceLastShown
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE10RunOnceLastShown_TIMESTAMP
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown_TIMESTAMP
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\Check_Associations
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DEPOff
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLESAFESEARCHPATH_KB963027
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ENABLESAFESEARCHPATH_KB963027
HKEY_LOCAL_MACHINE\Software\Policies
HKEY_CURRENT_USER\Software\Policies
HKEY_CURRENT_USER\Software
HKEY_LOCAL_MACHINE\Software
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ProtectedModeOffForAllZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabProcGrowth
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\LuaOffLoRIEOn
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Setup
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Setup\HaveCreatedQuickLaunchItems
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FromCacheTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertificateRevocation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableKeepAlive
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisablePassport
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IdnEnabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CacheMode
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableNegotiate
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBasicOverClearChannel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\Feature_ClientAuthCertFilter
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\Feature_ClientAuthCertFilter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ClientAuthBuiltInUI
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SyncMode5
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\SessionStartTimeDefaultDeltaSecs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Signature
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheOptions
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutoProxyResultCache
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisplayScriptDownloadFailureUI
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSServername
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSAPIforCrack
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\RETRY_HEADERONLYPOST_ONCONNECTIONRESET
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\RETRY_HEADERONLYPOST_ONCONNECTIONRESET
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BUFFERBREAKING_818408
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BUFFERBREAKING_818408
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SKIP_POST_RETRY_ON_INTERNETWRITEFILE_KB895954
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SKIP_POST_RETRY_ON_INTERNETWRITEFILE_KB895954
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UTF8ServerNameRes
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableWorkerThreadHibernation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableWorkerThreadHibernation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableReadRange
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketSendBufferLength
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketReceiveBufferLength
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\KeepAliveTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxHttpRedirects
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerProxy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ServerInfoTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableNTLMPreAuth
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ScavengeCacheLowerBound
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertCacheNoValidate
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLifeTime
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FIX_CHUNKED_PROXY_SCRIPT_DOWNLOAD_KB843289
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FIX_CHUNKED_PROXY_SCRIPT_DOWNLOAD_KB843289
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_CNAME_FOR_SPN_KB911149
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_USE_CNAME_FOR_SPN_KB911149
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NOTIFY_UNVERIFIED_SPN_KB2385266
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_NOTIFY_UNVERIFIED_SPN_KB2385266
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_COMPAT_USE_CONNECTION_BASED_NEGOTIATE_AUTH_KB2151543
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_COMPAT_USE_CONNECTION_BASED_NEGOTIATE_AUTH_KB2151543
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_LONG_INTERNATIONAL_FILENAMES
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ALLOW_LONG_INTERNATIONAL_FILENAMES
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HttpDefaultExpiryTimeSecs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FtpDefaultExpiryTimeSecs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PERMIT_CACHE_FOR_AUTHENTICATED_FTP_KB910274
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_PERMIT_CACHE_FOR_AUTHENTICATED_FTP_KB910274
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISALLOW_NULL_IN_RESPONSE_HEADERS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISALLOW_NULL_IN_RESPONSE_HEADERS
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DIGEST_NO_EXTRAS_IN_URI
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DIGEST_NO_EXTRAS_IN_URI
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ENABLE_PASSPORT_SESSION_STORE_KB948608
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_EXCLUDE_INVALID_CLIENT_CERT_KB929477
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_EXCLUDE_INVALID_CLIENT_CERT_KB929477
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_UTF8_FOR_BASIC_AUTH_KB967545
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_USE_UTF8_FOR_BASIC_AUTH_KB967545
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\PerUserCookies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\LeashLegacyCookies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendExtraCRLF
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WpadSearchAllDomains
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttpTrace
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_KEYS_ON_UNLOAD_KB975619
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RELEASE_KEYS_ON_UNLOAD_KB975619
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITY_FLAG_IGNORE_REVOCATION_KB2275828
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SECURITY_FLAG_IGNORE_REVOCATION_KB2275828
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ShareCredsWithWinHttp
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MimeExclusionListForCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HeaderExclusionListForCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEnabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEntries
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPost
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnAlwaysOnPost
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnZoneCrossing
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnBadCertRecving
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPostRedirect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AlwaysDrainOnRedirect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\TcpAutotuning
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadOverride
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutodial
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\NoNetAutodial
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\GlobalUserOffline
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BadProxyExpiresTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RETURN_FAILED_CONNECT_CONTENT_KB942615
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RETURN_FAILED_CONNECT_CONTENT_KB942615
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBranchCache
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxySettingsPerUser
HKEY_LOCAL_MACHINE\System\Setup
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MigrateProxy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Secondary Start Pages
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Secondary Start Pages
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameTabWindow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SessionMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\AdminTabProcs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\HangResistance
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\HangResistance
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CompatibilityFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\DetourDialogs
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\New Windows
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SQM
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SQM\ServerFreezeOnUpload
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SQM
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\ClearableListData
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\UnattendLoaded
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\TLDUpdates
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BFE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_CURRENT_USER\Software\Classes\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\TreatAs
HKEY_CLASSES_ROOT\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\LoadTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
HKEY_CURRENT_USER\Software\Classes\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\TreatAs
HKEY_CLASSES_ROOT\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\LoadTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_CURRENT_USER\Software\Classes\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\TreatAs
HKEY_CLASSES_ROOT\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\LoadTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_CURRENT_USER\Software\Classes\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}\TreatAs
HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\LoadTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar
HKEY_CURRENT_USER\Software\AppDataLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\DontShowMeThisDialogAgain
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IntelliForms
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PageSetup
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\LowDAMap
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\LowRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\LowMic
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\LowMic
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\Flags
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\UNCAsIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Flags
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Flags
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1001
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1001
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1004
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1004
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1200
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1201
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1201
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1405
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1405
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1800
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1800
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1803
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1803
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1804
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1804
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1806
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1806
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1001
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1004
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1201
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1800
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1804
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1806
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1806
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Zones
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\SecuritySafe
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnableConsoleTracing
HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\iexplore_RASAPI32
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledProcesses\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\74DD1FC8
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledSessions\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000\ProfileImagePath
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\Location Awareness
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\AutodialDLL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Width
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Height
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\Software\Microsoft\DirectUI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{8F75CE39-B506-11E8-82E5-0800274633C1}
HKEY_CURRENT_USER\Software\Classes\AppID\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_CURRENT_USER\Software\Classes\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\MaxSxSHashCount
HKEY_CURRENT_USER\Software\Classes\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Groups
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\TabbedBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\EnabledScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feeds
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feeds
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Search
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale\Alternate Sorts
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Language Groups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000410
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontLink\SystemLink
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\DataFilePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane11
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane12
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane13
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane15
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane16
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Segoe UI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Placement
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Position
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FullScreen
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\IEAK
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\IEAK
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\CommandBar
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\CommandBar
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseIE7AutoComplete
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchControlWidth
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigrated
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedInstalled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DefaultScope
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Deleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\URL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SortIndex
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Locked
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\LinksBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\TestHandler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\LinksFolderMigrate
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Migration
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Migration\IE Installed Date
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\MarketingLinksMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\CascadeFolderBands
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\CascadeFolderBands
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\DefaultItemWidth
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesMyComputer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesRecycleBin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoInternetIcon
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoCommonGroups
HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\NonEnum
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\NonEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CLASSES_ROOT\Drive\shellex\FolderExtensions
HKEY_CLASSES_ROOT\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}\DriveMask
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Explorer
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\DontShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\SeparateProcess
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoNetCrawling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSimpleStartMenu
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowCompColor
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowInfoTip
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideIcons
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\MapNetDrvBtn
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\WebView
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Filter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\NoNetCrawling
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\AutoCheckSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\IconsOnly
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowTypeOverlay
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Directory\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Directory
HKEY_CLASSES_ROOT\Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\ShellEx\IconHandler
HKEY_CLASSES_ROOT\Folder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellEx\IconHandler
HKEY_CLASSES_ROOT\AllFilesystemObjects
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\ShellEx\IconHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\NeverShowExt
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PropertyBag
HKEY_CLASSES_ROOT\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{59031A47-3F72-44A7-89C5-5595FE6B30EE}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterTimerInterval
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterDisable
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsThreshold
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Restrictions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\IEDevTools
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\CommandBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksExplorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksExplorer\Docked
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\LinksExplorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ThumbnailBehavior
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Height
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History\DaysToKeep
HKEY_CURRENT_USER\Software\Classes\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\SecurityService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_CURRENT_USER\Software\Classes\Interface\{00020400-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{00020420-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020420-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{00020424-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020424-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\UDTAlignmentPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\AllowFileCLSIDJunctions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoStrCmpLogical
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\ErrorState
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\ErrorState
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\DontUseDesktopChangeRouter
HKEY_CURRENT_USER\Software\Classes\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocHandler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Use FormSuggest
HKEY_CURRENT_USER\Software\Classes\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TypeLib\Version
HKEY_CURRENT_USER\Software\Classes\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_CLASSES_ROOT\MIME\Database\Content Type\image/x-icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-icon\Extension
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\CaretBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\CaretBrowsing\EnableOnStartup
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\CaretBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\MigrationTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOncePerInstallCompleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceCompletionTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Check_Associations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\ObjectsCreated
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\SlicePath
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\ConfiguredScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\User Favorites Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\UpgradeTime
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsLastUsed
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\UseMRUSwitching
HKEY_CLASSES_ROOT\.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\(Default)
HKEY_CLASSES_ROOT\.exe\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\UserChoice
HKEY_CLASSES_ROOT\exefile
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\ShellEx\IconHandler
HKEY_CLASSES_ROOT\SystemFileAssociations\.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\ShellEx\IconHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\Content Type
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NormalizeLinkNetPidls
HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\System.NamespaceCLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\{28636AA6-953D-11D2-B5D6-00C04FD918D0} 6
HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\LoadWithoutCOM
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{871c5380-42a0-1069-a2ea-08002b30309d}\InProcServer32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{871C5380-42A0-1069-A2EA-08002B30309D} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\System.NamespaceCLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\{28636AA6-953D-11D2-B5D6-00C04FD918D0} 6
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ContentIndex\Language
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Arabic_SaudiArabia
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Arabic_SaudiArabia\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bengali_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bengali_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bulgarian_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bulgarian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Catalan_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Catalan_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_HongKong
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_HongKong\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Simplified
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Simplified\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Traditional
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Traditional\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Croatian_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Croatian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Dutch_Dutch
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Dutch_Dutch\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_UK
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_UK\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_US\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\French_French
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\French_French\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\German_German
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\German_German\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Gujarati_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Gujarati_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hebrew_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hebrew_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hindi_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hindi_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Icelandic_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Icelandic_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Indonesian_Default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Indonesian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Italian_Italian
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Italian_Italian\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Italian_Italian\WBreakerClass
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DataProviders
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\WSQuerySleepTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DataModelAlwaysQuerySync
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameShutdownDelay
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Search\Preferences
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Search\Preferences
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Search\Preferences\WriteLog
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_JumpListItems
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\Start_JumpListItems
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRecentDocsHistory
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_TrackDocs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\Start_TrackDocs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Cleared
HKEY_LOCAL_MACHINE\SOFTWARE\RegisteredApplications
HKEY_LOCAL_MACHINE\Software\Clients\Contacts\Address Book\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Search\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Microsoft\IsoBurn\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\IsoBurn\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\IsoBurn\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Photo Viewer\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Photo Viewer\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Photo Viewer\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Clients\Media\Windows Media Player\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\IE.HTTP\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\IE.HTTP
HKEY_CLASSES_ROOT\IE.HTTP
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\RemoveAccess
HKEY_LOCAL_MACHINE\Software\Clients\Media\Windows Media Center\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Center\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Center\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\Software\Clients\Mail\Microsoft Outlook\Capabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Microsoft Outlook\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Microsoft Outlook\Capabilities\UrlAssociations
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\AppUserModelID
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\UpgradeTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\StaleIETldCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Control Panel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Control Panel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Privacy
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Privacy\ClearBrowsingHistoryOnExit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\Compatibility\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\AcRedir
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Favorites
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Desktop
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PropertyBag
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFileMenu
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\StatusBarWeb
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\StatusBarWeb
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\LinksBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable Browser Extensions
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\CommandBar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoBandCustomize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Layout
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AlwaysShowMenus
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Marlett
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\*
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ext
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Ext
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SafeBoot\Option
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\AppCompatibility
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\AppCompat
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{18df081c-e8ad-4283-a596-fa578c2ebdc3}\InProcServer32
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\AcroIEHelperShim.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Time
HKEY_CLASSES_ROOT\CLSID\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{761497bb-d6f0-462c-b6eb-d4daf1d92d43}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\ssv.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Time
HKEY_CURRENT_USER\SOFTWARE\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\pending
HKEY_CURRENT_USER\SOFTWARE\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.suppression.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.timestamp.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.webjava.enabled
HKEY_LOCAL_MACHINE\SOFTWARE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\11.74.2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\11.74.2\UseNewJavaPlugin
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{b4f3a835-0e21-4959-ba22-42b3008e02ff}\InProcServer32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\URLREDIR.DLL
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Time
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{dbc80044-a445-435b-bc74-9c25c1c588a9}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\jp2ssv.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Time
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Plug-in
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Plug-in\1.6.0_22
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\1.6.0_22\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Web Start\1.6.0_22
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Web Start\1.6.0_22\Home
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Runtime Environment\1.6.0_22
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Runtime Environment\1.6.0_22\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Plug-in\11.74.2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\11.74.2\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Web Start\11.74.2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Web Start\11.74.2\Home
HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\InProcServer32
HKEY_CLASSES_ROOT\CLSID
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\TreatAs\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_CURRENT_USER\Software\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Runtime Environment
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Runtime Environment\1.8.0_74
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Runtime Environment\1.8.0_74\JavaHome
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\TravelLog
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\TravelLog
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\MenuUserExpanded
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\NavigationDelay
HKEY_LOCAL_MACHINE\Software\Microsoft\Feeds
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Feeds\UrlCacheVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0\win32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OpenDirectlyInApp
HKEY_CURRENT_USER\Software\Policies\Microsoft\Security
HKEY_CURRENT_USER\Software\Microsoft\Security
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{7b8a2d94-0ac9-11d1-896c-00c04fb6bfc4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\InsecureQI
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\Common
HKEY_CURRENT_USER\Software\Microsoft\Office\Common\AllowConsecutiveSlashesInUrlPathComponent
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\Server Cache
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OptimisticBHO
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\Server Cache\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IEDDE_REGISTER_PROTOCOL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IEDDE_REGISTER_PROTOCOL
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_READ_ZONE_STRINGS_FROM_REGISTRY
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_READ_ZONE_STRINGS_FROM_REGISTRY
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Compat_Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\Feature_Enable_Compat_Logging
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\MediaTypeClass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ratings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_FAILED_CONNECT_CONTENT_KB942615
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SHOW_FAILED_CONNECT_CONTENT_KB942615
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_HANDLING\iexplore.exe
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\http\
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\*\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\UA Tokens
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Pre Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Pre Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Pre Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\*
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\UrlMon Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableUTF8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AcceptLanguage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\AllSitesCompatibilityMode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\BrowserEmulation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IntranetCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\MSCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IECompatVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IECompatVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\TurnOffSPIAnimations
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/html
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/html\Extension
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\text/html
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_SNIFFING\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2100
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IsTextPlainHonored
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SAFE_BINDTOOBJECT\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInset
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollDelay
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInterval
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MANAGE_SCRIPT_CIRCULAR_REFS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MANAGE_SCRIPT_CIRCULAR_REFS
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\Floppy Access
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\Adv AddrBar Spoof Detection
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\Adv AddrBar Spoof Detection
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\about\
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Handler\about
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\about
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\about\CLSID
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2106
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomDisabled
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Zoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnStartup
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnZoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetZoomOnStartup2
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomFactor
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter\EnabledV8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2\UserFile
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IPERSISTMONIKER_LOAD_REDIRECTED_URL_KB976425
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IPERSISTMONIKER_LOAD_REDIRECTED_URL_KB976425
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SmartDithering
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SmartDithering
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\RtfConverterFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseClearType
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Page_Transitions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Page_Transitions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use_DlgBox_Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Anchor Underline
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CSS_Compat
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Expand Alt Text
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Images
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Videos
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Display Inline Videos
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Background_Sounds
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Animations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Print_Background
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use Stylesheets
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SmoothScroll
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SmoothScroll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XMLHTTP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Show image placeholders
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Show image placeholders
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Disable Script Debugger
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DisableScriptDebuggerIE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Move System Caret
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Force Offscreen Composition
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable AutoImageResize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Enable AutoImageResize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseThemes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseHR
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Q300829
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Cleanup HTCs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XDomainRequest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\XDomainRequest
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DOMStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DOMStorage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Default_CodePage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\Default_IEFontSizePrivate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\International\Scripts
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Visited
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Hover
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Settings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Size
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Face
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Disable Visited Hyperlinks
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Use Anchor Hover Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\MiscFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Styles
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Allow Programmatic Cut_Copy_Paste
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PageSetup\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\Contexts
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Nls\CodePage
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CodePage\950
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSizePrivate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEPropFontName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFixedFontName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\VML
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\IE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\WindowsEdition
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONE_ELEVATION\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2700
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_XSSFILTER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_XSSFILTER\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1409
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\NoProtectedModeBanner
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2301
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\*
HKEY_CURRENT_USER\Software\Microsoft\AntiPhishing
HKEY_CURRENT_USER\Software\Microsoft\AntiPhishing\i
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Classes\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}\SynchronousInterface
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}\SynchronousInterface\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_STATUS_BAR_THROTTLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_STATUS_BAR_THROTTLING
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IEDDE_REGISTER_URLECHO
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IEDDE_REGISTER_URLECHO
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2000
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\KindMap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\KindMap\.htm
HKEY_CLASSES_ROOT\.htm
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\(Default)
HKEY_CLASSES_ROOT\.htm\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice
HKEY_CLASSES_ROOT\htmlfile
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\opennew
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\opennew\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\Edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\Edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Default HTML Editor
HKEY_CLASSES_ROOT\.htm\OpenWithList
HKEY_CLASSES_ROOT\Applications\Excel.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Excel.Sheet\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Excel.Sheet
HKEY_CLASSES_ROOT\Excel.Sheet
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet\CurVer\(Default)
HKEY_CLASSES_ROOT\Excel.Sheet.12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\Open
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\Open\NeverDefault
HKEY_CLASSES_ROOT\Applications\Microsoft Excel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit\command\(Default)
HKEY_CLASSES_ROOT\Applications\Microsoft Word
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Word.Document\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Word.Document
HKEY_CLASSES_ROOT\Word.Document
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document\CurVer\(Default)
HKEY_CLASSES_ROOT\Word.Document.12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\Open
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\Open\NeverDefault
HKEY_CLASSES_ROOT\Applications\notepad.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command\(Default)
HKEY_CLASSES_ROOT\Applications\WinWord.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit\command\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CheckDocumentForProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\CheckDocumentForProgID
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feed Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery\Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Feed Discovery\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feed Discovery\
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Feeds
HKEY_CURRENT_USER\Software\Microsoft\Ftp
HKEY_CURRENT_USER\Software\Microsoft\FTP\Use Web Based FTP
HKEY_LOCAL_MACHINE\Software\Microsoft\Ftp
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Services
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Services\SelectionActivityButtonDisable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Services
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Activities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Activities
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BINARY_CALLER_SERVICE_PROVIDER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BINARY_CALLER_SERVICE_PROVIDER
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\LoadWithoutCOM
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ff393560-c2a7-11cf-bff4-444553540000}\InProcServer32
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{FF393560-C2A7-11CF-BFF4-444553540000} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{FF393560-C2A7-11CF-BFF4-444553540000}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\Desktop\NameSpace\NameCustomizations
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\LocalizedString
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDITIONAL_IE8_MEMORY_CLEANUP
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDITIONAL_IE8_MEMORY_CLEANUP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\AddToFavoritesInitialSelection
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\AddToFeedsInitialSelection
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\StaleCompatCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{A23EB553-B506-11E8-82E5-0800274633C1}

Read Keys

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File1
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File2
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File3
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List\File4
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Settings\PreviewPages
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CEIPEnable
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0002DF05-0000-0000-C000-000000000046}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{332C4425-26CB-11D0-B483-00C04FD90119}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3050F1C5-98B5-11CF-BB82-00AA00BDCE0B}\4.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3050F1FF-98B5-11CF-BB82-00AA00BDCE0B}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ServiceParameters
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\DllSurrogate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\LoadUserSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\LocalServer32\ServerExecutable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\AppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\Path
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomVBOX_CD-ROM_____________________________1.0_____#5&106af171&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{35122303-fb0b-11e5-b945-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\ActivePowerScheme
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\ActivePowerScheme
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\381b4222-f694-41f0-9685-ff5bb260df2e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\94ac6d29-73ce-41a6-809f-6363ba21b47e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e\ACSettingIndex
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\ValueMin
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\94AC6D29-73CE-41A6-809F-6363BA21B47E\1\SettingValue
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\SecurityDescriptors\a7066653-8d6c-40a8-910e-a1f54b84c7e5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e\ACSettingIndex
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\ValueMin
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerSettings\4f971e89-eebd-4455-a8de-9e59040e7347\A7066653-8D6C-40A8-910E-A1F54B84C7E5\0\SettingValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\SessionEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Level
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AreaFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Session
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\BufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MinimumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFileMode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\FlushTimer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AgeLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\IdentifierLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\QueryLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\PathLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbThrottlingEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighMaxLimitFactor
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbTaskMaxSleep
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Unchecked Task Count
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Build
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\MOF Self-Install Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Default Repository Driver
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueCoreFsrepVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Cache Spill Ratio
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckPointValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SnapShotValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckRepositoryOnNextStartup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NumWriteIdCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Item Age (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NextAutoRecoverFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Enable Provider Subsystem
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{00F8A487-AD0E-40F8-8C85-183D5D574929}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{51F280C2-B809-4699-848F-16BC092358C9}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{6405B61F-C908-4E9E-958F-2F5F2F35BA6A}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{C9988A8A-609C-4D6C-BC56-8DE8FD5631A2}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableEvents
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssToBeInitialized
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Low Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\High Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Wait On Events (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Merger Query Arbitration Enabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerBatchSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ClientCallbackTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerQueueThreshold
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Tasks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SetupDate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Async Result Queue Size
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\default
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\default
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\Config\SYSTEM
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it-IT
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it-IT
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\CompatibleHostProviders\ROOT\default:__Win32Provider.Name="RegProv"
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\DefaultSecuredHost
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000\State
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\Log File Max Size
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DEPOff
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ProtectedModeOffForAllZones
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\LuaOffLoRIEOn
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Setup\HaveCreatedQuickLaunchItems
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FromCacheTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertificateRevocation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableKeepAlive
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisablePassport
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IdnEnabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CacheMode
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableNegotiate
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBasicOverClearChannel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\Feature_ClientAuthCertFilter
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\Feature_ClientAuthCertFilter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ClientAuthBuiltInUI
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SyncMode5
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\SessionStartTimeDefaultDeltaSecs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Signature
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\PerUserItem
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\PerUserItem
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012017011320170114\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\UserData\CacheOptions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutoProxyResultCache
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisplayScriptDownloadFailureUI
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSServername
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSAPIforCrack
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UTF8ServerNameRes
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableWorkerThreadHibernation
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableWorkerThreadHibernation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableReadRange
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketSendBufferLength
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketReceiveBufferLength
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\KeepAliveTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxHttpRedirects
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerProxy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ServerInfoTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableNTLMPreAuth
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ScavengeCacheLowerBound
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertCacheNoValidate
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLifeTime
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ScavengeCacheFileLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HttpDefaultExpiryTimeSecs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FtpDefaultExpiryTimeSecs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\PerUserCookies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\LeashLegacyCookies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendExtraCRLF
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WpadSearchAllDomains
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttpTrace
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ShareCredsWithWinHttp
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MimeExclusionListForCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HeaderExclusionListForCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEnabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEntries
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheTimeout
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPost
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnAlwaysOnPost
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnZoneCrossing
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnBadCertRecving
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPostRedirect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AlwaysDrainOnRedirect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\TcpAutotuning
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadOverride
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutodial
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\NoNetAutodial
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\GlobalUserOffline
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BadProxyExpiresTime
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBranchCache
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxySettingsPerUser
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MigrateProxy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Secondary Start Pages
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Secondary Start Pages
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameTabWindow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SessionMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\AdminTabProcs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\HangResistance
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\HangResistance
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CompatibilityFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\DetourDialogs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SQM\ServerFreezeOnUpload
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\UnattendLoaded
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\TLDUpdates
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}\VerCache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\LoadTime
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1001
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1001
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1004
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1004
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1200
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1201
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1201
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1405
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1405
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1800
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1800
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1803
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1803
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1804
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1804
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1806
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\1806
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1001
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1004
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1201
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1800
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1804
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1806
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1806
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\iexplore_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\74DD1FC8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000\ProfileImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\WinSock_Registry_Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\AutodialDLL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Width
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Height
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\MaxSxSHashCount
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Groups
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\EnabledScopes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000410
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\DataFilePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane11
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane12
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane13
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane15
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane16
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Placement
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Position
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FullScreen
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseIE7AutoComplete
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchControlWidth
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigrated
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedInstalled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DefaultScope
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Deleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\URL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SortIndex
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Locked
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\TestHandler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\LinksFolderMigrate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Migration\IE Installed Date
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\MarketingLinksMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\CascadeFolderBands
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\CascadeFolderBands
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\DefaultItemWidth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesMyComputer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesRecycleBin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoInternetIcon
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoCommonGroups
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}\DriveMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\DontShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\SeparateProcess
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoNetCrawling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSimpleStartMenu
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowCompColor
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowInfoTip
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideIcons
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\MapNetDrvBtn
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\WebView
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Filter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\NoNetCrawling
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\AutoCheckSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\IconsOnly
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowTypeOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InitFolderHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HasNavigationEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{59031A47-3F72-44A7-89C5-5595FE6B30EE}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterTimerInterval
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterDisable
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsThreshold
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksExplorer\Docked
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ThumbnailBehavior
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Height
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History\DaysToKeep
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\UDTAlignmentPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\AllowFileCLSIDJunctions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoStrCmpLogical
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1\ErrorState
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\ErrorState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\DontUseDesktopChangeRouter
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EAB22AC1-30C1-11CF-A7EB-0000C05BAE0B}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-icon\Extension
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\CaretBrowsing\EnableOnStartup
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\MigrationTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOncePerInstallCompleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceCompletionTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Check_Associations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\ObjectsCreated
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\SlicePath
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\ConfiguredScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\User Favorites Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\UpgradeTime
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsLastUsed
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\UseMRUSwitching
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\Content Type
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.exe\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NormalizeLinkNetPidls
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\System.NamespaceCLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\{28636AA6-953D-11D2-B5D6-00C04FD918D0} 6
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\LoadWithoutCOM
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{871C5380-42A0-1069-A2EA-08002B30309D} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\System.NamespaceCLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\{28636AA6-953D-11D2-B5D6-00C04FD918D0} 6
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Arabic_SaudiArabia\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bengali_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Bulgarian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Catalan_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_HongKong\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Simplified\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Chinese_Traditional\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Croatian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Dutch_Dutch\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_UK\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\English_US\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\French_French\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\German_German\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Gujarati_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hebrew_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Hindi_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Icelandic_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Indonesian_Default\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Italian_Italian\Locale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ContentIndex\Language\Italian_Italian\WBreakerClass
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\WSQuerySleepTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DataModelAlwaysQuerySync
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Search\Preferences\WriteLog
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_JumpListItems
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\Start_JumpListItems
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRecentDocsHistory
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_TrackDocs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\Start_TrackDocs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Cleared
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\IsoBurn\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Photo Viewer\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Center\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Microsoft Outlook\Capabilities\Hidden
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\AppUserModelID
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\UpgradeTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\StaleIETldCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Privacy\ClearBrowsingHistoryOnExit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\AcRedir
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InitFolderHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Favorites
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InitFolderHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Desktop
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFileMenu
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\StatusBarWeb
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\StatusBarWeb
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable Browser Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoBandCustomize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Layout
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AlwaysShowMenus
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Count
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Count
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.suppression.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.expiration.decision.timestamp.11.74.2
HKEY_CURRENT_USER\Software\AppDataLow\SOFTWARE\JavaSoft\DeploymentProperties\deployment.webjava.enabled
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\11.74.2\UseNewJavaPlugin
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Count
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\InProcServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Count
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\1.6.0_22\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Web Start\1.6.0_22\Home
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Runtime Environment\1.6.0_22\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\11.74.2\JavaHome
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Web Start\11.74.2\Home
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\TreatAs\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Runtime Environment\1.8.0_74\JavaHome
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0018-0000-0074-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\MenuUserExpanded
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\NavigationDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Feeds\UrlCacheVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0\win32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OpenDirectlyInApp
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\InsecureQI
HKEY_CURRENT_USER\Software\Microsoft\Office\Common\AllowConsecutiveSlashesInUrlPathComponent
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OptimisticBHO
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_HANDLING\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\*
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableUTF8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AcceptLanguage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\AllSitesCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IntranetCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\MSCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IECompatVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IECompatVersionHigh
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\TurnOffSPIAnimations
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/html\Extension
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_SNIFFING\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2100
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IsTextPlainHonored
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SAFE_BINDTOOBJECT\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInset
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollDelay
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\*
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\about\CLSID
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2106
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomDisabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnStartup
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnZoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetZoomOnStartup2
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomFactor
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter\EnabledV8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2\UserFile
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SmartDithering
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SmartDithering
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\RtfConverterFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseClearType
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Page_Transitions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Page_Transitions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use_DlgBox_Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Anchor Underline
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CSS_Compat
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Expand Alt Text
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Images
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Videos
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Display Inline Videos
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Background_Sounds
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Animations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Print_Background
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use Stylesheets
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SmoothScroll
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SmoothScroll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XMLHTTP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Show image placeholders
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Show image placeholders
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Disable Script Debugger
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DisableScriptDebuggerIE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Move System Caret
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Force Offscreen Composition
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable AutoImageResize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Enable AutoImageResize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseThemes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseHR
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Q300829
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Cleanup HTCs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XDomainRequest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\XDomainRequest
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DOMStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DOMStorage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Default_CodePage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\Default_IEFontSizePrivate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Visited
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Hover
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Size
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Face
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Disable Visited Hyperlinks
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Use Anchor Hover Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\MiscFlags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Allow Programmatic Cut_Copy_Paste
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PageSetup\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&sporta in Microsoft Excel\Contexts
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CodePage\950
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSizePrivate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEPropFontName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFixedFontName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\VML
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\IE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\WindowsEdition
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONE_ELEVATION\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2700
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_XSSFILTER\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1409
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\SecuritySafe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\NoProtectedModeBanner
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2301
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\*
HKEY_CURRENT_USER\Software\Microsoft\AntiPhishing\i
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}\SynchronousInterface\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2000
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\KindMap\.htm
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\opennew\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\Edit\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet\CurVer\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\Open\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document\CurVer\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\Open\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit\command\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CheckDocumentForProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\CheckDocumentForProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery\Enabled
HKEY_CURRENT_USER\Software\Microsoft\FTP\Use Web Based FTP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Services\SelectionActivityButtonDisable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\LoadWithoutCOM
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{FF393560-C2A7-11CF-BFF4-444553540000} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\LocalizedString
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\StaleCompatCache

Write Keys

HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Recent File List
HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\paint\Settings
HKEY_CURRENT_USER\Control Panel\Desktop\Style
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2\SCM Event Provider
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE10RunOnceLastShown
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE10RunOnceLastShown_TIMESTAMP
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown_TIMESTAMP
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Software\Microsoft\Internet Explorer\Main\Check_Associations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CompatibilityFlags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\UNCAsIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\SecuritySafe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{8F75CE39-B506-11E8-82E5-0800274633C1}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FullScreen
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\UpgradeTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Time
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Web Start\1.6.0_22\Home
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012018091020180911\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2\UserFile
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{A23EB553-B506-11E8-82E5-0800274633C1}

Delete Keys

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{8F75CE39-B506-11E8-82E5-0800274633C1}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\AddToFavoritesInitialSelection
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\AddToFeedsInitialSelection
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{A23EB553-B506-11E8-82E5-0800274633C1}

Mutexes

Local\_!MSFTHISTORY!_
Local\c:!users!seven01!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Local\c:!users!seven01!appdata!roaming!microsoft!windows!cookies!
Local\c:!users!seven01!appdata!local!microsoft!windows!history!history.ie5!
Local\WininetStartupMutex
Local\WininetConnectionMutex
Local\WininetProxyRegistryMutex
Local\!BrowserEmulation!SharedMemory!Mutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
ConnHashTable<2656>_HashTable_Mutex
Local\ZonesCounterMutex
Local\!IETld!Mutex
Local\RSS Eventing Connection Database Mutex 00000a60
Local\Feed Eventing Shared Memory Mutex S-1-5-21-1822907384-1282624486-319450072-1000
Global\ARM Update Mutex
Global\Acro Update Mutex
Local\c:!users!seven01!appdata!local!microsoft!feeds cache!
Local\!IECompat!Mutex
Local\c:!users!seven01!appdata!roaming!microsoft!windows!iecompatcache!
SmartScreen_UrsCacheMutex_2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2High_S-1-5-21-1822907384-1282624486-319450072-1000
SmartScreen_ClientId_Mutex
_!SHMSFTHISTORY!_
Local\c:!users!seven01!appdata!local!microsoft!windows!history!history.ie5!mshist012018091020180911!
ConnHashTable<2580>_HashTable_Mutex
Local\RSS Eventing Connection Database Mutex 00000a14

Resolved APIs

kernel32.dll.FindResourceW
kernel32.dll.LoadResource
kernel32.dll.WideCharToMultiByte
kernel32.dll.SizeofResource
kernel32.dll.LockResource
kernel32.dll.GetVolumeNameForVolumeMountPointA
kernel32.dll.GetEnvironmentVariableW
kernel32.dll.CreateFileA
kernel32.dll.MapViewOfFile
kernel32.dll.VirtualQuery
kernel32.dll.QueryDosDeviceA
kernel32.dll.WaitForSingleObject
kernel32.dll.GetDriveTypeA
kernel32.dll.GetPriorityClass
kernel32.dll.FindResourceExA
kernel32.dll.CreateEventA
kernel32.dll.GetConsoleWindow
kernel32.dll.SetEnvironmentVariableA
kernel32.dll.CreateFileW
kernel32.dll.GetProcessHeap
kernel32.dll.WriteConsoleW
kernel32.dll.InterlockedDecrement
kernel32.dll.GetConsoleCP
kernel32.dll.GetTimeZoneInformation
kernel32.dll.CompareStringW
kernel32.dll.GetStringTypeW
kernel32.dll.QueryPerformanceCounter
kernel32.dll.GetEnvironmentStringsW
kernel32.dll.FreeEnvironmentStringsW
kernel32.dll.SetHandleCount
kernel32.dll.HeapCreate
kernel32.dll.LCMapStringW
kernel32.dll.IsValidCodePage
kernel32.dll.IsProcessorFeaturePresent
kernel32.dll.lstrcpyA
kernel32.dll.GetVolumeNameForVolumeMountPointW
kernel32.dll.CloseHandle
kernel32.dll.GetDiskFreeSpaceExA
kernel32.dll.GetCurrentDirectoryA
kernel32.dll.GetDiskFreeSpaceA
kernel32.dll.InterlockedIncrement
kernel32.dll.GetModuleHandleA
kernel32.dll.RaiseException
kernel32.dll.GetFileType
kernel32.dll.UnhandledExceptionFilter
kernel32.dll.GetConsoleMode
kernel32.dll.GetModuleFileNameW
kernel32.dll.GetStdHandle
kernel32.dll.TerminateProcess
kernel32.dll.IsDebuggerPresent
kernel32.dll.CreateFileMappingA
kernel32.dll.FindClose
kernel32.dll.VirtualAlloc
kernel32.dll.GetProcAddress
kernel32.dll.GetLastError
kernel32.dll.FindFirstFileA
kernel32.dll.MultiByteToWideChar
kernel32.dll.SetLastError
kernel32.dll.DeactivateActCtx
kernel32.dll.ActivateActCtx
kernel32.dll.GetModuleFileNameA
kernel32.dll.GetCurrentProcessId
kernel32.dll.MulDiv
kernel32.dll.GlobalUnlock
kernel32.dll.GlobalLock
kernel32.dll.lstrcmpW
kernel32.dll.FreeLibrary
kernel32.dll.LoadLibraryA
kernel32.dll.LoadLibraryW
kernel32.dll.InitializeCriticalSectionAndSpinCount
kernel32.dll.DeleteCriticalSection
kernel32.dll.EnterCriticalSection
kernel32.dll.LeaveCriticalSection
kernel32.dll.CompareStringA
kernel32.dll.GetVersionExA
kernel32.dll.GlobalDeleteAtom
kernel32.dll.GlobalFindAtomA
kernel32.dll.GlobalAddAtomA
kernel32.dll.GlobalGetAtomNameA
kernel32.dll.GetCurrentThreadId
kernel32.dll.FreeResource
kernel32.dll.FindResourceA
kernel32.dll.lstrlenA
kernel32.dll.InterlockedExchange
kernel32.dll.GetModuleHandleW
kernel32.dll.GlobalAlloc
kernel32.dll.lstrcmpA
kernel32.dll.LoadLibraryExA
kernel32.dll.GetLocaleInfoA
kernel32.dll.GetSystemDefaultUILanguage
kernel32.dll.ConvertDefaultLocale
kernel32.dll.GetUserDefaultUILanguage
kernel32.dll.GetCurrentThread
kernel32.dll.GetPrivateProfileIntA
kernel32.dll.WritePrivateProfileStringA
kernel32.dll.GetPrivateProfileStringA
kernel32.dll.GlobalFree
kernel32.dll.SetThreadPriority
kernel32.dll.ResumeThread
kernel32.dll.GetTickCount
kernel32.dll.GetFileAttributesA
kernel32.dll.SystemTimeToFileTime
kernel32.dll.ReplaceFileA
kernel32.dll.SetFileTime
kernel32.dll.GetFileTime
kernel32.dll.GetTempFileNameA
kernel32.dll.GetFullPathNameA
kernel32.dll.CreateActCtxW
kernel32.dll.ReleaseActCtx
kernel32.dll.SetStdHandle
kernel32.dll.InitializeCriticalSection
kernel32.dll.GlobalFlags
kernel32.dll.lstrlenW
kernel32.dll.LocalFree
kernel32.dll.FormatMessageA
kernel32.dll.GlobalSize
kernel32.dll.CopyFileA
kernel32.dll.GetThreadLocale
kernel32.dll.FileTimeToSystemTime
kernel32.dll.LocalAlloc
kernel32.dll.TlsGetValue
kernel32.dll.GlobalReAlloc
kernel32.dll.GlobalHandle
kernel32.dll.TlsAlloc
kernel32.dll.TlsSetValue
kernel32.dll.LocalReAlloc
kernel32.dll.TlsFree
kernel32.dll.GetCPInfo
kernel32.dll.GetOEMCP
kernel32.dll.GetSystemDirectoryW
kernel32.dll.GetACP
kernel32.dll.DeleteFileA
kernel32.dll.GetStringTypeExA
kernel32.dll.lstrcmpiA
kernel32.dll.MoveFileA
kernel32.dll.ReadFile
kernel32.dll.WriteFile
kernel32.dll.SetFilePointer
kernel32.dll.FlushFileBuffers
kernel32.dll.LockFile
kernel32.dll.UnlockFile
kernel32.dll.SetEndOfFile
kernel32.dll.GetFileSize
kernel32.dll.DuplicateHandle
kernel32.dll.GetCurrentProcess
kernel32.dll.GetVolumeInformationA
kernel32.dll.GetShortPathNameA
kernel32.dll.FileTimeToLocalFileTime
kernel32.dll.GetFileAttributesExA
kernel32.dll.LocalFileTimeToFileTime
kernel32.dll.GetFileSizeEx
kernel32.dll.GetTempPathA
kernel32.dll.GetWindowsDirectoryA
kernel32.dll.GetNumberFormatA
kernel32.dll.SetErrorMode
kernel32.dll.GetProfileIntA
kernel32.dll.Sleep
kernel32.dll.SearchPathA
kernel32.dll.VirtualProtect
kernel32.dll.FindResourceExW
kernel32.dll.ExitProcess
kernel32.dll.HeapAlloc
kernel32.dll.GetCommandLineA
kernel32.dll.HeapSetInformation
kernel32.dll.GetStartupInfoW
kernel32.dll.HeapFree
kernel32.dll.RtlUnwind
kernel32.dll.HeapReAlloc
kernel32.dll.ExitThread
kernel32.dll.CreateThread
kernel32.dll.HeapQueryInformation
kernel32.dll.HeapSize
kernel32.dll.GetSystemInfo
kernel32.dll.GetSystemTimeAsFileTime
kernel32.dll.SetUnhandledExceptionFilter
advapi32.dll.LookupAccountSidW
advapi32.dll.RegOpenKeyExA
advapi32.dll.RegEnumKeyExA
advapi32.dll.RegEnumValueA
advapi32.dll.RegSetValueA
advapi32.dll.GetFileSecurityA
advapi32.dll.SetFileSecurityA
advapi32.dll.RegQueryValueA
advapi32.dll.RegEnumKeyA
advapi32.dll.RegDeleteKeyA
advapi32.dll.RegDeleteValueA
advapi32.dll.RegSetValueExW
advapi32.dll.RegCloseKey
advapi32.dll.RegOpenKeyExW
advapi32.dll.FreeSid
advapi32.dll.AllocateAndInitializeSid
advapi32.dll.RegQueryValueExA
advapi32.dll.CredGetSessionTypes
advapi32.dll.RegSetValueExA
advapi32.dll.RegCreateKeyExA
comctl32.dll.InitCommonControlsEx
comctl32.dll.#4
comctl32.dll.ImageList_GetIconSize
comdlg32.dll.GetFileTitleA
comdlg32.dll.GetOpenFileNameA
crypt32.dll.CertFindCertificateInStore
crypt32.dll.CertDuplicateStore
crypt32.dll.CertFreeCertificateContext
crypt32.dll.CertOpenStore
crypt32.dll.CertCreateCertificateContext
crypt32.dll.CertAddCertificateLinkToStore
crypt32.dll.CertAddCertificateContextToStore
crypt32.dll.CertCloseStore
crypt32.dll.CertSaveStore
gdi32.dll.ExtSelectClipRgn
gdi32.dll.CreatePatternBrush
gdi32.dll.GetStockObject
gdi32.dll.SelectPalette
gdi32.dll.GetObjectType
gdi32.dll.CreateBitmap
gdi32.dll.GetDeviceCaps
gdi32.dll.ExtTextOutA
gdi32.dll.TextOutA
gdi32.dll.CreateHatchBrush
gdi32.dll.SetRectRgn
gdi32.dll.GetMapMode
gdi32.dll.PatBlt
gdi32.dll.DPtoLP
gdi32.dll.GetCharWidthA
gdi32.dll.StretchDIBits
gdi32.dll.GetViewportOrgEx
gdi32.dll.StartPage
gdi32.dll.EndPage
gdi32.dll.SetAbortProc
gdi32.dll.AbortDoc
gdi32.dll.EndDoc
gdi32.dll.CreateDCA
gdi32.dll.CopyMetaFileA
gdi32.dll.CreateDIBitmap
gdi32.dll.EnumFontFamiliesA
gdi32.dll.RectVisible
gdi32.dll.PtVisible
gdi32.dll.StartDocA
gdi32.dll.GetPixel
gdi32.dll.GetWindowExtEx
gdi32.dll.GetViewportExtEx
gdi32.dll.GetObjectA
gdi32.dll.SelectClipRgn
gdi32.dll.SetLayout
gdi32.dll.SetPixelV
gdi32.dll.SetPaletteEntries
gdi32.dll.ExtFloodFill
gdi32.dll.GetBoundsRect
gdi32.dll.FrameRgn
gdi32.dll.GetLayout
gdi32.dll.PtInRegion
gdi32.dll.EnumFontFamiliesExA
gdi32.dll.SetPixel
gdi32.dll.StretchBlt
gdi32.dll.SetDIBColorTable
gdi32.dll.OffsetRgn
gdi32.dll.GetSystemPaletteEntries
gdi32.dll.RealizePalette
gdi32.dll.CreateSolidBrush
gdi32.dll.FillPath
gdi32.dll.Polyline
gdi32.dll.EndPath
gdi32.dll.CreateFontIndirectA
gdi32.dll.BeginPath
gdi32.dll.CreateFontA
gdi32.dll.CreateDiscardableBitmap
gdi32.dll.CreatePen
gdi32.dll.CreateRectRgn
gdi32.dll.Rectangle
gdi32.dll.CreateRectRgnIndirect
gdi32.dll.CreateCompatibleDC
gdi32.dll.DeleteObject
gdi32.dll.GetTextExtentPoint32A
gdi32.dll.BitBlt
gdi32.dll.SetTextAlign
gdi32.dll.GetTextExtentPointA
gdi32.dll.SetStretchBltMode
gdi32.dll.ExtTextOutW
gdi32.dll.CreateCompatibleBitmap
gdi32.dll.CombineRgn
gdi32.dll.SelectObject
gdi32.dll.SetBkMode
gdi32.dll.ExcludeClipRect
gdi32.dll.SetBkColor
gdi32.dll.CreateDIBSection
gdi32.dll.DeleteDC
gdi32.dll.SetTextColor
gdi32.dll.GetNearestPaletteIndex
gdi32.dll.GetPaletteEntries
gdi32.dll.CreatePalette
gdi32.dll.GetCurrentPositionEx
gdi32.dll.MoveToEx
gdi32.dll.LineTo
gdi32.dll.IntersectClipRect
gdi32.dll.GetClipBox
gdi32.dll.Polygon
gdi32.dll.CreatePolygonRgn
gdi32.dll.CreateRoundRectRgn
gdi32.dll.GetWindowOrgEx
gdi32.dll.GetTextExtentPoint32W
gdi32.dll.GetTextFaceA
gdi32.dll.GetTextAlign
gdi32.dll.GetStretchBltMode
gdi32.dll.GetROP2
gdi32.dll.GetPolyFillMode
gdi32.dll.GetBkMode
gdi32.dll.GetNearestColor
gdi32.dll.GetTextCharsetInfo
gdi32.dll.GetTextColor
gdi32.dll.GetRgnBox
gdi32.dll.ScaleWindowExtEx
gdi32.dll.SetWindowExtEx
gdi32.dll.OffsetWindowOrgEx
gdi32.dll.SetWindowOrgEx
gdi32.dll.ScaleViewportExtEx
gdi32.dll.SetViewportExtEx
gdi32.dll.OffsetViewportOrgEx
gdi32.dll.SetViewportOrgEx
gdi32.dll.Escape
gdi32.dll.CreateEllipticRgn
gdi32.dll.LPtoDP
gdi32.dll.Ellipse
gdi32.dll.SetMapMode
gdi32.dll.SetROP2
gdi32.dll.SetPolyFillMode
gdi32.dll.RestoreDC
gdi32.dll.SaveDC
gdi32.dll.GetTextMetricsA
gdi32.dll.GetBkColor
gdi32.dll.FillRgn
gdiplus.dll.GdipGetImagePixelFormat
gdiplus.dll.GdipGetImageHeight
gdiplus.dll.GdipGetImagePaletteSize
gdiplus.dll.GdipCloneImage
gdiplus.dll.GdipDrawImageRectI
gdiplus.dll.GdipSetInterpolationMode
gdiplus.dll.GdipCreateFromHDC
gdiplus.dll.GdipCreateBitmapFromHBITMAP
gdiplus.dll.GdipDisposeImage
gdiplus.dll.GdipDeleteGraphics
gdiplus.dll.GdipAlloc
gdiplus.dll.GdiplusStartup
gdiplus.dll.GdiplusShutdown
gdiplus.dll.GdipGetImagePalette
gdiplus.dll.GdipCreateBitmapFromStream
gdiplus.dll.GdipCreateBitmapFromScan0
gdiplus.dll.GdipBitmapLockBits
gdiplus.dll.GdipBitmapUnlockBits
gdiplus.dll.GdipGetImageGraphicsContext
gdiplus.dll.GdipDrawImageI
gdiplus.dll.GdipGetImageWidth
gdiplus.dll.GdipFree
imm32.dll.ImmGetOpenStatus
imm32.dll.ImmReleaseContext
imm32.dll.ImmGetProperty
imm32.dll.ImmGetDescriptionW
imm32.dll.ImmGetContext
msimg32.dll.TransparentBlt
msimg32.dll.AlphaBlend
ole32.dll.OleFlushClipboard
ole32.dll.CoRegisterMessageFilter
ole32.dll.OleTranslateAccelerator
ole32.dll.IsAccelerator
ole32.dll.OleCreateMenuDescriptor
ole32.dll.OleDestroyMenuDescriptor
ole32.dll.CoInitializeEx
ole32.dll.OleLockRunning
ole32.dll.OleIsCurrentClipboard
ole32.dll.CoLockObjectExternal
ole32.dll.OleGetClipboard
ole32.dll.DoDragDrop
ole32.dll.RevokeDragDrop
ole32.dll.CoCreateInstance
ole32.dll.CoRevokeClassObject
ole32.dll.CreateILockBytesOnHGlobal
ole32.dll.StgCreateDocfileOnILockBytes
ole32.dll.StgOpenStorageOnILockBytes
ole32.dll.CoGetClassObject
ole32.dll.CoUninitialize
ole32.dll.OleDuplicateData
ole32.dll.ReleaseStgMedium
ole32.dll.StringFromCLSID
ole32.dll.CoTaskMemAlloc
ole32.dll.OleInitialize
ole32.dll.CoFreeUnusedLibraries
ole32.dll.OleUninitialize
ole32.dll.CLSIDFromProgID
ole32.dll.CoCreateGuid
ole32.dll.CreateBindCtx
ole32.dll.CLSIDFromString
ole32.dll.CreateStreamOnHGlobal
ole32.dll.CoInitialize
ole32.dll.RegisterDragDrop
ole32.dll.CoTaskMemFree
oleacc.dll.LresultFromObject
oleacc.dll.AccessibleObjectFromWindow
oleacc.dll.CreateStdAccessibleObject
oleaut32.dll.#2
oleaut32.dll.#420
oleaut32.dll.#114
oleaut32.dll.#7
oleaut32.dll.#184
oleaut32.dll.#16
oleaut32.dll.#10
oleaut32.dll.#4
oleaut32.dll.#8
oleaut32.dll.#12
oleaut32.dll.#9
oleaut32.dll.#150
oleaut32.dll.#6
oleaut32.dll.#185
oleaut32.dll.#186
oledlg.dll.#8
opengl32.dll.wglGetProcAddress
opengl32.dll.wglGetLayerPaletteEntries
rasapi32.dll.RasGetErrorStringA
rasapi32.dll.RasDialA
rasapi32.dll.RasHangUpA
shell32.dll.DragFinish
shell32.dll.DragQueryFileA
shell32.dll.SHAddToRecentDocs
shell32.dll.ExtractIconA
shell32.dll.SHGetFileInfoA
shell32.dll.SHGetPathFromIDListA
shell32.dll.ShellExecuteA
shell32.dll.SHAppBarMessage
shell32.dll.SHBrowseForFolderA
shell32.dll.SHBindToParent
shell32.dll.SHGetPathFromIDListW
shell32.dll.SHGetDesktopFolder
shell32.dll.SHGetFolderPathW
shell32.dll.SHGetSpecialFolderLocation
shlwapi.dll.PathRemoveFileSpecW
shlwapi.dll.PathRemoveBackslashW
shlwapi.dll.PathFindExtensionA
shlwapi.dll.PathFindFileNameA
shlwapi.dll.PathStripToRootA
shlwapi.dll.PathIsUNCA
shlwapi.dll.PathAddBackslashW
urlmon.dll.CreateURLMoniker
urlmon.dll.CreateUri
user32.dll.GetForegroundWindow
user32.dll.GetWindowTextA
user32.dll.GetWindowTextLengthA
user32.dll.SetFocus
user32.dll.RemovePropA
user32.dll.GetPropA
user32.dll.SetPropA
user32.dll.GetClassNameA
user32.dll.GetClassLongA
user32.dll.CallNextHookEx
user32.dll.SetWindowsHookExA
user32.dll.WinHelpA
user32.dll.LoadIconA
user32.dll.RegisterWindowMessageA
user32.dll.CheckDlgButton
user32.dll.SetDlgItemTextA
user32.dll.IsDialogMessageA
user32.dll.SetWindowTextA
user32.dll.MoveWindow
user32.dll.ShowWindow
user32.dll.DeleteMenu
user32.dll.AppendMenuA
user32.dll.SetParent
user32.dll.TranslateAcceleratorA
user32.dll.GetDesktopWindow
user32.dll.BringWindowToTop
user32.dll.CreatePopupMenu
user32.dll.InsertMenuItemA
user32.dll.IsIconic
user32.dll.LoadAcceleratorsA
user32.dll.ReleaseCapture
user32.dll.GetActiveWindow
user32.dll.DestroyIcon
user32.dll.LoadImageA
user32.dll.DestroyMenu
user32.dll.LoadMenuA
user32.dll.ReuseDDElParam
user32.dll.UnpackDDElParam
user32.dll.GetMenuStringA
user32.dll.PostQuitMessage
user32.dll.ShowOwnedPopups
user32.dll.MapDialogRect
user32.dll.SetWindowContextHelpId
user32.dll.TranslateMessage
user32.dll.GetMessageA
user32.dll.GetNextDlgTabItem
user32.dll.CreateDialogIndirectParamA
user32.dll.RegisterClipboardFormatA
user32.dll.DestroyCursor
user32.dll.LoadCursorW
user32.dll.RealChildWindowFromPoint
user32.dll.GetSysColorBrush
user32.dll.RemoveMenu
user32.dll.InsertMenuA
user32.dll.CopyImage
user32.dll.EnumDisplayMonitors
user32.dll.SetLayeredWindowAttributes
user32.dll.GetDCEx
user32.dll.LockWindowUpdate
user32.dll.SetCapture
user32.dll.GetKeyNameTextA
user32.dll.MapVirtualKeyA
user32.dll.LoadAcceleratorsW
user32.dll.LoadMenuW
user32.dll.CharUpperA
user32.dll.CharNextA
user32.dll.CopyAcceleratorTableA
user32.dll.InvalidateRgn
user32.dll.GetNextDlgGroupItem
user32.dll.MessageBeep
user32.dll.PostThreadMessageA
user32.dll.DrawIcon
user32.dll.CreateMenu
user32.dll.GetTabbedTextExtentW
user32.dll.UnregisterClassA
user32.dll.DestroyAcceleratorTable
user32.dll.NotifyWinEvent
user32.dll.GetAsyncKeyState
user32.dll.SetClassLongA
user32.dll.DrawStateA
user32.dll.DrawEdge
user32.dll.ToAsciiEx
user32.dll.GetKeyboardLayout
user32.dll.GetKeyboardState
user32.dll.CreateAcceleratorTableA
user32.dll.PeekMessageA
user32.dll.GetMenuDefaultItem
user32.dll.InvertRect
user32.dll.EnableScrollBar
user32.dll.SetActiveWindow
user32.dll.WaitMessage
user32.dll.DefFrameProcA
user32.dll.DefMDIChildProcA
user32.dll.TranslateMDISysAccel
user32.dll.MonitorFromPoint
user32.dll.UpdateLayeredWindow
user32.dll.SetMenuDefaultItem
user32.dll.FrameRect
user32.dll.GetUpdateRect
user32.dll.OpenClipboard
user32.dll.SetClipboardData
user32.dll.CloseClipboard
user32.dll.EmptyClipboard
user32.dll.LoadImageW
user32.dll.CopyIcon
user32.dll.CharUpperBuffA
user32.dll.GetDoubleClickTime
user32.dll.IsCharLowerA
user32.dll.MapVirtualKeyExA
user32.dll.GetWindowRgn
user32.dll.RegisterClassA
user32.dll.AdjustWindowRectEx
user32.dll.EqualRect
user32.dll.GetScrollInfo
user32.dll.SetScrollInfo
user32.dll.SetWindowPlacement
user32.dll.GetWindowPlacement
user32.dll.GetMenu
user32.dll.GetWindow
user32.dll.IntersectRect
user32.dll.GrayStringA
user32.dll.DrawTextExA
user32.dll.DrawTextA
user32.dll.TabbedTextOutA
user32.dll.GetWindowThreadProcessId
user32.dll.GetWindowLongA
user32.dll.GetLastActivePopup
user32.dll.GetDlgCtrlID
user32.dll.WindowFromPoint
user32.dll.IsChild
user32.dll.ScreenToClient
user32.dll.DeferWindowPos
user32.dll.SetMenuItemBitmaps
user32.dll.GetMenuCheckMarkDimensions
user32.dll.LoadBitmapW
user32.dll.MonitorFromWindow
user32.dll.GetMonitorInfoA
user32.dll.MapWindowPoints
user32.dll.ScrollWindow
user32.dll.EnableWindow
user32.dll.SystemParametersInfoA
user32.dll.SendMessageA
user32.dll.GetClientRect
user32.dll.GetKeyState
user32.dll.FillRect
user32.dll.CheckMenuItem
user32.dll.GetMenuState
user32.dll.InvalidateRect
user32.dll.GetSubMenu
user32.dll.UpdateWindow
user32.dll.GetWindowDC
user32.dll.GetWindowRect
user32.dll.IsRectEmpty
user32.dll.CopyRect
user32.dll.ModifyMenuA
user32.dll.SetMenuItemInfoA
user32.dll.GetSystemMetrics
user32.dll.IsWindow
user32.dll.GetMenuItemCount
user32.dll.GetMenuItemInfoA
user32.dll.GetCursorPos
user32.dll.EnableMenuItem
user32.dll.ReleaseDC
user32.dll.UnionRect
user32.dll.GetCapture
user32.dll.SetRect
user32.dll.LoadIconW
user32.dll.InflateRect
user32.dll.PtInRect
user32.dll.SetRectEmpty
user32.dll.SubtractRect
user32.dll.GetParent
user32.dll.DrawIconEx
user32.dll.IsZoomed
user32.dll.KillTimer
user32.dll.GetMenuItemID
user32.dll.IsMenu
user32.dll.SetTimer
user32.dll.GetSystemMenu
user32.dll.SetWindowRgn
user32.dll.TrackPopupMenu
user32.dll.SetMenu
user32.dll.SetScrollRange
user32.dll.DispatchMessageA
user32.dll.BeginDeferWindowPos
user32.dll.EndDeferWindowPos
user32.dll.GetTopWindow
user32.dll.DestroyWindow
user32.dll.UnhookWindowsHookEx
user32.dll.GetMessageTime
user32.dll.GetIconInfo
user32.dll.GetMessagePos
user32.dll.GetScrollRange
user32.dll.SetScrollPos
user32.dll.GetScrollPos
user32.dll.SetForegroundWindow
user32.dll.ShowScrollBar
user32.dll.RedrawWindow
user32.dll.IsWindowVisible
user32.dll.ValidateRect
user32.dll.PostMessageA
user32.dll.CreateWindowExA
user32.dll.GetClassInfoExA
user32.dll.SetCursorPos
user32.dll.GetClassInfoA
user32.dll.GetDialogBaseUnits
user32.dll.DrawFrameControl
user32.dll.GetDlgItemTextA
user32.dll.EndPaint
user32.dll.ClientToScreen
user32.dll.SetCursor
user32.dll.GetUpdateRgn
user32.dll.HideCaret
user32.dll.SendDlgItemMessageA
user32.dll.GetFocus
user32.dll.IsClipboardFormatAvailable
user32.dll.AttachThreadInput
user32.dll.IsWindowEnabled
user32.dll.wsprintfA
user32.dll.ShowCaret
user32.dll.BeginPaint
user32.dll.GetDC
user32.dll.DrawFocusRect
user32.dll.OffsetRect
user32.dll.SetWindowLongA
user32.dll.MessageBoxA
user32.dll.LoadCursorA
user32.dll.CallWindowProcA
user32.dll.SetCaretPos
user32.dll.DrawMenuBar
user32.dll.GetWindowTextW
user32.dll.GetDlgItem
user32.dll.EndDialog
user32.dll.DefWindowProcA
user32.dll.GetSysColor
user32.dll.SetWindowPos
user32.dll.EnumWindowStationsW
uxtheme.dll.DrawThemeBackground
winmm.dll.PlaySoundA
winmm.dll.timeGetTime
winspool.drv.#201
winspool.drv.ClosePrinter
winspool.drv.DocumentPropertiesA
winspool.drv.OpenPrinterA
winspool.drv.GetJobA
winspool.drv.EnumPrintersA
ws2_32.dll.#2
ws2_32.dll.WSARecvFrom
ws2_32.dll.#11
ws2_32.dll.WSAHtonl
ws2_32.dll.WSAHtons
ws2_32.dll.WSASocketA
ws2_32.dll.#3
ws2_32.dll.WSASendTo
kernel32.dll.FlsAlloc
kernel32.dll.FlsGetValue
kernel32.dll.FlsSetValue
kernel32.dll.FlsFree
uxtheme.dll.DrawThemeParentBackground
uxtheme.dll.DrawThemeTextEx
uxtheme.dll.BufferedPaintInit
uxtheme.dll.BufferedPaintUnInit
uxtheme.dll.BeginBufferedPaint
uxtheme.dll.EndBufferedPaint
dwmapi.dll.DwmExtendFrameIntoClientArea
dwmapi.dll.DwmDefWindowProc
dwmapi.dll.DwmIsCompositionEnabled
comctl32.dll.DllGetVersion
kernel32.dll.GetThreadPreferredUILanguages
cryptbase.dll.SystemFunction036
advapi32.dll.RegOpenKeyW
kernel32.dll.HeapDestroy
kernel32.dll.GetCommandLineW
kernel32.dll.OpenProcess
kernel32.dll.GetVersion
kernel32.dll.lstrcpynA
kernel32.dll.VirtualFree
ntdll.dll.NtUnmapViewOfSection
ntdll.dll.ZwClose
ntdll.dll.NtCreateSection
ntdll.dll.NtMapViewOfSection
ntdll.dll.memset
ntdll.dll.memcpy
ntdll.dll.RtlNtStatusToDosError
ntdll.dll.RtlUnwind
ntdll.dll.NtQueryVirtualMemory
shlwapi.dll.StrRChrA
shlwapi.dll.StrChrA
kernel32.dll.IsWow64Process
kernel32.dll.SortGetHandle
kernel32.dll.SortCloseHandle
ntdll.dll.strcpy
ntdll.dll.ZwOpenProcess
ntdll.dll.wcstombs
ntdll.dll.ZwQueryInformationToken
ntdll.dll.sprintf
ntdll.dll.mbstowcs
ntdll.dll._snprintf
ntdll.dll.ZwOpenProcessToken
ntdll.dll._aulldiv
ntdll.dll._allmul
kernel32.dll.GetComputerNameW
kernel32.dll.SetEvent
kernel32.dll.WaitForMultipleObjects
kernel32.dll.SetWaitableTimer
kernel32.dll.CreateWaitableTimerA
kernel32.dll.SleepEx
kernel32.dll.ExpandEnvironmentStringsA
kernel32.dll.FindNextFileA
kernel32.dll.CompareFileTime
kernel32.dll.lstrcatA
kernel32.dll.QueryPerformanceFrequency
oleaut32.dll.#15
advapi32.dll.GetUserNameW
shlwapi.dll.StrToIntExA
shlwapi.dll.StrTrimA
kernel32.dll.SetThreadPreferredUILanguages
kernel32.dll.LocaleNameToLCID
kernel32.dll.GetLocaleInfoEx
kernel32.dll.LCIDToLocaleName
kernel32.dll.GetSystemDefaultLocaleName
ole32.dll.CoSetProxyBlanket
kernel32.dll.RegOpenKeyExW
oleaut32.dll.BSTR_UserSize
oleaut32.dll.BSTR_UserMarshal
oleaut32.dll.BSTR_UserUnmarshal
oleaut32.dll.BSTR_UserFree
oleaut32.dll.VARIANT_UserSize
oleaut32.dll.VARIANT_UserMarshal
oleaut32.dll.VARIANT_UserUnmarshal
oleaut32.dll.VARIANT_UserFree
oleaut32.dll.LPSAFEARRAY_UserSize
oleaut32.dll.LPSAFEARRAY_UserMarshal
oleaut32.dll.LPSAFEARRAY_UserUnmarshal
oleaut32.dll.LPSAFEARRAY_UserFree
shlwapi.dll.StrStrIW
ole32.dll.CoGetMarshalSizeMax
ole32.dll.CoMarshalInterface
ole32.dll.CoUnmarshalInterface
ole32.dll.StringFromIID
ole32.dll.CoGetPSClsid
ole32.dll.CoReleaseMarshalData
ole32.dll.DcomChannelSetHResult
vssapi.dll.CreateWriter
advapi32.dll.LookupAccountNameW
sechost.dll.LookupAccountNameLocalW
samcli.dll.NetLocalGroupGetMembers
samlib.dll.SamConnect
rpcrt4.dll.NdrClientCall3
rpcrt4.dll.RpcStringBindingComposeW
rpcrt4.dll.RpcBindingFromStringBindingW
rpcrt4.dll.RpcStringFreeW
rpcrt4.dll.RpcBindingFree
samlib.dll.SamOpenDomain
samlib.dll.SamLookupNamesInDomain
samlib.dll.SamOpenAlias
samlib.dll.SamFreeMemory
samlib.dll.SamCloseHandle
samlib.dll.SamGetMembersInAlias
netutils.dll.NetApiBufferFree
samlib.dll.SamEnumerateDomainsInSamServer
samlib.dll.SamLookupDomainInSamServer
propsys.dll.VariantToPropVariant
wbemcore.dll.Reinitialize
wbemsvc.dll.DllGetClassObject
wbemsvc.dll.DllCanUnloadNow
authz.dll.AuthzInitializeContextFromToken
authz.dll.AuthzInitializeObjectAccessAuditEvent2
authz.dll.AuthzAccessCheck
authz.dll.AuthzFreeAuditEvent
authz.dll.AuthzFreeContext
authz.dll.AuthzInitializeResourceManager
authz.dll.AuthzFreeResourceManager
rpcrt4.dll.RpcBindingCreateW
rpcrt4.dll.RpcBindingBind
rpcrt4.dll.I_RpcMapWin32Status
advapi32.dll.EventRegister
advapi32.dll.EventUnregister
advapi32.dll.EventWrite
advapi32.dll.EventActivityIdControl
advapi32.dll.EventWriteTransfer
advapi32.dll.EventEnabled
kernel32.dll.RegCloseKey
kernel32.dll.RegSetValueExW
kernel32.dll.RegQueryValueExW
wmisvc.dll.IsImproperShutdownDetected
wevtapi.dll.EvtRender
wevtapi.dll.EvtNext
wevtapi.dll.EvtClose
wevtapi.dll.EvtQuery
wevtapi.dll.EvtCreateRenderContext
rpcrt4.dll.RpcBindingSetAuthInfoExW
rpcrt4.dll.RpcBindingSetOption
ole32.dll.CoCreateFreeThreadedMarshaler
cryptsp.dll.CryptGenRandom
cryptsp.dll.CryptReleaseContext
kernelbase.dll.InitializeAcl
kernelbase.dll.AddAce
kernel32.dll.OpenProcessToken
kernelbase.dll.GetTokenInformation
kernelbase.dll.DuplicateTokenEx
kernelbase.dll.AdjustTokenPrivileges
sechost.dll.LookupAccountSidLocalW
kernel32.dll.SetThreadToken
kernelbase.dll.CheckTokenMembership
kernelbase.dll.AllocateAndInitializeSid
ole32.dll.CoRevertToSelf
sspicli.dll.LogonUserExExW
authz.dll.AuthzInitializeContextFromSid
ole32.dll.CoGetCallContext
ole32.dll.StringFromGUID2
ole32.dll.CoImpersonateClient
ole32.dll.CoSwitchCallContext
ntmarta.dll.GetMartaExtensionInterface
sechost.dll.ConvertSidToStringSidW
kernel32.dll.InitializeSRWLock
kernel32.dll.AcquireSRWLockExclusive
kernel32.dll.AcquireSRWLockShared
kernel32.dll.ReleaseSRWLockExclusive
kernel32.dll.ReleaseSRWLockShared
kernel32.dll.SetProcessDEPPolicy
user32.dll.SetProcessDPIAware
shell32.dll.SetCurrentProcessExplicitAppUserModelID
user32.dll.GetShellWindow
ieframe.dll.#250
wininet.dll.InternetQueryOptionW
kernel32.dll.SetFileInformationByHandle
advapi32.dll.AddMandatoryAce
ws2_32.dll.accept
ws2_32.dll.bind
ws2_32.dll.closesocket
ws2_32.dll.connect
ws2_32.dll.getpeername
ws2_32.dll.getsockname
ws2_32.dll.getsockopt
ws2_32.dll.ntohl
ws2_32.dll.htonl
ws2_32.dll.htons
ws2_32.dll.inet_addr
ws2_32.dll.inet_ntoa
ws2_32.dll.ioctlsocket
ws2_32.dll.listen
ws2_32.dll.ntohs
ws2_32.dll.recv
ws2_32.dll.recvfrom
ws2_32.dll.select
ws2_32.dll.send
ws2_32.dll.sendto
ws2_32.dll.setsockopt
ws2_32.dll.shutdown
ws2_32.dll.socket
ws2_32.dll.gethostbyname
ws2_32.dll.gethostname
ws2_32.dll.WSAIoctl
ws2_32.dll.WSAGetLastError
ws2_32.dll.WSASetLastError
ws2_32.dll.WSAStartup
ws2_32.dll.WSACleanup
ws2_32.dll.__WSAFDIsSet
ws2_32.dll.getaddrinfo
ws2_32.dll.freeaddrinfo
ws2_32.dll.getnameinfo
ws2_32.dll.WSALookupServiceBeginW
ws2_32.dll.WSALookupServiceNextW
ws2_32.dll.WSALookupServiceEnd
ws2_32.dll.WSANSPIoctl
ws2_32.dll.WSAStringToAddressA
ws2_32.dll.WSAStringToAddressW
ws2_32.dll.WSAAddressToStringA
dnsapi.dll.DnsGetProxyInformation
dnsapi.dll.DnsFreeProxyName
iphlpapi.dll.GetIpForwardTable2
iphlpapi.dll.FreeMibTable
iphlpapi.dll.GetIfEntry2
iphlpapi.dll.ConvertInterfaceGuidToLuid
iphlpapi.dll.ResolveIpNetEntry2
iphlpapi.dll.GetIpNetEntry2
shlwapi.dll.#260
ws2_32.dll.#115
comctl32.dll.PropertySheetW
comctl32.dll.PropertySheetA
comdlg32.dll.PageSetupDlgW
comdlg32.dll.PrintDlgW
uxtheme.dll.ThemeInitApiHook
user32.dll.IsProcessDPIAware
urlmon.dll.#101
urlmon.dll.#400
advapi32.dll.TraceMessage
advapi32.dll.TraceMessageVa
sqmapi.dll.SqmGetSession
sqmapi.dll.SqmEndSession
sqmapi.dll.SqmStartSession
sqmapi.dll.SqmStartUpload
sqmapi.dll.SqmWaitForUploadComplete
sqmapi.dll.SqmSet
sqmapi.dll.SqmSetBool
sqmapi.dll.SqmSetBits
sqmapi.dll.SqmSetString
sqmapi.dll.SqmIncrement
sqmapi.dll.SqmSetIfMax
sqmapi.dll.SqmSetIfMin
sqmapi.dll.SqmAddToAverage
sqmapi.dll.SqmAddToStreamDWord
sqmapi.dll.SqmAddToStreamString
sqmapi.dll.SqmSetAppId
sqmapi.dll.SqmSetAppVersion
sqmapi.dll.SqmSetMachineId
sqmapi.dll.SqmSetUserId
sqmapi.dll.SqmCreateNewId
sqmapi.dll.SqmReadSharedMachineId
sqmapi.dll.SqmReadSharedUserId
sqmapi.dll.SqmWriteSharedMachineId
sqmapi.dll.SqmWriteSharedUserId
sqmapi.dll.SqmIsWindowsOptedIn
urlmon.dll.#442
kernel32.dll.WerRegisterMemoryBlock
kernel32.dll.WerUnregisterMemoryBlock
user32.dll.RegisterWindowMessageW
rpcrt4.dll.UuidCreateSequential
rpcrt4.dll.RpcServerUseProtseqW
rpcrt4.dll.RpcServerRegisterIfEx
rpcrtremote.dll.I_RpcExtInitializeExtensionPoint
rpcrt4.dll.RpcServerInqBindings
rpcrt4.dll.RpcEpRegisterW
rpcrt4.dll.RpcServerListen
ntdll.dll.NtQuerySystemInformation
user32.dll.RegisterClassExW
user32.dll.CreateWindowExW
user32.dll.DefWindowProcW
user32.dll.SetWindowLongW
urlmon.dll.#416
kernel32.dll.RegisterApplicationRestart
shell32.dll.#165
urlmon.dll.CoInternetCreateZoneManager
user32.dll.AllowSetForegroundWindow
wininet.dll.InternetInitializeAutoProxyDll
rasapi32.dll.RasEnumEntriesW
rasapi32.dll.RasConnectionNotificationW
rtutils.dll.TraceRegisterExA
rtutils.dll.TracePrintfExA
profapi.dll.#104
shlwapi.dll.PathCanonicalizeW
shlwapi.dll.PathFindFileNameW
sechost.dll.NotifyServiceStatusChangeA
sensapi.dll.IsNetworkAlive
rpcrt4.dll.NdrClientCall2
nlaapi.dll.NSPStartup
iphlpapi.dll.GetAdapterIndex
rasadhlp.dll.WSAttemptAutodialAddr
rasadhlp.dll.WSAttemptAutodialName
rasadhlp.dll.WSNoteSuccessfulHostentLookup
user32.dll.PostThreadMessageW
comctl32.dll.LoadIconWithScaleDown
ieui.dll.InitGadgets
cryptsp.dll.CryptAcquireContextW
oleaut32.dll.#500
ieproxy.dll.DllGetClassObject
ieproxy.dll.DllCanUnloadNow
user32.dll.MsgWaitForMultipleObjectsEx
gdi32.dll.GdiRealizationInfo
gdi32.dll.FontIsLinked
advapi32.dll.RegQueryInfoKeyW
gdi32.dll.GetTextFaceAliasW
advapi32.dll.RegEnumValueW
advapi32.dll.RegQueryValueExW
gdi32.dll.GetFontAssocStatus
advapi32.dll.RegEnumKeyExW
gdi32.dll.GdiIsMetaPrintDC
uxtheme.dll.OpenThemeData
uxtheme.dll.GetThemeMargins
uxtheme.dll.GetThemePartSize
uxtheme.dll.GetThemeTextMetrics
uxtheme.dll.GetThemeBool
comctl32.dll.#410
comctl32.dll.#413
uxtheme.dll.IsAppThemed
uxtheme.dll.GetThemeBackgroundExtent
comctl32.dll.ImageList_LoadImageW
uxtheme.dll.GetThemeFont
uxtheme.dll.IsCompositionActive
uxtheme.dll.SetWindowTheme
comctl32.dll.ImageList_Create
comctl32.dll.ImageList_ReplaceIcon
comctl32.dll.ImageList_AddMasked
uxtheme.dll.IsThemePartDefined
uxtheme.dll.GetThemeColor
imm32.dll.ImmIsIME
urlmon.dll.CoInternetCreateSecurityManager
msctf.dll.SetInputScopes2
uxtheme.dll.CloseThemeData
uxtheme.dll.GetThemeBackgroundContentRect
uxtheme.dll.GetThemeTextExtent
uxtheme.dll.EnableThemeDialogTexture
urlmon.dll.#408
version.dll.GetFileVersionInfoSizeW
version.dll.GetFileVersionInfoW
version.dll.VerQueryValueW
ole32.dll.CoGetApartmentType
ole32.dll.CoRegisterInitializeSpy
comctl32.dll.#236
ole32.dll.CoGetMalloc
comctl32.dll.#320
comctl32.dll.#324
comctl32.dll.#323
comctl32.dll.#328
comctl32.dll.#334
advapi32.dll.RegEnumKeyW
advapi32.dll.InitializeSecurityDescriptor
advapi32.dll.SetEntriesInAclW
advapi32.dll.SetSecurityDescriptorDacl
advapi32.dll.IsTextUnicode
comctl32.dll.#332
comctl32.dll.#338
comctl32.dll.#339
shell32.dll.#102
propsys.dll.PSCreateMemoryPropertyStore
propsys.dll.PSPropertyBag_WriteStr
ole32.dll.PropVariantClear
propsys.dll.PSPropertyBag_WriteGUID
propsys.dll.PSPropertyBag_ReadGUID
setupapi.dll.CM_Get_Device_Interface_List_Size_ExW
setupapi.dll.CM_Get_Device_Interface_List_ExW
uxtheme.dll.IsThemeActive
comctl32.dll.#386
ieui.dll.CreateGadget
ieui.dll.SetGadgetMessageFilter
ieui.dll.SetGadgetStyle
ieui.dll.SetGadgetRootInfo
comctl32.dll.ImageList_Read
comctl32.dll.ImageList_GetImageCount
ole32.dll.CoRevokeInitializeSpy
comctl32.dll.#388
uxtheme.dll.GetThemeAppProperties
xmllite.dll.CreateXmlReader
xmllite.dll.CreateXmlReaderInputWithEncodingName
ieui.dll.FindStdColor
ieui.dll.InvalidateGadget
ieui.dll.SetGadgetParent
ieui.dll.GetGadgetTicket
ieui.dll.SetGadgetRect
shell32.dll.SHGetInstanceExplorer
wininet.dll.InternetSetOptionW
rpcrt4.dll.RpcBindingToStringBindingW
rpcrt4.dll.RpcStringBindingParseW
rpcrt4.dll.I_RpcBindingInqLocalClientPID
rpcrt4.dll.RpcServerInqCallAttributesW
rpcrt4.dll.RpcImpersonateClient
rpcrt4.dll.RpcRevertToSelf
rpcrt4.dll.NdrServerCall2
rpcrt4.dll.RpcBindingInqObject
user32.dll.PostMessageW
oleaut32.dll.DllGetClassObject
oleaut32.dll.DllCanUnloadNow
sxs.dll.SxsOleAut32MapIIDToProxyStubCLSID
advapi32.dll.RegQueryValueW
sxs.dll.SxsOleAut32MapIIDToTLBPath
sxs.dll.SxsOleAut32MapConfiguredClsidToReferenceClsid
sxs.dll.SxsOleAut32RedirectTypeLibrary
ieui.dll.PeekMessageExW
msfeeds.dll.MsfeedsCreateInstance
shell32.dll.SHGetSpecialFolderPathW
shell32.dll.#66
shell32.dll.SHCreateDirectoryExW
wininet.dll.FindFirstUrlCacheContainerW
wininet.dll.FindNextUrlCacheContainerW
wininet.dll.FindCloseUrlCache
user32.dll.GetWindowLongW
user32.dll.SendMessageW
user32.dll.PeekMessageW
propsys.dll.PSStringFromPropertyKey
propsys.dll.PSGetPropertyDescription
propsys.dll.PropVariantToString
propsys.dll.InitPropVariantFromStringAsVector
propsys.dll.PSCoerceToCanonicalValue
shell32.dll.SHGetKnownFolderPath
urlmon.dll.#458
urlmon.dll.URLDownloadToFileW
ieui.dll.WaitMessageEx
urlmon.dll.CoInternetIsFeatureEnabledForUrl
comctl32.dll.HIMAGELIST_QueryInterface
comctl32.dll.ImageList_Remove
oleaut32.dll.#23
oleaut32.dll.#22
urlmon.dll.#441
urlmon.dll.#395
urlmon.dll.#351
mlang.dll.#112
wininet.dll.GetUrlCacheEntryInfoA
urlmon.dll.#325
wininet.dll.GetUrlCacheEntryInfoExW
wininet.dll.GetUrlCacheEntryInfoExA
wininet.dll.CommitUrlCacheEntryA
uxtheme.dll.DrawThemeParentBackgroundEx
uxtheme.dll.IsThemeBackgroundPartiallyTransparent
usp10.dll.ScriptIsComplex
urlmon.dll.#420
user32.dll.DispatchMessageW
urlmon.dll.CoInternetQueryInfo
propsys.dll.PSGetPropertyKeyFromName
ieui.dll.DUserPostEvent
ieui.dll.DeleteHandle
comctl32.dll.#412
ieui.dll.DUserFlushMessages
ieui.dll.DUserFlushDeferredMessages
comctl32.dll.ImageList_Destroy
ieui.dll.DisableContainerHwnd
ole32.dll.CoWaitForMultipleHandles
urlmon.dll.#412
urlmon.dll.#414
ntdll.dll.RtlDllShutdownInProgress
comctl32.dll.#329
linkinfo.dll.IsValidLinkInfo
propsys.dll.#417
propsys.dll.PSGetNameFromPropertyKey
propsys.dll.InitVariantFromBuffer
propsys.dll.PropVariantToGUID
apphelp.dll.ApphelpCheckShellObject
comctl32.dll.ImageList_Write
comctl32.dll.#326
advapi32.dll.OpenThreadToken
advapi32.dll.OpenProcessToken
propsys.dll.PSGetPropertyDescriptionByName
sechost.dll.ConvertStringSidToSidW
samcli.dll.NetUserGetLocalGroups
advapi32.dll.LsaOpenPolicy
advapi32.dll.LsaLookupNames2
advapi32.dll.LsaClose
advapi32.dll.LsaFreeMemory
samlib.dll.SamGetAliasMembership
samlib.dll.SamLookupIdsInDomain
linkinfo.dll.CreateLinkInfoW
user32.dll.IsCharAlphaW
user32.dll.CharPrevW
ntshrui.dll.GetNetResourceFromLocalPathW
srvcli.dll.NetShareEnum
cscapi.dll.CscNetApiGetInterface
slc.dll.SLGetWindowsInformationDWORD
linkinfo.dll.DestroyLinkInfo
propsys.dll.PropVariantToBoolean
urlmon.dll.#364
shell32.dll.SHCreateShellItemArrayFromIDLists
ole32.dll.CoTaskMemRealloc
shell32.dll.SHAssocEnumHandlersForProtocolByApplication
urlmon.dll.#397
urlmon.dll.#398
propsys.dll.PSPropertyBag_ReadBOOL
advapi32.dll.GetSecurityInfo
advapi32.dll.SetSecurityInfo
advapi32.dll.GetSecurityDescriptorControl
comctl32.dll.#321
user32.dll.CharLowerW
cryptsp.dll.CryptCreateHash
cryptsp.dll.CryptHashData
cryptsp.dll.CryptGetHashParam
cryptsp.dll.CryptDestroyHash
crypt32.dll.CryptUnprotectData
cryptbase.dll.SystemFunction041
urlmon.dll.#456
urlmon.dll.#451
user32.dll.UnregisterClassW
rpcrt4.dll.RpcEpUnregister
rpcrt4.dll.RpcBindingVectorFree
rpcrt4.dll.RpcServerUnregisterIf
urlmon.dll.#401
ws2_32.dll.#116
advapi32.dll.UnregisterTraceGuids
ieframe.dll.#251
kernel32.dll.WerSetFlags
ieshims.dll.IEShims_Initialize
user32.dll.SetWindowsHookExW
user32.dll.FindWindowExA
kernel32.dll.CreateProcessW
kernel32.dll.CreateProcessA
ntdll.dll.LdrRegisterDllNotification
ole32.dll.NdrOleInitializeExtension
shell32.dll.SHChangeNotifyRegisterThread
comctl32.dll.ImageList_Add
wininet.dll.InternetQueryOptionA
gdi32.dll.GetTextExtentExPointWPri
urlmon.dll.#104
acroiehelper.dll.DllMain
acroiehelper.dll.StubInit
acroiehelper.dll.StubSetSite
acroiehelper.dll.StubOnQuit
kernel32.dll.QueryActCtxW
kernel32.dll.FindActCtxSectionStringW
deploy.dll.getLatestInstalledVersion
shlwapi.dll.PathFileExistsA
user32.dll.ChangeWindowMessageFilter
dwmapi.dll.DwmSetWindowAttribute
urlmon.dll.#111
wininet.dll.GetUrlCacheEntryInfoW
oleaut32.dll.#11
ieshims.dll.IEShims_SetRedirectRegistryForThread
comctl32.dll.#8
uxtheme.dll.GetThemeInt
urlmon.dll.CreateURLMonikerEx
urlmon.dll.CreateAsyncBindCtxEx
urlmon.dll.RegisterBindStatusCallback
urlmon.dll.CreateFormatEnumerator
urlmon.dll.UrlMkGetSessionOption
mlang.dll.#121
urlmon.dll.#444
urlmon.dll.#445
dwmapi.dll.DwmInvalidateIconicBitmaps
iertutil.dll.#35
ieframe.dll.#302
urlmon.dll.RegisterFormatEnumerator
urlmon.dll.RevokeBindStatusCallback
urlmon.dll.CreateIUriBuilder
urlmon.dll.IntlPercentEncodeNormalize
urlmon.dll.CoInternetIsFeatureEnabled
oleaut32.dll.VariantClear
urlmon.dll.#335
oleaut32.dll.#19
oleaut32.dll.#17
oleaut32.dll.#20
propsys.dll.#430
advapi32.dll.RegGetValueW
propsys.dll.PropVariantToStringAlloc
urlmon.dll.#330
wininet.dll.FindFirstUrlCacheContainerA
wininet.dll.FindNextUrlCacheContainerA
wininet.dll.CreateUrlCacheContainerA
wininet.dll.DeleteUrlCacheContainerA
wininet.dll.FindFirstUrlCacheEntryA
wininet.dll.DeleteUrlCacheEntryW
wininet.dll.FindNextUrlCacheEntryA
wininet.dll.CommitUrlCacheEntryW
wininet.dll.InternetGetConnectedState
urlmon.dll.URLDownloadToCacheFileW
cryptbase.dll.SystemFunction040
wininet.dll.SetUrlCacheEntryGroupW
urlmon.dll.#327
wininet.dll.InternetCloseHandle
wininet.dll.InternetOpenW
wininet.dll.InternetConnectW
wininet.dll.HttpOpenRequestW
wininet.dll.HttpSendRequestW
wininet.dll.InternetUnlockRequestFile
ieshims.dll.IEShims_GetOriginatingThreadId
ieshims.dll.IEShims_Uninitialize
ntdll.dll.LdrUnregisterDllNotification
normaliz.dll.IdnToAscii

Execute Commands

C:\Windows\sysWOW64\wbem\wmiprvse.exe -secured -Embedding
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" -Embedding
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:2656 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:2580 CREDAT:79873

Started Services

Nothing to display

Created Services

Nothing to display
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2018-09-10 16:32:18 2018-09-10 16:35:21 183

4 HTTP Request(s) detected

http://www.bing.com/favicon.ico
  • Hostname: www.bing.com
  • IP Address: 13.107.21.200
  • Port: 80
  • Count: 1

GET /favicon.ico HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: www.bing.com
Connection: Keep-Alive

http://109.230.199.237/images/2gcHte6rM4QSat/_2BQNeUw87kKuai7ZSOmz/C0px3XDHy0L4t4_2/FKRKVgxpk_2FKeg/D4zpWjjDWXJ3rwUr9g/U24ZljvmS/o0waLlxcXn00jNnZJyxv/8AtZ92C0iv8KtBt5FWl/O7LPV8_2BMIbuIS_2Bt7QJ/gN4ohN.avi
  • Hostname: 109.230.199.237
  • IP Address:
  • Port: 80
  • Count: 1

GET /images/2gcHte6rM4QSat/_2BQNeUw87kKuai7ZSOmz/C0px3XDHy0L4t4_2/FKRKVgxpk_2FKeg/D4zpWjjDWXJ3rwUr9g/U24ZljvmS/o0waLlxcXn00jNnZJyxv/8AtZ92C0iv8KtBt5FWl/O7LPV8_2BMIbuIS_2Bt7QJ/gN4ohN.avi HTTP/1.1
Accept: */*
Accept-Language: it
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: 109.230.199.237
Connection: Keep-Alive

http://109.230.199.237/favicon.ico
  • Hostname: 109.230.199.237
  • IP Address:
  • Port: 80
  • Count: 1

GET /favicon.ico HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: 109.230.199.237
Connection: Keep-Alive

http://109.230.199.237/images/By1faFQvc8F9JAD786cFsj/OgU8u2_2FQb9b/hWHO_2Fx/Tt63xsrTC286ScxXA_2BzmU/8n0QYoHyse/16YEwVqtf45DBYdoy/Xm7F_2Fscoe2/hLfaqbT_2Fd/e8qj_2FotxwG1N/RSEeYD64nBhGv1ZAaz6TE/WVWxch5yP/tZ.avi
  • Hostname: 109.230.199.237
  • IP Address:
  • Port: 80
  • Count: 1

GET /images/By1faFQvc8F9JAD786cFsj/OgU8u2_2FQb9b/hWHO_2Fx/Tt63xsrTC286ScxXA_2BzmU/8n0QYoHyse/16YEwVqtf45DBYdoy/Xm7F_2Fscoe2/hLfaqbT_2Fd/e8qj_2FotxwG1N/RSEeYD64nBhGv1ZAaz6TE/WVWxch5yP/tZ.avi HTTP/1.1
Accept: */*
Accept-Language: it
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: 109.230.199.237
Connection: Keep-Alive

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2018-09-10 16:32:18 2018-09-10 16:35:21 183

1 Host(s) detected

IP Address Hostname Reverse DNS
109.230.199.237 Sweden

Host(s) by Country

Hosts Country 1
1 Sweden Sweden