MalScore
100/100
MalFamily
Barys

7q.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 44/68 Related 2494
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 1645.00 KB (1684480 bytes)
Compile time: 2017-11-16 14:40:03
MD5: b3ef79444a8c2e364e1c3ee61b230527
SHA1: b15b69170994918621ceb33cb339149bdff5b065
SHA256: cc282f81e8bf549047d3cc411dda420a79bc5b89533dc969ebd2f2901ac4cb6e
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 5 znjY .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2017-11-20 11:24:10
Last submission: 2017-11-20 11:40:15
Filename detected: - 7q.exe (2)
URL file hosting
hXXp://ssrdevelopments.co.za/1/7q.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2017-11-18 19:37:54 [44/68] VirusTotal
PE Sections 5 suspicious
Name VAddress VSize Size MD5 SHA1
znjY 0x2000 0xabc 3072 c549edbb7010429b7eb6ea09ef5f3531 9fc30bb0fd5bbc3e0eb612b9abe1974580f97e66
.text 0x4000 0xa52a8 676864 782aeba0b847f2356acda1cef4fdd1af 4e1d4dc58c3ab29e4c2d89a85c9802bf5a9dd127
.rsrc 0xaa000 0xf4bf8 1002496 2315ed4f8475134986c417329376b2b9 f75a3e59f386ae46cc405f1b89ff920f63aaaa1e
.reloc 0x1a0000 0xc 512 d470ec2a0f8cd44048f94e59a5fde9c0 451699c1fcdc8749e803de180151f9c21c1b52fd
0x1a2000 0x10 512 5defdd93ca32a2ea66186f51c465703a 5c2a95a57074a965fbbb794104074c290f042dfd
PE Resources
Name Offset Size Language Sublanguage Data
RT_ICON 0xaa0e8 1000948 LANG_NEUTRAL SUBLANG_NEUTRAL
RT_GROUP_ICON 0x19e6dc 20 LANG_NEUTRAL SUBLANG_NEUTRAL
RT_VERSION 0x19e6f0 1288 LANG_NEUTRAL SUBLANG_NEUTRAL
  • API Alert
  • Anti Debug
Meta Info
LegalCopyright: DH0zDGJbmN0OxRCuUkjZj2qTbcrwW0dG6JbDChxPMFfLaW93G0c6zdyXHcLk
Assembly Version: 59.66.93.57
InternalName: 7q.exe
FileVersion: 61.20.62.64
CompanyName: CrP5NiRTYBNOrVX3MXbz9rvl9fcMtGQESmnVUj9cfH9RC0ZCuRtYNiDLKk5A
Comments: LE0L1ifvEktoBih1dARtL0gTwkZIUvHQWmKQqFj9lDx7gUqDIw9yvm71gcKA
ProductName: VFmtbc6Gn7vOXe1yr3IpLPYAAKFTBHzhxnPPh5zm31voiU8VhlGNXV2d4MTJ
ProductVersion: 61.20.62.64
FileDescription: 5wt8XOKEyAwo5kKRct6A9wI1CoVG2bV4HWO3HBqp0udBRJpYkPnOO0v3RddS
Translation: 0x0000 0x04b0
OriginalFilename: 7q.exe
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
File found
FIle type: Library
mscoree.dll
KERNEL32.dll
IP Found
61.20.62.64
59.66.93.57
URL(s)
No URL found
Assembly Version
COR
5wt8XOKEyAwo5kKRct6A9wI1CoVG2bV4HWO3HBqp0udBRJpYkPnOO0v3RddS
VarFileInfo
Comments
59.66.93.57
LE0L1ifvEktoBih1dARtL0gTwkZIUvHQWmKQqFj9lDx7gUqDIw9yvm71gcKA
CrP5NiRTYBNOrVX3MXbz9rvl9fcMtGQESmnVUj9cfH9RC0ZCuRtYNiDLKk5A
InternalName
parameters
;B]9
VFmtbc6Gn7vOXe1yr3IpLPYAAKFTBHzhxnPPh5zm31voiU8VhlGNXV2d4MTJ
TransformFinalBlock
DH0zDGJbmN0OxRCuUkjZj2qTbcrwW0dG6JbDChxPMFfLaW93G0c6zdyXHcLk
rawAssembly
inputCount
StringFileInfo
Translation
7q.exe
FileVersion
61.20.62.64
VS_VERSION_INFO
LegalCopyright
000004b0
ProductVersion
d1B
FileDescription
=@>
OriginalFilename
Load
inputBuffer
obj
Invoke
CompanyName
GetEnvironmentVariable
=@>?
ProductName
EntryPoint
_ENABLE_PROFILING
inputOffset
SO^1
<f g
JjPn
\d8,
]X6=iS
R7\CD
?yf$
Int32
$iF{
(ytQ
/$|d
DFl
Fj6d
C$X;4
Kn--c.
5^S~
<<'p"@'
X XQ
+d:*
tF)0j:
$CK;h
oGLe
BTS x
Ri \
2Cy6
VIJm
6 SVi
"9X?
N@N##
M;$mJp
c{R&
X6a'
vaWM
S& 3
# 7e
E{|B
^hT*
,)V
5)c`)4
GA@.
]7-[
`57c
|t!b
H(Moq:u
.(Xo
2I2h
ls-;
N } w
}. .
eg1={
vLMhC
Z3U:
*ZxA2
~L(K>~6
jJd(
c-K]
]nh
n7z9
T&^.
| F!
2@7s
NTN:N;NcN[NyNPN[N;N
Wn*1
<Y0[
3;f=h r
fM~a~
nx7k
&Kxmqp"
6 f$
L3Z|
B!I=3
[.[
E8/R
opKjP
X,YC
@16b0
n4h*
?bCKt:
w'\&
;0ww
[AsHs^/B^X
aqHB
L `
@KM@
[J3Pf
s ey
]q0KWP
*VFS9
Y{}H
'HHgS
ba`z4
[RwA%e
MwE>
K`7s
s.W}h
?{ -
i|'$
_l j
(a&]3
uG4{
s8Jt
sMEa
9KK^
>u*c
NE=`
y >b
7WuS
9 :s
9KK
ZDL~
puZx
9FUj
dHP)
g/gS;Dm
>.<X
;Zh_
n2~.
~19"
B.yq
q+ O<
0+Gmwnw1+
vGi)
8 sp
S:29
&_J
%)<9C
uTDx!
KvoSd
OMH|
SfL]
&Z <
:sU2
qvux
MXb-
ke8~
1.y)
pe6IB
?'eh]
yG^.}
&#F.VKdW
e CE
a%oCu
`ru=
y t>t
luBvn7
G"ph
XeEM}
-d8l
P l
h)CN
[rT2HWvJX
T= 9
A1)Pi
J6u
(0KJ`
VUAo@u
xM^ 3mY
u[pn
Qm6Ce4
PusIT
&BpC
$<j%
gaOk
%F20?
pUt
[WW
hy&!
%\Z &Am
?9ZxP
.text
O|
K( Q
ys1fD
S"ika
GetObject
N(NpN{NlNgN
_pls
tJZj?B N
@!"+8
OGF
d K
fF02
-A&Fu
DL~z
FP;`-V5e
F^fSk
O_ fJ
oEp\
=D"h
#eYFf
XY$3
L_L*o
Zsy*
ykEq|XKq*
&f%B
N1N1N
k^3WJ
lCvp
\ "P
EaC,
E<g
lBkQ
)t*.
2)W*Z
A7\F
LgWQ
rX@.
\.L4
j*FF
0T6J%<
LTi
!$M]! !1;
5jH6l
Q&N)^
VO#6
'3|
R$Y<lr
E Z7
4pNca
wx^2)
?YT
ml2Bz|
D#=$q
7 _!K
<w R
=5qk\
itUpy
;JB$
ie=
#>"N
wZ$c5
S>/y
T96d5
fDjy&X^Z?
cnC_
M29
m9)G[km:
e}"
Sg+e
d du
!d%"
<t+=
WZaE
-*N5{J
N9u+
c,X
5')?
;qV^
t{!Z
q})
0vk'
*FCl
5 `?
-C:V
"fJ H
& E[Ay
RaaN!
+|9C7
o_
l +
.e a
&(6
XP,}Gk
^&^WV
w!0ci
UbZS
e5 C
RDx
-%60C
Nu-X
BR|
F VW
5 Um
x,7V
]@!
@?yq1%N
!Uw
m^bHa
PQWP
Oea7@V
$C=Z
&H@_
? z{
i1P|-JL
ZOd[
=,#a
p'$x
06iU
~s 5-
Tq4e
_3Y'
<lbf
q'WF
D_e7
Z?K%
Bs&\
O".Z$l
s%W-
XiB/
#jY6
?qA-
<5_E
ooPzT
TQ?n
5ZHJ
o-o"p
MethodBase
N"N@N$N NgN*NSN%NzN N6NFN
Ngu^
[$RV
"Yx7
;[z
8C
Av7^
0r7T
n7 $
w[~=
Z]U[X
K kN
B Na
pdxqrTM*
W h
8 Nb
}'Mz 0
abwk
{Bhb
}:4<
$),+1`
CH
O0@sm
t-s(
ZwuJ2EF'
G{K*
],~z.
U';X h f
&y%Q
0U j
Csn&
6DM
AX
8;=u
B2s00RiWccgwg
+9 *
xc?R
2;"I
Io_ &
9|`P9Z?o
@1N{NcNBN\NiNgN
) k6
@b`v
ozC
!Tpd"
}DQOx
rgL6hB
6*hW
n\ h
G~,ao
~g{[
|fXP
MFp\
GD'ik\(IP
>Q40{H
JIs ~
?C c
$YdA
ur3X
xd3F
?'8IO
W"W
Y Hr
"`~ZDS
.D3-
1uD# eE
6Vw7
'mbI
TZev
1D\7
<Z:/
'tYw
{2 L
Q s>k
nQ_3A
SK>.
'keM)8
l.py
V< E
8gpnt
YUU[/~
SHC*{35
cbIK
Yc:x
{C1L
AJUXS
<xeIZ
AA=}
xe\
u Q1
u02?U
w}`k
7BBJT
>3@!J
p#z
RTbj
UO/K
Cxc"
VQDL]:
uE_H
B)8
Gn{]
It5
sO</
zR*Hu
x /wE
I=N:
Cl!)
[GvT
o;;_
2V,$tB
Z|VW
#G_'
/Mc
c/}.
Tq_G
"cDOc
PdN"
~U& W
="mn2x0
q13h;
o?C;
t%NeZF
CKg<
Qub"
KO^$
tg4t
1e;.
|&rV
iiq_v
bibPE~
.w])rn>
K7Cz
Y3?&s
6(:%
n[dS
W1"
&UE
`w 5
4".,P
md N
l?SJ
<j}n2]
OZ H
yl a
#Y\%9
NU=o
aRQ3\
W 70
cY\Dt
:$58*
KWwT
rq(9SQ7<
3_^
v+8zUp
K sh$[
2k.0
=cdO
."Pq
q\@P
zC(f\
(5=
CRY=@
OOLn!|F
z0WLi
LJs<
J6[
]]!@:*`
@d Og
5rW1
;|Xj
D+Et&
b~`(
bO)o
glRP
7a4u{!
^Q ~ux
y<52
hF Fw
P0Y!
] 1
_]n
e3QL
=lRE
vuLJ
{QSG
t~}";
i &$
b\VakAW
'^3a
%|tT
f@1
">ysk\
djbk
;YbI
>s:6x
|q#V
= Jp
l=< 0
xR2r
W\-P
wxt
e_#o
Jo~K)O;
-75.
%7 $&(
fKy=
N4N5N
&4bF
E WR
( :v
|78
"z~ |
Et3ut
[ [0T
:/Xe
DVDG&t
[}J} _6
R -M
T`\mL9
lU?#Q
{T e
X8a|{w
yFsB
<ez=
<ez<
=d7J
4fHZ
K}3/r
"r (a
.=pu*au
?nR b
6aUW
LuMr
{p}q4
A6&x
T\`v
=mjRA
x1Y
OBSd
e0Q%hE
k*aI*
FPehP
F=;9
-&fk
{)0\
owUs
p0EA
]b6S
0zh-6@9
2I^b
m9+a
{oz8t
!=,[
Y^;v
*XeC
m5Ar@m
!GQ
uzK'
Yyl:
j)tB
KL3A
|/WH
T',
{X:
C[&q
;_4Z5
rm;O
+n1g
mP42=
!;2u
v_~NYQ
'e*,
.-3YU
M0`D
2/A>D2
oA n"W
b//e
Lu0{
h{( rT
Dvkj
Tmz0g1?
+D32%
3;Uk&
'e*s
QF:V
]HUV
D.Ot
B_-f
RuntimeCompatibilityAttribute
+ Qu
VQ`Q
rG$i
mKu4*H
{$}6
:T Y
.7x(
7Tnym
y( \
+vLvTy
6PQ>m
;mw[>
&S1Z
1vWTI
=8i4
6OuJ,
Prei
wb X
59-b0
@o,m
3A0~
ZIE6N
W|>'
`Dsp
lD,,
l1R
S+Y'
lzK'
tq.M
e q;
<coL
NINaNTNKN
+/%s6
?Jud
s(q8
D9Ep
=ykX
Xi20MIgZiHz1gWFp
H|9X
~l M
0|@g
i KN
Yk<b
=JJ
o<"c
7dP"!
,];"
P 41
Ciz@D&
9&=5
gJj;>
gOY%
quq[t
6EiyM
q:"%1lj%
wZZj
%3 *
[s:Tb
Mz~O.%:
u`qS
\M]sm
t)%Y
O0;K
60U#
Gm4En
NkN NyD
):=}
Yz#5
`Nm?r
Gf}C
Kn3-
fz/Y
_vLlb
)lU<
<7N~N
gQ@
T%XF_Fj
Y`5L
w2*\
Nsq&C
OOz1
tGz-"
*-np
i~x[
r :#
u{h
+2Yf;
)'}
$gI2
$gI&
[wQr
XLx%]R7
6;E
'p^T
;Se+
T\O[,"
hX z
6x_L
S4_S
Loe/.
H~{Y
oML)
c?JV
z=l0
o?~cD
#i)n
[SP
0l0
' D|
@qFM
gd:\
&pTI?
7||Ad"8
IH|
@92Hh<
N 2U
3f]~:
L`jF
mBR)
FI$I
a p%kC
N NVNZN NXN'N9NfN
uW!]|
pmok
>[}s
H MVe
B Fv
P7?AM
|BA?M
U8[}
&Lhs
A>yd
F38G!#
B<6A
yGa#o
_m7b
Q%6Bnex
7;(9S
Lk9.
JuJ2
CX% B
g;NzC>
3 X,
3}9T
r.tx
UOqOA
X-CZ^
H^{w
Wi\
w)FN,
iAcJ&
t`7M #
1\N N
Gg 2
/Pd1A
X@N'W
l,qv
P xw
:4
\uH=
n7G-
KI/Sh[Y
)~:
9yi
7qOXG
V? ^y
~i C
io@b
]>'p:
RIxQG
Z<v:
YocvUgd
f?PE
.>njAxA
RuntimeTypeHandle
MH{{J
mc1T
2Nydk
lP_"
|oor:C
w`)lSN,
car F
LrrYH
}f^Z
pmI:Z
d|SI
/_0|
DXXC
@o 8
C5 H
)^`uD'
9dW\
qGU6
pD(+
)Cg.)C8
h2WoBE
|{2v
t "3RV%
X"&0m>
# >N
C~>W
sp+=
rd6 [E
sXU^
-o9]
l|rW
2:tf@
0{"\~
- \D
vysd5v
'aSHyJ
6Ug0
tswh)
_ ~p
z{pe
j_fq4
"Ln`|-
7yog
ZmWmc
W TW7
TL=m;ag*'
po U
>n2 g
LL`
j-WAe
.>xc
JaU3
)2P9
b{s
% D
2HC'qrl=
<z<E
H Fp.
1Mj:C
v8z\
dL&;4
%}{m
4sy
.oUE
647
($t;
B=d8/u
V~'LL!
G_E2
%MK
Oj}wG
U-)6
g,Wb
.":y
:nY2
!PkT<
q'KP=
f:27
w"z4{$
<QFW
kzvs
FRo~z
tw>_
teaD2U
{%;9
7~%Z>
`yR\+
Q:Qw
@a{;H
4)V!
V]SxU>
uM}w
<{i]
~<MIfJE
*DsI
fUsA E
1nDu
p$UC
553XB
qu2e!
^Dxr
6?wv
'vPY
c_A4
@/d
# /:
|Skz
3}VM
I =b"
q2 (
[_2^s"
HZ'\
C, 9%
ms{0
j[8 l
9c7j?
/ UD
~0\!'
i &L
.nuh
Dwjc)'
9"zz
}* U
\}q5bv~
RfYV
o3DVBwAVpte1cqYmzp8
63SqD
Bf0nl
>}Jn
{$ ]
mZ@<
g'H%Y
p+O
2T-A
kJyJ
)~ QZ
BI*K
}\!9
8'8Z
9 )
v4|_:E
MZeaj
RL,sWYU'
N;N+N[NnN0N;N<N=N+NzNo
Z?55"
A[Ar
Y[1T
<~Sv
3@q6
-\pe9
_@%fm
e%)N9
h^6H
~suL
set_Key
X`Xw
XwgD
qN+
S]|.
<|Y I
p5NB
Sc)N
t&<vZ=\
bG60o
olG 9
/DjG
-CU\
I+RV
+\Ed
#IJ?< ~
{''N
2 rU*
McP6 .
"[st^
f2_m
AU,P
$9fy
AAIW
*QgE
.7/v=
*Qg>
q\w_p
*B%<
N N'N
{8%&
X7a5
Soa`7
_4[Rg
A n-
91{`
I!E
}{;@
mo<
-~Q5
Js O
y9dV
(Dp_Y
eboc;Y:
i=o
8!=/9
%w^
m|j
5$PQ{K
"{! M
3j&v
wM0J2kPUT9UMXP
$xj]
Xl@2Tis0}
q$gd
;Y u
(0{G
N:N]N"N
bqHb
Wx|<P
%@%z
&Bx7
?vy@
#isP
!)c<
'uqT
[/^;Z
[}jwr
i;H?
6I)g6
q(^|
L&3$
p* e
T 1@
NzNnN(N8NUN NCNbN
"$_9$B
[5pH
hXTGO
?y[#
kU E
tX-}x
_P
]FRJ
U^t)
}8TUp.
( 34|_
YT[X
b?yG
9 `j
8-^Y
u<&`R
ih67
^>i}
rhWQ<
w| 9
H+:k}
d+oh
}J ?
+x?(
SIUU}
8-^,
j=r R
| kj
N@Xc$
LlE<
XKzk
7eM<n
iKX\w
GTsW
RH|6#
,*me
/+R1
;A]:
[QQ-
cr,yT:[
n?L 8
6!&:
eN_D
lkvbv\
Dir
3";P6k|
>AQl
u ip
3IZsn
w >~
k,{:z
=5Jz
L'ms
M~9Z|
f$'5
Q_^)
Ng>`#
G.;0
0\ Ex
gZ2;R;
D NHoT
<Jt-
tUz
l6Yn\
< |t
fz};.
1!u1
\&/wPO
$[&.
B*Kz&
_CorExeMain
K:,@N
\vey
1NoQ
LgoH
N[2\G
KS){
kF :`
;l}s
O4S@
8>gf
=6+QX?Z
_2(I
AnP6{
oacX
j}x}
"Oft
iII{HV
,V8Q@xO
| 6k
US1
JQU7
B!W
fZb
gUeq:5
WV7=v
!Xx1Ez
"f/E%!
_?&
a @z
PytS5
g2w{#
+* U
]SoCx
r, )
)o}K
uK2|
K2BU}
Ic/]K
nZ[2K
JWg)
cnMD;
9^jrg{
/&}U
= ua
rW^CT
kUk)3
0dQV
CJz#
*8M&
cwtE
$w!6
qx,
sXKZP
YKkP
DI7
Ac,L_
bo]0
"WOxl
;Y b
RxUH
zA1!N
+A+>
<kn]
xhBG
)P:{
G :G
$<wI
r0rRxD
HA1jnK
au#;0
u5%j
{O*"
:hLfx
5,c-G
_)KO
EM }
:,N
?VXBG
bcrppmZ
e`|~<
"Xr;
h+ <
kU i
yuHv
qiJ+0"
_KJ
-j+H6
Z%eD
L2.1
+5a?h
[*^Zy
mQ"^
3DT1
el/u
0 f*
'KtL
|t,wB
qzOw
7R'3
@&] #
RmZw8/
Rk @
0u8P
2Z:
as\)#
q]@:a
P=!6C
0^-)
865@VT+
N>_r
-#xDn
}c&B
cCu+
1_U94
;bBaa
v5v80
HTRn@r
L;&BE
L8u e
u4 2
3' D)
g5G:
t.;b@9
]1`;&0
5-eo[T
r0X#
'wK&8V
C_9V
~|jj/
}$:v'6B
jU"
(IeW;
0 Y<
I>khR
.nV
w^I(
d| 6
<Tz9,
4MSn
tI>k*|
7b$8
jdh`
y,Q_
5]4$i
wVTLZ
|zc}
2Vu}B
Q@m}LtK
G3?^
1/E'
B_o\
RG?:
B#:=
] VB|
ucS5
<c-&
,n&h
|7]U
(e"k
\LBm
?'0a
O |*
c(FH
_l"%zK
19'<&
2zYDu
]w+o
:hqqX
KV!(0
^#@#
K?$
Is.%8)X
UFjp
.q34?sn*
chDC
k7RG
O-^
xn1:
E" gp
Xnw#
M4Hg
ni-@
!Q)
!hkn
-OHB
7YB;t
y[A{Ch
~;hA
';!#
Ismw
yx&I
1'2Yv:
@x@
+^8,/
H)-`m
y5OW:-
xm]
~!Q
XN)4
Mgb5?
Pg=(
S|0r
T=U+
r`T/2
d My
_tAv
MUyi
(q4
~5:)
3D?W
(4~d
%ge\
XK#3 ~
O# '
Hz5+s
NY6O
z N?
@t 8
zZfS
lmhh
%M->
fHTK
6#?
]<4n
?! v
W{?:
nFbL,
/fB-]
{C9|
K&%^X
#!Fb
R"%B
sSzy
qeGo
-/+g
ZvH
%=SIG{
l?[
o(Q
=^yh4
UG_!
^o>d
*e5N"
ubCy
UG_0
C0=e(
HkwT
)`*n
2]x,NEw
(%GFn4G
<Ut+~
Mt*
y"9[
KZ20
X>tx
a{yG
"Y8;
G2Y]
f>"$
.tOh
l6P
qKg
T} f
QfAB
v#G
Bj(E
E<'+
^+3x
TI;u
?4F\;
wE]j2
X $rR
5(ZV
jkos.^3
x}AH
j!Y4
e'vW-
^X2\
^+?q_
@]R[p
sR2q
G4SG
5`Ue
y}r V
-M4uS
~-47
67ec
Gcy8
) v@
qjgpxy
{O6Y
Qac1U
[EQF
) v
+OOm(YZ;
;1>[
b.\n
TeoGkR
xSZ_4
Tt+,
v*7c=
^1%_
"?p_r
v EA
S8K7H
[8{h;
49
lO\z
:g a
+WJ m
g*Tjv
OlEr
n n$
@I}we
Dn0|MZ
g&f 5;
>V0d
cs;^
= |y/
gR8,
3{P&_
\4Af W
>Xmy
9LOlQCJ
]Ndj
0_6e
RP0J
\ $_
z0;$-
ZrV4`E
|9E&
h5Vs`
r.@r
mB(;s
N*{g
~%|>
6am
3/G0
3d d
[w4f
te8tSr{6R
;zwt
m_kY
q?Hu$R7
@]ceY
"L>|
%m )
XD8^
=4fF
@Cb,,5kp"
tIvm=B;
/2\7?l
^K5N1D
[+`|@8
C4p)'@
$ '"\
4v7U
~~va
8d p
MyvZ
Rd@F
`??R
wkC'v
/ ={
' ${
>NxG
=3x
#jCg
9_BY
d7j,P[
Wu z:
s{^rs$
+8jY
M*}*
}yl&i"
!7iT
yFJ v
y7OYP{
ZaTM
Z0A2
&9uj
Dk'%"N
zWHj%
LF<
b]lx
.\"K
''+!
s5*:\Vl@7
M9H(QQ
X;$
0k/'pK[
ely@
`. u
/xn5
,PBB
d Eh
1|>;XL
x#I
%SbUv
#dTb
ub`>?
$]L ~
@ $`
)s%%
/-3\
n7hR$1
i R&
*\LN:
Y'4Nm
_r m x
8SSG-Z
Io`EK1/
2)<8
U%C#
T-i#M
XsZR
&dC oN
d(Yd
/q(6
oQLm
#V+,
]Xl,
A3d(
alN(0
nCv|
B1sl2
L"a3E
8$q:
DmME
d"x U+
] Y]
bn8eUrU
5|WT
((gs
JB2R
F,#{
,F.x
|Q e
)#f|-
`o5>g(9
kr x
+0e(
J k!
w< B
Yf r
Zt)H
";++
RH's
vbm H
$"hi
D]lj
L4 i
EE-e
mbjO
fz9`
l\AQ
,dCx
})cL
]T@x
@y|_/
ukMbfV
"j\
x ]
[: >$
^%49$
H,u
Hy<R
ed:n2<:
7g@*=
+)*f
!AeJth
6}>NP
T!:g
]tTV
;fc^
n.&i
6 :U
Kc)_
Ps4i`
fl*?K
Omln=
pe/X
.Rvm
b@x*
Lp{gx
)Dq] :Q<
4Svh
S:^@
NoVJ
}9>p
#"Lb<4
;3e b
Marshal
! RK
8!ve
tL/
[S8+.:
'L^u
C:$C
Es#yF
$Y|P
m?V}
h(*)z
m(O>!
6^o;{vJ@r
=zXo
d^8V
7f8J!'
=MN{NQN
&dl!
;$c)C
R%g!
V*$'pRJ
A^|N8
. y[
]x`-a?
Kw3mVWMNCYWe
<<x'7
QR#*
4%{[
V{'R
+S`<
AWZt
YNC*
<@"=
&N!
aQ~M'
qf@CQY4@
{5 V
(q&@$c
WTms
rTtO
k_D.
%dN;
&,t=
%%ru
J1sG
rKq
^+yD
4uR
+([F
r q,u
)M#"&Up`
M}LrJ
hLw#3$
-<[Y
Abn
_VGC&
/G@i
T7XT
Q#(0
fUTY
K [*
za#H
RlEc
+m/L
Zmu@
PoteH
Kn`C5
0xVT
/FB0
J8(l
7$Gg
(f?F
gj:s
5[7$r
M)c}
WuXGV
,} a
(wc|
+ czM
U9>gb
g_`AL
JO6P
Cf~~
ZRO0
4 Jl
:N\R-)_@
H3j
C&xM
Type
&>FT, 6 Xp
r0+.
3w-Ev
S.B.2
+<C5W4f
!Z1j
YrNc|
[ 5L3
pKt[3|
N_N]N
oXjy
8edz
Rq}(
p]V:
s#]s
@XvN
xcZ<S
sWqc
js u
GsX=
u ,C
EpT}
NO]]
,?'=k
HL!3
B ;E7M.
(OW8
2U0KV
){|F~L,
QUn-
VsR9
FI TrBZ
U]/9 +
f^y1
ho?;k;NR
-b$-
_ 8"
bEA-
S5Dw
}7Mw
!m];
6fh7#_
E(e+
Vfvj
s"I@
L~:5
onh>
?@DP&0
uW'sy
De8\
%b}
cw6Y
[g}B
^ml;
jVS-
=:Kp(
VOQ2xm
'P
zwt;-M
n`)z
{'IK#j
"NLZC0u1
tK0
/?@y.
I\`E
i,aIM
nLqm',
_^7eyoM,}
E>*U
+ u8
4Lc4=O
L9S&j
ZquN
4Ops.
y)Vb
=GF$
k<pq(i
^ >X
'%\8]
\ -Y
b:}
BF9Y#vJ .
"'Gt
sz5.
Ki;qr
w`3w
Kh
;"Ry#
Qijy
`H|8*2
Mf)'
L`_X
!Ovz
=!6|T
^A9&_
$@|e
YYT
[WbE
Kd3fg
@58(
r2mx,
|n1
RU}X
FI3J
BS4
7@Sjt!
tuN"Xx
\2c3
9Tk
Kv <
+DQ$
<d,!;
RKT>i
reti`V
_TFYmW @T
40<Z
^OB
Ik80c
h8M"
0,Dtj
?]<wbI}
IR2$
/IK3
WAJr
~vE`
T Jg
GJT8(+
AMeF
^[]'
f>{b
9 `!|
_C6!
F5f.
,EnT
1dZ$
+_v>N
8'00
7Q^+
.q2}lXp
,haR
p%gm
D5`!
: +?fO-
I2dQ
r]LL
a8&=5(
w<&
xm={
#KXU
@o~m
Afp.
q/u>
\ujN^<jo
On,$V(
ZNTF2]
.J L
J)6+
^Xew
@ 1+
HEqW
IHDR
c6mv_
PJz<4
{-=
>Ua
kb?x
i.S9
H7p3
@@,B^
+hN+&}1)
L/i W<
PGs\
Ndm
ipda
ZYLn
9*n.
N<7a
P)FNv
4Tbc
h=p7
'I |
iF#
d"m@^
c,/
Q25z*
_|}p
gJ6 s
,d 0
FKXH
IL:@
_@p,3
g~0O<.swBgiY
<Q=p
.A@h
IYssfI0EGOnAp
u9#&
6h m
^n,@
VC4x
=K%O*
'1,N
zeXB
0u7E
P;w
*J0K
I\OC
S<6XW
k7&X
8p2s
)91<
OK AU
{CU)
Rbo&I
&^Gf
P8r
-/M7
_HCI
PAI1
>Z/-A
f94=
+(0-
Gm@u
s1_G>,
]!A>
eoyz/
\,I^V
=znr
K$|s
mO5,
~txD
PnmY
rn'OZ
6fI
."Wv
cUx%
PK2@
gMR$
Aa! P
A {'F
y pX
GAM8
w>?
nJs
c*>v
m"r!ci`
,vP
.%Wh
942!
nk!2
,M6zF
ui=D;
)II!
[ Q=
UJ5 K
;<FY
p:{I
("a'0
)IIQ
7snU
~e5
fW%%i
qi *D`
y8f|
'RTS
+}.3
C^x$A
]n&"
30,I
\R|*k
c=]7
us4C
6,jwx
&qrC
uHRh
"%lc
jcJ+
>^tI
;P|
or/}
TP*KN
TW8s
46Z
gig-
VD{L
6tw2R8DjSEtoANgiM5
ZGYB
n aR
w][P
p84pn
0^D@A
m4_:V
*+Zw}
UP6G
"Te*
pv-m,
18kv
~!876>
2:L ALy)
et;J n
\ 0 _h
[ArT\;
I)*0NKd
.>NqU
mpJMD
8Wit
JAc2.Xl
E4CqQDo
ok:W
I8aE
v;Z8>
81I"6
=-!Jm
2])[2
2> {Q
3J cy(S
AjJ
UZUJ64P30jDM0gfv7g6
'~%m
HSf
sA0F
*.>\K
vFiz8c+
:r&b
Z{b9]
wk*=
iYpE+
k2rD
ZmOoxD##
~LP{FT
X n`#F
8+a8
D&DJ
5 P
c0v[
Tj_!
\4%9f
7d5_0
hbE_(7
|*zSL
2!@s
p j#
ml?O{
)f:g
zgbSK
?6b}
wYn;o
K%_E
^,2M
8"+&
C/7t
G#g
oGBWI
>Z03
u *4
E|,P
^' 8
*`1gzJ
awjj!
(Z^MN
FRYh
bF~0
Zk+|
*35
Zl>Q:
JR^).
j#oBm/
gJ]3
!JEg
_53]X
[G,>.
^`Mc
Jh*U_
Sp3hK
>I)
j,-
^D.4
W* 8
uG ~
5<d*
uG v
8uF2
x*Tk
+[.{!
}(K L{%
LmTj
-YlyQ
)ch,
f\/z
6 LD
9Wxv
6[YJ
X")X
!5!Fj
',Mp
l,85
{)N$
[YT.Hr
fs1Gx\~DF,
5|svQg`
n{2 7
?@%?
{R[]
k3f5q
:x]QA:
0^%v
xGb*
duuX
DJ1dJ
eQOr
O/30
no;W
cZ.R
@hjF
@,9F
DGsx
VDU(;
kcYz
.9u%
)0Z\
[ jU
W`f0
6 5VLB
a0bm
[n5f
6 F&
a2oh=e
Tn)Rt
i_4j
M]lj
.,oy#
Module
:}@;
,g\.
zz[v
B>U]w
@.reloc
m-B
AjmW
1.
y/tt
*TbT
m$R+
o8e5
J*C9
ETJ4
!d>O
KX|b
?J3/
pV&7C
./Kf4
.wX|"
&4 b
uLO_
@7hS^:
!g+5
t {g]
-Rj,
NOS
5@v3d~41
O+p|
j'`g
p2y=
\\[4
cRVN
B VQR
Xuj_
b=p%
bO{
c%_e
O/)!S
z23)G
s&i/
/}r8
!x&
J1,e|
AVNiE
t}.L
n^7M6
t\Pli
^nfn
g ~H
}9x?
_F=a
gA c
KBeC
ZV'
rpFj
68H<
TJ\#"ZZ
&Qz;
rRO
q5vSiFCr:
3\0a
N'NHN
|| yHD
s;n;
<3xw>
.;B1
{StC
$:H2Du#
UvA4
M[`IZ
TW5D>'
*bME
s ^i
NI{=
PNOK
<<h:o
!UhC
e1>2
+-9h
G_".
Ey:e
PgE)
}WI
gaq[
hc(6
aT~60
SZqK
p_S5
WErB
9C'K
x) +
p|pz
]wC
D8zJUZ)
b^pg
9e;[
Resize
h;sk
/khNF
i[pq
KZ:/
mQ $
Df_G
Ty|{
/!jt
g{{K
eX^;$
-| 1T
E9fF
`sOi
z/H
$!G=
h+ bZ|
a!j,
ZWze
NBV9dE
~'"'
?k][j
;CgKM6
jYer
FpZw
?v]Iz
@`:"^A
}5\@
VQDx|
Zcc }E
jvQpAUm7ROz8fRuMW
Ke}7
p16N
S,Qw
R8 SqT
,?9|)w
'3ZX
UcsWicaC
>b"}
3O+
/{
ny |N
u*?5
!G:U
^KA- 7
BvD/"
[Sn
NAC)
3O
)XZs
`_SO
C<07
,tQx
`)/h^
B"Qz
V_K$u
I|&^
0i=
'#/p
v)Ta
={S7^C
f\G]*
|["
Zz2M
8W#R
@0 ?F0'
( *M
:>=Pz
;hgQf
y/Qz
5ZaWx
vfzJ
Rq3
pZ/i
>TjB7
OXu}
j Dm
9X.o
HLg
QN7[
2GP
KC d
,aw=v
;CDZt
$#98
*BFW
eQ:.
+.-j
yA"A
37wf
5# 8
e )W
w}Uu
6|`m=r
b.f9
|a(3
@!Lg
)78!(
C]S}
Pj3
)l~M
YcOZ
>&V./
T[[iPW/
{`#1&
+f3KYS
zVkf
c YbZw
M"]h$F
Q6lQ
Tu[y
#U1@"
kpw%
Y^+o
N,+
ONgY?
2^[g
z{6Lp
.+>*
PF_#@6
*TwWf
1F*u
Qy l
:Z'W
TQ'C
V#?$
vG@wj
zHW)
/Zm:
wIAB*2
"]-:
B6 '
Vq*e
x|Zp
"G-i
h&or
%(r}
]8;V
B~/N7
68ph
;}):
Y^hshx
AcK`
"gCo@H[
VG8QjpBsupn
4hfD
?F"Y\HK
S q'PS
ZmV}
|1j%\
<`',:
DiN`N
o?p?w
;>PT7+O
ZK RnD
C` q
Jk:k (
4 ii
I}A-
^C]y@
Q5M
z4e;
i}Cv
&LOX
yp0GJWAkXazp9HEhK
?[~s
^> b
?[~@
+Y#Q2"
Zh }o`
YG>'
!)(DpAZZH5*
&GN
S+I0
:9^X
h4`%p
EmL9Z-\t7f9
!isk
tO9Vh
jWI1
evwZD
!]3[
RQ[.l
uS1s
x>ZB
iE,7er
@ Hvnv
vCD*
[V&~
F{7D
_!7g
K>WT
-|>G
3{a!
C:y\C
X'[d:%
qt|npCR
o'74H
I6gg
71{KS[
,8@U
Iz_?
bj_d
CJ4D
Wg?"R'
,d @^
?Lwu
`yywG
,f#
HLZm
lCOM
M_b
"&8U
0YsN\
Q'F T
VfQw
b8AS
zBNpC
uY-[
i>Jw+A
r; d
v5OK
(k'G
$-(O
RRk|_
J3:TO
v,?<]
DHfS
*mz;%s
x<#7
" Uq
\4.?F
6\T
:PvR+q:
}&5D@?x
mOYQ
|9h0
kB !
jvBU
wSqX
A61g
EBChmb
kUoS
pe'W
3??bfv
~AfS
}y~N
8}/l
%93
=]b4P
zu
[No
MV/Y
Y"dw
D&#)I
GE2;
rkyQ
D`[Y
K`n]
[?k,
`r4F
qDdr$
1.
|R8#*
9k/P
`qv*r &rA
1W/)?RW
!7~]
ZO%P
rTas?
191F
Z!M(Ie
g'*$
30\a
jHXd
{ O.Gi
%~@O
KL.e
:m a
ASq!
#6])
OMe"A{
la} C
En9te\h
L%|u(
3J(N
U #x p
@98}
"9e(
EPSRiRq
N49=
uRM% j$
n H%IJJ
u\QZr*3
e"r'
WX^_ap
<OJi9
.C=C
} v}
j~`"
G8}i
bKf
SzQ9:A j
*rLg
qMbK
>Rie
vJY%y
@MI{
'h9
`ufxqup
+b v'
7L%p
Yxm8
EOwD
Bu0M
9Fo3:y
7ha.
-Jsz
rG?&
;suK
QmO
3[{Q_
xi+Q
Ohrp$h
ST2)
BX9J=
@Qj$C&
;@A5
&\gn
@X( Aw
/_ c
{E528
/ `8
b!"s(
zf'<5
[ k
~1G)P
8F4;
XCH/
QgA9>
']v8
KA <rQ
{ZNJ,
wlqOg
P+\1u
pz;r
7*L
*r V !Hf
y_ #
$qlfM
bDM
(h5Z
{KVr`P[
Ov7.
)kjS
(h5z
QNC`
cOY\(
dL{U
}^)>
o(F*y
1mww
#)?TR*
/ON?,
8.T3
/U'T(
4KNy2PQ
uMf
9in
"H 3H
_vAy
t>Oo
\J=93
w}/%
geI2
^\!<
:5|)
q]w;ist
p#,mp~
2w6MF<c
; e
S[xqJ`
UOnv
VpXt
Au[J
b>N.R
Yjc"
}6Y!
#B MbCDIF
t1CqgA
NRNON
[ }L
z=sY
moeVB
j4z!
`OaV
60m9X>
<IHI@
e+IW
fd&u
tOW O
1`.DL
<B_
)Jnr
7",d,
M#S8*B
Jzy+
a85y
omu+
w2[# S=
) j6
h@`}
0GN@N
3<A]*
Nggn
KlcJ
AWo~
pYQ>a
h>C;
L}]!Lg
W53J<
K7)"Z
GA<]
0titYLJYA7ZUf6vOlI
\.4%$
(M4,
q+4h
}Vs1.;
,x&3
elKD
uNeI
5W -
!?TdQ
#G4,
HrT,
CuiH
cEMI-
z:9#m
\]PH
&/9-}q
,_H{
xZj}
Z:c5b
@5jf
%l]Lk
6 '6
{) O
V-q;
74e
Ya:o(
amCa
w6!e%@
y;.xq
J@C>
DN_eXp'd
l;sZ
B2 v
*xCe
dS6r$
oVod
|~|@
oVoW
UaP"
A )
#{A`
R7TE
}'o\
\+3m]
;TxvO
u0^d
_H<<']C
# {!
cO$j
> wX
nf9A
q? [
J=+
lj,&
xwU
{Oy.
nMm;Ud
pC775
?S[)@]
j6RK
!1nt
p Yg
-x;V
t 6 s
R{a;
!<Ac5
-Px2
6d Q
:5Cm
csb+
xAJ*
-CB2]
f?KS
\9o@w
(6E-
d?1
Cq@n
w-y9}
b_K_
<fPj;c
3JN9l
NbK>
S>Ioq
0 q-
xBH)
]400nB
D,Ty
D/NINHNYN;NgN8NKNuN
$XXq[
kQ*%
6S(E
y[!U
b"M\
wg4(
7Wmk
x3EX
uu[xd
cf+6@
BF!M
G;ZC2
r' /
)QIS
N^}Q`
uAui_
HS1
+eOV
mF f
%jJj
dI6_
\ {GE3
s&-D
fS"SV
'-2L
zHg=i
S(LU
Cv~
l]p<
|a H[D12
AI3qy;=
Y-g}
IDAT2
m{=m7JT
sd X
lX\|
WF *
M|4
}$*=c
lKLL
get_IsAttached
"=yA
tr8`
a>dj~'
{!IU
%26Z
R&G]R
S_&:
&Am%m
lM~,
r.jd$Z=<
D/.
3xZ}TzL
$JM]
@Kp
''HR
i<t~]F
u}U8
1\e'
D4!X
/Ilsp
>nm9
C4Vj
1IxsowjUERP5U9ONs
U/lb
}NvP
u7eh
NhN\N_NMN\NKN
+g.C'
Mla6
-/aO
@WN#
a#AE
)#\TO-
GetHINSTANCE
Oc3I
12|?
<}&Y
,/NB
veqpg
Eb[-
AD.5
ck:s
ifh1e
=fMu
xf3C
74qz
SHRR
WbV
jwfP
EQ<ts
,M&e`m
R'R
h uzr
xp 7
+^ <
%{6@l6w+
E"YU
(Ko
y,z]
eJ ~
mMw"
+>za
[ ^?}x
[w(Jg
sbHZ9
!y%p
YRQ<
thH<z
U? #
=vZB
x+-:
xJ _
= 6
Bd(`$[q
_|YU
||Bb1
7@ <)
u44l
tC-K;G
5E~+u
D(^2%b ,Rk
fN@
wM.^
Vc T
3Na%Lt0
45\F'P
w< E<
5 CPs
ibH%4
?[>n!
&!\W
x?3"
yb_KuV
<PV:
n 4
1g9-,#
H9%3
+*06
qPRT%
09 Wl0H`
<68J
q -#
uUkY
&(^q
%kwx
-ku3z:O
ZZD;
>cfY
rcmo2
{TfA
q)q{
rxb
r1/%
$3q,"K
nY`^
iULi'
wah$y
iYdq
1 j*T
X1~
pi?{
IDAT
bQS~
jl)Ll
@.@4[
i_AE
u<)*
paZQh"t
Uifk
z=-}
u>m-\
`Iky
$^47
Am=/
UoNh
BSEb(:
Sce7uDTolZS
c%:A
+.S|
\X7W
v}Z}
w1 z
} 1SP@Q
W ?K
yUxt
d^sV
0-4
b_ \2
pUw$
ih5u
Yg&y
JH^\G_D
+<==
{p !5
*z=oD{
bTc/ $
]EJo
>1=[
`-NN~f
W<d=<
kO(*#x
xF5>
h;~.+
C"(m
$"[
SDAP<
RDb/?
] f|
)Gx)Q
BEo (o$>
QluJ
#4, S
OZy/
G4?IZ
8k.
%`~q
4R;,M,
vdzc
8B>f
H7Q dd
t?W<{
Yb_^
y@He
2S\`O
.dqq
'1wX
`?`!
Nm{(
x?~h8
&>;v
*tVn
Uo|
R$}P
E~}u
ngSA
K9 I7
Si(@
U@pn
[OMX
L&^-Dr8
rnrd
9 7,0
U ms
f>\ci r
gDdL
I=)! m.X
f1>
K3<\#X
^yG9
|f;
IH,kOM
D<3>
n*I!W
af6N
Y9Ac
ncrq
CiT7
eoR3m5j8agpVY
] 3'
h^"
p Cq
2!w/
vdu)T
&iN!
q}*
iT5B
'F I
EN|
ZoU~$
Wy:Ds
kuG(
0YQe
@skX
MI?%`
ju7
C^Uz
"\>e
6{!kn
sEF$
`W-e
U$u
})%d
J?'*
f[MP
G}i^|
"2"a
d`nkk^r
<kuz
`YoD
IrQw
.y T9
Gd*v
hVr0
f"v':
\MT/
KY #oY
Sdy Z,
xNg}nn
2 HC
WA3(e
/7slk`
F~
pxrLu;
e( *
9vnS
[]iZE-
9 NuC
6]f_
?2Os6
1L<(
`5pq
u.h^
t,>{
#Vt62.
/np;
Kb}b
N{N N
Vn/E
VvC'c
u ;S#LI
IpQU~
GYD@
o>*G
'_e6
i&bxa
-Eb\
!11Q
J~)E'w
v#Ww
8BJpy%
3/r-
=HUV
?n{|X
*={$m
.6Ip
agU2j
y^i/l
E
f>2&
<MEQK<p
IGyd
Ow;0
GiS_
Z:~-
C-2Lq
GD\w
W(#h
4w"&
Cz%*
2K0n
\EgX
oaEt
{>TZ
\P$83
'5A+VN
) +# s
W t :
O[Zx
u06@
8e(?,R
}-y:
t4HZ{
niw
!tr
Xj+
N<^]o
.Dh}F
kxa9eN
2%-X
t6w-B
~[M X1
^.~#
Mzu
System.Security
vzny
4N[{
NeNdNoNeN
ZN^ U
PSBW"
F[>M
%0T7
jymE
~^FU
X#ro
,~\!
h90$
{8f;
f!ri
hqz+
&T=9Zk
vYFIf
J O0
f("0
Fb ;
|J2A/d
N8d
@ -Wb
6O`
N*N{N%N|N
*,}!W
as"q
S 7eC
c,hV
\\[1 `~
L S~Lu0
77~/Z
.n~5N
*BN-
h0FW
iG*l
PbS
5[xum
4au
m?p
yQ'E
-c\<?-5Cv
?}@*[
A()Z
+*4ks
udT'1
OCm^tLP
94LJHXsLT5VqFshgU
TpT'
%*AP
Fhy,pg
lN@n#]!
|8`X~
k6Or
?!=*
M$HY
CGQV
LQZPupEI1ts
AhZ/N|I^
dPl|
^t"~f
R<jLH
t?!}-0d
^Pj[
T7H2qTfyxZQZ
;*A
flnc^lk
2~GQ
*X]8
#NRC
(Zz_
)D|cK
x-Cy
(v^k
'Q\;\h
<e,D.x9
[I!b0
%ixra
3;!p>'
R@_W
{: q6
[Z=
TV0G<
[vd!L
.26:$
-9SK[
?NOO
|]P ?
#93R
Mes{
XOJu
4 qj
+"-ya
&, '`
[*+_7
*I&H
7+FG
_PO1
Hb |
&I~;bV0
/U}
E/-{u
Z/\Y
RA'!
KL21cakOhSN
0WuL
.\2~
bmBn;
?oZ.
swZA
-DGS
to$2
q_,`4Q
N3N'NcN
9%PD6
*m1UiUSi1
]EO<
hwoV
v\A#
]URb
co o
l P,
XfpG
8n.UR-
r<F& {>G
/:bKI?(
n(37b
EX/u
S%/R4
Mk:D
`?ZL
]H}z
o_51{zk
hwo$
]p<T \
0l5n
F@2f
!]+B
'<(j
nF#Q
I&:"
[_L;
1<Ca
lueEis"
_5J0/
Ezzu
4IN<NiN%NiN
8iD"U
rie3r
tvg=
mY*,_<E
msI1\f
["yg
:/[
!cG3O?M
mYN/
W=XH g
Jp.xH
_J~G
w!C,2
Ngh@4
KC?r
UY *
HC"U
O<Qv
2mv
c S w
wd9
u !}E
475r
b>o
% rh
|h-~
-:~J
2H!)
;d~^(6]!
C ),
`RuC
Qdb4
:2 DhwM
TCH@
N5N N
)!jNz
|:vr
T'U>
V)r("
/y}X
[X^w j
\,rE
DC ~
gmzs
a`==
f31&
5 ]? x
~Th[
#GI'
g2bxD
;VeD#l
tsxC
< Ua
n6pejP
,3 ,
zGAB
^-j3^CY
FaS 9
M[F)
xWv$
Nt\gS
0K=NQ
wg`"W
8/dt
K{@:
Invoke
T#l
y"gQ
B O!%
[$ ]
~(^GGN
B>dr
NUNVNVN
+9y*3
#H aO
bR%]|]
NMd.
$Q@{G
_x@~Fj
]ke
D{M~WL
8|_L
*%NL
MM+~\C
=i97
V|YH
5 [B
V X
NBNBN
? %\E;
Y5>9c
3x 3
Siw,
qcYG %~
9]%K
d^/ @
]b@^"
lck*
sw!{\
8HjSfOjL6ThQ
S1[M
}ysMhk
Fa{'
#4nd
Dq^Y' #r
D(R cNcu
b&73
z*\0h
s]Nc
Wg$+
%Ag_j
'zbk;
L~rq >
WEAX
Bb}p
l|Z\
DH[S
N NvN
C6deV
}^/
|>oS$o
{@zZ
QoW!
Up S
GsHY
!*<`[ :'
gc?
;ehC
\uWU
.)A~
X&o,
^LL\n
Eg[#
ua!u&
~+ex r
Q@Je
<P"J
#@ybeu
u&40
;{5/
:w[E
Q@JH
aR^b7
N#b-
DWpO
~m2f
NvJP
Rhi$
J/QZ
k\34
8zIg
U>`2
m_5S
> .gs
%e+>
$DIp
X4%\
*'KsyT
NH95{
!Qh
7LPIe
G4OPx
crI
4^/:
|.-k
Eswu.a}]u
=H
@vkv
ZYqv
J&k:
XQVk
yvP,
lwbu
]!,k
9*3ny
&O/
get&0
o>{m
~ _r
y@#|d
CSC
oDv5
m-"cuY|xUEg
o_FV7*
N}NxN>NENvN*N&N
X x)
"'W*
"vF>
4o^H
61\q
Z.:k
OhBV
*"NRN N?N
HkRs
O`D&D
[ML
{&FZ/
AlbKw
@kF
bG [
@{JP
`PiG
&}r1
Gm;
`b_<
o%").
#Mqd
a6Oo
#k5\@
drOj^
6e~O
;;z%
9E6e
33r0
IWcj,V
y"zA
8 R:k
<kpC|
d)j3(
&E9m
qD,*
6Nc7
X9VJ
~Z=~2
jp i
2exv
"8QU!#
)mlktP
^!9F
)N9Y
$ _
x1%
wQmx
2u{
Fg_Kxq
vS
r?7*
4*SX
vH L
E5vh
gVPJ
W{ \
ppi)
>Wt xh8
]f{
!n@z
6 Xq'
gkCNY
Vh&
V_3
N\NaNVN#N
@K-.
U"Xy
M<e
#{I#
dZ8'c
;k{;
ybno?
i>XH
G+60#
l'fw
H4yxY
2+;K
Hc6?
A[za
u#64
ET0_
x2Yx
qIB!
QiX|<
u@my2
#h/>{
O&Za
b |Y
_4IE
1-k:"{n
K6d9
5qg1vdq3A4mqpm42Z
~kFC>
" , pn
!f0J'<
v[e-
:O3qV
DDqi
1M*C
61.20.62.64
wn X
@|Js@
f{ @}
23m^i
<7oS
:D7y
:k'ua<
0)RD
l>q-
%'b /
cx &
he5y
C6{b4
DFEz&
q0[4
1*jo
!8\
/J0JC1
<=/jR"
7\/0
Ud>j
E(pp
vj}ox
1G{n
v^G?!
@%|{
QKBw
,AN%y
B ~X
e J"
r_x$;
:`:q
8h]O
)aT
D a[r
Sf I
{kYi=
. S(
VQrib
Sqyg
l#It
B%C2
{7J^
JAL 5u
!OcU
74L*
z 5w
LlJBt
^ ap
61sb
41)~M5Du
y vG
E*Yc
NPNeNANeN{NcN
=SE0
u`^z
VNQ@
4p=
\s|~
b]-b
N2q2lG
um*K
?A:o
B~jt@'l
;GC7
9E+z
8,hI
WOG/O
R_~z
%w8g
G tJ(
MV4cx
? *}=.
JdxYL
TZR_|
u11j
(@
YgA-
|`DK
8_/0
oUlOC
_!8/L-N
)6 v
+T M
1l)^4
Y}L*
ad>h
6%GC
e%@3
Tftr
z =j- s
z0U3
LW[-_
-Pz
dA9-~~Y
:B#1
pjHs
Q'#V
|%K yD&
>^a
p[WJj
?t:?
(;'b
7-DuV
#X<Pc
s4!D
!PN
vPw|m
|8bsd
4e&l
K0Sq
|w/
_s02
w60;
^V%+
%b|RdCSY4
hk'l
N NRN
CZ?,
"+"
c]AO{15aZ
Mzv`
0sx"
o8:2
L7J2,
B [CAI
RX=S@Ng'
AL@ra
Il^zX
X66#X
dq"
ljE B0
'\MPqMM3
b!HQN
0VWV
:sPO
r`&(
y /X
{OZoMN
{IoXd %AC!M
5 (2
p$N4
5dcs
M/m/P
a77m
?AU
b=/o
9V ZR
.uO
&!TZ
`U&[K
/Tv[
s8M#
[[5]
a!UlSu
)I$-
{YA+
X NA
Z|mr
j92@Q
@&LcVsd=gB
f*yE
Q*0m
VaXG-F1r=
SG~si[
%5>CK
J- 2
v~{9`s
DNT0
jv#{
w Y
pTwc
'c"9*
1.df
N`3\5sG
!#QU
I/p&
D/$/z
PDkM
89uy
UOVD
W' I
Pi,Z
y=>x
xy7D
E*tD
dPAO,
sT2g
Zz$
}S`U&
ki~p
hPgp
6sm*
?:mKe!
:&a~~
n^,s
,!B n
a&cSR
Z0%J
ZI:&~
I ez
\R ?
wC e2
i?/9]
&$aWL
'2-{,p ^
9zK)9
n8WN$
#w1A
mTCo
dve1yv
M "|
_^tf
bChN
z!-3|
_j<f
,#(J|
YI1N
|[<M.
y&KG)[
Q| Qm
D)<p
xTNS
z<Ce{*!
z[<b
Q5cBD4Uuuk6
$QKR
~Eoo>
; fZ
^><-(
``J
cbec
>O~c
PlAPO
D~l2JE
%RL8
eGB%
= $i
(K7~
+ &O
E>\nkW
=2~/
OLz4
DH\e
['P/
ytrv
$|;-
pT}`
K5S{
Zhq\
vZ;+
LAb^a6f
#4K-
UZ3q
40GXQ
Q-w+
xL)K=
++MGe
2wnd
=A3{
/02*e
|)G&
(Bwk
RE; S*
OFmz
:`3EMH
X ig!
ny#W
(RtZ
Bq(a
k(/y'3
^(2~
t ?y
b%jH
Ky:
W4 =3ciC
o RP"
ctqX
5hWiJ
~MUb
|OaT#n9
C/}~D
x f'
Jc":
T#Fs\.E
cwqA
CJy\
/ O(o
Zoo,
gu h
4z=|
sYdq
{,~0?
@c<Z
System.Reflection
tO l Z
Q,9
|XX"
vh`.
wG!h
<bK}
jB/im
Sx)*
/M j6
` ym+i`^E
|#Q_
gw;i4
aoH/
nz,A
wY!N
OT3:
1]I8{)
J#"sv
aoH<
gS'u$
]y3n
G 8D
%ti%
CqKR?
..w4!!
+}[m+
URfu
LSe+*Lg]
dGP/
+oB~
]F V:ls@
|KJ~'
-2L
=mYWeF
uEd0p
D <L
;z(Q
TAji.
" n0'
a.6Kz
k?H
f;bd;X
EnQ#3
o7lUmQ
D2mm
G<hR
Z>H{
kt 3
t,&d
_?yjz{U,#?D|
lH{]
an& 4#
b<!`#b
q|ZJ
lwK#h
2C
:"Jh
: WT
j.D*
D(_.
>(-!
ezn~Y
obd!/j
RP#c
HW*;%-q
lgbSDh
/g vT
J!z|
f ,9
=%45qX!
{RN=
K(a?
,wlsY
i}ni
-5T^.
gzK_
hQrl
L,`e,P
'u0m
MVv}O
Ua=nbnME
pv,^
t.Y1R
J}y<[=
_mmt
}Px s
{KY(
q_Ay
YQ6|v
EE $U
aV g
YCr L
#jc
;BpY
:#T7
CT^OR
_`[
aV V
:i`k
T}EP
9-n{R
t=uF
^1=b
L}X.
Hl)M
e Si
j_Gs
+O,z
S<V.
hdXF
- @TL
IDATwfL
HB6bSl
*O9o
KTUyf
=s_j
#VtD
CU y
L)Hj
gF5Z6
Uk J9
NPP*ru
$+a"
YK_HP
Ke y
}:?
v -
B}X S?/~9t
;f}{i
}cv
;ftAh
V+;Rr6
M:A $
t8oo
PI4W
z)P4"
+j|J
`31<
=Eev
nb!U)
2wX=}t
[C:*
EA:EM
0Y,q
`-+u
Q $?
W!^J
VlA3P
9&D,#
?p?>
,7bB
0"1s
OBs5
/xTI1
]c1J@
-YZKTH
6*mI
T\@=
{=56j
_E+
e)z=n
#k5{
J Mf
MKAZiW0Yv61liCDHly
b'yW
x| i)F\;~Q]>ffL
Jnm4
_:g8
6}pE
! mk
>* U%
hnC`~
Pw[MX
OB;-2u
K(,.Pf
?sdD7
p|K2!
4 5}
N:NCN
$b c
NUNJN_NtNyN
x)$z
2HDD
2HD~
Va Y"
Em"5U
^~&t
8RLCE
KhF-
qL `6}.
jCg~
{j`X
@{\`
+@?f
L%CD|3v
zLfP iP]
% q=lW
H5j#
XbQ.
um}i
|E`i
wwS12
$s(a
:e$^H
<#J gc,
Z Z"
\F"W
FEFX
2]Z]
b:#K
U-Ci
0gpK,
Z dV
:s$ap
3 NA
.!4m2^,K
t~+5s8
B=Z
Ow@0
Kn0%(
p>{k
JPUzW
R%N
9]WrN
@nIs1
aF:,
o\h
I{ t3
+v)%n
@%U8
xa<MC
"P<dO
|1 >
hBNh'dt
-wam
:!{9D!5
tPtz
7];r
({|8i
OJ(|\
O$!L
#3z+
;l&`
Copy
?@[<
AssemblyFileVersionAttribute
pSr9
97.!8
"n',
G5,D
$A-
N7 *j
]_@j
mJo&
/bEMcl
-1{Gl
||7F
oT@r
uV<-
'}]i
:G#%
(/ {E?
+8$~E3b
X@| P
}N V
/@WCysbO
mmNI6
7k _
KVp7c
E7X [X
;JsC
^iVg
x?h
Y.mi
QPN\
-z664
g73*)
ti1(
&PXI
;=rH
>fXw
E+w
DlslxL
|9x{
3p9.
OPkKDHZ4015BkeM
OBnY
Chh!
)\ q
Ip9 (
n\za
mOI#
NINrN<N=NPN(NMNFN
6@I?|uN
Ruj
'T'HnP
On$
b@+u
kp |U
y_f+
C*YS
F396&
*uy-K_L
Y;JY
)-tqlfX
Q"{g@&
0M9n
|/Z$
3L7n3Uuh4evT9y
e5ux
0my
2cLL
jvjS|
ak-'#'
t& ^|r
\R\$
>&Z!
~%P[$
6i0k
V7<M
*~k@
d;0n
t:%9
iX{4
>ZY`
ac>m
ujg5
"3 F
SK [{
.jg;j
2Z['f
h{f
kj\*
X|!H
TXWE
\l%z
D\g]
xR
_g^w
O z~
&AV*vA
/0+b
l6W@y
|L+s
+vT3
[/bC(
9Di:
quU$
SIF83
g!K<t
O lE
Mxso
HlN3o
36,J
g~Y1
M?gF
'r0>
_fDC
Z l:
lpQ
V6[(C,
odnL
nXdF^
G $F
wC"t=
dzk-
ynrDe)
^;>v
"'fdC
Z[bG1/
j"<P
,A,@
$VKy%1$
aQ)N,
K^/A
]HPW
O!9h
2*4z
J)cT
I-["
JLzC
T`3W
btZ'
tPq'g
.Q^E
!\b.(x
TzI2RB
0fP*
] "PC
O!Zao4-
6_i_
sv>V
0\[>
7!b9
mg PA
lo2QOVl
RH"
G>:Q
i1Prb
H+*]
^pa8e
\maH
N8 >M
cw%W
H>~{
vn/%(6
2; D
:BxK_'1~
8DQX
~g_sK^
CC%''D #,
icW2
h==|
fP 0
f4`
.u;!
amX 14/
KW:D
o~qu
?}e
0| 3V
q$X!
x(_>:qQ
=c$d
Ofpi
"1:Lt
J\!Z
+aJF,Evi
y>^T
vwE^
wfP*#3
2,7([
;v b
S=.AN
T[[y{K
M 7A
-aK!@
MB`K
O8Hg
\vr:b
R~7r
O+z
O9Ka
qF V
$mGD
6kY>"
/yR6
h K ~P4
BmEj
T P]
y95%$
a8%5
z\7W
Fnt$X
JXF
bu"i
f=fg
O~8C
R;x\
dnj'h
5Q5
M!nQ;
(vlJ
V@iV
$n}IL
9`oSNN
?kh kJ
?%t
m/T<
|d^s
pVm<
r9I
Iw R
!7pI
3',r
hvJB
KlJR]
d%p~Vy_
(dq ^
$y)x
PX?N+
!jYC
J '<Ru'
t+53
kIH?
`V8eXC
@&#pt`
K|=hS
$Q w
? &K
z:c<
O "Y
S,ajd B
54N JM
F`\g
d@+M
>]o|
`+&Y
'T8XOp
zW9x!
ANEt
\)N3
=L-M
;r)m_
2FGc
l{r:gd
fukx
<bM2
y=|
3l1g
T#{Cp3b
-(4:7&
zY &
v= )ECx
6$[ :
J/Kp+
KSF~
ZRLA
rIfdu
>9]i
>v;,@
I xtV
E),~
)< t
1s'x
*H- OF
Q J U
y\*(t
) (:
?WO Ih
d3it
+{PL
'[r]YeW"
IQXH
:WZt
&g^C
.)|^
DHUA-r4}K?D
08U(
jk3:
5|IY
OLr+@_
] u uC
i`}N
#(\
5{I1
Q -=
l!;J>w
<h W7
hX}
-ZKX
(3 p
8#^,.(
,Wg^
V{H=q[r
Nv_'
+ r9
J^!K<M
1Gs`
B{E&@xV
,~Kx7
5n_l
oO)Z
5OMd
:;Ch
C}>B
?m_h
*LFk<
7#a&
ngUO
{M0M
Mc> ]
p/Ow2
rumT
cuJ6Cs
^M9U
IexP!
o1G7
AO<1
LopH
kQl4b
1R/
0Ib A
Cd+/!
>GxN
^'sa
s@{{
&8rq
?S`L
C5K
NW34
(JFd8
xCtY
]'+e
ccX}^
nc]_\
nk vA
8#Ld
3g7H
Ur h
B|#hY
i](>
u+m]R3!
/i/{o
x7 p
yqni
AQb0r
B%[F
}2se
V*>
1'No
M*S<W{!X
]' '#
R;c-
[~iIM
<Ym
M7yq
%5=k
!}mb
2I!
)S6P
XHk:
E=CF-
`5*6
@4H
&|E+X
UT'j
PEN/:H
}}0U6W.k
F9;v
-;eY
kOm u
p0hFoin^
n,xa
Jq
=c0a
PyFr(
Thread
*DLo
0hAAs_
gh 61
w`?*y
V''H
.(-s
_;lz
ds0]
(+b4
x43E0
wal+btl5
jhv(
\nGD@
.WvID
4_&03
J.u/
CW,1&^
!SMR
'^9wP
F?1(
|KE2
Xx_z"
j"f9
}rN"
jt :
[z>Or1
UWPV
)K{PQ
@ X^
N518
q(|
Te{+
]=}s
<vW5}4
gp d%
=Z In
SH/6
#3$
eg X
d>De
;Kw9o
$Wt~
PPc
v,8WAE
eQ_#)
{dcj.
:aN9
C+VI
1SBs^
K @'
N {t
PZR+
r`.
,-kL
{f(8
wZ c
RI.m
p~`r/E~
.7"$C
Hp)o
+9kU
/4I2S
b,%2' FK
P.h<
spAE
(@2b{
ge8 uz
5dk7
8k^?m
0 NA
G_[D
6Q;SI
GVMS
HM#1'>
Ac/K
4c;-\
Hz3
O-(x0
9U j
%@/
P(~[
_)k^
zK h
OK~@*
:yV3
x=22
=]ld
l3];
=vb^R
\b4e
W|B_M
= (d
X F7
Hzn *0L
RO<*
Fl6W
]8R
ZHIJ)
5O`j_
U1K
%g g
iF8$
n^$]
8X\8
o|pt
Hq0;{
? B9J
kivK
R e#+
%vQE5
U9e=%6
?v|(
GOLn<
c^Ily
1>1c
W 1(
KR1FCeBB|
A@ -
$^@g
\]>N
5D({_m
blu*
xS?OWg#iMY UQ
IDq{
gmK1
TPEN#
`.S,
#zRe&
xc1d
nHSxMvb
yuhs
7 5~,
0WH`AO
7!o)#
kX9F}_H
"" N/
XLq\
\ ;oHOG
EjYnL7odbeE
+6;b
CGQ}c
*@^Y^
j^>?
O"gK
^H#O
s[ u
D-b!
u.5Q
}iND
D$!c
sUw=:
rqc~
QDAtyj
^2Ol
o)R1
s!LO
l&:q
z)9&
^/At
nR :
zs.W
pDNM
!W2q
L8EV/
ztc`-
[zO~
4<s3t.
hupwI
XM3
Ps&SB
: S
1yDM
pE?9
= q+"oy
P6 x
sx ~
< vQ=
+9Ds
2 P'
zC
+:z1
eM O
odYFp+
}xzf
$h<:~.
`wi0
eJ+5
~WS0a
(/(@
^}Q)L
*FP<
|7 0
*4`17
$vrT
b2|"
.)6s
]N o
WFQ:>
E[)4|~
o_(h
ncb5
n=fr
g[hC
O .e
2IpH`
r1:9
FT@d
F Z3.
`R?]
90uK
">by8
=6wE
NdN-NrN
(h^p
'Y~l
&Dl&
nFih
X$eH)g
iIP
t. O%
3-0-
4+k-AH
c)FW J
Np'b
T8v"
'x_BwhT
KK1e
4:
zpM M A[\
qohN
|51$Q`2
}x@(
1o @
ICX4
2sE*4
i(Fv
0iM97
z\l?
gauJT
a8rB
RFt_KF
v~*
g-1g#
71?Qf
~ ^
Rz/h
Xw ]U
|-7qj/]I
2D)B
ss0
G p
m23j
,Uj{
g~`y
xhGR
qA55
LA|t
X%A
ac|?
4>0T
vWlfW.
DoQ1
dmeh
OecO_
2,s'i&J
4>0m
Ca v
D=qR
S(j|
yk64OU
F=tX
U+fN f
z .+
+Dmc
c(t
IsLogging
zxqH
_M!`
b}us
xiO?
RV=r
i?S=
ex8T
hmVS
6}8^c
'0>
R\C=d
?-BX
<W &
)pW6
NJ{MG
GRC[
XynZ
7R"{
7u"B
U=ui
yuM8
ik36
N'D&V
F% =
gY`$
xQ>(
m!~7
!,4V
^Vwa
!cwF
W5"{
f48W
:+T5
EwL-
D p[
.9pg
&sk%
;KN~
.m0P
"TCf
3q:Yp
jX
Q1eZUY
~@ d
L?r/
[I+SPz
X (
6Q(c|R
$ "2
BEWB
+* F
cNrcb(Z
ez;c
S#z ]^
N R
5*'GA
N$NvNPN/N
w nhxT
0\N N
81|w
I w(
[n8P
^"Cd
-!Tx)
5*_ :yN
H.g<
r_!U
AP=ogR
cjj<y
^&a|esk
c~RM
!%
3Ej*
0QXZ}
U[ L&
"\+W
3PD2W
] ~%v]
m\F(
l\ b
;`A9
l,QFkQe
h'cN
W=JQ
b|sn)-4:FbV?
@Q`6m
bUsD?
:1#q
x =To
$'{,
.Z%WA
-u^7
kHCc
UIIiHe
\xTjv
+ a9H
3" 6
ZiyEl
T2"B
@VY
)T &
F FM
Z$a5
NvN3NgN
P/\w
9D,Z?Oh
:aX A
rkwUP6
v9{"fn
t9-O
I4G1dE*
O,k$
y::z?
5HA`e
\!B{
}JE>
&L]
IcI4
X 22
&_>'
NG?f
?Dl\
\;l(
lyw%
iwAN
-*/>x
__Li
.S5J
p=sm
oP yS
Q:3r
c]1Dbc`U
lmc]
b:ui
|yJR#
|g:j7
&FqS
{cvg
|T`
Yv?v~!
tt f
)QtkvRZ+
w:?e
?QNQ
:4I]
+,nq
Environment
a$)5$j
R[n"
Q0%a
U,;`
T }
0[2`*
pD6]!
?4M7
Q58p
dZNL
/q d3
*h 5/
M'}g
JL9[}
c@ r
0'DN
83O/P_`
0:DX
fa v>
5 IS
`2FT
tvI4/W
j1\a}
{l .7
.7@~
/=n;n
i:s`
sa!(
^Q:
E2u9
Ny[iJ|
-SSt~
?KQL
Y >0
Bfo<
1pjW
)bL
c`=V
3/_
9G 5
Nq.<Uo
]k)lC
&GvF
~"vJw#y
t2Kd
1 R`
gHn N
\O#Y
0"
?3"M
9w05
jO@+-
E?U*
4;be
5O!\
)0|#
S *C#
-3
@HLD
JF#O
;LQ@h7
UGzj_
!/$W
Lam@mk}EU
H\CGGx
}AK[
+ $O
db'
R#rD
QvQt
/#8E
;^D_6
+}Q'xd
oK~6x
#o[@ X
}k O
owg1
kQh
-`SrTJ
5U \
9_e30a<P
$rin
&<P
gvR,
6yUB
< $|5
hUJf
tfFF8
|kZ[
x =R
Ve_@n
9mk.m5
Z A
phf2
5U &
j\xFt
^}@<
Y)OG@
&p&z7
;j{;
z'th'\
wSdjrL
jG;1
B~&#
(#$(r
03 1
)-w@
prel
\c*2
+r|/
[.`K|
{<$y'0V
FXL
a@=7$
_#u*
=G"of
J\6)i +
odP2
-B
Z x)
@B^W
J3HuZ
o^.g
WCB
yA'p
1irP
NYN\N"NFN
/!T!
"~u81
Gj%
8U{|
:LimZ
qFd|
# VM
]vqF(
Xv~<
)&7X
S 6[G
2vm,%
uYxEso9M6Oid
x 'w
*^H-
_v4
@U_to
uz^1
s6nMY
#;Ga
{~|3
iAD=
m'Bid
+ILv
njOD%h
R'6^
zNFl
/h>j
NMTS
ccO
-wN^
Mel3
gdT%a
* rJq
h@p V
D;3m*
V/T.'
2ZI-
@_q9B
QF-c
g<!\
HZbP
)<a&-X
QLf+
/LY5
MiwWE
bgI[
s]^8
:#UK5J
=oT.I
X>rBPq
I>B+
U~3Xv
KS#%x,#
x D^
f$[6
t()!
ui'I
fy!~9
LW*T
+*i]!
Tr3[
?qA<
rn1V
3wQS_
A4_B
N N[N3N)NYN
5iD@
L3/@
g ak
6>]Bq
dK.U
FBB5m
eXqXg6
L4A
G#6Vu:
PfZm
$ th
tq <>
X~[S
w\$V:`
>X97.
lN|A
eVn/
w,=]
l9mQG%
%J)G
s(|:
"tcN
mk^}1
m{3~
@*K9
@| o/
z}S;$
k5 ;$k
[ma
H;%Kv7
'Z\q
nw-M
HSY[U
[^M+
Xn&k
;xV5(
ow_
5aOlx
KAP-T
NzNQNyNfNDNpN
T+3
X"Q2 V
|)&i
V{:u
M4y
oj@
#si
ED4L}~
*-]=
pE~]
lbUCb
Wz[OS
?%R,"
55Sh,
w 0U
VdBA[
r@%cz
NNNfN?N(NSN^NyN=N$NXNtNCN NfN
H|dv^1
@^'9`
nS h
?OuMdQv
]X,+
Gm h
!=2;
VzyoY
~=OH
<,EbE
A; #%
N =3
'e<O
3h.kuCW
z-4E
Ki<a
9EF[
aDUc
192q
%2F@a4
<*KR
ID7X
@%QJ
bsAO"
KFux
c#m^
P ev
_y2^@3
4 Ov
1`k
wcs;
opRg
\x,>L
&C,
.resources
Tp P?
of~>b
:1 g
Zgf$
updD
feDx
Avqc~
G%M',^
iQ~@
,s E]
SU!>9y
0*}j
P[pl
feD=
M%Ot`9(
\Ny!
]Ee<
7Q~'
)<1"
MW;hj
+F"e
|8&Y
dN{34
i#BE
{)6 4
{bZH
7bRw
ub"\
@Apt
X,kb
Kb a
JU/P
|8&
q! xK
N`$a
Hd{
<Y`$
p}G\
~ v")
{\6<
Xmew
{'Ivq
nxGO
yi/v
BFV*j
#!(R_
s"LT
AY~bJ?
4c '
V
Z<{L
e(3tD
-B0)7
NlN1N
P$>#
fW8(
h3:?
xDCf
fy("
BxD~
Jm+S
}LTe
sr2(Gy
~7!VA
R:9Z
8iIJ
y}9f
Oof\&
aSM#.N
SF6z
GBq1`
}Q#^
NxL'
EW;g
1; |{
"1/y
'U?9-
a4qQ
;V F%
dT<+
`nlA
ybO!
~RrQL
eIu7
iTQ;
f Y]Ur
YF |
YXG >]xj
J;zx
ciW ,
QML(
AJ9m
O:M*M
'=F!Q
QyDd
MTa1
3mf:K
evAi
kehu
;D3u
hJ'L:
GIk6t1F^
)l e
_k7,
eTiJ^
XN}:
/8!J
[T?k
v_7~3
-E],
-t?$
-s0,jj5
V8^} L
qFnM`
m/a<
?0AKA~,t
&u(o4
rPRx
/\za
@Mwu
3_d$
[RD&
YnE|
{]cx
!mi {}dM
&R!U
nn s
*g:6
>yN^N
JCF[
IwrK
bB0*
!byNGM
<5$r
/ea
V'??
d:@X
H9a
A@|+B
EBSl<
mZsS
\U'c
teSd
(1!z
>^T>
;2QT
+#Zxx
h`m0
2af'CAk
5U'-lR
3 su
'v}.
$,eR
V#>y2
PVuV
K41Se
/V5[l
:{Xc
ZsI[
: r9
L3q4
IkrBw
s\c
\#O@
77n
SX%w
3? &
mc##
1Q'?# 4
]%V}
Ipp?X
y##
O;Z'
Ofci:
I73^lg
mjtj
j ?{9
h l#
24bw
T]P'<
O=,T
*te2
`[w^
Tw6
9!mP
20CX
|'+$
s^ CB
Yl+~
;:);
mnmr!
a+Kt
N>xOH
#kI,
_WMp
NW!}w
y4PD_4
b1$@
!/}%
.l,SG>
\q%(
ba5kDZ
#>R9
#Wt(mz
wohJ?
I,u>
1TVt`
"1 1
rjA;p
`ceg
diMU_
^w 2
g0Jh;E
DTRci
|tbuS
vGto
{.1.G
p9rf1
N9E8
U=2;?b
0Xk~r
lc4e#
dvfi
E=il}7
nH["|
f&(C
[&u,
,^8'
+]Z,
jkMG
?hO4a4ZJ=
)~O#v<
VwG$
(0h9
w2L(Gl
V]PV
Z_!p
qibFf
]6_K~
o1Tn
B?Ah
[V9
N K#
_ 8<
l0D(
s!083
$)No
DPR{
<4+6{c
%Yz!5h
;_o>8
EZD9 9<*
=FU>k-p.
BSJB
z|WuwA}
Tk2
if
vqD_
`#jr&
zh-d
NXN1N*NYNRN
ygf3l
"d{(/
anCynfycrU
SeTQ7
(76W
O GT'
!i=
5^IG
2b0;
VmQu
`0?<P
P:WC
V#Q#
{GW(
#[31 u
hf\!
`Ji#N
OSOY
c)>z
.Y/R
@)NL
^RQE
/Yj&
NfN@N
[4A$
6@D
7-JfF
BZt"
_KrS
IBsg
x#!P#
<|y(=
Ggg
` ``m
1 U0
!;~@
]HTRu&
^RQ4
]OQ`
|c.4
_j
sa(z
/rsR
/]O%L
"o+<Q
EnTv
Ua n
W|zV
!%KT
a>WxF
IqrQ
}!OMBG
i!G|1
9 Dlw/
C)yw
);mV
1dLY
]X20
XGZ
<Iax
%Q*p
e#%
zn5O
[26B
`/9"
tj"X} [
/$ _Cm
# Q.]
NfNaNjN N;NGNKN
X5.
k(%l
k#z~
-1`7
s"vk
+ +$
j}N
OBmSW
NNN NdN@N.NGN$NnN0NlN
&d^jr
1m.v
4]`:
"i+
DPW p`2
nw~8
3v #
ZX,b
&=ZaL
gk9b[N!
9\PP
A hM7
Z8F'
]zvA sh)
)E{_
(IVU
uVv"
Y21n
zA2A-y6
W>2e
8p,C
TC?Th.
u9IF
i`/
IEND
{_ x
@v*Y
O&zi+
fjlo
:sA6
:;q{
?Zdk
sK#~Y
Qi^Bs
l:m~ J
solB
OJh.D%
@ ?=
6ECVr!>
|Xh<
rSTh
Z,fQ5
)_q[
C).d
^M a
*#k&
lh=w
N0N<N
T+ }8
d!OY
}Duk
?iR~
#DMN(}
]8AU
xxDo
B?dh
&~G$
4n2A8\n
oSO-Q
pQKL
5i qsr
a8z!
g|U=
hY
mZ :x
T wg
j5#!r
h%?s
X;OW
BSeY
o|Cb
pB*J
IwD%
+Ei@
" Y p5
/.mdq
P\}+O
t8'jYxhnU])4
=nzuf
]vAt
-Nf*
$t=G
D~[Y
-kkj
."ai
?vkw
* XIcQ4
-a;k
"Apu
[.N(%g
fC;y
M`tf
k02l
04<Gj@L
9XxcU
* ,R"
# +t&
' ^^
\YJ!
F16h
I>.p
NwNHNRNxN
d;~v
K/
cZ%$
=IA`
v,Cg
~O]Ic7
r>S
c3?4
=.O
$h$`'
_ &g
EF\a
5J>x
3XJ]
TQHw*Xan
8F`o
e#Bo
Mw @|
dSrh!
\"Bl<"
UJ>
`fP+]s
L' r\
\8bT|
oEz3
\< M(
>~4
4?dR
:K9p
| N.
(i.
20f>@Z
}G y
F6#W\A
\hPz
\&f9b
o{ k
$Ki+K
='$D
z_+/
LO/w
'^cy
,81.
=$+X
Q=bEZM
#|YF
c7Dm
BpC>*
={aK
Y_9O
]J F
ky\
\bJf
<O][
YK]x
ix(Vw
9rB/
&}BgI
.|6m0/}dL
1 o(
lZ=C
d5;->
we<v&4
v; X
Aa|l
fHF
]*Z*
\MWQ
]])f
HCw;
cmpc
g4b
n?~q
G"L0Ii
x\Ll
?b'@l
Oa:JS
p6be9r
F#hzg!7
rTjr
po) $
QT p
m{,G
{N^>
U1rW
p}H5Z~
szyk
F:CT
W-=-
=Mp@e
_0O,
N78{
6? P
{6j
5QOa
Km@Wx
9@cs
71<V
<kx=
.O;:
31?Cb
xbCu
ujl*v
FzE_
}CJi
>5?@
C,sIa
G?s"
bRSUh
_n_\
gKhHyD
5gp@
\(${
bdc ?
Sui;
ra(x
i?$Z}
'fq:
~nIr>[E^
[f.B @>
a2r<
)jl-
xy.{}
Gvc>
?aWG
*T H
& Kb
xcCu
jyfzc8Ato
#H /
'Nc.
G i:MF
`N'sv
h Im>
.W^k
i,d.
PJXR
txH]
~]Q\^
(%l2
=48'
3L1H5
I'b
uVdYK
Z\=L
RU!s
5\k7G
TW +
VbPZ
Cw+(
PF']
p$,J$
plO.
-jE*|w+
Enbz
R|1i
xAt4B
,+e6$=
>i|(
@^'e
bTw~
42g].
oLE;
HXD3Ahg2hTa6m
qB? :
c.&$
DX97
^`Nc
~yfsU'bj
.kU5
gzG6)4
|l,
QobB
|3~4
^Vd*
:|.:
4Z#r]
[D@9
jdVH
Kw4P_
p{ *mm
).16
.*S<
|7]!
n T^4
s !)!?
s )e
3WUW
`NDA
tOXW
>U2
APPh~%
z13 9
T$9uu
e{z?atP
~[uvE
gxJ\0
Re1p8`
,]:e@
-u#b
#Omb
@v^7
Wl[j
Rat;*
| Yv
DLL 'D*
j>a<7Y
w);;
>8+6G
CEc7H
3gDpC?
mIwc
L~XW
t <.
= #9
y98.
8? 'c
/^*bQ
a-d
4YWRh1n(
E$W_
k{3
Mi@Y
LLL<A
|s]['
-;eS
@Y{g
`L{L
-{j(
K}m&
,9.r
tK}S
:A`hm
.^^EPST_
4#Ir
Wp2hmV
6Y!A
GetTypeFromHandle
BS[/
\qB0"
|&bE-
gTD:Hm
rPls
d/:
Dfu|
asC<
}$Xzj
4Ax|
U7r
+;}9
0[=>~
p_E5
UlTO
>i_Q!
JS> xb
\&`>
<\09
>gvE
}8l"
~6/B
;X%6
0JN*
x<n{8BPG
yI$Q
&{4}
Ja@7&N
-n@N
$"[O,
JXmF
]njC
X?ho
|*[dl
#Xd?
UQJ/
X *9
6/;-
IU j
oS-#
lt Q
\Du(7
T3 ?
tho'
C($5
Ay8*Fz"
c@&u
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
at[p
k0x2
%8~I
e* K
Jk;%
o_ck
@3.y
*<Mr
}`y*
B 0CtOX
</b1
V$aM
5]TF
vs_gV
UTlv
=2?T
wsgV)
Cef#C
lskO!
`zoG'
,QgX
RnQA
>B6D
7 `3
r1miD
G!Bt1Q
]w^p7
dBv`
OIl7
ot_]
}d7 '
">fga{
:9e3
~l"<
QMiA2
.'H
ixFNmUfxoVY
?Ga_
Z7:t
j'1o
$ pS
`5e.42a
NUCp
w^~x
NeN/N
-ln)
yBld
M,9`
T m1
KF s>
z%1N
|IrK
4 yG. d
h KMmfSV
Fh ;
:6m<
ok }#
\=@
Lk@DC;
,pDf
S d=
yQEp
VJ>~(
%{Mz.@
J?hX
j8A9:
AhUt+
iz\_
gD{;
X a*
V"wV
^zA?
z<+eq
MA-Gn
l{6B
!Hu
Jxvc
^gZs
txv>
c]=x#
yQE>
g2f`
}N<~
MCv
2~_&8
,eVV
0M4b
1QRy0/
f),l
AsI)T+T
d'x=E~C
oJ E
\[J^
{z0F
!_
dfi}F
]3>7#l
r7iQ
'pi{
-X*1
kLp(
Gg{$
=~Dt
N/N+NeNrN
LzEv
2 "+
WL F
M f8
lq'R
g =<
keK
NpN}N
7g\Y=
J`9L
ov
qq<CYP
-Tlu
get_Module
/4
jx!*I
an(3
=9%
Vt9y
mvB
?|P[.
+E8Ws
k3=VX
;,HC
@+m+
e>?R
J1^[
qQk%%
]&7&A
?ezBDFR_
MTfd
ZP[7
4v;
Od-I"
aKUm
>8Ym
<)ux%
s?v5
Bi A
?ox!
nBd
!Yh|
BTTz}
W6 `b
m Q`
(.F>
-p- h9
, 3'
o y
9nii
F`L(
Sit+
yTz;
t[S
[Z{#E
,ah
&x]B
hwzSPPrwtNdke
LA;h
;7Uf$T
S+4#T_
_RU~
0$nz
&SpF
2ab
s!Ajr
59$Wq
?k9'
&4]|
-Ywb
H/C):n
/_-9
RBR\
z&oU
TR7b
vh_L
=Rdu
c~Y}*
/C %w
^ #6[_:
s=.zD
;Yr#?Gl
n+]=
}.8;
nxg9i
VM6jVg
?mO,
O[xS
NjB
?P, ~
6jX4m5
.Z {D
WVz?A
g;s
8CD?
:qf [
q.YC
g/1%]
=$RT
H\ -
-I"t
]jm
[twc
AAy
ic\J
N7I(
/p D
e@>d
U,$ a
0` ug
/1sC
%h!
"Nb}K
u?7E@R1G
o][X
R~G[<
;@8*w
j/Y9
gNGb
DP}r
wndE
LQKh
k+jn!
?Q"x
Hj3s
oy~<
;L(I
#o ?
dT4{
FB'r
G9[,
C9!
sy hF
t# R@
l :C
#s?]
3S,'X
[ yd
P7(ky
fUfW
*:8Bt
F -y
5oo^72
^5v1
_k?V
i68^
2'?
Q%D]
>%M:
`7[H
//E5
v(dM
6@L:>*<{
O#Z+
NtN?N
JZg!d
@kRt
s;<?N
6r^E2
xEc[
@@[s
^e;;
'=m.
YxGb
Laji
YF<4)
t8N/QQ
PE0C
? 1{
~YO`<
FLc8)pv~
OWs= J
<q?L
-,6;
xJ1
/.A#
SI 7
'gv p
pR36
~b;#
=V 0
CHFt
*ZK7
h$K2hn^W
ghvTl
?ur(I
\zF0
:egB
0l|
++\:
Cyzf
#yHXw
Ek4h
pgsc
WzM<
= 6
Jjx0k
H[18p;
^9r
;b>R
Y3&
y&,s
8[pE`
3a=$3
CZ']
7]T{
Ty~Y
Klh-5H
nfFP
eJN)C
w'q?
MznJ
A8HB
Oi k
x v:
] F
|a*w
y? k
lT! "
20K?
AlQ$yA
oE8T
uYz
41~ Q
cy8h
]3{?
c<.7
vly?
|B,(
$,/Cw d9
4=1%
W+yvP
j'!q%G
:]s
ki@!=
DBH
X~[(
<5 "G
!gL3
j`."
J&1
60t}
I;hV
7':p3*
. <ag
eHWel
GsY/<A
O\ (P
}-0={
l`Un&
_n='1QJ
Tp8!
aJFI4ukFafx8yxc
(mmo2
sk Ox
bL;G
8AJG
F9v3
w@| =q
F(xY
!{ti
z`.*
:u0lK
Y %F
{ _;
P >T
B-]4Q
/\6[@
@;jo
o(wM
gu>}
~Bz7
}GYu4p
U4O\
(?aF(
oVN\ J
(:jRR
pR o x
P6,18h
EW& C
V>4<B;:
Cx s
CreateDecryptor
g,]B
9pkAO
J+N"
wg6B
?_[i
DEpg
VIL
~Q*
YS8x
gUjbR[
-z L
:J&Z
;k9)/,
set_IsBackground
]]kR
G #L(
x1FB{
"RSz
Aq("Z
ff1I*
/3DC
N(t$
V#xf
6jS5_X
~G/P@:
WTptXJUB0ixrrc5ivvq
`* i
u8x2
;j&2^
#U 5e ;IG
007f
^[S^
ykTf
Mb%^\
'!: (
rqSp
r94GDzeashAU5x
iAPzK
G=)
N<N%N/N
M xo@P4%
a(!wv
~IE<]#8
Z4n
Ym9rad
ux b&
Y=N^d
)G!I
^ B)
@Y7vC
~ tk
Dw d
~lM`
\eJA
amy-
Rf7=$
>g|FI
t FY6
EZ!qS,
'i&
)G-#yM<"Y
(ID
NK?e
(P=!'w
$B!V(}
PDmb
=_+z
\=mJ
k]tx- i
9j.\
sO<
/oll
,[mi
.M3w
nlsC
[_FRU
^y'z
\v(:,
KyNM
x9-v(
k(}"<h
NK(1fj
Ftp0
U.|*
80MqfCiSIZF
YFZ#
zK^ey#@
aOJ<
Pix\V
$lk"L
PFao
}bDG\
BPng
K~Z9
=ofe
.7 _
GYIx
gy?b
Y~dB&
jQ&2\
6 g
)hh<
@v29
[h[Hve
I\Yz
E+\@U
\*#W"97
mI1q
9x?p
gv(L
%D0<=
c^9XV
a~/Cz
(I^]
+QU-
OQc%Iv
o~>}
/AiN,
yP1'Hd
A-_t
@R/i
H.Ra
FC>
gb6Z
$ S
N`NpN!N'N NwNhNXNCNjNiN
LJIGr
p)s\S
PKDp
BL*4
Yq~6g
^M9:^
%|qQRo
7%w+%
SHaa3
S/#}ER:1B
* 7m
93$N\t
Cvis
=xzz%#
r 6T
JNY>%^
x C2
) o6
@Cb/#J
KjM_T
D I
U n+
Z)9r
fE[.
Pns]
6Gl+
JX=|8ps
Z& g`
B<r<
%@/
Z#xE]
O }k
=w>=
eNFqzBdjNO2K
)<oJOi
yYYc
%'Gw
YT]_
{}KT
\9i>
8 q#
LHJH
V-FB
}L)P4x
<Tia.
]Z4aC
5mii
i>+Q
1OcrX
<B7_
J~j #*
%(?Z
gGf
{e0L#
781"
5P *
,BFa\w+}
q[{}]uNz
) p8P
lu`}
@#O]
KT(M
&! Vc
4 w$6Z
:<S@
YT)
xJ3r
*bW G
7o8:
EaA
&)F|
O`i@J nS
zw4 #
<n5s
&svY#D
3q'Y
8"2cd
{qwC
a-hweT
qR: D
nozG.
p,dz
$ 2
'AZ*#V=
"yc#/
Cg~#
YqSV
Mq@$
O>Uh
9Vi7
$|8p
)6Od?
5?f]kf
GB+Hj
aF)W";
nK~lIr
dxh8
;#3
N6N)NlNmN[N
Gu t
z;H.
S?2w
bz76
#|&:z
n$4N
()U
N#>o
Ej>q
.>46
.[8}R @
XJ%
d t:
]3gXz
A/k'.
=TA>K
Elq&*
+=q%
!Fl>
YI7~
UC?Fn[
s;sv
)l&c
>>`O
9vin
oq4 6
D'( v
r6bEV
or2'z
Q1 @
*8+4mp
%rn C
]5tN
m^}~R
D3)~ @d5
Ga +
FB@3
V=%^n
+1}
B0ZF
)#tY|
+"Ov
<<h'#
SPZ!
Hf&5mp=g4
W9+Q
+1]n
L|)r
`|)e
GnVk
tQX1~
11eHw
Kw^8
x<FV@
:mL%
q)h o
/>+HOG*8M
Ji3B
+tYS
5;%&z
}V- "
!UuU
jqe
SlFN
riBa9
< =1
0Z<b5
tYO5%
vhT}-
G;kXnu9
af&Qb
CQ "
CC5HQf
.6:1[k
?5h!j
FVtS
$U Ky
l]HG
Ts4
okGq27
1?97
k7MP9/
( \k=
oZ*b
'Z^Vy
=`6(
PtfF
3mQ\
[dNq
b$jx9
%%jG*|
az0%w
e:H1
~ Gb
(9_y!
rH,R
%v6#
ZPCXB
jrtOy#Z
J4d}`O~ &*
,V:W
bQ]G*
B ]
miy6o
j6Qw
'9u]
Mc/ G
`@JU
A#5O
6.f;E
eZ\2
*_'GK;
mS]"
@rAG
y?rAN
y.Fp
],'I
{ZA
gxo_'
E5Pb
8oN+C
2K;t
*jpIc&P`
8F]B
P!~1
;:H)
k3+*
F~W\}Ow
u^NUKL
tlO;
WY{ e
5'1'
sfy"
"09yq
'GFZ
5I_c
&:HabA
<6"RD
W@ysH
Hyl)
&D }
Dzg(3
EKdr}
7</
`()m4
!>3f
YP y,*7okb
\ Q9
uuFE
jj b
C WqE
< 0y :p
-:{(Y
/(k(V
g!< k
8seO
P2)}
|>Q4
SDT\\Oz
|I_
m$Du
5lv,
*BK>
NINMNcN2N
CzfQNWq366ACQf
|0_`
p#|t
vR~5^m%H x}
Rxt+
|YDz
f_IRFv
5dNE!
;/;
4#Af
x\!(
G| V
?a6
rGL6M
HCBJ
Wa]U
qK!4
r`#ko
w }9
NHNnN#N
+fU>
J;4q
+-+#
mEko
xbTj
.g^CM
O0w\eA
<B@U
Imn46/
ii`B
Iro~
cqtPb
6:@
yG!;
=) c
Ie__L.
]CqW
-76
utf
s%F,
4*
NjN-NXN
&h.'
~XjbL
G,9md<
45 3
I9sV
QF]q
Mc*5e
VMd(
/W_A.
MR f;
z:.?
hyrp#
|5|h
eQv:
yo/
>6%"
C|^6^#
k&?p
{59+
sZT&
MCt<p
@d K
.}KE
y~ _<
UqHi|
M&tt
x40:.
(^<\
H=<N
I7\Sb
1=6_s
^${8
^%hJ}Ap
&Sj>i
(i{m]
i}<m8
8BGc
#*hi
_^M\
WMT{D
XzK[%e
gzex
oM0)
6@m=^
us6
Jk34
#4`^
~J&$
+W?\,j
lMk%V
eV~k
Oj)*
[+R<km@
o,J`
7bg'
@:nF
wOR{;
`cJD
ejA N(
5)c!
.d,|bNd]
N_Ba
S8n7 D` iCi
2/1r
q.&5
oX;eu
Gy.*6
=HjwJ
@2CX|%g]
LKVMU%
pDpG
aS:Q
Hgx{
\!MQC
Q@j*
]gih
V/A]
bdYA
4@f1*
-r?x
6-u(
gE{b
UL~Jyi6jC
M^`oA:
Vg $
Vg '
eyOs
[CIv5
R?QO
}xK,@^
C]]8
E[aAgI
/)Qb d`
TsFz\
tV`P
G gr
Dr5i<
#Tk'
B >C
P1 Z
L[^W;
@ :*Q
t3u&
(6:L
?]9z{-
bxE !
A&
<|{=
&( m
e-n<"I
x3A
1WQ$
7^+S*
Kx/Q
i7c8
RPjI
Lo%@
r6uVbd{a
q[1q
w|_)
9a{w
o$"&
mqL!
*HJ
bBrE]?
Ibc`
|rOn
~E,u
B% (
<bVg]
xfoAy
tt7g
}~Yk
% Iy
POl-
FQ]/|5
0E[DVj
tj0-r
"BRY
0d>Sr
M[C
=g"]
W v{
G`*]
pfG 'u
%F.#
O1kX
Th69
4RCwImGd83g96lvNk
FIC\
_)}
x@x0
tT b
7RcQ
}v[cH
28[z
l*(p
L>Afr
F8xUWJ;
p.Bu
Z,X
cwse6W[
4nR
6@83
!"/<
l%{p.
z Qs
ch(|;
%I%
kN>`
{ WM
&\Hn
_lZl
A3~v
g\^Q
#A8A
8u g
uf<mr
-11y$
RF{l
/FY\
FWH'
P%+w$
EQ%s
B7[A !\H
usxTcC3AgG
5q/yrM
%c V^
/{8U
yIe+
;h1
=R|
Qq<X
]jl"
vO:izi$
"HzzB
Y <=^
s-JIY3LU
W8
Zqb;
Z&ghU
RGcD
-@pr
w< ^
"?AG&
`Q)/@)K
@Ky* 3
tna$0
?i VZ=
OM:I+
BJey
K h>
ZC76
j[wI
6\Zo
-_qa
OY\v{
@Raa
'Cew
l4Fl
, >V
Yl|'
+3cb
,D|l3
&:
-j9)}
F3$S
0\Xt
D/Y_
+vKC
# >>K*
%[1^
,MVE
?(2
L~$IR
K)^0^
O=W
YAa
jaA[
/P,{
o`nj
8`C
L=Xb
{3R 4
y\ZR%
; ]j
S[)V
lAo.
6{othVi
C'o('
vOWPD
Jt`<
&G {R?
yF\2
<_hV3
RH5-4,
rq_u%
yEjc
dt!z
n@<o
3}5V
[VKPO.
B,34
^^Ke
mnW;
Yyw$
4|I:
%2"P.
Sf ~
QRYf
}L'<l
0a13
wivh
NAN\NnNyN)NAN`NjN
J+k;
*l`c
n6u#
-W'x>,
x74
y @j
xJpbv=
RdcF
4 $
e4d1@
MethodInfo
.{ IrI
=w|P
"Sf_
KXRXmAQBdyf
v& x
muBkv
YmM@
v ev%j
_3$
~o<J
Im A
^Oj0G>
!4c
OpD@7
}q)
~`>
+16I
Ko|C
zQTS
o9 P
g %)v`
H*pT
m>8o"
_v}(w
5@<$$2
Z6v7
&)7Gh
U-fCo
3w 2
P9R'
VhnK
mJ(+
zm}o[
;S<8h
/k'RP
G@o+
N6NsNfN
=2|q6T
gj<]
5/DvZ
B-%l
L8Je=
;4=<|
8SfT
paqu
A^PmQ.W
6R m
EWm0p
4X>}
YKUT
Concat
eLHP%aF(
pSK]
IZR0.2g
I R^
/Hn_
'OCW
0[}j
*WdL
EEpU+
'\~U
Fw{oc
{A+t+
.M\.
b2O*
0IC"
HXoN
ngH#
faLa
e&5f
J-Fp
m'b_Od
I%1h
*#0i
eF_3
zw-^(
Zo$"
"Ej;
\H4S
8^B_
?hCbN5vE
53T~
k2q[fx
z"5c
: 9/qnf
`#xHj
]ym9e
,Cvd
+!![ J
k-<_-
Cb$<
|* 4
Vb`
@5xZ
J2H5n?
`*l@uL
yYmfI
4 'vQ
7j;W
1kY:_
PH2,
7Z?n 7
O6U'
4 c0
I _v
*b0^
w`9Q
Iy4nu
"RK=
5 S
"SCB
{P+gb;
+ ,#
gINMUQ
,zJ:^A
c:H=
`Z"O
65g|:
=s{ CC
wC]1
&Vtym
Z37J[7wk
G2 ;
a[f)
pyl
!u 6
v W*Ww
s*>)
:/}?q
*).o
]'lA
eiNb
/J*D
K7;o
C]F^YX
|\]"
VB)4`v8
t:lp4
d"hW
(b396
i 39
A.=v
*EUv
"IG_v1
oC#5
RT_g't
K z7
K^KB
xB0L
Vb,@
}U0X.
m`7)
eQ([q
V;<?
=Q/x
.{2,
wD[=
fYV[
^jmo
%[kC
@FWcwqPZ
<p/:;
V4;9
Ilf:
2bL
(kc
n'5Z
J)(,
TdV:
y}^NW
=Qz&
h[!:
uXh4
/\P0~
yaG*7@
#aXz
aZz}.
P7JS
`".mq
fV2
LZpW
ftE~-
z,K~
D@#l[
hX*#
,Y>B
.& [
W|?<Pw
pGf.
7nok
.;x^V
C$GUn
$f1,
5(2
=h<K
$qg
sRGB
PGuB
VE84
gOmr
o`4\
w/ (
szRi
GJSdI
m <I
yUuF
G%T{P
/N~Z
7W{A
d6:lE
_VR9
*z!uq
Rc"7
I_^T
DS?>b
ZAV' -
o}!o
8 g
( dxiB
('*h+
}Bz%u
8dv&
H] L
tX=t
@zKi>,
By`%
%Q9H v/
CxGXJH
/V 5[
2s5N
;VTPw:}lE
6Gd4
^} ^4
T8#x ^
hq83,
E7ke
/Z 6
-a+!
(`t"0"
p[ s
XfI[E
(fhh
7%Yt
fGNcH$
o|s(
O%^G
oVDd
H#e[
H]\W#
yeJI
bG[o
LkM,
!o#[
0DS IY
iyi^
Qe?L
OY]#
(uDdG
1uxp
=?Rw
5F,_*U
Ad$^
Yg+1
hc,I
Qf32
'<W:
/0EI
N N+N
Krtr
$LUo
h8,>
=H-5
| w@
=V\n
,8W
d\36
V;WV
r\Yz
((E-"
Pnnzz&
~X-//
NR1
2P-2
O?zW&+
:fI % hV
9[j'
#8x@
# `+a
'J'e
!~bS
s_$@<H
5fV 4
LCD #z
|dPec
$7mz
]K
6gdI
nh [
N@NJNTX
uv]P^
t=UR
/9R[
Q|=B
8b%\
N+}Y8
J[^
^+ \B
!=5Aog
Qsjj;
P]1b
-!3+7
=x j
7(!t8
>i?3=
wNqK
dT{X
*u{l
5l,]i
()]e
4I?+
~!}2
F*n+
d54G
5*!x
eW^]0
~!}Z
}=$v
aUcxU
{pHPm
znnL %
aUFY
dJbE(
bT>c'
[+ _
()]6
boSY
T\ C
Tl?S/p
hy]3
G 2h
C3?T
T)+ J3X
T( 7
'S \
kkPw#Mx
["n2-
}9M_
DSUo
N&NLN>NTNUN N
j;|h
1CHVU3sCZ8
\F7B
)2 M)
fvkNo
bX)6
WhIE
KRi:
KH.(
?S;
Xrda
s8{s
?8VK~_+
$"r1>p
y2/c
KqN3
2t'H
y D
zG(g
Rjy`
9K72@L
'f4\'/
ad_v
sgH ,c
Y&}6:
3jfU0
y8>=iRu
'E4{
dm`;
IIQf
hX\T
G]U3
V,9?
uDh5u
`h+k
iCwUf
X$N'
o'bT
OZke
SCyTcn
o'bO
782V_
p=W6e
[r|'0Z
|fRkSm
?s``Na
~ST}h
K uW
9S1L
FZE
+?zh)fO}
0ahW
naKy
w. T
!fdh
vbC
S`Ow
U{t.
8)L>5
no!8
JS8|cZ
z-INj
]XT@
t<vA
X8gp
] tw
bC%3
Z82CS(
%@[?ZK[
kSq
%'^Q
*t$"
xBhFM
nO [
@ pm3
j:y{5
#Kdc
N|N(NfNCN~N%N%N_N
.'mT
Z]sk
`QmQ%TX3_Z
%?3X);
j_J
s-<]
Y|g9
&`D:^
dq2+
:!ft?
]9}3
AkxJ
@3{u
79>"
F8\H
1NH4
tE\0
7:5F
U87"
$A 3
B (Y
WWV-
@'T-4N
4gNd[
ne0:#,=
Y[G<
oh-@My
fFQ5Y
h~T;
_Foqv jn
Sh [
wE){R
~5 t
Uz(q
o.*`x
~NU8y'
T VO
wYK,
K79 +
Z?0=
sIvp!
lZ-
,"+_
P1.U
&&}[
JM{CN#
)H.P
l]*j2
9_J&l(
7I?F
k7Pi
$T12
{+F8Z
L|He
\vSS
O+u|LI
K&_O}
[C+%A
|>%mLwJ
f&AI
LJ@W\~At
Em&z
1AYm%
M:/@
b{(3
@N"^
I *]
-zDK
w W0B
~# _
O}X2{
\n$y
0qrS
Bt<]
TYO3L
BU=e>x
CqQq
i!B%
%gg5
ZG
&Kt;A?
a=w`
x 040\
^ZEH%?
!*r b
|^:)?
B+6V
^xY 'L
7|S
_^
(1N=#)M Nb
:R(A%
3h/P
iW.J
00n
kO-4
_ H4
y-4[
-K[
nTR'
P_B"
~ O
(sxA
m,2W>
'A*4
V2Al|n.?v
@8eW0?
5"Ji
Sa*X
P,~[
#NIM
UoRGN
$ KWhDYu9
Ag/!
Gpf0
d~Dg
_@)#y
/fdR
oqlE
mmg@
oqlU
'l'cF
}_+X
`(\b
Fn0'
04WD
fV7#
VRfq
Oz,E
(j24
8_h\t
&ZG:
j}4>
ps#O
I"yMj
l/OK
BC6M
=c#4"'d
.~RF
-5hF
@Tue
_N.X|
a>4a
K+ f
t$x)
o_S
\*.5v
uqxOG
NqNGNcN1NDNVNjNYN
C;=|
'3Px
C@ H
tE7p
_]x-
IohS
=!V4
o_Se
8?Xt1b1&'
FteB@
BJ@{
dQhg~
Lr=`
jhS_(
)KDS
Y%!j
$2Y&xi7PS
~%6
2g8U
Ezms
3VTI
bj4^
wZ+<N
r__!G=B
RX(nJG
R5 y-
.W#
g:4
Gu`cm
vDv~q]v
? UO
/ &f
b m!t'
d{ 7
=[e<
z1/
^3G;N
%u/ O
1<V!
8Cq-
fkS3H
eIH(
id^
M@5js
,"L2
Z^$P
M\Kx
?f T
d96N!
T2@f
Mn\1_B
$mgv
iP8VIc
LV_jM
k'z;
)EFXk
F 61
r8Kz
ar`j*Yv
#`I}6
,G}
R?I*
}deK5g
6=rW
1rRH
y}l?
B74kh
;4Us
Tw(^q
D8;
l=sL
.!r|)
XU%]
HdM;
foBl
plLw
9j gN
AS
0na
~E$d
01xf
!ve;
(S3a
;!8j
R< D
U:7P
Aca<*
j)/vYt
\wv@
iQNpj
G.!]8
hl=Y
+a-T
j/&R
War)
U~ 7j
+~|9
Wqq$
NMN_NjNhN-N
OGL`Z@
dY
\~4+
N=,4[
P~O-
eUST
&)*}
p0OC
BO?V_ U
POdA
LF:_
ssAo
^L;iY
92W2
{x*tS
S""9
>D5O
<$Q1
y:OA'
yr6mSTyT4t2L
I*gNyU
=Vb@s
UqAE
)nY0
nQHH
hA ;
'ev5%
UdC$
_7Cu
Q\>w
bZP[
P6V1
{Xr (d}_
9{cR:
.I68
PYR^
Sidu
dh ?h
?0B4
4g.}
.jkO
{?aJ
SkipVerification
USbw
m,|i]
SdJ8
l ;^d^
3BQL
nEZk
G;41
'<]F&n5
@r?+
J#p
_I9i
0fUU
{[ 3Cp6
Zy.^
I24_
!BT)
(9 evV`:
.ksc
xtDU
<ycd!/
N3J/
$TcM(
m &
`n#
Q'^_
5\E#
M^@Me
D NAN
uN> .'
#' T
EgH~
zJ\Pu
M}(E
m|?c)
uqe=m
A+5?q
=K_G
Ocvy
* E-e
?Al;`!
?{tf
-x 1
vlT'
5\EK
5RR5
82M:
CT%)
lM U\
3"2K
F9G7Xl
vF{Y
<we/+
#" !
X-!
m6Ew
gg~\%
m3O
;NdH
j"#xp.S`)
z[;H
GELW
]~<e|
p6%ck'
4Gg'&
SC5P7
[v]4Os
<' e
LsVC
YC'_I4
RZ/C
lPdVTPICvrSiev6P
as}.
$\j*X
=9.\
.WJP(d
[|_S
))q,M
X1
]S[
-t':
,w
Myn@MK
:}u-
NrNvN
T7zEH
5 :^RQ
;WH*
7;`l
_^G{;
`>Vr
(1Ij
wO+`
6tj?L
I3pGF5
udY
`8{q
1>v&
~czm>
ZEh\
`l+b
U>lg*
$c2
!Ti
.`%|U
53j-n
q&2 B
plHj!
:.*b
<?QE
9IA-
:v5n
gu\YS
Yv n
"m-X
#8.SJ
axt#
]!U4UEV[
?>(l
* O OO
1[`7<9
Bzfj0[C
LW W
>BP\
}FRr
dv$
*?n
N%Ja
d,CU
%O(
kjzo
{#kL
0f~{
A$g
FoJM
vd0pI>s=
Ie]w
+ak,
7LI_
R)`"
QqPkI
]@
4tqMm
x[\&
b p u
0WA^#-
ND$r
[!)/
\X*E$
pQ9~?
liN;Nly
Z|"FX
CRW8b
+ovj
aE!#
s-e
g$EK
3>cw
hw:O^;N
x{BO
D C1
u.9\T
8]|;
kG6[qPn
`N=Y
~ND
HXw]
~\o29
JW'f
^nj@=
|UiI_*
\ xF"
)s?^j
K/ +
okY3
^dva
YvA-
R/ B
!e xb1
s[c`
1XH/t
S\Ue
l7rW
zL,7+
so#^
3J6S&M
4@=_
Cmn)
O7!R4
-{)b
~1dp
Gn2H
Z B
#55o
q3lw0
SEC
oGz{
V6q&
Qp_+
]C89
aDwt
"v pq
!>w%u
,su#
Z
*j&g3 6
;"C>
}!cO*24
rgi
%t*j
q{VF_V
kuKBMZhyM
.;|"f
l9d_-
g[d4
"B|I
zGj;
Qh0c
C\w")I
"w^b
far_[
gP%?
9Jd9
Lv7h
Jp2_ i
1.
Dv75
57FKh
B6_
:L9lO[
gOfAA>i
D46I
8V%_qz
UN4j
R G:QI8
E @
$<7v
o _'
7l9R
`XYM.
D#rU)
%YlR
~m{lF
p4J5
6T G
[Qvj
A p]
3*i0;
dJor
EuZ U
V+!O7
AM{3
,/e
oJ9 'o*3
M0ge]
E`s|~
kk\'}M
fiA1
+ l#
9 I7
.qcz
s0tT<
yI1=0
+Mlx
XS<.
_9Td
S"m)e
|'6R
F,_k
w<w:
sHYq
eJ %
aZp[
vB55~}
?7/I
%e "~
B'iO-;
IqZG
2VL\r2
oa'nFj
^d]\[?X
w-zN
VirtualProtect
N-1%0n^
{ln5
/k5
7nwX
FAVj
m@sW.Kr

@E y
3]w
4xy &
6XN
Ld 6
fjt*
##sX
l t+
ZcQt
~%[
PPhd
*;pC
.RBZ
Htj(l5df
)aBh
1 .m
nzt0
cBrq_
xrEC
6u"G
#Ex
F3N YaX
ajd 6
[T]O{
NgN NGN
D2E!
$x\y
_d^:
}jl}E
0s;s<
AulWu9
inOo
\|2:3&
' hF
k_0v
[GhXb
?vCz
'm- Hw
8 A=
&;~TQ
V.C
[Bm
7bn'0
ad)]_[Z|
d>*L,
K5XpUQHeqT9FzGTJ
';aM
GV@r
29wxx
kt%(
9 'Zl
XKT^D
7Hy,
)cg6g
ei9-W
&U;7
5rU*J
" 6p
~?ZMx
@Pi:
O+-J
=6K
)K7D
X_`n
JW*qr
igf$B/
b68R
3 8=
f\wR4e
`C@I
q&b
BjhE
B8#C
C6[y
7Q5/
UnqS
\4:.M
YkuU
}`c%t
h J8
N!%E
6@Yw
#Ml<
"}t?
/I"V
^R^t
o `1
_p#05
NNN|NQN+N/N
a,fB
\Yp)
j1X7
[jI]
vht
\W'p
l8Rv
\SNP
Pex^~w2
Et3
kDD7
zC]I
}<[<$
9}!
8aCy
dmrax)
#p_"y
u|g
(,v)
7v*bi
EVvIu
ta0]
:f:o
sjgRgW
3q.T
$b=Du>
`[&"k
H$UV
G#p9;
%*N;
J-n\
7X 0
;oct
dX6%
!F|P
F3>XZ
vv0!p
1/":
g+.>\
r"g3
"|${M
AhSU}39}
7kI#
#GAT^z=
{4 p{
?9P">
E$S}
"i.Q
R:@
N#NnN:
cXH`
Z?WK:ct
d5 3
?x IB
`ee~]
M1V&
IsBB
a8yC
GOA1CA
O 1q
g7pD=,
iO ;'
:~#Qn
CnI|Jf
O 1o
Show
(eMa
PR\
y 7t
:_ ho
gF8p|
2j#B
iu W{H
- #tv
L@?#\
&aX<
cV
K6q[r
!ml<Lw
WH+H
!J;h
q28*Y
o*,3T]
5VL{M
A=47vY
2k@R>
Ju`Mk
C4]tD
9fH %
BX8mu
04*6J
IZFm
Y3<DJ
MDi[/
aBG
)\@Jo?
R`{d
eCKoTTPvzW
<=8B
8[G>
j+id
ei<+
eUp{J
)=Y
@b_
71$?
OcQ7h
\Zaod}A
v,\|[
o2adY
s? '
5HM!p
2o2m
<w<j07
Eot
!Od
46uf
fMC[0
Q3Ny
wf0v
li;
;A,-
ID/
hJJT&
(N<o
)1f_
;)Q
PM6{~1\
?T9S
R(=P
HAp,w
rBa/
ND*,7j
W YB
X$`xi _
@xV z
N_9d
_| Y
s.,!ye
o6I
MZ[m
Q2PL
mE0U
N>N<N
>'P]?E
kH WQ
o_>g
z%E0n
,]El
PN9%`)
1R?v%:vS
U"p L
)blT
J5x
J$s~
hmM0B
9MLP@
I-0N
r<DO*#
I`sB
+w Jq&J
|GVn
wbs<
b {$
a^e
&t*e1
[Pia
6 *a
<8bA
xhb3[
>~1$R
e qj\2lWwP
HpXV
?S+V.
heIf
}['T
:wZUL
C:J@
!5 R
=N*Q
+&ib
i^ >P
`g"c?
tEJ
9g{?
WJmt
Eg<|
Jxr3
wYi 4
F.Th
b@s
9,s!
J BZ
KC^@(U
Xrq,}
k!ePl{v
\FX8
wmsr
9cK8=D
qhpB
}Mb]i
}Ma"
SK,;
bO7Rr
+2QUjID
HSuW
~6t?f*L
,Z0{
xV`f
>^p>n
QB6=
cF|K
k1nU
) u,bto
o; q
n ^x&[
05B
1v8Q
M+EM]
JDq/
mscoree.dll
2rmDa
Guqi|
d}Fc
Qw8_
i!br,
>&YTP
x.B
NlZE
0 ^'
/$ L
. 3s
8[Z%
BG{2|
.H5_
zS%?
a%QS|&X
7O4
".8G
E1)8`
dC}%
rf &P
0u)\
]jT*G
|ESM>
b]* o
N5}G
IBk@#
`]\/
0QCwQ@?
"iH\+$
[.P?
Z q
ShIkW6thLtRReBZhBd
xLF2'G
#\ a
liinWn
B3t
Oy7\[
qJ|MZ
)1C"
Bp},
|F9N
+Hbc
*'Y7W
iC9n
W]N+O
#(ke?
SvH
a7:;K
m0)i
}W?6y
_?4
bs-
[!]*
rrB2g
^v5\
04/\
.?2A%q
ct*+
S9UedZ
S=s3aJ
C6K"y
RE.dx
/Bo1g
^(OG
B*WaC
)B;%
$qd
Cis)
]Nr8
;DLf
YV\9
@fXe
W$)8w-
0fIJC
wNCj
`dT`
2%fvT
H7#6
,McU
H7#L
4IC4
ILuX
}\OZm
(h $
`D|T5
/LK;G
+v<!
Q /YBg
*;!y
1ht)H
-5vXTs
=upe
3WU{l_l
Rm+/
7Yy%
K[mJ
~VP4 ~
kKYC
3=:^
t&\dz
>+ Op
2;5~
CDWz
gQ5~
wPt7
_r(]
M_rw
!i m9
\c|mT3
r`Hs
[P^P]
/oW;sh
6HV%
1K],
FQ*1
Phb
C BI
PqN5jIOhj6ITKxVEBRU
#On~
zsz!'I
_T'u2
s:L(!
;rdQvRm
J;?|
=9 ~
191IHP"
JQ[Oqq
2P^N#
@xMPWbJ
7myP|
|XT
BH H
wJb=
FEZ
%2ce
rUZC
`V9u
Microsoft.VisualBasic
SU'*
@pm{
71^)
"yHW
bR
v3k72DXDsdnwAjGHw
r w+
LQA=IS
10(a
%D_r
Ohr^
sjXu
0LZ;
ZlZt
2dySW
TG>%
g;KA.
zS@n
%/h.
E Q
1` e
( Ak`R<
Rl~s)[
yu<i
%r) 6
y%_vv@
/hLz^
112e
&q9`
4\`Z
-N_I
} f"d
a c
'd9P'i
gp2>
wUdy
>zRV
1\6"
< -
gV;"8
Q^g4
rD8`S
XSPH
^OyB
'm^NI;@x<
yCw5
1Tzw5
~f f
UN^>>
q~k&/)d
X"]i
f-M;h
38b6swWvz9XNAl
.mak
F/ oZ
_~Db
^xoD:
I88/t
!~E^
~dot)
sClS
z:;g
SnBS
7*8p
4] d
:|L=
o{kx
kw:"
fJ2:
L3*5
lU[>
4<6N
@!}R
[i{w
r6}+^*
!5Lv.{
J.8h
bC]u9
lD>b
JOA
,NM(W
PCp\
6<7f
taAt`
'3=$
m~!P+1c
zXe
VJq@0
iAu*M4A
Ol6R
%e!azU
kH<,
zgch
` Qk
Im-Ae
2biV{
@RQX
: &t
dR x
s\oX_
USj=
_` *{~]c
^HxRghk]
j`}M
b E5
I`=c
,yNi
V.yvV
I`=v
Q|\J
o 3;)
v;Cy
|Qll'3
Jz8%
Z82E
\A#^;y~
|e 8}
vaFk
l>!'
?97P
7)>$i
r-[A+
"!p}
o/E:
9:jW
F J
HVlu
<S+p|id
7n r(
'l@]
thz
,~2m}9
ujGoN
?iZUc \
^}jP
B*Pj
|.6p
^<n5
to&dB:
Attribute
.S2)o
mO[
'Z[h
jKhN
Wu=0
EPIL
a#Q
,3Z{
59 |
w/D
r Zu
If/K -ZcFQ
tc)k
Y^Dl
9.-j<
*.HXr
oEP9f
3n/h
D~HlS
w|Bi
tBA-
Np@N px1
rSq
`?OZL
HdRy
1,e
tMGD
neO%k,_
J}Dh
TzAG
*c8\u
Z j
h5HX
yoqg
wcta
_,//
>q{lqk
_ z=
\aIvkL
zB6#
@ZY7
m9g6^
xWkr
&h8P
jX%F
DN ~6a
Okul
6i"(
$U1l
8#4S
Q&Yzw
F>+f
N^95
G/ Y
n &]
?4>P
r)?|
OmkE
l+m2
jW -#
T7n e
}^ L
@&8Pw6[n/j
JIp>
S1%Y
dTOB
?|Z3qv
IDAT~8
\m\6
}[UV{
Z??tA
A _]
jc
zYE
nQW=
AYXi
CVsz
/M"ln
;Q&,
&11'QXmqL
Q_&<
[ ;V
p`}+
um=f[
$j?r
y2<3<
)CiU[1
W?!h
3*SM8
u|%*
6M5n?O
&>lE
q(c>=K
Uj<.
8e`{
6v
4M*y
pq.`
~N!x
&KN&
{-@
DYD`
+hqgy
@7cO
X&UB
DYDU
*mE@
}=[8C
+,c{ZC!v{
N ~)
_J_
dXp+
H8 s
O8}G=
{=M8
(7 ^E:Nn
![\R
Zj90
Y@_]+
2[!p
i6%Q{V
T`
jA-4'0
YB[\VJWxbYp2
g4ZJ
'Y94
RK/ N
#|n-N
x,m5
>(_8}I
mxQX
~>kk
Uf{1
c' &}p[
^Ie8
qkZ8
K6cWMS
C&a5b
4Sgf
f=6d[
)]\5o
O<r'
Is^cR
kn"@ev
w=BG1~29
9x<x~w0O
nbTW;
F. $
|)~nr-
8ms~
'xqh
NyNVN
.ep-
%4< |
PT4%
U_;%
z(7^
Y`*8
OhHT
I:,$
Le"@b
5>',u
CB-0o
2 @E>
A'k,+l
QdC{
C*n`
J|oSj
}/d~
3 Z1?2E_J
>PG2
udO#Hd
H2U+
Rt#k
')N
O8QX
TB%K^
f71!
C&gFK
OU7eF
tRmXN
%3i
&,L.c{
(}1u
^c,]
mV]1-C
Bg h;
zOy2)1
O1M+
h*H*Z
IscOo
\8E6
T!_
P&'n
?N06
3$|=-S"
kRy
BT!f
j, 0
S!;I
IR('
D(XO<8gr
V<{K[
P:]D
__W]@
FZQ
O &A
afHJ
Vh{,
'RBW:
h)2)
srAu
DrWi !
HBF/
Mu_;=
t83"
<@Ns
A9_R
dK_4
bOh2
~Yw
G@zT
uCd2
aO~`]
?X'3 %
:TFr
[14 K
uBbO
F3B2
&fF O
f ?E
hm8Q'
9M34
xdCE
pt\)
398;X
MAh&6
R^($
~=}_+
K&YA
f>_E8G
{k6C
A\p0
fzm.
0;Pm
~x bi
4^Z^rE
l ~b
Ef|L
#T,4
!}o=
3N<6u
^UO:AC9L^;
33U0
+o='vb#\<n
a@+=
mxlv
xBFj
yEkLO
))P~
&O@3
:h^z
* :&b
z[iD
?49G!g
{ @'
DX2kk
M+*W
oMVri
\x~W
+eIU
7C9y2.
>h'
O#x~
?!h}
O#x|
IZA J
DZM}
!$r'
~?91
yk`eP
l_u|T
f<77
CJVxHicHobPY8g9EXM
'&P9X2
O=3
Vt@Y
9* _[
X0 p#.?
s9 $
NsNdN#NL}
Y6P(
{Djv
@k0}!
.o/zi
v_B(
NX+D(
_R'/
;Mc7
h\kl
E8bD.P
NVNkN
{*]A }
fq!p
&9,m
2a/7
N;;9
.O`
*cV?s<
T[^y
+=%gK
p\Qe<2
5?-%
g9HH
8te[
h;3?
?o#!
zCRYoM
sYYzK
W2hHj
|fn
rQ),r
]= ^
g%)I
=i}9
^>{
Eo p1'
d_(D
`vv~
+/W?P
1"ch
eCCqh
'[\
ZQ0Q
"*Er
hpX_
ufJ
bm=DM3f
v,#p
% s
{}#d
tCc
1ZUW
J @\
J<Mz
"t?[
/A"R_M
hy~2
\#q1
6#S9
@oos
LBcI8
-(KC
ewbm
N NYN8NhNAN
4RO7
vC;i
Psa:s
z e
S,/Mz?M
+p3- N
`G+M
#VVa
7 >0
WyJ
MH6#"%
eP"0
-[QvKz'
F~!Y
System.Windows.Forms
3tg&
%*i:;dq
:v'^h
~`wy
_1=
S ;v
KXWM
RCCn
VE7#
S~.6
+q&vW
"T}
v> H
5 kK8$
Nk s
Y 6n@
U]xv
Nq4GS
Frc=
g@yl!
$3$"
I9zpp\
,^.v
bU$p
]J-=
#ue0
:V`+w"
ch@kkN
ConfusedByAttribute
<pD(
)U)
Bw5v
wY "SZ
N6NeNFN0N
|m!Bgm
8:IUk
g>m7
!>@*
2a;@'
5d}Q
RJ3"
C:oS
M+_Zsc1
(P(p
D 0G8
z|%m
6e:]
9q.v>alGf
EyaE6
orpqs
|T/2
Ac![
`|By*
<Bpp`9
C%cl
1X v
i]##6]
?iO
X4Ky
h$O
TLU|
r`{)TIO
dbZC
k$):$
Byoo
5=MZ
3J{`
pl P
l:Q0
Ts7Yks
b (
mzf+ z
op_Explicit
%VcL
7v$A
TAaY8*
7v$z
!pT,u
cUpM}
=!>
AS,U
R0H
%6jE,
3MN^A
)e|T
\g7/x'
&qMe
/9G$#
mBTLh
=CK<
O{'U
TjXx-
g_ji1
@hd\
)$in
@vpU;
If..
c$h
(y*J~
2kyG
9"&X
!crTo
uW0
VxZX
%>r)w^
];`H.
d=)D
QFjK
B2AE
tVdZ`
`ii
m(0j
%IW6
v,Dn
@/Ho
L.B6
u9AoL
7*j}M
E{Tc
PRM6!
pP tq*
y5|{
>93{
`$%(A`J
X>\Q
SGu7Y
AB%C
%RCp8
HB2N
'8-<g
*~<!
lwU D
H0^z
R7 }
JP@`
#Blob
{G2UC
Ue?f0
lPwJU
}/\$4
Vop[
+a A
1N H
sv:f
QP>S
x h\
t_UH
yg"H
X]|(
yrfd
H5wFo
W2+/c
0C,}(
x_ N[%
S ?T;8
J2+lRz
]t2'
,C-e
Eg4e
"&Ng
(<0=
/\iBtpT
D ]-k
N>N$N
.*3\
PZ}+
;#4/
yAhIU
g Q
j #.
?w1B
rxnU=
y m!I
lk,x
jgQq
W{adlu
VHJ[]
@[?m_
@L6d@
.s=']
(Sl@n
f7hYfqXwQcW
`H N
~,z7>-xu
|I7
}r9N
#?s&v
DuI.,
zO{z
hp?z"1Tr
_=F3
7._<_j
5<Iho/
Ga%"
5\Qk
AUeh
%5aT
x%N3
2>0 2A
NvN$NTN{N
#!he
r^}@Cqb
1X0
E9OI
[j1q~~
JW>2
L'g
NgWyp\4
>!hf
A Se
G&/+
D}RAW
y;j_i
R+rP
(D3T
Y) Rwu<+
6P l
t/&w7@;
'[#[f
@?r1
}y=y+
X>J!
2Y>b
8x_N
nO
(4H1
M=`:
Cu [
i~<>YXo@b
L-'p
,3r_B
Wa%R
X5^j
6Jux
yrS{Yo
7r<kk
<vX+
_'pMv
1_dL
qQ'p
TI)k
]@N2l
^u:r
!&mz
I}kS
_=~@ .
[Vz d
QxFG
I,GoqA
kJ83
<,cx
}myf
D3=N
0Kt`
dn[^
"1W{m
f&li=t
w:2+
jr Jns
fa[cx
yCJ!
f"y (T<
txiC
Z~3tLT
{aN8
>)$Y'
g05)?1
q%8@l^
~ZqsLn
D 0]czG
d9K'"0
S~sV8
m0Ww}
sq u
2N>
*HY~a
)?e4
50I*
i_+^
r Ss!j
C?$6
(t<!
m.]M
uyz
Ip5aZ
MM2_es
N0F*Y
rjZC
%-9h
{U<
b3&!
>ql4
{P1S
K5pC
:x0`
NkN!NvN
rY~A
QP9O:
a#'2
zQKP
C_0_
lB(~8@A
@=Q-W
O+Co
\Ee\
Xp0bk_
6dXr
el/c?
Ur+)kR
R3:*
xyf'8b
6ki$
Z6 d 3n
> !w
XvzW@
0'($M
c=<% }g
oH $*
5xnW(Y,
iGrF
YIq
@NG
w5I9
eF3
?6&'O
y\(A
h`+2T.
3Ih=s
u_+0z
1UI^TB
<gX1B
/8I]yY
UO.G
R IB
I(S:m{
wm@s
Bb%^
3%yh*
Q_7%v
"29C
#:z%5\
Hg`^
+B ^
*.T>
r V98<4
7YaU
%'A#M
~2{V
*mp`
RTe2
*=nr
xVYi
cp)iN(
*z;
d7l&g
1 H
'-cR
#;H]
xmWdpkrw1nR0C
=3 n
B\f[]e
+~l?
}JSz
CNi%
io a_
>P3;
;S^v
"|c"
d() I
tdN&
'4X|
|c[)7
UI"?T
m?)2
,SK
R",u
s*Ra
S %qSE
W2b7o
dSo$f
qzk-
TX+
QF:2
A/]l
f*U"
Q H*]
bq=A
$N%qB
y>0ed
16b]l
PH@o
W\vN
rURJ
XS.B(
q]x}S
p0_C
U~cd2
3MYk
J3t[@
N8Pr
d'Ip
*0_~(
=Hrz
r7VvDORT7pLmg
30k.
ZKwO
uM-c
P ^-
M@DO o
66p
2Svj
58R`
wqH)2S
{2"K
|xyhePak
}.R+
.L(fx
G4uEA9DY1kqQUC9
xsJ(
/R?`
uG`4&
Fn ^dv
}j&t_
N5N`N:NON<N
K~0$6/
B {%
,yF s
NZN!N
37[{
-G|"
i@Md
GT`Qu
ePss
orHE
0H~9
:s91(kA
NBK7
!])L
N|NDNdNuNIN
'[&
G^{w
j-`
W.\=$@l
qt4
)*Or
tkg
vzEG
aP<D
q17%x T
6i}qQ
["{o
V*91D
T!(f
nE*p
3M?yG34
;j$ks
d0h^
:<@52
p9xk16
`hM"+
:N/h1
y.^s
]K22iz
k,W=j
\`?s@
?\*S
m{S*
Toao
0uwuT
,DAj
E;xj
N7i}
a"`d%
:n@)s
g *S
f f
get_Chars
@}PV
> mr5
)q:bEQ!
'I ,:
[Yt=
1|_4
RyhC
'HV(4r
JW} T
2zq[
@LW2
/@c9
bb=d
yO#_
Lji
@fiXuv
vsM{G
p*f^
6ZTs
j5 Jj
W M}
wGSV
G9{h
2KlWkak
f'c
lV)G
oR]5;
NpJ (
Rb*LR38
7&,D
j)u%
_y0J
u{rc
*rVR
92Zu
P\XF{
_ 3h
Kvnk
9KWVJ
Uk`O
Je;~
OZ(J
O`e'L
80 x
J",#r
UInt32
fRRm
sZ ,(F
Uj71w
(y+#_
b00Dk
B% x
"EHJ.'
FU(S
?Ar7
p|L?
ce%Vk
`bpH
ZO3`
ujm.
Ar}O
sCA/
2JzD
SDS;
a\?f
A: g!
!V9yJ
i<V<
s@e!s
xI{7A
b&{hs
I>pg
p\Z8
9YP{w
}m,^b
PedG
fST7
S+ )|%t
B,s}
WklV
<ze R4
3S?H
(1yV
k5Id[|W
_gDC
fqoK
zcRH
\Puy
{QwV
l&Ai
WfrdF
et7T
_!F<
zoNEL
J5mv"
5'HQ
!MY?
H[R]
gp$I
Qa ]W-
5}Kg0
u
RH.b
@YV[A
*?~P
ZHp
wu{f
Vuj_
H6yFGXxg
xfzu!^0
^P #
$V~-I
= R`
@ ,(:t^\
?bI):c"
s`$M
m2A/
O=tz
Dm1F`
vCu<
}*|8
-PtR
ebD
gE]j
\k}
4Iq<
j"K
=5
-S_GQ
%[6e
:ke[
x1hbkYsOVK
DX0f3Ih9dzV8X8f
Foro`k
XggG
qnz(lG
< #drz
p{r
X O-
)qvh
M<]xI
vg@I
*ch\G
.u=#
FQ|q
q{-V
y0P6
q~_f|
m$S)W~
"aIA;
5nrb
]2S{
Jm&i
=:S=
S4P
=-U;
g JD
/2IX
uDe@}
O<4{X
L+D
)6 Z:
MessageBox
lhxY
Dt?r
^,z4
O9M+
c5WM
~}EVs
0BZv
R~1q
]qN\r
c5W]
u2.+
mLy[
\Mnd
tw!2n
gF}N
<4iP#
m#0su$^(Y
uU+g
1aI$
> Ga
n^tS
Rj/!
91Oz
*N^H
m}S[
y~7<E
DZp<
Kak?F
9Q!BC5&
WR>7
FA zQ/t
6$xs
PDFh
C.OYG/
4bM=
j?I{
`![)
vEV_@
2tiE
d,hmW
mKy}
'=TNz
uL@.f
a]!zwrWl
@Q9H
WO`Ga
'Q<!
N=!'v#k
s0m!
}!'Y
5bGU5n8mgN
KPV6
{i9Y*]Ts
\z[>
m7n6{[{ DC
ParameterizedThreadStart
ix.+
Q@^
S;*nR
1h$ *
)K)([G
(N~W 1
W R\
Rf< sdb
n. T
xD=i
>9G>
p;`t
T^$X
A#jA
a*a@
[>uv?;W
Iv5"
6d-XY
EIozj\
}*G6
:v:Q
QkwG%
( #%
_s!6E
\JfSj3
F'8?k
<i]i
(qR)
s#DM
k/lM
mU7GH
.0qU
L Shn
5I1
RrCQf
ako9
k 9`aP n
eX8|X
!Q@>ba
TglF1
NKN`N~NPN N
wLjQ|
Wadg$3
Q@#j
K0N0
X$f
z}+W+V
/e^T
DkIdK6Jx3VZ4zcVBM
k8?(
r k,^
aBa& W
glW"|
HL(d
hqay"4&
Dtri
O}MU
e ,j7
5I1f
)Tj9g
, 0>
))XU
>;|f
=#fn
'?0+
mkW>9
qkw3
5XFR
c>VHw?Y0
~]v;
53I[
kQ {h
6-+
1khy
V~oK5
GC>q
LW2,
7 m%
#pgN
6=3X
kAWK2
?<D~
#nVFW
~:jTn8
V9R&
P 1D
OqPX
T~n
>%
TtJk
RmX@M
o^D(
F0>m
N0zz
`xC
hl|.
&'fTn4
` j?n:yU
N%HJ
ze*i
_ %u
+a `G
<Q w
2i}%
{<m@i
DeI%+k
6Y_0
eiKL
8R$\
lKy^.
g`6>t*t
]\^h
C+ 0
FmVULH
?!6P8
,|gg+
.cctor
Jzh.
.NQE[
jNB
o;S.
mPi
6P\%
~Xj`
sE[7|
GetMethod
Rt?L`
A^1b
+%=ae
]y{J
`>#J
;i\ `x
U mS@
vf/b
wMl
fH,Bq
yfTb
[Nfb?
-/[g
1h|K
o*${
"-^T
vo)y
N-N{NdN|N
a>`KXb03
t1w|
cMU3!
M0+7
lR\
=4M5*#f
K F&b
Kf")
~*\L
tTy~-|
%ctc
WB.j
n,v(
y&R:
qoGB83Ym3WOlHrTp7i
(>)2>
|AV)
3Gg
[1$
,|RL
$[8G
_22o
#f(3f
\#yN
z h(
[wk=
23q0
eZa
yB P;
NthM
AssemblyDescriptionAttribute
^ go
?= LK
vT_V2
Lmgg
`/>b
kx\T
-:h
k G_
% wg6hw
bvAlz
=X(sWA
Nq4;
f2iA
9K,Z#
-xHz
|$x3h
d/p'
AKR)
MM4
RC{T
W%]
C0Qj
~yn
U+@:
Bl,
9b&vT
.T!#
}|ta
K?S<
( b[>
+I3b
$a V
UIl^
|2Ob
!t2W
+ p=";
xt-R
#S$Z
MI}c
0b`R\
,'-
okw*
kJS`
/iyx~
[1Pjv
XDf7
N$+|R1
A6x
[07VG}x
EFoRj
/[UG
soy\
U$v;
@e8Rw
IpnB|
Om}b,
x/N
\5 0vVd
je1B
Xr!A
G7Laj
MY&c
7vYtO
8i"\
n}"z
hK VN
isp;
E+]IB
X^W,
S>PQ
P8y<
6:rYb*xf
Vc$
L%qLa
? TQj
< 0
X]]"#+=[
=q-F
.>lDx
* YJ_
n2| o
;y0*
{'tu-W
Co{&uo
JX >
m< O
b"XR
"q(@
oWC%
jXJk
TZ=Ne
Y3HL
ew xU
, d_
W_]R[
Ns]/
vi-')#Y
@r$
"c8uG
}z.h
' Tf
@5VW
#irF
liL2
;n%p
,L4Df
CR3D
VG<L
1Ai(
FDD(
B<O_
c Kp
36yU
KKve6
N$NZNbNoN
$~L"z
Uk 9
)LoQ
#]'(
VoFP
Qk{%hZ
=AYK\
dL')N
?pmQ
;11_
::iY|
3HH%
gW:h
{W0P
(%48
3X@B3
3jI/:
@9];
0'4h
}nk:k
a>Z@R
@n@<
G~cJ
WB5M
NpUy
E6Mm H#7Yv
wGRdZ
r=("w
B&]H
1Wfrb
[86*
x jN^
4B!Yf
7rMZ
hK) 21@I
wDyx
M-awo
5> H
x.F$u
&|eW2
$/Hel
b1&S6
jYKg
4wI6
1cJf
eNXI
0/|G
etn=
j_"
;)Rg
wk]p
q63]M
#GB?@`,
_}V0*
ET|Y
A JZ
BYHU/^
V!1|
WnV_?
Ye/F%$
Q/\At
VUq&
5*Co
t|PU
>y Z?
(n&f
TOy+
TOy2
Bx'!}
u:G[
'xrYhfK
K~_*}
OH'!
*)`s
d q)
\?HJ
#fZ;
w(S0
2Mf
ULFo
{' &
! ?[
C4;%
OO,\
FT^'
)Qui
r;hQ
G??H~
sxE2
/mEM
}kZ
M2F3e
2;O q
s`CR
^ E-g
|1 ,F@
_N2
1XXf;|j<DI
;cO<+82D
FEyr
2 ^/
rl_
tB;C
5U[#
5t4-=
v8\u}
'L(aO
iW@}
v;~~ I
SF:n5
*q)
q:FNh
kBx_
;-'b=
(3ND
J`TZg
rbk[<
,'RL
@Xt:b
ZUCi
(PE/
="5F #
-gg~>S
u^u,$%
{Q_{
d6O>
UpWuo
WO5QK
Z59U
O\ .=
\w?
^}8wN
qzHG
Ig5 6^
NFNvN
v/q8
-<!x
Z[)
DljA
>z}/
'`K )
32:v0
^"}$}
2HU-q
Kvc
;[ue
-X#Bz
3NQ6 2
y6Y`
Hqs',
PR&S
*I #
0cR
4,6]
2Z9~
! +H
CH}oH
d=4"
qcNh
_}PT
Uk&N
q&HO
)g*{}3
/'eNM
FVqe
W} z
P]|/C
x1Rm
WuV+t1
&r]"
3+ T9
LDvR
Y [w
)~{D
.q U
m5t5R
sa6/
2B@@oj
F"{q
7m^
HPpo}
cTP&<
dw8Zb
f;D_8:
;125p(%oa
!/1(
$ hyT
. 0$
jV|P
Yx+D.=G
~(u%0
QfSm
m$[R
x* {
d2,'
Wi/O
()cx
+#@c'
7*mV
Ds M
`z}
#l<}
.v TZ
V!gr
Q'L#?,6
X0 E
ra%Cx
oO^z
1SPO
ql~}g
ZM+#
fj36
67KV
{qaB
?6>
8M 6
SQ~J
hDB}
=Dc
/<O7
v@?f
Tp^A
]`?<
q 9p
=7an
GILIK
mkgl_
{ }
Gm."68G
A;q+
ssSr|
pav\s
\KWl
ys"=w
g>?"
n+3}'F
@S.F
XD;v!*!)
B\j+
> _Mo.
O,ay
q{k!
s gn
&|F,_X
DP8l
Aoyq%
yk{A
pKFy
wzm-
^RV1P
Y-<h
Z$gH
J~P\
8Cu b
=KqF
l>6se
s<H"
v2 J
BFvAC
G[$fH:f8<
7jow
"|{#
9v;)=
9$&b
ldwT;
Od;(H <
R <s
B6<S
N^NCN
z#Y4N
jv3]`X.
UuHa
) 1~}
ME/i
e`8c*
Irb2
KkzV
ihY&
!fBj
h<cfI
p_X
`>8w
f.~,
>"YX<y`
P^MK
)Jf!
<woS
n[m8
b+@
>s,/4
O;@Cy
GR /
FailFast
B2@*a
nNmC
nbV(
o #|
XLMp
/c_}~
AgkY5
yz|s
GK_P
d<8=C
Q&+/S
k?%j
iLrv
Dhp*
ysK)2jy
k0kS
iH{$C
J63wE
J8}:
^'+I
-,|<~
QJ_D
_/z'
?]BN
=v?_
0-1
U2'v
| gB
Z1'H
!?KZ
wik3X
i#r#
]_BA
i_XT
+gH}
29{A
KI'r
=Hj}
WI+X-s
b&\7
%i?(
h:0$c:
@)b
}'-V@
@yiL
`Q{l
!?62
^0)Rj
^FUs
*@0I9
qt<c
J1nm
y6:?-8g
t N
N7SUC
H#}t{iO
:# 8
cAXq
[<iX
X- j
\[L@
-h$Q
@_C$
/iqt3
f]=T
>>73
+wKx
*b13
=3Hjh
9Y[|?)
$aA
mlDa
,B&F2
oAa'A
@ H;
1o5A
tf1q
8 %>
|Wd
Y64~
HP*G
UB(
aq@5Q
1g(:Z9
s@#r
z{wJ
LR4
Tzq2
@8^F
j)}
0XQQjS57CavR
Lsnu
~Or>
Ef6\
xo#}
",'"~
INi.
<_
CNPqR
[ik
VY
d;2)
U qn
5D2v
i! R
MRdk
\2048
0P$[
5o_%h
Cu>,
ib =
c[ed
TOJ]Z_
\RBI
7L<mR
x*;:
YbP
.YXl
i5f/
g A
?omL
&'Ck
]5\M0
yC|V
v9'y
9DkS
35!A
*dhL
92R1
zS[B
DJ"Q
qSV ^R
&}x
/x1pq
-dXH
q,:`jz
4x F
]*iq
?b_2
J'<}
]Ov<C&z
uy(L
^;:0
UMI
!:l}y2-
Q'c~
DL45
%5@&!f
C, G
sf.N
u'y %.
eG`kQ=R1
gj\8
_gX@#
#<5NE^
Fs[0v6
iOtp
}-E(
g\Qh
8Pg3
j">[
2\rF$
>k(y
o'kg"
RNV"x
dCTx"A
$6[}B
y/5j
>r9m
q w1
'7eS{7
eE!c0
+Xi8
8oNK
F3/B
9}du0G
8\> 0
61Xd#
0%nb
RJK
VfXe
w#0!
+/=}-n
;VtN
H,.,%
2d@vL
QoYz
=$A0
P =}
Q ~`
G*XL
pJ|z
OEg0
!:{%
3X,{
ijb_
]hH5@
*Bzn
[&Yr
G<O7_tCx
'ZF,
4D1nW
;Pf*
\0@C7
FL;C,L
42iRI
F X^5*
ElU-E
4/U>
G5,7
'`Bk
vlQl
g 9i
oU^`
WQjb
'ZFU
.4?:
xpQ&6
.2|cm
)sMSy
d%\CXhbyn
W46T
3tQD
-(mO
75 9
W9g`
51a1J
'lK-
N N$N$NzNrN
fHm}
>l5[
(lxu
E`UL
K.S'
T;^j
x&0^
6eG<
,"r)g
4(U)
5~'h
z=s|v
Qo\
6A~+i
'uG9rJ
?aB>xoV
9czD
V&ZS
WzQY%
NxNyNpNkN3N
L^u`99
>2U!
VM5G
yOFs0R/4
IG2l
f#W
_z;*c_
/l3
,eF @
`.-z
u'2y
-^&x
6XVj}
v3L s{
kV6Ks
>rC((
J;h0
vWQ 4M
a,te
,%mW
'=
WqSt
;mZL
"u=G5
6G)=
G')8g
R_QK
?1<w
o!oy
kYif
~S!O
Y=J"Q}U[
NXNtNQN=N{N{N5NfN
}. e
CeN;
a,L%gp
:lUH>,
>2gW
F/OX
H{UF
+c8z >
j*6*
^hzJ
yI6U:
4!Kd
|'Yp -
Z/p\
FXIGe
W@A
~,wl
Tdi#
^ADPlZ)
js E
)YLm
\$ns
*bsH,
~v*
Xg-w&
3m6x>
\uz8jOo
;5~
m1&>
"` wlH
mGpyR
fJ\Y
\Pj2
_ Jfz
Y*(c
7ZnnI
4D,?g
~v*K
v7`.
J_\e
VB".
{PjL
Kc33wb
vf;z
Q eL|Rz
+kOw
\2p2'P
j%vm
!MJ.
i"Bt
?*:z6
G2r_k
0T* s,
#>ix
|7bC}
&yatx
yDs=o#
{[SS
'"icwJp
![Ad
eEE]`
#=8|
sX^)
VX>o
&Zafy
RC~v>
#e)+
l' e>"
"mIgdHK
22X\t
u /5
o(J(
`s1_V
D \b
pWaH
3 RY
>)lxNJ
N9U8 li
Y''
i:w6R
^l GVm
7q 81+"
(3""
_SOCp
U< Uu
d/fK
X^z|
l0qQ
YE~b
Fv7N
wGa3
\u$
Mh?be)
~ks"
esH!
:$\F,
n1s0
gf1r'(.)
+Ah
53! U
a[V+r
"7[{
LJO[
Y hQ4
1PfMd
%$+>`^9
p/qF
^Y%v
iR!6
JJ_+:Y
]V]U
DZ]
6GphxiE
3h{_
/\pk
&hqO
GQjI
@MmY
%>b<
)S(`
Y&U'
AGOytp
6|Dm}
!)Q!G
`zJfF
v8uA
uj[>
JNTP
$ Lj
ehHH"
c&/c kz
r{(u
=FI7
?xq:
oSBS0i
*!|e
y@ww
#? 0
q_!GPnv
PQ74ihlAL7MDF
D> A
`fgG
qYI 7
+-Xkf
4mtU
xeR`V
QL"+
aH-x
4_@bCre
c0/R>
K- dBX\Vj
#wJ;
<t/(y
q^Uhm
^+]{
rV>d
4:h*y
z:z~
NuIHN|v
q2 O
O [p
o}-o
too.
@KZ{
r~@>
T^I\
Y_Q1<
0v:JQ
tKM;
Af%4
v.WF*
e?<R-
"}ls
J_GJ
c%XO}
}_Q/
K 6E
DXl'
$V z
. 6>{
6V6OI
d2LxI
,/`C
RY? >
expq
PL9-0
'Ck
MMH)c3
S*sA]
mTYT_
J>"
|)bT
<UGz
TqX7B
wt+T
v|0%
F[Xh
{(!T
~8dh1
FKYE
/w/RN
<;' D
ZGG,
/9r0
lC=}
HsP5
E t6
08lq
h3[`
|2w~
p@Mk
'}*FhW
{l<f
*DIg[
w]%P
x%%%W
Z3M:
x>uLQ/uI
CW:B@
YS%(n
j$+L
/m(p
3P.
'?Hg})#
1u<!g
a? +(
s1A!
kk!I
`BmID)
R3tQ
k8*o
k7!'
\/ [
3.ba
Ln-)
YIJ=V
M6,= '
QBwjz :
v[K:-
KO]F
{o@&
Te{=2
7|l
Q]Ah43
@I.Ty3
~d,X
OuABQ
nX%a7x
5~[&
Av-}8&
i$]
?\Ih
0F\K
~oDqR
D:
K:ln
!#[
VjSo
""*M
h~H>
(JFuJ
T7cA
N%NTN\NFNvNBNiN
14g9
ZvB L1
&q]-
A5WUC
}=E`
!Z|
qF;O
@ 2p
<DwR
0Gft
4%>
eB<C
L }-
<uyoLi
RVoL|X
YTP$
oJgZ
wz Ie:
ck5{
@)Tg
7Q:C
A\~d
!m,X!
@@2S
! 4"*
a?;
!@5V
yx`_q
? aj
SZ$n
Gvro7hE^ A`
SZ$}
L{i3
@ _\*[iR
\f]
xf:@
+.b
(uJ<B
k; :Oo
e[zK
S~Y5
n#!PR\
U@b_
y(re|J
I*#~7\
ePk /?
%m+;.
9 k|
$8*#
jcS!hm
[ipy%
t"=?
{F;q
ysp\
E<6Ro
82=d`x
NKNv[O>
`(gr
2vr=
u+5_N
o }a
nk-tqk
RYNhK
P-=O
#9{Z
FK<a
; 1
k9X8Z,
<yFj
KNEN
b7P"Gc
i>$_
%3Z3
B8 E5
\ rL
e<{0
MwY
$vp|
%C*"y
0#P/
y38/H~7
b),:8
do>?
5XN
AO
[_.`
"A#
>RJr#
lg/_w
zKr ]l
4u,E
SQQi
"R%lI
s*N 2
-\@D>
"\ B
pm!
Zouc
{o%P
ibX?%
0Bg; U d
S??~
rNCP
v}S%%L?: {;
)K&9
@.-~
MpQ[
(~Ut
E` :
*u~u
Chq
56{
iE ;7
h&WY=
?1cX
#ky5
PWJ2
)(|[
{!e.
+#HW
2 Vl
Ay*j
lY-o"
5'W?
K|}F
l.FQ
:}Nc
|%tf
l)1i
yAoc
f9XO?
GkrD
Sr|
l$oJ
5=FA
ck1IqU5
5N}W
Cgxn
J[>\
^50Kt
IrG9
yE4u
Zr'*
a)MJP|/
x]uZ
S #
O,:A{
N|N&N
,gO>/
+Sj40
qhEk<
On,Z.
l $\^,w
Fgf
e4mU=w
X[&;\}
UyH4j
01i ?
i?m(
K7.?$
Eb?=
55.#
w{Y6<
Fw;%
{mdt
}5ru
^A$.
9
| mo
Lkg&
X?i>t
VM\W
G/_T
/k-`x
"#8um
o{uF[Qk
")N1
kXBOg
J>9
e|P#aI3
UYu@
,?aC
uJ{4
>K0P
x@;s
ePDj
"0Lx
*J.
'5_<}
;IZiCd:
1!YA
53JBNO
q)jJ!
Rl-*
o~EO
*O'5
;$t
.~rv
wOUz
z&Pf\
z]Y_ G
'b1 J
Y C
b vl
{ 2TE5
VF#'l
1CM/
E&H\O
._ +
EAY~
uc);m
D7N7sFp
%) ~&
fNdt
rW4`
`6Rg
<
^UPm
J wu{
C@@9
~a _z
U;%9
UYWa
zFv#
C/[/
NKN4N
gzygC
,<RG&
nO7oJ
Nu9s
W\[i
' +*c
-Dons
tp|x'8X
q 1
)o"
u(^,n
*eB}
~wKC
QY $
td hm6
-J1i9f
5c YD
mcz>
\KO`
}#qt
>CVn
fNu
*8Y
-u\4
n7r
d]H
5`nx
8 7
a@v s
[1+[1
1Ke^
N`f.q
[* Z
w10
22JN
(MNL
0zD#
J~Xb
NH];
B& h]
N 'lm
<9ot
nF @O-Q
f*M&
p,+z_
5~a3
**`ZYTR
{BkQ'
2,_n
^]_6=
$Z: k!
js%K2
sIW#
D@k4
Uu@@
<bgC
zHMS
7XR
z.MS
z{8-%
)eZ~
hfVOaZ
+`%+/
yCVA'
"~, `
!^qpk1
iP$`?
5P%O\
VPWNH0%<r3P
_|1F0
uDtF
eHs0L
/jwRaCl
wiHf185o9DKDnn1wL
be?_
]rAH
FUaq %
wY`ty(?
`iWx
H7 3P
M .i`
]]CJ>
6(-g
N;BU
z-|^
',!3
PRK
DhH3
_%XJ
fL19=
ga0F[
6 1d@u
o'xm
x8<f
x#M=3
La3LS)
L/A!Fi
y<:]
r%$\
my|"
rc'W
1yx^
Ku ss0
eGvr
O!f"
=j5T\B1
#Ht_`
h}$)
HYAM
Jo+/c
V_Uw
'@u-
<qlh~l
JEpyT
$qgy
kq$v
Mm4zf
h3Dot
1hky
]6Yc
[DF#
rjW
V4Ur
]9kr
?X 7`
~4~b
D ?^L_O
#hi#O
I==I
C{G3%y&
U/Muv|
Sv/]9
g!9w
A]5zb
Kt$aP
.jT5v
~"o|
C/%o
$F}?"W\V[<s+
L;jB
jyz/
J4i{
9%cp
kvzn
Rw*G
r}GnK
g%
!R#{H^
/g^#
$3ec
q)&N]:
%afs`nl
8Z`T
vzUg
Tt$(o
>+sy
!h%QG
r{DA
UO#
_+"]
l[ ]
|S0B
cF^X
Sioj
_=`r
NQFPhf2p
udO@
!(?p
K/oJ
6Oa
57WB
c0M_
Gd><v
3U$R
,Sd{
l.|
Q2#nB_@
ce;Y=
^q2;
|n\0
iwh{
nFN?m
HPz
}lKZ)J
P[7\
sO0.
y=Q|
}d_q
fzl62
[glX]?!k
K ]G
} bf
DUf8
HGo7
%;$(H
>X+NK
TXPK
\ 6{_
4cRd<
;f/b
TS7: HQ
q\"MP?P
QA L
K8V|
/r ]P
KOB*
],7"H,V
KuFv
HsKMd1 }
+@(e
f2^e
E6 P
F"Z}
4"n_
0y 2l9
x }O
(57k
bxYIE
=Hy
n%T5Di4
KQ$@}
fF=d}
qiw?
_"=5
=7Kz'
Z!oT
"Z~`
L"b#`
.IMv
z}8@
soh<1
m2c
lSU~u
Lr+
Og2
8*5:
j;-O
n_GX
jTbe
tupS
Um+S
@o=U
?-5 @.p
WZ J
L*b
P]ma
br]F>CM
V"qW
6 3Y
yo>5E
%pkT
OXQ[
_|q8Y
';,bD
6#&Xu
@H#1
3tH}p
2 ,|
Ea;D
gB{
:&1n`
W@ B
?WFH
<Y]
jOTf
=o1W
c]30
?&G;
u\m'R^
n$p,
= FJ
D cD
dRtr
}0e
txx'
QY?i
G'fe
54r+
#-'l
]<sm
K wb
xH"
JV.G2
S*:m
d[x5
=\_HU
`{[p
-^Ao=
Inn*
C'Q
e<FO
y/M~
XUAy
(/<C
Q2 ?d
-^eP1,
^NEu
g4r
%S^Y
`x~A
" #
l@1>1
cb`p
IrlD<
/?lzF
GgRAN=
2Ojv
AJ$:
WC%)
f3*0
r$$7>
\V<3
*Jy
f(^RB
Yjye
[m#i4
j:J/wwi[
<$ V
o1mu[f
Vb;UP\
*2*ie
d&#f
a9d=
#+5p
( q:_
U="*
-}>5J
pH#A
EsC"'E
ej Y
Y~!O:
,M{4
fd<P
>( 6Q
>BUs
z0>hvn
jH%Os9
`xK^88
+Y((
<je=,j
@pD;ki
5Oc$
>HWJ
fxBO
L]=&
'R+?
s `3
[~yM"O
Dl >
<# gO*;s
9 ^b)"
#MC@
ou {
6[ 2
}m8|
y #k
]k|0
BH0A4uN
#5FL>IX%
RzB@
+C9p
7b\K
MO:1u
J:ok8
5kuG,
a00y
X,et
H /O
$kiLW
CKYX
e~jZ~
R]EYs
a%p-
H]"!u
WZ.H+n
aAM$
l^ )
*+%!
{ aT
Rl\G
%l-7/
uz2R7
pww
=<bAA
tGj,NP
7Em\^
2T#C9Yn
*<qV
'G _
JV
7 >K
s-b5
BO.I
h61C
\+0S[b9
`!0K(A
]sumQ
C1TFz
`W`mR4
8rvIbw
<JN NZN
zkj~md
):)C
jt)[
oa(=
IUWs
!xt.
$s~+<c
sV<d
`Uxe
+BM)
\_8,
yVEz
pq)3
bzzy
(9 S$
RKada9
SO;NMK
.ldg$
QSG#
:*PE
[>IFM
$fI&
q-Aw{I7
z<,{
pWiC
_e_;a
Qe<F
Us"+
-rL%o
!w
&pt]
huh1
KUj}C
VCZo
2d?^
x1vPn$5
&{hr
c+,
"A?9
4\Q>
Dh&'2x\
>7 K,
bX$
;dD|wc
JtnX
k h
z~,2
-0 L
(,!y
|dmQ
*;/u|!<
4[5[p
~<Aw
ZWY
5Ar* ,
Cq m
R
j|D1
Mve2
O -F*
#='
C 3)
K{$=
A:0 d
T|9<
fOom
'eC?
, yPJ
" V> O<
M7cF
/"I4
v%){r_
Z%WK
Ww>30
aDDx
9`[VyU
f4)
hxnmv
e7a:7
9pAA
>)Q@
vYc
_6#*
D{_(+j
9CPxi2qkzZ
<h.O
m7_.
;sQ+
fLga
n2FZ\
u^3h
G,jb#
A35(W
T3_QY
ZZe
r#*L
#$a
kXXf
/H\`
s)&8
iV>*
468|
5l-l
6T%'
|AFL
CjT=
(5N0
Vc
i<=G$
)eXE(
RLEk
M51S
Vs>O
q1>a
z&N[
YF5m
H!(m
RLX")}4
kL%E
Ww{1
\4.tl
'FyPX(
[,}a
3Afe"
F{Dz
-1}\
=! W
\Orc
34U/U
@7 .
@#?^
bOkU
Oku+UDG
cGh9|
mf0X
5eq5
K&\%
.N17
BF m
;L&[:#"
-LH3
n$NF?v
yOG\,
F s{
>:o!
PLJL
OR|(
.a3S
E2q
>h*L
37l^\
`*o%N#
9fDL
/c)WI
cH5!
n0HJ
~~FCx
Zc%
FWA Wp
N#NK
AL(4
'i.)
2Mo8
'p$U4
bF;n7
@)\r
$mWV
`ybKI
Q!T
9$lO
NWDo
HSy=/
%9Qb
Ay L
?HE
F-$G
7 'D$T
1zTY
yKkC
}TSG
;jF<
=G`?x
Pt'JQg
_O39
%=A]*3
@I/.
bK`
2a.."
ei\{
i&bwd
nq&Z
NKNgNfNSN
Y&8Z
0Ke0%
1$LV
9.'V
1*8]E
Q ^
DdXJ9
[ |
{;b#
lwNU
A}\x
vM=s&2
! %
,3ct
g:Ux
.}*z
caDKA
=<^"
m5E#
4\Z8
rmy9
d 4'
"Y[m?L
4FJ{
* Rj
^K\>
(OQ2yKJ
\XW#h*
,xBw
RL~&
ldTL
j;vvD
R6>|JR
lG[IDa
D^gdMy
JOe+
vw<
sl2 e7
HCh&J<
iL8-
cz\(
"yw"Y
G{ Wp
oEgh
}^VE D
;Fx8
b:, U
PR 2
Qrr*
2913
OCXt
e&j!Z
'Dhy
(BJM
u XF
WPc!
$V>G
mIA Y:*p)SWn
jJhn
[<=
2 ]L?h
1 L\=
3g?)Y
fN0t7
>r@V
Bls" k
"0s6
H)ol?
O.Uf
,+vL
#q+
%Boz
B> h
gR|&>
>bo%
|[O]
^?,/
~>e\
.!Vc]
#_pY
C;x"
|%h.J
Zio?
w>wa
,Y W
rC$@{
p8`
Ia|Zm$
6-GZu
wkYn:
^Y>`j
H%"S
r1,e
+$e6
Uc ~C
s8F\
MZKD
2-L#t%
us,]7O
mn.~k
x)Ud
9%m68
bD j>V
H%""
mGUVe
7\K;
RZJ'x9
E giD
j:Lu2e
h+u&k
R4Fm
5i~-
xkXm.
>GU 0
0M[%
dGbe
N'@|
N l|
`*%m
- GWnkC
XJz
)'%>
>1JQG Q
V}U
(Ls1
KMa''
,J@x*
Sg['
i-ES
9%-R
8?&i
Ua2iuY
Vj`]
]6p3
}xZ|
I?xY
ec *
<r.'zi
F ud
)"8,
x NS
8ZYCS6
$%N7
NHN N|NINZNiNRN
-d$t
;.Rhih
zy8~A
GKUqw|ik
8r U(W
CH w
:7lZ
.DrD
ol`s
_Gn
=CH4
Cvs
1{Ed(
p6}RM?j
d1nJ
%';eK
k6:5
wCt9
*-X/8 0
`ZM$
{L0[
q$j[ir5
kIx4t
[9E=
m,e2fg
I>,Q
Q>w+
T9<}
Os_J+
=<E
_RC
2=u+
&''w
w-/
t<C(
[~sK^
W\YU`
Xs7Y
e0V?
?rT0
;}n3
hnIX'3h
;1&[
BIM
XcTM F
OyU-
@<"(
'qI]
o9`g
tWd
GH{5I
hZ|.
(H -XQ
tUNW
$YK_U
w Kn
HH`1
-qOk"r
Y:B~
)MZg
V0{O
6nm(
=FdFUrM
YTKuy
|(FEl?`r
C!xZ
3lxU
rwjx
bm(5
DQ9TRJrCfBBa
?XY8f
g}oV
_P:)
zC X
(H73
2\N \|q
pW#&]
OtY*D
#y2
=|SjP
wS3
K{? !> 7
^"]*
1IK0F.Z
jd{\
%|Fk
V:CK
Q&e(\
{5k#
@b{}
KtX
|u2j
1IJw
KjpTq
8MRP/XV!
niew
r@Yts
(v:*W
l=<R]
3\w
aB4Z
0`.S
63MZ?"
[6M,g<
z; lW
7pqj
RIZy
jeka
pnUE
0 8r
~wSK
8Y 9g
M IAlHh
$9 N
nS(H
}0;&
wCq{!
;Dl(
jtbc
P.\-
IO*:P
l)5G6*i,M
k7];
^6y#
Zz1^iz
)/Y8\
T/K"D
vw5;u
n-6K
, ;,
dGIw
D+U
E72x
\MUk
8<v`
7@76C
O^ @
tw|M
.$,2
:Iyg
Z.`L
g e%
Ji58
-D%p{>
N Q:AY
I.&
'9Y]S
';0#
n!;[
d{x[W
!fRT
&5D-
j AJ
^1RFP
|S)~
B;T\
bXa#
:_ u&3
D7KQ
9@ MJ
<4VD)
DUYJ
+"I0
zkA{
~Yk#jhK*
gJq~
m5aA@
83$&
>U)E.
@,-w
l~Xl
jj,9
D9ai
:iyb
P-$wgl
&Fr~
!Uhs3
xF\3
tqJ.)
+ZM(
ogOaUP
"9('
"x(o
ar&y
:.5x
0 QU
[9ZG
Zy|3
%n`{Vx=!
~ o-
b z?
)JiE-J
`sD8
L>C,
3q]>
Ww F
D RgL
\DLoKj
.9Ao
#$8|
b9'_1
]0sqB
$fo/T[
S1`X
veDK
>d7~
J@+W
LMTO
I r{B
%yx{
)TQw
>&l2!
UVmYz
mN,{b
~f-_
: VR
TIGyR
5Y<
[.%J~`
*U$z
R?6tO
!a:$j
3n;7le
:a1s
yDW.
w6s4
*;<m
E}*RF
2b*T
h-eu
NHl87
#> G
m{@tb
0(2'
`R5E
:6 B
EN`n
hq{2
O s1
@{\46
-u!M
T1Uf
EM4
.o \
_F
IE:2
2A/b
D{p{
b, ?]y
do]$g
!.SjZ
>oLn
C3B;
:%:"
X UnPn
"1E}
]`*U
]DX_t
!Jtc
$vB
] FB
ky"
r8D6
%,H\
+#fX
~1-Fr?
y7mE
%L}L%
rEDJ
d}lc
Lcy<
1=yJ{A
#+6 n>s
2~F8
hC2
tEB-]s
ES..
HMXe
oRQT^v
Fuj9
5"".2-
2G]
$Pa3Q
y4X_xm
JS%H
<B~^
~R.
CK+Nu[`
*g8<r
>&tD
kOSJ
8mDd"
AF?
?y8
Dtf o
)e7t
yQdPgtnNIdtiSuNtg
R3Euy
~Va~&y
$)k@%&
#HI?
n5L_
_iB c[!L
fH@Y
G`r[r
TGk@
7X`k
y3yAC
]Nn"T
}a.y
Qr#b
nkA.
N^Nb
kPHv
KYQw
%8x)
AYxF
T>y[
>[3W
X"V[
8gaM=;
DQGE
a-TPGiGs
.$t~'~A
; pG]/ cM
5WH=
Qbv^
Z o=
5"XQ
YD2;
Y<2o
S7s
,C,!yB
zH^r
1 =:q
0!G9
Dl'>G
Lf0F-
x8Ih
L$$$
s)dV
=q`Cm
N"N/N1NpNeNvNcN9N0N
S LB
)~A.
m](2
%hBa;
y5[e"
i%qY
PuuF1.~
gg\V
v]Bz
%00F
T/j7
?W>H
)5^G
)gJ8
C Sby
=EPHy
XWnn
s^n+q
4;sm
Y ;?J
4(MFZ
>Q+nW8
rr)=W
-,b[T
;k$a
C@6!
vslz
7U7HW
X(w,P
5'PV
;aqy
A( f
6:'G5NiC
z< =
\{>J
y |h
YZHS@
M%&H
d9$w @
ywH#
CJ8c
|fb'&s=
_x O
]/bSb
Q@tA
JwU
+clJ==y
L;})6v
-i-R
\vj:
C4|>
5k8W)/e$
vyc3
Br:j%
h0Z)
6*I@
Dp$M
~([i+$
.Bf:
pT-,
. nb
v/2`
jD\9*m
{,#^
,eTI
AZ'l
Y~U4
B/ z
z69$
!$Ds1
ZI<
r0IA
yvvf
_TF
Vpf_
W>oR
; C
"EZN
`]zH&z"
2,m[
caoeqGR6cSOpr1
}Jq5
m3|@
sHcD|
k&8.w
W:_
?7~:
M*i"
FD`km
d.hC,7
T=\O
x:uS/y
utGI
R435_
n{?i
i5XL&
3|twA
NqN|NDN
get_FullyQualifiedName
/q1}
:_:y
+DVJM
TMCe
syh
l9S<AB
}\0>[
3}G8u
m2zu
#Wap
>&Q&
_A8.
J YJ^Z
b)69 \
r". dY> m
sCBk
>[VV
%`,Z
2STu
]y,
u%:*1*x
{WbS
\j4G
208lJ'bf'
F4J\
%U3W>
p@"NQ
9`EU
WXwzTD
vS'[r
zw_6
3b '
bo_m}
Be^ /A
*q)3
b* k
mXYt
^ 0i
0G(u` sYJ
wR,0
\`y\
W8%3
xb\P@
MA"-
pa95K
?0p]
CzW3h
(/N\
}lRr
zn./{iL4J
Uqw_
%U >
Tb<8@
t98{
ku/c4
#n~a
|-x*
u,c
3p
SIWD{
z/{{
Y|pzW
_di/
:bLc
RqbB
$e+
y~iP
W|:`
eD]ns
gBn9
rVdCb
4~&[q
.Hh'
Jm%p
4' 4
K#\DN:
XDQV
ET*'
xgn9vPHG8xIPx
s ..
!r7,
+_ -g%s
EgZ
~ )
\j<oaM
|v W
h9wGk
$}S;
}#8l
wm_n W
! Z2
o5p|
kkt$
FCK@^K
5H?H=
$tCt
@p\r
hld_
~kc#
,&*>&?
get_Assembly
X-/,
~OXo
0(N#6
NxpD6u0R6xUK5
tIGiP
9{p7
k/`
4jO<
o!d.
j?Dv
TFj
fF =!/
Pa _
)8o@
E [z
3Wjs
f0Um=H
e8o
W;),+
MRJi
">k6
8d&
5` ;
a$ 82
Mc;Q
1U+j7
e+@R
m~^h
]Jo5GN
?U.}
PIN
!o]^G\
vU<W
%>R>
Qwf&-
NnNIN
|eYP
kh\Z$
_B )$XZ
r#r4
y80&
CQ_{
T5L<n
%MU\
<C}rW)
1uHl
x 4cH
9`h<
6a$.>=*J
+6_" G
H9o_
R(p=
u1_-
_(L$
kwE-
(QAO
,tL
e q
hgm%
{bkA
@&.g
o9
QDZbg
c[FmQ
%R1R
iqe.^
: dc
-;W{
.*Q'&7
9t]"
8x7=j@
Q9ks
AhU
p(so
+~l:y^
S4XINpg0E
bD>a:
3 )a|
O +(
9EV
!!<<
x,4hBf
>{yA
kg01
7ijru
:bi'
nR9}
|T<P;n
#@5!
SAg9
#@5=
:q5(`
3X F
q Y-
[ 8N~
9 <g
5Q /s?
BbIYg
d's;
5*qB
EpjQ
o -<
9ba7
U>DN
WZ[>`
~O?AE
( {e
5{pw
Duwf
,? n@
``%zF%
Ssh~F
<`1x
~xITBP#
O D<
0sB*
fzbX
%A0PV
)oO]
^\H]
_ z`
BhBM
1 ]Z
~<%e
1 =|
w/7#
.q`E
d<;B
&$&tV^%
IN*B
xY{@
PK#*
,cQ~R
m7.ZG
r'6H
3=X0
#{QxL
]fo+h
y#X?
Efw]
#i Z
S/C>3
bX#M
,3k'
kTWeQ
nk2`
!=f)
gC=I|
t/l][3
X T$
(Po\|
)u]_
+ *(
57#>\-w8
BS@*
Pa b
[qhJ
3sLK
W{h)
\7>;b
YJ!}
m)$n
9a7^
X$~
^>RW
PR7n+
O^HM
V nUY
1eLN
,5A4
oc{{t
A4v\>
, G]
E"2w!
&YYBV0HE
u\Mw2
C[``
|}9I#
MrOe
Y'Pzc
B( v 0l3
JbTE7Un
zo%i W
dX{D_
G2:%
Np.,w
Ebd6
iY 1G
%Wy<v
DEf!d
UZK`I
Vx'vv
jxN&
ko?1
:A)j
. >E~x
j:3;s(
J 5gr9
$ *+y
/VZ=
gp}
^ JN
a@ W
{:(:
`W-5
_"\W
cP>R4
aFJR
oo3?
WP[
>DK
M3QU
;F@s
%iC-
h2t[
gC2^
j:Ka)
S9}]C
_('U
V '{
<GjZ]Q>
Oc:|
XlU
gc3g
>o8u
Pi2J
e+-z9
*mj7
cjA]
G- J
D<cSdzK
5V59
|'*RZH{`
N{ Q
Z3XL
B6.)
,9:O3
-e@d
}&c'
N2N<NONvNEN
i9;(
_-QY
Biqt`
[N5[
gezs
IL6-
iYog
D?Z1
e9R}
N;NtN
Yj24
sq2mX
K0l\
N-NUN
@im
{Xg3
A8|E;
)hj[
f2[2
@nF^A
8G: $
*zv_
W-b|!
x{kG
?6s
&Tc
$G##
UU-u
U&[
6C'X+
LF^
gdl
,L0Bp
FOcD
X^PT
n8Hy
p|p G1
NlNRNkN
<Q)l
gADa9
>;bo
7#X&f%
-~]r
Up]ZC
]sl^
:}2.t
]Ghg
q<+u9
.4T7
Array
KB_]
'X<u
_)|k>_
lk&
B^12IH
{1@H
`.rQc
d?[Qq
I/R'1
GqXO
viD$z
lMJ_
u%9*
b2
P,Lo
QV0P
x}'S
*jQnC
2&^=-}
.V}0
d/ `5 lJO
oN3~
cZ<y
}],B
ps^K
^r(]|
ay|m
9j!
*Z1
P~n=
1: B
(lH
$@U"
g7Y;`
8PEnv9
JUvyh
jcFS
6!:/
Av6g"
?Xn
L4m-
'$dK*
!C3:
]hk Q{
A0 j
8&[u
Y5l(
!C3
rVr
d Ab^8
`+if
Y+ev
UW|O
I"6E
rnI~
TL5q
ylw
Qi1pB
@KtS
9Y$$
!D B
Sj$.
ConfuserEx v1.0.0
t<KF
t@TA
+I6o}v
toIy
$zDI
yH#3b
HhZyT
k6W
@xX=
5y-5
R7+
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
*Er8
e!"nQ
25ic)
_i5=TS
A*[g
7b?-
l:5n-
cMJ^
9`=Og j"
#+g52
)])+
^F`g
qVcK=
9G2~
veaB
W]9L
p7' e
U_;GAn
`^"o
R|P
3[t)d$
~ 9Ps
-Wp
};mB
WxZK
\\J;
`5 89
,s3U
\xMH
}Ua3
&`xI
_'aD
9%~ N
&/-Y
]BVa
NPNaN
%Dv-
4B ]B
*=&LrJ]
NYN N
~|y]D
?_>h
kWSm
eV&E
~|i]
h/gJ:n
0R Y
=x6%
a.[Y7
ny Y
I`~R
JS+-71Z
Y2=tj[M
"HI1
^Mx}
+ow
S9&\
&1%,
qyY|C
O-u"
C3%_
K*:
{`~`
(0\L
f|b^PAY
o|SYEW(
8D!2
2RLd
yBZO
nLZ4
W&:+IT
P_X I
&<? f
&&
l>[>g
j{.$
SPX;
y0;#
{zp/
X$@Q
g^-`
#R9ju
9S;P
8O94@
JU)MD
xXm(Z
i{$d
l]U@
F\2
G2H>
Mc x
C=/|g.7
w4-M
nqXg
U^7V_{
."pz
%6f
bQGZ
u_@[+
#3">k
,yxE
V@93
ATtY
^w/t@5F %
$.n{5b
tT%`
807/
~)bs
,0Xa
D38a
X(BL
l<q
r9-R
(+%m
q,@2
5-T};Q
Kkb}
LKB$
ouhS
1zjo
O%=t
G[dC
lt@n/
TsDUsE
[,{Ra|
sAAiP
cJoR
)bFWKQ
nqYY.
d4gD
BdZ u
~ R
T+2??O
mscorlib
h,ag
DEf-
|A%R
Tixh
)yOb
` T8
CV,B
'NbNy
L'Lj
T>$L
1c,E
27Ag~
9dlBA
\JXL
\ZK
1Kv&$Gv
< 1G$
SUa~
B7`Z
k3ge,
R> >
1klk
zYmR
{V&d
cyS0
[IO3
|ayu
y!vP
v#Vi
Sy_l
9(a6l8A
q**~
$aV-
X? wT
|o=}
(> pA
YN^?d
t7i7
}b+
}h3Z
M5^)
89JTX
T1]O
4 mp
yr\2
-m"uo
Lb}2
^%|%d
W@<E
4Hq!1
q"]JJEQ
qpyQ88
5|5Q:
7P0{
7DTU-
M/
<0<IfM
pT)W}
G,\7e
G4|7#
;Xm|Xf+
&o\
]5~5G
;=T#
t "/
Z8V/
UhMmds
s58)_
fD2}1
:u^>i
\30!25
d:"x
D7B;
EWs_
!This program cannot be run in DOS mode. $
!\_M
kdN-Y
$z@rX
| xH;
W:9
q,Mm4
59Uz
+E5`
th j
[Uc>C
(Y}<
}dOE
rF7t
r7"U
3D3E
0JDu
$d<,
Y+/
|3hk
r6Sk
*>DS
% .D
HBmHcb
*kb85%3Q
^>)7D
J2 ]V
+xMH
fWClJ
F0H4
vw,u`1
"A,q
P~Pm
$QrB
yo)z
us^E747
D2%oXz
<xU@
J*7j
9Es2
vXO"
KN+c^
#7"8E
C+&Z
LV|vj
-jO&
Eq2]sFo
/mK
,io^{
NlN3N.N
[!Zw%
$H!6HQ
+,|@k^I
+xq2
xPD:
'ON'm
,v80
lp{s
+,g'
~ (|
<T#C
"?-.
q*Mh
YJ
3egN'
jme!
:5aKFu$
? ;~""
gjDq
qG
p(1
/LoE
j2[Df
`?S!
tY+I
{?JG
~SvE
qppg
.~Ti
#rgZ
'kU!
X,X
!MyI
j8qF]
+:Pdso
Or(m?J
#yht
|5cs}
$}fFF
4SN,N
LGIc
vlHA#s
{ECU
SZke;
hKY%
JYP0
~PlW
=nNw
\Es(
Jq?'
U]4J
5ms_o
v 6@D
5& %v
7D!|
uow) \
TJm2
I!8g
7MV&&
Y&q
CompilationRelaxationsAttribute
D63f
$^mb3@ E~
V5To
$x=}
/ N
N{ u!
aa m
OXAP
g%T1 [y
ih{]A8
.[3X
rIQ>
;e?YD
|fa9
4) &>y
Ic3*
9h5s
@`@m
-h+<
t8L3(@
N?N*NXN N9N
p ()
(0 q
S7*?X
<f3nA
Kw*V
9{SZ
2jgG
~m\t
.zkTk
{`$C
EWMBr
CSGM
B*et
3',Z
Ha`:
Grq
W'NL2
("E+t
=T9
#ys:

%w_||#
h@Z3
n{'r
.qAUz
oN{F% $
~#jh
rL[+
<%|0
H~Upa
waYJzN81S3yFt9G
cPZ#
I:U
[)18
<d&amp
Q LY
5 %<
N5N#NmN
A5NP
NVN&N
SCoS
[wd.A{
W%0g\
v3yG
%ps.
^o om
2U us)
H 37wF'
"w.c
^U= Yrs-
5R8G
zHkB
<*/c>
*0U*
GwRt(
4qj_
HP<cK[E,
aGH4n
D=r,A
pBIT
jZHD@4c
[# %
`2zm
9IZ$
<DH0zDGJbmN0OxRCuUkjZj2qTbcrwW0dG6JbDChxPMFfLaW93G0c6zdyXHcLk
NWw1P
W/] <ZoW2
[(;2
z^||
MMK.
qKH '4 y
o;e6g.
)e"-
[/+h@9
p]93n
Bi$p
|80%
bxW}
gehL*Q
8Vrp
hA V
DO&z
OAAl &
0 N2
Lgc~o
773
.WRp.!D
3evli
><|#Sv7
$q]E
N)9#|
?GRV
qCk%
) Yi
?MC{
n^(r#
&=P|
K> "
Af>c
vJd
;3 HY
^|~
Ea,[
NrC u
R=!r
(y0!Z
44m W`
+@;s
Wn@&e
LPE^
sv$v8
eC;_
Eym*7
4E\0s
GK?JQ
Tb0r G
![)H
ZE}q>
'?P4
vG!H
}heJ
^S[/
g x%>
jy\m
i"jS
2~hq
5|%pp
zc oH
$m@@
=)1at
fJ2:
D(yGw
S4[/
?zp
Wo 6'
tBWM
PQg$
y$I\
^@ZO
wKHdIo`
~1{N
N:1B
8yg+)
C: ^
h{?U
K/5m
u$_@nk
,$A'
\M41
b,'A
?wM#V
rP@P
I5 h
vNw;
={Y*=
:"8a
:e%
FXq )|
]o8|
]\ /ay
N=iU
O_n%5
jW<s
eANbk
lH)
6~j$x
nE>?z
;,Y@
uq;e
D-F8u
T;f @
aW"B
DS3-`|s
d@*N
=S'.
/=m =
gkUp
\!n]6
"3 Q,w
\c_q
u;f<
cLC,FbU4
As..
eL"x
Wa^q@
"$fU
!P-+
OkK;
IY'j
Dr7{k
(DQP
P~nu
Zb88
Ln_%
"9qN
<q5e
Rt4G
Gm2S
"43j
Ku0AH
s }N
g2kpu
3e H851
fLW:
p6
xG1s
G@mz
&Z{T
rf0K
MWvj
d9_M
*cg~
O )%A
}\>B
x!Qg
=4j
!jZM
rVVW
/IR}
RW?T0V1
a\Qi
`} "
+5`(jI
\@4$
f7OFN
ryv\
D]s)
2\zcX
`WHp
N+N N
3*+%
-_ pe
Avh~ 2
IYo!t
d|Wx
a 0}
$=xs
Pmt
reTn7
0a(GS~
jy Dy
6 (rH
Wm7A:
- @?2aX
(_<[
8e=eB
7af)
owc}
! B/
bU;T1
kFo^3
<)Q/4h
+&.TZJ
h~ y
>p,Z~5
7~k,
IcM}
SLeN>
^j T
*u-:}
Z(0!
6d:[
iZm;^
&;}[
ox/Wb
T\}$!
/YOlg]X
oj_s
-Bre
}J/T
@+7
M=5f_
XxI'
Ig&\
-IDg{
>SI ,
b#Z0
K^!-Tk
8wO`
~m&q
oaympi y;
=5_lc-
FGY5@
,G1A
b Ed
UoUB2"
^,`=
4 mJ
`P(i7\
| K
TC4p]
g]:l
}?|o
jdrX
Xk` 9
Dii=H
\ )%
z| 6
Pmz`4
Ibv6+
8U:-
gdAF
x7 ,
lf6e%
~E`q
' ^[
@ We
lk!
H)[V
Ng3v
V'(H
CSiP0
8g v\
kE=1
Wk?q
O%{F
Ro,y
OMV0
?_!K
-?z?{
fXTR
vq6X
hWa@
]zLT[
~I|!
N -PZ
Vh w
A3*
y b=p
0obj
t"%m
Hc_wm
D$$\hI0
=uuw
|d^z]
nP FU
/FeZ
ZK#b
?fmp7L,Ha
N( _h
OS=z
(Xt^
3Yqz
N973r]
p`T>
Wzbn
L$[m
F3p~
\$p
Vs1k
D/\O>
GI6m
1fnJD84DrmZIAIG
DXq1
uPV
kFvlR
8'$e;
`9 b
`AFj,
A~=
-3 A
U?/x
&|n{
rqm6
}-2E
#_@T
c: )lB
4< Jy)b
Cj[S
H4 _&
4`&?
*JZ/e
F@Rp
z?\g
]{H
I`CR
PJTh
n+q6
D!_Z8`
kk"^
<O/5dj
4Tn>
: aL
b/23y
lA<WI
S7nco
r-[(5b+
#JVE
4$9J
;vk|
R:],
,H;
F1.t
)r)G
>L*;
Nr$.
j0gS6
F}\L
Eg l
m+Hdx
0\(Lv
H0g,cE
|W3\
Z.K]
9-i
/Y5-
8A[R
7 Hlk
Z=%oR
0w#q
ATR/6
r&HN&U
nIJ+
G)lt
az~d
v!D%
[]i+
w?0%9$
x7hT
qQPIt
\|uv"
5/tt
* ^ >
0Q[ %
EiW@
2Ch_Y/
{6\r
"b6
- +#
B]C3
YJ k
<nIU3L
[iL>d
Kg`r
"R"Z
Kt \a
@+$@
OKe,
V L
! pq
~,S#`r
3f,GQ
t!H3
nDF33S
1u7O4IdpgAigQr4RS
P<7&
vbP
/=t>
'RhQ
i*&2n
!@0.
4=f
ErBk
4v`o
x`|*e
*$EE~
?fzz
x^kH
_/1s
>,(<
3lhl
f*3
jfKT0ucG
WKzX
Wzy&
'n\w
wBeGj
Yyxtr
OZNT
35`+50
.`#q
OCM7
bQXZm_
7h '
>m(m
=^ eeQ
V;UH
O vm4%z
_{R:
mdT&
^C_?
)X b
gWH)<
Z!=@
AkP)
NQd?
a: hB
2hZG
Ul))l0Oo
[C/)K
B'$:
mS:e
BRMwl
<Xm-
^eGRa
i|6?
,,=^
MCZpe
et%PR}
wc^|i
6~iX
#_4w-&b
r@Z&
NR3n
i4;m
?Md,S
O&\)hY
-=K[K
-EKE>
W% 2
(6b,
2vbnN
HmCg
;e6%
Z"6K
ETct
M ?h 4
(d&
rd{r
N]NmN NGN
^5lR
*C[lbu
.R!<
UWkC`
WDp"Y
NMNGNPNAN'N
7|b)?
*8q0
JhXn0
qMPb
'4%)
|bZs
Vw+\
-4UU.
s8]Gom
k-bm
AsH.
x y!
H%=v
}rL`
;NJ=}
2<D[
*Fj{=&V@
r_d
OA|Z
~ QC0
WeIB
g?=
[?$E
2'v$
LjhS
Ug87%P[-
hG~18
u oHf
n{[3
`''c
~_ve7
)P><
3caMk
Df[Hx2
G#1:Y
^,
7&*t1
+#Mw
HJ"
x7G?
Z*Q
*i9tL
HT<C
|!sx
{HR6
[HL>b"|
sK,ZZ
(|y>
NyNDN0N
@q!|
l=<
Rz.,
U[(6
wi A
)5Km!-
gR>Kv4Q
wX|q
$J\Rm
s01{
1$fj
dl{
yEfZs
!fbm
q\<13
HT<>
-??9
0AwX;
)qFN<
OU}s
]_]Y
eQ`)!
x-'[:
5z[vl
07#X
(Q3,
[OQF
wva*
+h#k
UW f
C6x}
z8O']H-
"$?s
'99't g_
%v;7
}6, c
$8DA
*F5@<
Mw{w
n[SU4
ubRr
L 1|
rMSl
)X#j
^cF2
ZKPV-
4]<A
.)*t
*5Z8Kn&
V?'I
T/G<
_@^U0
N%N@NzN/N
ytFs
{['e
~JK>
t^Og
XdKJ@YB8
[8rUW2
7<R=.
xq b)
b@ ~
#(Ze
!}+F
~81k[4
Qq0B~
rYMy
)u%/#
uluK_Mz
oA"c
>e_8
1p_bD= 43
,/G Q
kaG;
2 'S
f[Q5
'`1u
cnR=
]h01
a#4+
0|=Z~?
P{g52
J\b
wm}"
is/{
#n(NJ>
H ?q
<V&B:Mr
4)B=
S,+E`ZdF
,9)TY
9%Kj
y.v!
}n1:
3^}&N
5\N^1
@mm-
f<ucg
)e'
/gFs
e`*s
OD$:
},$7
hJc
{, .
5~6g?
]T {
kIpprEC5W8KvoVJ
\(3A
:hCM,
W8t n
Yt#8
CW:%D
xbJS
s5N&]
}?JC
oP 3
Sz>pqa
)23e
RsKT
(^U}3Z
-0RA
\U,f<
*a`I
*P%C{_
oy6D
PRLz
W'i#)
k%*h&
I^^%
pV]^}1
V:k%
C\ r
>>#_
T) &
Bv_7
J RVdN
(Jl/
]NF
7plH K&
? Q9
v`#fE
!@Jr
)+cZ
@g"S
KL&>}
S2 e3j
(m;=
5<Siay^
Ad6z
q=J<
uD[9 Q
7[,@
`/jZ
nNf2-
v E=
N4LL~
W8 `
S v0
L+Z0J
!+dC
O#9^
eQ5 g
o2J)"
*Im:,
%5\Io
PBov
)j%cD
,:``
36N{
lB]^
r!9S)
ft2N
U<U/
p@E;o
yq*W|
$orOM,W
V#Y
.be4b
9n N
.kNa
s. /
$vKn
7{b
3^E^h
XRRc
'3Vc
2s9 o
ns,$
\mRou
W] 0
`?KF
M]r{OU
P"wXY
sfO5
PCgn
Jq7<
$2j
z+n
m h
Q<.%
P|-)
;Jx(
C|4s5T
C&"
a.gN
qr1~
Vsh%
ZS .
$>8G
@& J Q
-|6Pb1
]$Sr7
CcH^
j=H}
esGF
]`!
5IE):
LeXOJ
&g{(nX
Zz6a
]@v0_
/6L>5
u1vpe
3W6U2Lp%vMdP^
'mS
}B7Hm
"0p#&[j
9,P
NNNxNCNSN NRNvN%N1N
WIo7
<PoB0
>E%I H
Y3mkCS
CX.
FT
aqmO
-*4{
kK_`
xH:&
wKG#d
dr!G
|s3YZd
&?g:
w~yK/\
7Ys,
Ez,H.%7U
'4N"
#y{&
*lXj
k +T'
,c6\
>\N%
B~%:
e$ "WT
.h:;
98Ge?
c,T%
epfB
]@hzf
EnHZo
um8#U
1A%[
:J~@
f*7^qv
-9g(
:2j-<
|ru
a2^Z
6Pk^
j>mj
GetType
(V8|
P v<
7):
/v@-
n9q %
4/j\
r=fg#
XEh<
bW+5
0s w
m} K
IH R@
bV/q#4
3gps
NqNKN&NsN*N N~N<N-N
3h0-
A}B~
H?5
HkNd
4s0Z-
EKfM,
x$e5
NPm{
uc4<
*w;DP
m5s
=H|D
a/R,
N8nZ
SMQy
jTgh
!N\x
=?>e|B
wR<;
c/W`}
p(.n
KEg
4d )
I~ko!>W
jt L C
kc&\
AbOZ
ZCbh.
t 5)5O
P9u$
W# @
AbOs
]_\=
BDcNJ
T>rg
""lp3N
PgUPb
G{fvV
=+N[{
NZN7N
[zLp
vQ3q
Iv]#
|>3b@
j':d
)dP;)
^/)_
UJL1
O}{E
*U~>
HRkW
2/"A
'tl
j~&\
6 pb
e98.
~>;&
X#M*
}e/D
S0L
)`bW"
E $(
iY t
DGF%
\7:k&
X=*`<g
@>ft
05>R
f8>V
2mVY8
NSR.
l'P,
,!Ob
NhLZPrdVg1XYyoJr
joI9
6i=.I"X
jeZ?@
r)bVRt*
.ON(N N/NxN N,NaN#NUNmN=N<N
dK/z
R`_wW
;2TGm;A
(h,.
9h ~
@8Hn
B V-o
xDap
cb
E|4H@
aTU
*Q!s
;Ir1
w)/>0|_G}H)<
3OI
BX~8
6aDu
;Z2G
`h|3
'$de
=JEw
/(f*
G'{x
Sw-o
/PR
<{2%\eo
/z5F {
N1N(NiNZN*NHN
ntrR
}&1^Y
c%6d)
/ij6
6%8
hcBZ
sV#}j
@CHk
TlFV
odH F
3+79
H?m{
t!$G
4fy?
=&77
>"?t
62PeP
GUYT
h3Bz`
w ]u
OND
>sNV
LA.7
)Iz)VWY,
R_T
FL%3
+s=W
O
r\ 1~
&Ust
\tRw
1u8j
d}6t6//y
+Z &
;e#%6d
-YxRY
wcr'
gar
8sPiA(
#HgT
-W0` `
jBe4k
=zct
-KoJ
U&:$
s eG
|% HH3f1
rp.:
>S jF?
T0* /
7iYXGS
n7Ke
cT<2
!en;H
8QNZ
H0?z
IDATx^
SVxk>vL
A4{h
{;70]
xQhw
LateBinding
Jv!r
'c>
HDf!b:Z
{Z/ *
8vze_
7:eH
:-#g
Ym;|
tZ8ak
x1<[
8Ep_;S
Z3zUm
X,e}t
Li>X6!
Cnq
x[^E
b,Ja
NRqR
q/T;
G;/
k [~c
X@D"
G VLk
!g\
f1Sr
&D3ry
%U U:
dK|'
ILoK%=
N}NBN?N
[J7/
X >B
+5)q)
v*%T
/{+4
2${n
uZzu
jsvH
O;H l6
WV'$4
mr"}
`N31
5*aY
@Rpb
! :q
Ky{]
#>tT
cSA)'
d$sJ
FPdw
Ov3@
N NbN
;J U
rKW N
dlJq
EQ4~
tACk
VU2Y
B-/s
l@F%
i+$z
9Pa^F
,INt
&Ir
C=h7
iDb
^*n ^9
+eV3
<z {
$aQdM
yKCJ
w7B _
4o"^
5t~
uU9@
,sy$
u dm<
#W
#]{87
>5E-`
"w8 &
BGtnnWZmpF
cw*3
m3&B
=-5g;c"
? W)
vjq
K "|
h@l
[?H
CM6z
TXo_
n5
Vk+\
*^jq!
_O+?
u=p#T
z( l
?')Eb
I_n@O
QKQP
@ &DI
zV2h:
gbeq
5Q!2
TGb'
`rDL
D2&O
v_v%1
=&Xm'
b42y
bq4uA
u$<*H4
j]Q%
C.[]
L_ 5
%VSv
=ST
)(.3B
?'aS4
^fKO
r 7Bn
\m@ ACM
k@|lw
<0(*
-#oI
IW$nG
R6$f
E8M
L"MN
EIF`
sx1r,
p:ZN
) TMx2-D4hy
r99qi
ktH.
#M}A
J^D?
`eza
2B[NO
fVZf
y=30Hi
?0Z
tS)S
/7)w
u @W
HTr6
E<h`
jck
!e"k
\OF(R)
7^v
H(F LX
_s!(%
T0Cn
,k(zM
0[j
<JOS
iJ*&
/'XT
\{GrmcQ
|2xe
A6LRm
e 4%
Ld2DrVmHtkfj1aNR4
-By$#
afNq
\|?h
si\+n
OU;p
b )h)y
'SfFj;{H
kMM]
6:}8
e;)tC
F,]C
4d\ ONL
;/{Cp-g
CWp=
s^Vp
R^2[
X&46
}k:*o
]fMwK.
e02&
2i=k0
UIy#
pkKm
_hUP
`K!5
*(xd
-iRT
-7p;
d?My
GsaT
m*sk
#5nL[
#pU'
(~u
[bR'V
*a t
f1wTG
"U2,]'u
j$$(
4o9p
EfzP
A< M
iF38
pQ4FH
0FaG
y= ky
yL|e
Guw~
e28I
NbWy
x,LR
nYIJ
m6p`|
&*).9t
F9o>
p6.!
gAMA
o? \
Obb
Ri 8
sD7hD
%T7 @
?$E
ejlS
%7j(FS
0[[j0
{ny1
Q.@%9W
> ?\Fs
ZH`d2
l3Z]
'->
5'Xb=
lLDg
U;rl_h
fT8Z2
a9Y`=?Y
t8f6
(<6f m*y~o
,o(U^
cE/W
'KOB
tewq
2q_26zi
~FB"
;y=iA9
1fYHL
?z\<"
mtJn
=jKN
O5=y
>8&
:j{
Gdxj
e'K
ma^;
Tt`b ?5+'
|`PC
&aq;%
7JF}[
T S_
dQc`
!YH:9S5
iMe*%*
$, Q
07 G
>,0y
a(x c
xk~>
@:VO3
a? ]
aV q
VQ-r
yuca
VT~
0X Nvnv
YeSc
/.mc
X(-L
*2~kZ
+:n.m
B`:/
}g<'
!t,t
NWNFN
:k)e
EKfc
{h YaR
K`.k
>_N
3;V0";
YR]9
Oz TOa
8DM p
z k@
B:9u N
WL"bN
~Jn-
\>Yg
I 'LE
t^j&
. R"1
~i1$
*GM +
nvwr
T y6b
s$kHS
cA]o
% N;
`;Db
H:Y!
?mp^
[s=s
pL
M$zZ
)B1qT
3h Wd
x uw
'P9?
],rL
Uzm
jMWH(
&?Kek
)O$
EW %^+`@:
fND`
JD:!lU
*&%
gA*(
I62
BGO!9F
@*xT,z
!XrX ;Y
Y=|:
z7G
w'Z
E/PNk&
?%y&j>^F
System.Security.Cryptography
| F" f
QR/\c
r)6qM~
FvF,
Bx}s
:CM?
P`D0
!>FB
/Tza
)$1y
3pf
jyrLs8NcyofJ
72]J
g9ob
p'0w
O, G
!hP0
:7t :
OPcA
MoJTg
ayi{
,Nde:w
SPH?
h#{\
PF-yyf
sj`\
Yy <
/@(R
Wk A
HA D
[AWf
vqX?
`!=_
N.L&
T\Yls
vu;&t
1li
FRH\;
0h.c
NoNCN*NQN}NlNEN_NnNQNgN>N>N
bj~C^
-Qao
Zr,O
J!kK
|KL}_
ublhauM6zUlzz
!@/5
t3g?5
xbiY
V^I*
qeEJ
cj}WZ
`" HU
yW[K
_=W=K
Bpx$<H
(ign|'e
B{J~
$aO (C
%4"}
mTWm
oSvi
.>kP
:!2X~
jI +\T
L3Z/W
<3{4u
hR0cK
LHA\
K x$3
q&$"#
c>71
n-"B#
$QG`
M3{d
G~]pQ
L.H;
, W4
T,nl
bV:1]
*5f*
X/(R
&sl
H-O?
p&5<j
P/~[
vIa.
M]h[
LwE`
eH(i*
:X '
{=Q""
R0eg`
DLwL
%y8E
.,;l
hHS;
x>;|
``6/,
U89Q
?';c
%V/&`
O6{( p
528We
Z-.FI
-@8#
WJo&
|=G>
^b7a0X@
e2nQ
;vE
:|d`E
O_wb
ua*Y
"pW'
TaYg?
.#^
9i>B
3`:X
eV)0
J;$
k3YS
mCBQ
;I}y
m#(\
H\Y-
IyXD.#
KwQ2
Ms<`
N2NLNJNaN
k<2m
ug*" g@?
n/~Y
: n1
mOcB
<_Gn
hQBCA
s&eq
!_We&
J RK
KmdT
+}$vkN
9ALF
k[v3A`
f]UT
WGCQ
_oV!
~zt0
`: .
"\"M
3;g,J$
>lVg
:Onc
gM`^
h%E1"m
q~a
UI{TH
u%t6.
AnE
m,nU
2H ^\
]>q>
%a/.
7?kM
1.~rO
]veg
J~ekQ
Y(4h
s Zi
%`N(I
G )0
4f;_
3* ?m{$
[H }
B 9f#
oP5U
bi:T[D
i G_
$Zv|
/;9]
b5[r
X @N
|ENLI
8=s>
$Qb]
.im!
WQ"e
*^*e
n$RvyN
*]!^
iLA?
t:s]
J" Y
d@Nu
Oy}Z~h
V0X8
7428
LBv
.ZQ*
N?N N
7cm.
w~} l7
++6>
h w3
,:<,-&
+&?}
f "MC^
/.UA3
3/n
$yzpF
j^s}
0^Ro
^9sVE
Md5QjSNeQC54vjuVqOn
AU!{.
S7[s
7.$,
0:?o
ONktK}
!UBw
"b-R
S7[a
VTD-
VbEB-
?om4jL
%H|D
YS*S*
Uy }>j
:LSW
?Nw}rqQ
BeW(
zH2E3
C,a4
&>$.
J#[/
,"$yQR
C P~B
\,d=N
TUCm
6>Ea
h{@[\
;0#;{
E(URb
j-W=
B9?Ruh
F@u
g )B
4~C"
b7 q
)Cv
o:GrM
` MN
cA Hl
^%AU
4 %U#1
,+Os
.X L$(
NpNYNGNdNUN|N_N N|N~N
_|E
3U!^
b$\1o
e9\-f+8
#q$+0r.
%6B1
RN2;-
t 3/
N$NcNoN N
dQ~8x
P5=!$\
&ZV*
.[5~,
x~T
4=AV
9 P(]
`,[%N
w4K+
Tzb]
I*Z
`Kh Y
E #>
;3n)`G6v
)!28~
S@gD
Hap<
OnBcQ/
_{qc
09ZH
^ %W
JSX?
?f32
fAsl
" AwJm
(4o>
![Q)oR!
*1 ~8D
Tzb#
"-$1
4OwX1O
Rov9.
@fXbT
JoN&h}
6^ l
H~J4
QpW!4,
T^%'6
7|L-
S|?+
2TM%
NuN|N
>&IV
^#%Rk
l5!Z
/M\Z
#dXo
6Fg
nU 9:<
I3pB
p=gW
c{:U
wyeNV
q`DX
7[9A
g Xo
;~l<-
a\*Y
$p?1
&aRmR1
oUs'z
p s}
8[NL
nAuk
_gQ^
:_j#r
$SbD?
;K _I
%`4y
s t [
jIM!
)V# @P;
v*.Bl
4i2I
u}mjw
cqJF=7
-;"
0o4dd
u]v
DKW#
p|n`uv9>&m]
9cozq
VAAw
q!\0y
]6(Sh
<<cZ8
L$"J
WkQNZ
G+WD
h %R`
U93
j-j%
sq3KYi
o!_NH9wSM
N_N&N
$2G*
Ive\
Z= |
R)?.
GWGd
L=?
lEFo
(CJJ^
Q&Ny
YQ:c
aZP[q
L5FY
gyOF
^`jM
+R0Q
x*`,K
z^xn(!
Gv@e
s:B
@o8D
n _{
b,iK
JP0M7.M,[
:wl@
,&fq
Q+KW&lulg
e n87
CI0\
;uJG
otaQ|
zu[XE[
nf>Ij
Q^l(#
8`um
pN[4
sj1H
,yey,
tmSH
Y/qmz
pWzAr
T+8e
Aeb.
Te3r
s+{Q
f t1
: +R
rT3/
S!Oi*1p
ctm *O|
w`HvNH
q#%AR
W9T`
L[*L
b!t5U
6yLJ
LC(C
=nf'
Q=C.6 Q
=9$\
840V\
MvE
Rv\=aft
%qDQ
(x>0
%3\*I
FiZ/]c:
bVT
US04e98cActN
n5n]
a=[f
mGZST4x5EwRvLRffy
y/R&@
0-DNu
!6te
@<!:
ly 6
#QtV
i[9==R
A5Cm
{% *
! Zvq
.-6
!P]S
XR-
vQln|
J~]@M
MuMO
ev f
7iaC
gt{f
p=BG
S':j
/t1*$
W \X
iIe
4O6 C
`bvv
L(hwr\
1kV(U
HnN)
w=@l
AI}F i
kOqh
n0rQ
2.L)
x'{
,].2
p}@I
g`9Q
d8W)
\NpN
J ^)"
Q0r3u
5Z;g
=V>[
C<b+
:KkT
STPsG
g=.Z
O&{l;EH
_yu
AEKGi
,KmI
-@IC
J2MR&z6
I/J66a
.nKj
L9j(x
z)d5
Xd#;
7 L'
^on,X
uT%+)s
NlNYN-NVN
{p\ti
GBL +
qZTH
CheLt*
g/4C
WAah
dF;%
:89+G
rx+T=^
,!b2
VwaF-
8fd
}b;-
Lb<(
|3$!Hv
*H=rLh
R\e
$|h=
5eQ
RC M
/p 3
N,_/
E:/TD}J
)5|W
W7FyvT
ABzq
i^mf{g
z[ =
&YnbI
)lL]
Km=L
$TTt
$)l`
9Ox"P
G\q,
y).$%3>
`|"
#(m#
+r?LM
+u]s
{=k_i
_-d$
s2^$
Xr<M
_mK;{
>; OA
_Yul
=-[v
E4uG
n#G&`
$}nH
=Ws#
{2N9
#GPe)
q`QD"
:+d;
Z` ?
KKjx
tr[6
ERPz9$l
('?*
glt
Bs~,
JdJ%
{hy
[q@t
2 T-M4
59({IGP
{ho
-27O
2ThoN
EBXalh
H&oQ
aW/v
R.! F%
?1.e
Cl~;
lX4
:!"z
S,2( c
TFxd
A~rc
[XKG
$wa!
}lBC%
L>& X
Q}$z
S
w_G!
mA )
_&}A
~b1tz
)^0i
NAN>NaN5NTNrN/NbN!NuN6N
+S1"
.".>
ld4D
p'Y8^
5Rdr6
BZ)
Wbj{
_FsUyu
ucfd
/Z3~
j5L&
*]H
ocoG
]Y8_
!' c
|-^y
2eDB
uMi
8p1AU
O"Y1
;VH a:E
C A,
~*1+
rc#_t
9-_X
e*Wr+
L,^ L
kY[y
:/(Tv
% K' I#x
'K"^
AKr[~
/>o0
7x)i
z s^
_yFJE
FI?Q
S1<
4FjL
RO}G`-
\h(3:c
L71[nz^ A
5%9i_'Np
N:|%D
*`py
lu;9
%|)2
gf .
'.MR
9d^R
?c2[}
I mC
KiI`
j=#/V
8b.q
V4 b
HJp$V
YzYTp>
mu")OPX
k)Bm
N+NJN
h)0Y
@G @
7 Xc
( x
rW ^c
>F
7:[b
?bZ1A9
*%,V2
r~=p
T 4
Y3%\
HCml,|v
qP1*
}&[{
4py{
l=}
F,p(=
9 _8r-
\up'4
'T5b?)
)ks}
k O<
4pyE
s A/
w%[S
41+v
?93~
2aN][
Epi6
M-p
E/6T
RSqw18PYWWaM
Kl^ ,
u =8
DWY8
-r~O
2VFz
P=Jr
%pE%q
!C N2
*- O
Vu\5A
$s%PN
)hR"
_>[:
@ "3
#Yfb
get_CurrentDomain
02CJ
Ag8
/w A
o[7.
a^gCR_
NDNZN2NQNWN:NxN*N+NQN
0jVP
C~~Ji
P")^
w;"`
W&7!z
b)^R
b*|
Fxe7d
]GeCFBc
&#8|
6lg|
z"iXZ
Z]bW6L
c-Ux6
BIKp$K
G_J
fB k
g3O]<b
yV1|y
<`OUg
z7y!xY
_2imK
(l'N
)aXZ
) A5
gYfG
|bi0p
tr<O
;sq|
][(fA
5qm@+%7_
gmZ6
V7~
bep$
,5\f
NLNTNcN[NRNMN
H7 U#
? 4k
ZE<
Q}Y|
IYi`
N:BU
tnuC
XAi "
h?e R0
Y=QCp
N4N N8N
J]&N
h]ab
xog@
EqK9 >R
B5x}
bfM$U
`mAE?z{
v{aP
3<YJ
z y">p
C=tXJ
MU/\
40-K
l8>k!
lgf.N
qWR%3
%`h`Q
1_\x
#,LDILu
0`g%`
,62f7
e1 D6
bbr
KQ G:y
wxU:
ecdE5LH6YM
$soZo
26kP
/f,D
~XQ+"
3sP8VzslDpcT
a}-r
UhfRo '
k P5
=/cd
wEJ\
~wWP&D
hyHCof
`/ &
\7GA
B'4P
kbOn
::lm
m$ QC
a?+%(
M#I,
C7SBSrfum6ANPDT
<JXV
AzQ
*sF#L
1}yTh
=|Pgd.
*EjW
dBQbZ
GHYY
9 Jw
/KT(;
'J7Q.4n$V
_ V |
(t?r7
^4QaH
-1k9
(Qgw
i=ouk
/C[7xV
SM2!
U" &!
UCp{
Pci0
y,Mv
Cx|A
fg<Q
IR:&U
h~_#[bU
VUKMK
m~
q !=
z1M|
U5h^
QGDzk
2wG0
X7xHs.
q !$
uBK8
4e"&
:La>9
Bb?Ah
\reY
YM3
*k*&
\)MF
8y'}
d]w
[v"xS
zjeW
=I35
*RY"1
l"j
-;g a
F7Zm
6CpCMBr64Y
n.!
0MF&
OO9M
|Onc
1xyM
;D [
B4=k
+Q=Ru+
s{K}
_0m<
W5qaU]=<
;"wu
-%9N7R ~
w,^
8&wy)
0#Gr
HmhO|/
mX3v
pHW%
A9Vf
BM9M%G
-UF)h
Xu~a{>
XL4%`_
IDI3JPEnglh
;"w0
M_2U
#^#p
dGiR
mXP8aRm]Vz
Df6]
-sL/R
Lt,cp
e.<a
b Ta
^c%aSM
>8 }
CN
Yv<9
dU?
^8fe1+
ld~c
$ ^{
xRod3
~M7*U
[:A
Bnan[
ei*~
`_~hE
"H=;
5T~B
!znv
~V}
7_:Q
*Eh~p
WrapNonExceptionThrows
H*n<N
GB8l*
}V6<
#w=9
,hhNW
:K2\
>T8L
0'#~+v4-
S u <z
-zzw2H
R]agF4
e=_o
|nP2k
%!~
exI9
jcYu
{K 2
eo<P
O|FEg
ZRZGcBv
]p"
/-}W
1^El
"/oW
YaS\
#d\
l\PqM
lz#&
I/z{5
Ea@-
f\;-
tUA
I- N
=H:B
c! ?J?
\ n:
+ 8v
Mgn
dFxk+2
iTA|w
LC#G
&!wh
)6/^
_1$*
>XRF]
Nz$$6V+g
(^KDn
zt!!
Fg{( ~
A|P,
ZM>!
&455
#=V|
AIi
maVvh
System.Diagnostics
a|VI
h~J!
)h 5
ZdR=
~D-
Csb
+zpZ
iGd-p
+9ktT
u\T{
%0_0i?4
m6`r
[6 \
EP J
1%+,
Hef?1
&[`b
J ofq
5k.V
+4\D
# Q5
n$7~
R~]`I?Q
EP )
wY%c
_Kq(?T
Dk`mDK
Rh"
RNCd
`*<da
1k,a
NtN)N1N
ALZgIqievs6Mgx03A
Qn %
Q^E;bD
eY._
mz4!5
cqcL
VBz6j
r.?k
C3&3
O#4o
r7$%
PKh2
uK;/
`g1V_T
VBVcb
NpN~NcN^N
S(~:
."z*[
3rwbrL
Y"i
0gK&
<%dQBE
uEcy
|JEX~B'F2Lb
i }R
xBWg9_
pSWxD
L7^B
b:c#l
f.k<
@~t(
vq),X
9z(
cx|
G?j]
+cD
L-%Q
OPvs
|k|,%%a ?
1L8Q
NANnN
Qt*
O@Ocd
+5$ O
6wSS
QkXc
":()
B1Id
g1GB
b<[U
E<z "B
E|jC
;6.>
U19sU
V JC
tCx>_
L.]"
9 Dk.
!I *
c<]T&
[1w'Y
T9qT\c
6F`|]
K.I ~T
5i <
Il!*
VoY=
.iw7.
.&X?
.q:T
p4Hd8ZHt3LUvxEtOBN0
R ry
|G`DMP
GyBJ
x.bv
=AI5r
[2ogo
h,f|
E 2a
dkP-9'
|u Q_
>+~j
VV)0
A -{
5i.MA
81`E
(q- fOd
\EkG
"hmX}G
3B|Q
jyi$
e2q.
#J
Zz&
>Vc.p
h.9Ai
VXuE
.0[ B
?3=<
%"D3K
Lp$N
Gzbe
9:Mu
cHWJ
N7 F
R9M1
f(<-p
_xid
8M3#
$lq/
Y\\q
=aj4
AssemblyTitleAttribute
}br1#5
nJbG)bd
AA:+
Qp42U
J\_(
'C^X
>NIZ5{2
c)gJU
W>O
ml[}
{ 6HY
eNqY
Iytz
&5.S
y-
HGNe=`{
2mVy
LW|O2 +@
)" 6
Ayu.
7nD!
mH>?
b~M,N
+8~c
! 6@|
= z x
PzT>
fZUf`
q'-9
-z]
prtA
dYD"
7LO#
|Mwc# 7
a1} Ru
2r OB
uDF
'g0L
DvOx
inz
]ok!
6P ~
$n1ZL
3&`n
)Jg.
1JHxY
ViyX
lw,L
zfx|
wIgzAqU
zfxO
[]Grx
kFhD
+;NWPs
T5`08
JB|}Z
'QdA
uJ$1
RZF*$^R
tx X
# L3
6N%Q
VT1a
Dhzx
yH>^+
RVVl
ui6(
Wvqm+
2Stb
O :
[v||
LMb#
gsR S
dL:f
&UDi
]{O+
O$-w
M*b
'3+D
Q$7&
X5mU
KI!0
? !Qu
.Po$
%|w6
1iiH
hcOM#*
"A[@{
BJROd
<r`b
y1!{
GcvK
qNM>
~W0!
'g\x
6kBK
x~ds
6VMq
O=Qn
9JR
Md!a
0Bf1
_jJ=w
4"aq
%u7J
X0+j
[RS/mIq
`EcxpTE
dF;S;Cmv
`)[6
m/#2Y
!!s!
Cnvs
+$9Dh
X\/XX5
!*mb
7kw\t&/
,I1L :
oZs75
tkaS
,CKl9
:z83P
E[)!,jadK
*e;
w F`q
/dv]
oJAv7
e,ne
/}(5
|Bih
s5k(zh
"jLj
^zHd
2x.r
Z>
?F(!
l@yt
U4 :)4
q7bpi
f'aQ
IS1h
d,G,r
$5e(
d "
@8$g
2 0Q
\;(.Av
IS1H
F #^
N}NTN
?E3C
-0tj
a'7S
sH0JH X
pQ+F
dmJu
VD %7pe
hvV)
t]Z%
#0[_
?M; 8?
4Uh3
:DaD
31
{d~8
.ch3M/B
@Y2H<)
c4ry
3Zqz
py9;+
j;j!I
~bS}
1DUy7
AssemblyCopyrightAttribute
G{rw-
'! [R
|st,
k^js
6w 5
=K~
\o$l
?zPKed
lxrAb
4}+C
u+\U[
MHt
f2P"Z
we> &
d,v
MN(
/h*s
Cp5^T7
Nw;<
XFcb
-5Lt
F(Ki
SDQp
Mu5F
MA'6
zYO4
5@TCvlYGQo
$ J%v'
C['Q
=S1v (
}[~
O":,
!2d"E
F57A
i{F^
:XBm
"H`Xb
Z,KH
L<8C!C
`)4
7bCR
sGdb
l2si
*"Y;pu
ora;
r?@h
d*+&
D%P}
u7LO
\Pw
")"#7
N~p]?
8r6B
9;)4
L@Y[
N4NSN
~r3?r
q,(\<8
'JW!
J r8
#8({
nf``
l|^-
) Cv
=H'Y
S}_*
/<38
27s\$
sC|zq
=hoTJ2w
" bg
k 0L
;NP:0
B}T!
iY"G
+3b
HY {
b$*6bL
W.']T
[GJM$
x&Ya
]7(D6
rJ$~
_"V*C<
jhWJ'
4V +
8mA80
J 4l.:
2>@aT
4xOF?
~$7'u
)$o
frUuA
H4c_|Z6u
;v$}
in"=
.u?m
: \\
L;SU
l'Gr
]uoA4
rurV
_/F?n
+av)
ITNg?
qx~(
Qpa+
UA
BnVC9
xX>pR2=
De,-
{&sj.
E!'EjYx3
-wg~
'Qc6T
Y(}~
WCuCn
O&HR5
tKLR
,@Y
N^N N1N2N
C*xY
U7 D
-U G
a-
zW<x
wpJa
m5A o
]Y0B
b}tk:t
E\2r
x*~fw
*N@m
}2X
kFR
:8Z`^
sgyi
@FL2
jH-q
WF"I
}lVF1
a(jq
yEUC
C.K
N%2x
l[?jW-0e
dFF;/5
28FO1
hj8l
h?wm
^gpF,
T%UL
Yg`
$!<3
i? r
e_mZ>
6[9c
`aJ
<Wa@
ou>f
vH F
fy/~ki
shU$
d C@
HULG
/m&[Z
3l50
?}05[V
WY:"Z6*R
gl\o
TwU=
~=h^1c)5
1@%:
{w"d
z[,Kb:'
d Cs
V_?
Px]I
% owc
+rZ
>}nz
u|R'
T Hl>
/ qs
F++dd0{c
1Y& ys
M&Cl
m3lL:
dZw99i
U"DR
?N*i
C5!
2@[2
~g S
8.%d
0(Pa
GJcmO
f?_>
3Q!z
[7u
79nH
&|DIiE
`)/n
F3H~
N \s
:rCW
X+9O|
hU "
otnB
'6 E
!Rqr
Zcoi
O-J<)
6k8q
x%S<
dLSw
q.m9
~S$@/
sp*4
v9l\N
*u.<
onK TU
Uu(6^
>\ D
U*[ 70
T#NlO
N{N]NWN"N4N:NMN
Ao%
53K9
x:New
Z#m'
+[H}
O>-*
ZSL[&
aNr*
/m=!
33Km
N.NuNhNmNwN.NJN}NWN#NmN%N`N'N?N\N NrN
[ P7~b
{+J
w?H X
2" N
5NM0
e_^u
NyNGN
i;d]
=hYr-
8~~y
ndO +@f
=0J
_2fi
6.ix
F_"U
D+4d
sGoWK:k
=TAZ
rui,
V na7s
.f@g
+Vw#
O&~caa
_k+$
-<yU
ZXaupWCPfHn
f b\
3hqG
`J2m+
^ By
#+ !
t{IvI
D{7&
Su6$
H.dYV/`Acg
+" 3
RK4(
Sv=T
=wkI)0T\
405,
]xF]L
V@VJ
u{) C
e0nP
=ikC
7x<P
m6 b
>#K[
yN%y
Dl:bp
9B |
C[m-
BT0*
N[P+t
;5]I
{=~yj
\cy^
kK {7$
4*xY
;sOH
`ma<@
`s/!
wQF
=`u9
ZZj W
n{''B
a}%@
m $
m5vZ
f.)L
h}yf
58/fz;4
ri?N
ARC[
diiay]
r ls
aAd!
toi1
*!G{
a5Jd
Be3v
kXNt
~G<a
^s*|
x;lt
=(S\YKs
rr'~Sc
o1H
2_L(
[@=
@+`,
7$)9e
g5F)4!
uXyV
'/t
2pL0Bw
u={
bd7|=
.: )
hB9}
9e)-
lPuY
2c}.
csSJ
3> S)
wt!^
'{z7>
VTY!Rz
R$Di
0"1l
])P
o(ki
/^"~
) nR
QYYH
NLg?
1uSQ
xRX,
<7F%
zuy4w
L,*
{>UGT
PP>
Cm2>
f~K
~w;x
Al yF
-R;=
E *t
}<x
,l\ u,*
E0~E
ri"1m
i%LT
vDf5
Q/)=
(WH*D
S!y
+ ?)H
0Y+mJ@8
\i l
lBi=4^\
bpIkhs%18
2~/3
8m_A
vTAZ
:IAX
A46tk
p8mh?P
t0,l
t5{V
<.Qz
I IE
b&9s<
N)BV
&pOk
"ns[2Am
}d>/
5=Sd
U< {Wo
t~g_
QhvJ@,
a2mo;
,Jb?
oHi D
':jb
qeUV
5rR.t
!;b?
$POe
,"Oe~
6?OI+*
7X-R
|(t]W
~1%9V1
`Ktxv 2
9.B[ q|
D<2 y
q_ K
I>?1
+na
LWOL
f9B1A
D'|<
/8[Z@,'=#
Ikl.
("1H
7O
se#.*
Qr`^
vH?1
TEyG!
az<,Z
`%^<
h)f4
9^&66u
qQ]s
.(Jh
JmZ+R
get_IsAlive
rjGPe
>FRw
=:g1
4x<cip
R.5t
N_gx|
>Q=:
K1t]
?S NO
Gc0V
!N%J(
kqx# "
[ ut
2f!;
yAKi
M#><
;6K+
O!Vd
dA#*
aL5(
uN{
-M%%
ZgHT;
pF67c
}t&t\
NjyE
6geV
ue1V
/ZKss
kvSVo
QJ)~
[ls^[@
NnZX
NWN NJN9NBN2NPNxNbN
rN<4a`gv
"zu=
w6K
|QZ4
H:Rj
_v$X
$K*%
w&D!
N c
pnF"
0h Y D"
JgGX
@yQs
nn1&L
=S/;pB
n:Gd
HX8^
*tl;,]w^
m6hs
{v<2
QYrr
/3]#ZS
{4 y|
MY9$
]+?w%C2L
RII#
aSwM
.F*$
uHH'
O*n;
Vi N
KnU8
:SSp
btQ
BK9~
W$[pl
%UA4
f2E{
Hg?8
mI<Zs
?y1r
SOmj
DhZqAj
{"[+:`'
tb;E^h
[AK`=
s_Ar
vjG!e
y:A~$
J <p+
kU!u
;_oEP
A`G"
F+ Lk
<A`q
!|Sd
"RdEqA%
\qf[U
|4|9P:
qq"!l
qvgx
]^^Ch96
scA.
C)"6
^A0j^<
u~U_
v}%P
Jy '
4| *
7hpm-
'=3V
A4FuA,
i eD
S1&Nh<
*4]QQ
;s;4
Eiu=
'}8P
*hsj
p= .Ij
IY{MM+
mE b
y2(~
(sR>
Esa>$@
e~JWO
?rFA
1) Ry
L\|=
Tb*u
<ncZ]3
dJ,n
!u|K
' %/=
}Ij7i
"b=m
/+Cq)74
;B()
Ju$*
Zpgp;
yWP%
K@2y
Cm;q
sQL'C
lIO%
Fw!t
OStr
"x%d
1/[ SpA>/
|<:K
/AR\Q
>H|6-f2$+
l z$y^
/MA98>
6ij^
~eY7
pV K
W/sC"
f*b?S{
J-J-
TYtD
-M>r
^s`
]:v5
H*D W
3lF'
sl=K
by=#y
.wgg
m[\\2
;pe0
?{'>X
*.2El
5If
^cAs
&dWSJ
mle5@
GP}Zp
Gc (
6[ &!~
v#cA
"0J0
J{F
KqM A
Tjy/e
gjdP
} z(h
uILjry
uaKA
% s^C
T[V:ff
osm"
{_R y
y!sD
X\k gD
u*!eV
kq@N,
tlvc
JVE
#]]|
_ P3?
2|d`
w iXu
R^q1
/ OI
po[{
C4DO
kiVAIR 7
>C\
$W'5
J\g%
4 LN
%?NA
gjsO8LFdt99SPfQJ
e^^
O9(
q0 J
AOg(
sLgr
n5Cq
%P%^
W_Aq
f6?lPo
{4]:
5q)2
\voE4*
qZ<Yo
a7"`R
%F&e5j
$BFZ
,`1G
]6 !%
Kq2 `]:<?X
YSn*
iW/$
g vz
Ii)S
E 5Bvq
DZoGo
Ll0~
{$S@N
{Waps
NIb7
PkvN@B
}dB,
3Irf
L7"
2"s#
V@/J
I _3
Io |G~
Tq&M
@C}H
C-8,
(GI@
FCRW
]S#3
NG3&
@ dFe9
}c<A
lgq
R)G
BsB A
w9`6J
?J* ~
dQ$S
{;~8}
.mUBR
Iu63`G8
Cg;$*
pcw^
y/SqS
]ufP
S%Q.1
M>f 9
',/
3h(_
yu"Z
get_CurrentThread
JOyy
-4UXO
K{{d
&ZF>
_y(J
] Z=
Coi$UR
G SP
hd!C
x&]S_u
u/+y<
YG *
i$`U
A}$n~
Q U!
)$$(
x5zm
W+Z#=e
dw"C+3a
|F0B
<k]%
#L b
{Ex#
(8c}
e9eg`V
"G*DlF
yfMQvm
'ob:
d(}|
yy`(
jTOd
G r4*S
`)/q?
BKOu
%r(4
pn|Y
%u4r
H<C
Z{G#
B4t~
tA3]v
0_1r
W/id
d yaK
V `vF
}:&0
VV>x
:9j5
:/g:
kcl5_
|2*
Z=aNR &
P]Mad'2 Y
+l`Z
=1V{
*Q(I}D8C
`:RW
y v
f'eu
k-)T
'8DQs7
?_LFZ n@^S
5x(>
,d_
enc\Zu
p<"r
y<{_
NtNdNoNiNbN.N\NhN
eJ\*+:
76m
df8D
Sleep
v[;
974] 4
i>W:?:
L ~]Tj~dD'}
mG7n+
1LKFh
y4"K
R~V_
^ Kd
e5qz
hVDf
lX$GM
6lU~0
8 +I
HlvhFHpqkqH9Z5
J6=*
rU*w;
0V0J
+z X
B=f 1
b'/ E
Uv#B
vg{l
\ww(
^a26
:0?Q,;
!FZ{j
r^4DL
WUE
Da f
&i"$
pV\?#
_A-2
+R2 u
cu~F
({, h
c MF!
vS%9xx
|!,5
q'm1)
xS0p
RPmE
L#a!
a j
RZAa
hiV(n
i*Ed
{$tf
>yx
,gLXH#
GvbVG
.qALK5
+N|X
b_:Mf"
W)Y2
P?'84
AbJ{
9ZpD[
frHF
a!L{
M W,
=@G<d
#yOc@:
TnV5
{* !
0cN]5
NKNvN)NON
z{+B@
'dho%[
1%vdE\3
( s O
o3[k
@A K
1 MvB2g
ob2n
8Ibe
jjwA
'c?=2Oz:>vU|E
529
]lnOD
TjlD
VA42
z{OaU
04s^
TY b
TY d
NoKA-
[.J&D7
g5<)
0aZy}
[f!!\2
n0Bq
j$qH"
NOHWg8
Ugu0
X[fLz
b7+b7O
x~Qi
6EL)[
W'W V
~9M
bmN*
vZX~
8(Xzh
d)TT
=.k[<
=xb
7x ehw
wrn7.sX
(qun
Z^%_
;wR*S
L5YS
.Zqh%ke5
I`2#
}*bt
Ir% [
Prj4
W|5a
e`c/
e,]{
[bJ{
5HC;
K;baJK>
mC;7
t{C{
Th+T(
NcN?N.NrN>N6N
M1a\
RD0_
X=m&
cq/h~!M
R e7
6hU#
R* @
;_$X
#t?uC
d&P+xE
'\\I
V 6j!r
E'IY
Rois
*Lh79
Hey["z#
QJWP
n.\]j
mhT|
p-hm
cr[c
S{$L c
._(J
I t("
k/xHfR
dY2!
!@h
,3/K
,2N)NRNBN*NaNJN|NpN#NsNqN N2NhN^NWN
`'K3
%?[<O@
0B]l4
E37E
BI 9m
Tf?rTq
Lq&Z
<>2
Rkp
JeHs
XG&
8a S
hn;}>W
J 8w
:,NRN N
ucVL
dC<c
_D+Z
*q/O&M k
W%b<
AE)c
PO|s-L!
Rs:{
h X+
N{N NQN1NONFNvN4NMN}NKNXN
i] \
-qHC;gw
o,C}
!@]&0
9ptM
XmL*
zD?{z
3!~qa
iV#i
sC0x
ZxbJ
"qhY
iufr#
r/fG[
)~*)
"oUH
WP3j
)~*%
kernel32.dll
DgGlg
Yv\*k
lu+r
MxX,*
]wAV
9 lYS7#>
rdiU
J=4k
81)X
2xX%Pe"
c8)
v]vX&
9U-TP
' '.
"TOH Y
Y*.t
,18/
h) ^
#wwe
`+#'
$+2C
c=${
[ /
HUT
aACU
Z A$
pq 5z
Q=`B
ge`#%
LiC
Cr*:d
b| ~z
7.$
cd>i
r557
Z*$J+$
?{Xl
A=<!
%o}I
8C8#
;}}H?_=
xW&@
nVVW
9y@$4
% 2=
\"gW fO
M3V{f
WV ,4u
L%)
e/(
&4Q0
nlY;
0sQ&
)1t
2KJ5|P
]"eH
~m-[
{=D
#` E
j0q@h
N NM
@*x
i=zG
U\9H
&OLTj
xw9#
4p e
t4fO
CGu4i
7PF#$
hL"$
mL9i
hX d
I1>"
j[kc
\#Oit
'}f}e
M|/Hd
0 mn
,em!
vmJ"
~?GD
\[<X
{I&<f4
]!]Y
4.#y
`'Ve
Q46=P
]u-\5
@o<=
mU~*
ct:W<
"i/h2ls
{1@A|
4H5(
\g.]
m&wF
(@ ]
< }
xno{
(@ .
&! "|
C(gP^
_d$w
(Sz*
uU:M
8zF|
(' +
P8rME T0L3)
_ /"
p-s4
,oa@!
eXr
DEa
BiWZ
X\'L
#^W1kx{
"fBc
D7*>
T7~k
4J.8
:mE/
Vo-@r
.Sbg
\J?JN
{yt\
%PLJ
jNL0
@<[+
y!E 3
P/i Li
:M"+a
Iz[
, T)
4dBp
>c@2-
eogo
N}I
:3 i
:3 o
zb`c
.m%XFzjC
z95n
jFEI,V
$GDx%
;}^,
OdpY
b+%j`
}ZMLX
#nW3
_wOQdR
.hhj Y
Y%S
v ^r
cc=q
C oK
K1W\
`%{+
4"JX(
%]<en
i /l
NCp^t
6:5`0ho
KJ9}
Td;
f>D}
kBY^U
\?q
B#95
Ov-W
\ZnZj
l;zj
`g3r
yw6De
\f{R
cg3
NNAAU3uEDCgv
0'5-
#AJCb
f4v1
ok ;]
wweF[
$MzM3
aEEG
l|`u
C;I_(
K4X5*
`6 j
D$ m_
6/U2-
!R\b
>'bN
2 ^)
rQib]
R)|U
#T/Wl
!0o1
J4d
!0o:
( CXg
RI*L
d-7 4|
fD.}
}=B3
MQ(,
eS?8Bz
ShEK
o|!" E
[/sn
b=[h
=8a>I
H[c
)'&-z
e}v
_4**]
"j;@
+uE9%A
Ot*B
{('b
M|Xr:"
&Tl4
fztl
u7KTzk
D1NQ
$|Zo
64!i
e5a$
z+H?71^r
NFG-
J<TJp
nGV|
~}=
vQZy
Hz?v
N2NUN#NeN
(l,r
i@+d
i;Q9
T9d(L
D$wpWs
/M>(H
sz+?
@?em(m
.w2H
8&Tw
4q&,
WpO%<wp
@1ah-
^ wW
&o^j6
begm
s%z(
qs"HL:j
Fyl{
">2n
jootb
<a8QE
*;NNi
a(<B
uir[V
Se c&
w+b9
- 'r9l
!-#1
sJ$c
&X5P
>6bR
^R]A
tX@d\!Z
3Y[O
D=j4J]
7Q4c
/I!a
a!%[
JpLk
PO P
y1E,
PwM\[
-2&2
<v {
{W>A
n|LtZ
M[V>j
gWV|
!W5(@D
g3u]
:-x8
/Fiw~
1|,
',i"
sG/Q
#r(3
V+[3[
WhI 2
_zun
'd2u
P J|.G
>yPN
~^n#
{"/iN
}KcG `
{ -B
_"ns
>SOy;
',iu
e]$ >"6
vF!S
PC .
2$*%(TG
Start
(`6}
S 91
}|eV
NPNnN
f@R*
<fH5E
N~N(N
G[!f]ik
69ny
:k,j
*2@#
)$aH
oXo=/J
W9>v+
9X]c
pK)
hqT_<
'bLW0I
aU`k`H
/~KO
w#>I&
I1t
q>&0
_FBCD4J
AY C,
#{83R
q0aA
Y)
^'I`-
XTTu
6-0d
U4fi
@\bi
73R
Ys;$
=A?L
wk+f
B^6e|
Cw#$
fm|J
TM1
<8D^
L5[
44/!1
R%75
tzG1
9@rz3
| 1n
qx5:R
_i.3KPZ
H8#}
>,n7w4
Byte
joQg=
x\{L
A~3L
72V_<
zgz Be
$."f
Sv Xpp=
qi=j*l!
\B>\2
q$L8,
4}WP'e
_X$
(dz0Z
A5'H
7Hen
u"<-*O}
}8^J
[W)l
D<%k
5gG.
}qId1
<*c]
Um(~.4
@2zJ
?vgW
fI3AV
Ebi
Nt?kP[
-&0d,x
lds-
< K#
2.=!
P[!t
kE &
*B!;#l
s _p
+iVb
i7%z
#: S
prC*B
oDpW
|zH
]YQ"
mj>N
ELG7_5
|?{$8 u
>dJo'
) QA
N4o\
@1RlE
VrRP
36n2
Q0fiIqo2NhFs
q&~O
xW(M
xmrv
H GLa
lsabE
}sr'
&I3hvS/
&P:wO
l IBR}
`qH
!<, "
}&|z8
ioc
bC>
\^#v
we:=
e#F
pjub2
Dw X
_K>BK
"_q2
i q*>
x% L
H*NqNGNdNMNWN
^,`~
KHrG
W;X}
SM"9-
% &o%
=; Bw(Yd
t*p)(
#-qRQ
SylD
6Drzg
th.4v4\
bJxn
!i:L
{]bAYl
[!wB
<(>B
jOlB
Q(mmoU
I fT
'th
[C.E
?(mx
(&[
':Qe
JDa\c
o"rn
\ m'j3
%:nl
!3|F
J5V8
{FOH
wT}9A=
n1*
5 nu
pNiMTsavf
"<s}
N= gEm
;* t
j/ji{
]"8 *_
Sl#89o
mI^}
mFDMg
%ujG
1<pH
\:j
Xa1N3
.U#u
k[~[
8d>JZ
NY!z
g5F=U
5~gl
R+Ky
7&[\
/%:-
`x D
H<k+r
twv/
sZ!Jmf
Fv`G
f AX
N}N>Q-m
/ \Qq=
--g+"
00us
q;}u/
Z4'^h
e1ZT"
. NQsT
}D#:g@S
)CK+3
2Irz
1y$
zo k
ME5@
+ nZ
Wc%QK3S=
3sy Y|
I69M*
?2{V
7 iy{
{HH8
6(z,Z
l5Y:
/!k+
*)dA
Z[:!
n"<j
`5-e
#cq0
\Rg&
LnJ+E
H6t8
H94J
{*Bl_%G
BN&.
b9VF8W.*
4/ /
:# wa
:"+6C$
K(p`
<0vM
gt4]G
X"C_
gT)jw
~)t
7B>_
F WNG
n: m4
&?1 '
S)hw3J+#
y^O8
b3*C{
tT7/
M%Tfe:&
MKxB
u}4A
?Na,~
Bj1!
~oZzD
D:_p
NR8@S
=CPw
6g3)
4X+n
9t;W
pqF 33
`:kq4
ZWy?
CJ|aN
Kp*9
gFmlb
7[-wnXo
::3S
yDYE
,,lx
8_JH
h}"
8|A"
bgj*
[B0
ifjk
]0Mr
h&"3
}nl,n
gzzw
7~4g%
u|P
UNNK{
*tV]
/df[
8hR[{^
P pnL%
cNPr
#9N~A
\gh+Z
Cd>@
v `4
RSyM>?
#~Q
lDXH
;)L
5rfl
1P4`
/V A
[iEb
)17
vL(3=
32
=z1;EVy
KC /
h<3|F9
4
H:`-
%uz2
htkTf
/8L!]
L1/
,#&9
8#oaSq
OfYH
{uqU
thyx'
?XC62zX-
E f`n
1r[Z
N4N&N
fPuw
# ywfE
*'4v
po;~x
@vZ
{3s~
Q!=
'5MI
get_Message
-\0R
5EpE
Z!,M
u g^
F'\
oeaIjA
[l(\
;^[@
5.Fk
+#67
-9Xt
*QT=
8k|4
ldd+m(
i~,J
+vMb+
jvnb
fwH^
WY]4\
}a$#
!}9n1=
@BZJ
\V%WR[
qf6_
K@.B
an`>
0ChG
WEb[#L
@IFd
sco<
,`fC(
6l1E
wb:7^
y_u2Ze
.1yv
7RpT
LqGm[K
f pG-bs
FE1%
Vn
L(2F
(S8n
K.an
s%Rf
,8{|b
!VU
5m+/
@(#u
9 VC
O I-{
Gnq(
#WJl
&6>/
j6:r
.z'7
^'u;m
8T*,|L&
z^b1T
]?3lD
zXW+
6.H &
uqK+OGc
c>|,
8B{!I
\`fc
F L|I
0uE(
D9B9
T]#j
U5A[e
q<'Sv
CC.+B
7oudU
.I-
-X"cT
*-=J
Mt?gT2
:|z#mGnv
j#Ic`?
4H
xDh<v
cKM hd g
F-&G
$`g9
r}wf
%]zP:
[(~s
oa 7ax
Ke[P
[[,F
J@
Tr7r
&P!W^*
6<6&
Q9^4
u]Z; `
L|?
'u
Q^%ac hH
kq T
lmhinX
[;] \K
c>.o_
Z^-N
O0*m
^(+R
Sx>xK
yl?A^
@ef1
)Ijf@
rpmma
:?Ea
%[z|Ww
" >\C
-^ 3B[eMac
SsA@
i)5V
?:e7
=KF8
nc7M
-Gso
([-}
Y hMgbl
LdJX
MmK?qC
?`j-
q}i
gs~h
lQ+T
gs~n
RC3x
@.2nV
)>E\
s` p
1*[
7n2L
<+F(X
n}X_I&TS
h{J
u,~'j
KYi-
F:y&
~#FyEm
)xp
Yc: z
A1 6NA
_0 l
&1q0K
_pXx
?H >
R)xKy
ZJ)>
eYWM
!h<O
Woxp
xYwf|
kZg
4yQG@
UQB
F-lL
zf"*
>M_h
%(Xe
!hmoj
YrZD
*$]%
VDehy
sgiY
r [7
am?u:E
o.8D
O)R*
P7#Pe
PE}}
Fz!A?=a
.f2B%J
MtX_w
pH%H
oJ'{L
X 2
!g=#G
7V.{
H&W&
SaVWD
i%^5
b*
[H|_
^M%Xm
9@ K~
4g:`
yop?
RYwO7~iaZ
Omjc
3; Y
nN9u
q&%\
xl+
j/Ihsg
|s0Fm
TGp" 6
f\_"
s: jb7
.B]6I
)34J
`W;vn
#L3;
4P+/{
^c #
JFqi
&Y9f
d1#51
)!a~L
oz&tC
Z,Dt
O;uv
K,E{
+ d
String
qY=RG
n,C"
.eVn9
u1Pqu
A(vU'O(
*`T"K
C~o/(,
YG$Z
z^NA
S7<0}.
N4N8NeNQN
rQ&5
:|h-
4M+4
%/3(k
[E|:
)p&ba
n"-V=
I$N
NrNMN NkN
i"2&s
E"D CJ
<P+B
[7eU
*k;A{
h3>x
q%KY
jP:e
gQPp
#x}aR
#P#V
LYc4P
-x\hq
)mi
Un@
(z\f
X@Zt
8 zD
9m:-UG
!\#[
^w.8
lJR|
PZ-,
gQNF
8dC
9#bX
U?
3pn"!
ka;,
|sl M
vy@|
c}p/
:ht
K \J
3oK%
$ q
Ye""
\d{Kr
j[cE
jKD2
dH*`
kK$j
.RdF
X[#M
|U^B l}
EyU8Y
qHyQ
{db=.
kn}!
dT0)
vl IW
*8 Le
C@^S9
Object
'n^ja
iM)W
?U(N
mSi
%h@ C
an`
$:xQ(
wn`m
?jc]
3@V"
X gv
1$\u
Hj/&Y
Q*a9
fK*cl:V
e4GK
8U-Z
oWt~
<32f
T[EM
E|mB
|a
HC+Oy
PQ:%
THKo
kPVP
mlv>`!Q
N N4NBNhN5N.NlN8N_N\N NSN"N7NMN:NFN N3N
= $6
och!
B,=5
Lwcbr,
#s#
AYHt
Z0t:
V**'
MvkV
N7.<-!
lhw~
hJ[
wsj
G/)(
$:v$
,x'6
{Y}
x85
D5pCCQKRZE2
12XQ
`8W1
n3@n0
G\ThL4
NF}6St
K{"A
/_, W
TI acg
E@a
CBKw
`+Yc
L2qL
uiq$
P9&(
/uD"
fF;G[F
uGJ*
$c&W
7;$D
|+SU
*Z\UtJ
q$BGW
v2F|JkX9i
ZH:+
^[oz,
(}2$
aLX1O
zl?CW
kyofowhmIH1la
rA]4
| ;q
G^:S
#9VY*mR
r~:"
O$n3
C1p.te
+h]VQ
}.PCfv
PPon
HL7o
*;L-e
0MJ?p
tE{(Y/Y@O
>o#F
f Li[es
V4/ H;
*UO
bJ>C
-d$W[4F
oC'{9~
dAHi
Ti@Lm~
n'FC
*Ft0/
}JJ?
+-pO7`
O)JY
#)Kx
8HX)]}
5d$:#
) 9"
#8F6
H4Z#
N8NqN
G%zH'
Uchr
]+\x
[Z
47vl
N~N3N N5NRNKN8NjNXNVNpN
*icw&$
B c
7JY&
-7u
U_RN
gK%)*`k
!.EN
(&T
duUia
Kdu*
H ]*_
9y2p?
NyN(NCNwN,NVNaNRN
+eH
2LuS
({Md
7~}7
8"GH
A*0>R
/88>
+7Ya
WN u
_*&7a
]Iqb3
C h\w
$gbi
[RY
h^HEh
LlwnU
'Oc$
pnRib
bL?.
HS0Z
=,y x
0z.E
caA aI
I2!rGC
#% {
KeZP
'V"PEf?
BHRy
w+z_
O?Tqw
TkaE{]Z)
>29n
Nh^F
TG%/p
v{l>
/pGu?
u*Lj<W
DV)nt
"2:~m
:O9CR
BBC]
UgN!5
]>>s
+tgU
,>^(
[,Ln*YGP
Cky[
k&e0n
C*kS|
%C?=
iL:R
N0NbNiN.N
1`Y
System.Runtime.InteropServices
c&oF*
vQC :y
OAsc?c
"?Lx
12CO
,hWR
uMwy
\taB
O2x,
OpWJ
nHf)
X(Dg]
L4BK
;ts&8p
?kQA
eya19
%n^'#
Ldm3;7
qJ4'C
2s]~
'qno
6<n~1
|I5c4]t
]H1Q
'oc
#.*[DiB
U@|i}&
F%uX
=vYe
!px6
!y H$
uSas
^FMdb
T71Db<yB
H;MJ
HuN*G
]FISM?
/NXK\(
Rp$S
T^x(
% z$ j
fTU;A"LY
R#>u
N$N3NJNNN]NaN N
W|xx5|Z
ea*
Yf,:z
eostYEx0Ovj9lWd4r5d
cMWi
r5G)
!XTC
)K a
`v#
54%^
d5RrOV
8T.
"+(V
a3gP
\evW3D
i'2[02
W4'
W"o>3
"|e<dS
<C{j
T*fQ
@:#^
:k$:
be02K
h*"?
D*d
cnzF
E^KWl
'X>(sq
a78k
vnt0a
a S$
Ls k
K^;XE
P}vE3N
_AEY8
W:~>%
?6m.
%i*
s'IL
[o*2I I~
R+E
fx%BC
=A8r A
c} }M
Hp:9
>+3:
?8u$]
}"Hh
[b-R
}3A/
XUs0n6Sn3KewnjPfM
z2m=
iJV;F
vD$JIU
cg0b
Qi9H
X{A&
xAEy
44&/
i-K$
Ch6z
# HL
K9LK
&p8y
2Mtq
+K{0
EB9>u
(f|+
?j5K
&l]
&zG
sd)y~&
!>A`
0}Z=
U1]N
--0_
>JnF
Jq]uw
fUhUB
*|d9f&
Jj3[
<6fF#
JD/q
0GW%
!vp
N_NjN_N/NCNIM
r9v
;c~{
R6sr
5/Fw
F"X!]
3]4m 9
~#'z
U`"^W
`C|E
v(^U
BA#egO
{nSL
9O:k
]'E
(v+9
=@?X,
+=EE
zb2J
P{#U
Mn{/H
Dj:Z
iV\;
(>8K(
)GBf
C85t
=J5+G
4!:3~
V R%
~FTo
VMVy
S|dH
2=wh
> 1s
=CJW
C7wq
5J:X
Rz3U
v9Ec
dc3?
Ika4
-c=to
K>7H
Ffg(b
3bTF
%Tq-
R wt
\@F%K/5
@}!D)4
`'Go5y
sr;'X
R2,,
!n s
f;/H
,Z63r
N8NLNXNCN
+i9=W})h<6S
M]eA
f;/p
j}n\
p` $
,,OR
y` `q
->[1[
sJzx
<19C
Z N
wr:t
r{[>Q[
ZHr^k
setDYX&&
jiJ4
B^cqw
qUN` ]{^
;Ru}
=nO(zv
mSD"
s>}N
PNG
~$tM|
m`Z0
sffo
)%tP
728s
aqW(
zPY7
UnverifiableCodeAttribute
4BBo
Zo3q#
7cI;H
]t3>
Gc%g
W"o0
tEmJ
fGF0
=U0Rw
:^"B
_ x >
>} G
Q8wfs
tP~ N\
TON#
[Tv@
pZK
1%$l
lJ
"oDG Ek
20bY<
. m
xVbeU
/ |L7
y -e
cpFOB
"F#
"I& 1<5
76F0
ay_}
]LT%j
Umd#l
r{oe
m&(z
S~izo.
z4>B
6lC7sR!5|
K/M4D
Cyv6 <)
JH[A
"?& d
5 2IU
_^6
w-ji
' # -
9,xl
SFUH
~o_^l %
%z R
%z V
UUB+V
VJ-
X%EA
V:xV
"| 7
:.
+j[7
GL5vj
r`K l
~R S
e)*#j
qcj
XonO
#'S~X
Bi,s:{
lriO
V$)Sh
LvWa
_Ux_3
vSR*
Ka{
}L4Z
:i{\
%\c#|]5
l~VI
3N8U
xliX
rL <
B3 xRJ
\~ X
!pf;
=%zn
'7">
8,S<a9
R .E
yo64
R/(hob
"h503h
Z@4D`
X(|4
\+ ]|oje|
Ngw[
A0mh
W (m+
60Pe
oe%V|
r>hjf>
T%'B
sEvbJ
yj?=
R Ye
QQPq
XOn-
Sdr6
PkW66
LvTdg
BDLu
13R_n
/Y~1 ~
w1;jg
:R;j
J_$4
_^RS
5s`a
(w8w
y1!Eyt
DLa5
?7y[
-AY_
rnh2
%Qd_
4cKc
yiGW
glyF
\4vr
tU q
@A6=
>b;n
*Ar\
9'5.94
8IO9
\>91sY
>3w
>2Kw
@Y\Pqw
4RDh*H
tP@C
-WTu>
&y#3
#;jV;
dWe{
!}97
e&`+
v< [C1
n[U0
:&yz)
H;zQ
JhP`
kE5(3]y!?
bxe m
kkUf]C
I(B
4fA
4s\q
9xus
/5|e
q} 0
3p-2
Oru
`xgJQH
xA|Gw
H>I>
r^!fm
og L
0} +
@6Izh
IC.k
[ysD
l[=E
[^*5
McIl
G1{C:
XW4}&0=
9KA
w}nr
kKsV3
U/kk;0
%W;
*)@Xf
nR>k0
*mKpils
6fv.
ftF0
Ris@
Q;_
YoLL{@"
2"x;
AUI1
kKH\
bQd!
i~$.
$g=
aRU$
\*4IbT
)H& "
Nc7{;1V
[827>
)@l.l
[r0K
a~IS
2EUMWmYgzeQ5ApfJ
Dl<(bP
c?~'
<\0R;
sT7vW(
%M'!
$: n
N;S
P $_}
9Ey
gP`3
4"`y4tVa
>D$<
]n}@
?-x:
IdjLu
<hnF
U=O1
[R{ZR
8z\e"
HxXC<
G<aji
Vgum|{
L"0f
7F\T
oS!#
]`Y! C
[9q}
,E y
7OHC
;1r{
#?Bh
A>5/
3Avh%Q
sND1
00bz
nr\!
t "M"C
g_TEx"
lW2PC18NIRW6L
m5QI4
4B8K
w*:
=8pc
~-"H
bxL.
3?i|ksd
,feD
\2*F
zC^D
Zes)}WSIx
sM?\
b0r0
$]3qQ
uA,Ih
/. O
.vgeXV
Jl<
oL,0
'\E^S
xGO|
:ELJXZ
Mjt
T:<H
#= ]
@=S$
=.0-A
D!`9|
7rx-
1 7f
-f)8
G-^C
ld7gdGoCMu
t']y
Bf`?
$:RTT
h5u`G
~4i
&PQ#
#S\
TI:_Ye4
=v0W
8LYm|
UZmA
xgUu
c]%4
yDL[
etQ
(K{
N NiN_N
LAidFW
pk 2
)kN6
Q{*!*
#Z6E
System
-:}T
=[Q/
C `ga
1YK
)(}=nl
Y\>k
. jL
#Z6j
Jd%
c^L
.MvIJJ
>H_Q!i
H!h6
Ic=z
>0eh
eCP;
Xntv/
"PV's
mYOj
<e`+Y]
AbjWDE
{P3R
kL,!+
[I&|U
W+F(
U~4aoYo
! m"v)
`+k;W
o~|
l e. %
!-i\=
T_O8
`^rz,
3,&l
P_ L?
tMHm
L\6UM
R$l;=
*R?^
ocBo
C 6&
oh_h$=
emgX
v;nP|
Tb[i2+
ZdJk,
'Er8
\QM/
M4uP
OOSj
_<Yl1
thqp
A h4
$p)Fl
wiM:
!=.K
v_D'k
"4N"
_ / K A
,|!?
mn8(
Okq3e
r?`^;iw
|PN>>
w!iV
f30V
}Z$|
J;Sc
*Rq?:
MLH{
P`xym
MRm4
Z.BkiG
M*wY
c4u
@AZ:&
#mL@4
i &(
@Gnv
i}-~
DJ59
Q+W K
cM/zHP/:?
- Jv
RtA
G}rv
M>Nd)
4_}i
-[zSz
P\Q!@~
HJ+Ss{ i
&to
CmyG>
(ZdV
i%H'
)$[O
R@[7AZI
dE`~
K#:B
)8 x
uw(,
W4[*T
5Z6'
.VThv
>KI]k4/d
J"NMN?NyN
jr 9!
:>n<
5jYdA
-;4m
_T<NG
&e+:
r kP-
4 [7
+\h~uH
+|Q7
Q> I
bM/@
7$Vk
wi6-f;
&Z`,
JX$w
$xqRs
2uG{
<[Z\Wd
/gF`Eh
Y&F
yTv^
1!$Q
kM5;
[Rx'V
iN{z
(CcR
X<~:
$qSl
p@0*
2|mJ=R
f)27Fm
" g
tHMv
qtPg
/Hwc
U~:W
j('9
U?_
_Cx;
2[*=
}:||
#E*L
Xmz
u\y)^
jb\ 6
J|40 L
$4C!
7w5E)
5a=[
l'BI
:l* @1-DX+]
bcg*
a#p6
c!(r
he)Y
wz\i0@
jg/ha
B8Q0 2c6
0we
kzd}
]L_Cs
DLY7#
~`81
>%Qd_
QN BK
_u3C
;j-yJi
o*oX'
86~h
^@@f
sj $
Xk.
;sgaH o
D;}w
q dX
?"o:
`a2j]
3yFC
vK>}
Tu&z
0p*P
WJK!$_
)!e
V|s;u
n1gu]&<
Q0PUSE
.s()
n] >W
n+!@n
OBLy
9UX
is9sv
Cl hM
]Py
@f2v7
+-a$w
v#=&J
@5
> 4
%$x~
49q2
'sF
&=|%r
CaFE
'*>2V
N4 2
$:~;
z]D1
a8<L
+294
ZfqK
H]75
Z$+x
\rR@
1VL'
X>4*
1vXL
A|kh d
e|Ib
u+O=
,,t#Q
&&,rS,
r:Ox
k@Qu|
AN|b
&C2]
j^'m
<+@cN0
lW'(R
>ebu
IDATzGm
f:v
g< b
#e4 (
Rzq\
IJ2q [XW
mtbG
^NE\|<(W
3,\A'
*bd>p
e'/
W5B8
HUT
`T;g
hEY{M
&evNX,j
g\}K
`S9
9~K;
0H7\
`S?
q?z,(
fSy x%
vquU!
5nKsJ
30j8(
k5&az
e -
:ek9
</Pc
Dkp`
kAX|Yy
Io_QI
(Oamc
DDF0v~CSA
jL~d]
t/vQ
!:Gu
[J P
"?2vs
|/OX
"Z/a~
DUR f
\}\wt
goZkZ"
08^M
I .h@
A!?A
Y|*r
@ l
XJf~Ts
ryx3
;+<dKk
\System.String[], mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089PA_
;# 1
ej&u
4-pH}Wl
O4 k
E;1Q
Xa={-
gP-s
4{^7N
6qp2
H`"-
xKWE
V ${
k{8M
4(\
_uZ-
}hJ]
}=r3
HO~C
V]}C[ '
^5N'4
Au&4
$SZ5
>)3 P{
, N8,
gTmO$*(
0v1dR
[E;wwP
E1l
V6}K
. F{
)9E>
# 7
g)4I~h4
4 0_
_TVYg
~p(G
G)Ya
t9 |
po =
>:g$!Y
(A n/k
1l}t
K*!1
[;Om
`n$ M
5<;z
VM^vJ
SL M{
4)w<\
0t0t
1vs7
0]+
oGFb
Eq&)C
4{~#
T'(g
I0e
qI\<9
,JJ
w]A
#X9
`IOo
[HBg
_qD ^
^Qg.x
Ka (
$76]j
S`}:
i5O-*
4}l]
p:h>
:zWk{^]J
,vAM
_z91'
)=gE
ResourceManager
VK<L0f
toD&"
rq_O
n)I<g
]$8 pc&R
B81k%
M,jg
;u[' Llz5T
=_/P
&l9z
c^CS
#=b :3
"s1@
7vi)tie
=uZ5>1f
NqNIN|N]NsNDNLN^N
-O xm
-/Zb
bT5/
J,.Ow
HN3Z
V(I!c6
lQqBo
,} 'l
T(Wc
}>9W
u7n;
FbF>"'j
I[%h
JK2)
aPJv
(HVG
u0L[
C0RG
pl{]|
cN4m
v[cOh l
z6F
\,w"x
!@+,r
TzKX/N
/*qdv
%! O
{[wJ
K~k@A
jiQ
f^\L
7xb)#
I+u >
xdw6
}zw2Q
:SKd
/NxAScddZ2
VSaT
\xbY
mB]y8q]
; ,g9
N `@
J?L
[7s|z
Qt;T[
[rD"
y)^5N9;
~D .
,e2ba
z%L^
KHOF
%:yr04c
G0m2
[vNeb
D B)_3
.R6;
H}YtW
J^ I*i
}DaE
kL-1
w,k &
oM03b'
^1#.
8chU
s,HT
LRL]Z
l}iY
^65kL
,7+0
u{ F
[d.8#
xO,B"Hln
$gA
\,~G{
]>,UB
Vm@
EuiC
^^$:1{
DzU!*
8 u!
]d?*
vtQ:!
i<.j
#^ier
E0}B
jeB
y20,
a=\*bhx&
, $Z
Ns^]
B@d9:
c~;C
rvjl#
>Fl<aZ6i
g0X2
^eC|
K: &g
P<)*
oM~H
=svoay
_%5L
wI,n'
i*)b
Lz+2
xtx
mt7
VxUG
YO Xc
|Jk
?M #
lyg<+!
"Y[=
_3~U
YN96
rL&d
p$8q
+5z#V
5(,>
J<q$
t F.
&KB2aX>l
"fiOj
Ymw>
O~W4
G|nxS
I"<vS
1p[F
s)P8w
#X1zp
woW{
AMG
=f_'
j@@$3
;*Rd
p;+H
3eZ no%
mjN
pjb"
i"p3
90E$
kAp5
A3 C
\6{_
)y`%
)G9>Y
^iIM+
2$t>ff( af%
:VE#N
GWgpU&H
Cpw}
9;u1
@NU;
W8Z
T8]T 0+
>O},
62!~s
-oqM
EwP5
s.\|
n )L
^4\-
E8Pu
$y{J\\V
CSCQf5
X@;/
pV"Q
rdq7
=Zwc ,p
zn&:
<r?S
zur[!ui
TNLo
W|ip
~v]\
L2%]B
a^V)
Cer?
tQ+x
!FZ\ _
UpJj
` _ab
;DbP
XJ,>DjA
a1C*,
7*w=
,Wvq
(~,|
-1{vx
ZZ;]5
=0[#
>$Ni
C}yp
XZ~eP
FK%g
6d~j
m s#0@
D BX\x
:"!RF
RbER
;q\o
.;=_
7yW^
dQsDFJ`
8<hc
|:* =ci
_aBF
5H.a
9b!l
PgL*}
}"[D
+P`P
b.q"
](19"
9L4v
m &5
2sTM
Zt J8"
Epp 9
8`^gY
IZ:+
\{~Q
IZ:"
U&2?7
c+eb
503n
uU}|
i(A;
BRz-
.~t>Mg
8[K~
st1_=
%SFw
s_B-
:,@I
|Rs[
xSl8
NcN+N
;8k~O
?|?4
jAAC17
x%H^k
KqJK
=t,
8tV)
tB:T
blW-
Ldz[OC
GB1
lmW=
bX_U
"#>R
fh0BHrEWWl
[R;q
v%Lj
DJwC
t!i5
C^VBY
=IVt
1 i6&3
a!{N
v<s>
za,T
_}O(
`X\X
q=_Q
@aC4R
lgY&
N>=
PO6_
`-1r&M6D
DoXh
27 -;
8V:T
'~8L
NmIG
G^K@mQ\yfuih
":U$
G^]Y
ytHP
r5a_K.5
[ ?C,
b `k
?NF#
:R#}
6j>C
%Ic}
j}]4
}R`a0u
ypwwmXh
FPA5HTnK5GKWf36
4m"<U
V_C_
)Q;
XFLHY
>m<MA
eAL(
;\5-
,g')
~4Lc
HU*9y3
=A\9CE4
,~UP
)bP2
Q 1J
2ygx}`k
@;jU%
GF{lV
4B_=
?,)
cvm0h
j_Fz
3kLk9
DialogResult
GcVE
J7|a|
(KdRL
Snt?
6Qu,
l(g@
eWG|
zKpml
W{|i
W"4k
B4l&
'g<U
,Yx[
#uV^
=p=z]
9\nA
tYr+
8zF')
^p9h
me2MC6
&*STi?
SW+a,4
:g1/
tRo^X_
ZM(z
k8if
0c2.
fMRd
p<:
[VC,8
"@^x
j5ZU
\MFb
^q5fGF
:R1~_w
ZI[w
""k+
~%g1
:]A6&q
nL=n
2wdd{
txi
/7?
\ \,
O}(Wd
5n !
te&M[
aI]n
})7G
e`,@
\ \_
xvCn7
N: C
*]LFH
y\1D
:}jC
oJPo0
FXCQ
5t#!
F4_
uw;Z
PQ|C
ti '
2=sFj
VG+L
^a*2
:+ @-o
qAqz
kEVs
X 9Z
ksnGl]@Gr
6Z6Z
>9V}b
fl?M
p I
~t8a
N)NpNFNfN?NpNpN!N N~N'NHNvN
=r j
sO wl
X.w:
Microsoft.VisualBasic.CompilerServices
qm1f
S&=zwF?
)DMQ
gn0Um
HQbb
hNY&N
|J!7
SJRf&|
iAPM
5Jh9
)puD
6(4:
:&UlL1g
zxS>
(mAq
S%Rs
jB\NU
iHq[&
N$jm
x|[{Y
n[Tq
":2
87L;
73r47.E5
jI/)enV
BD1F
cIG,;
3>2y}
RXcat
1ib
= cUp
i1p4n
B1sT
Z;oA
Kzf8
>X wF
h]$hTR
d64R5!
?>ZX
$ o
LYqz
/F,yr
w~(w~
o,/Y Z
Lrn\z
G.cH
sVxTQ
n l5^
v G<
`8F]Sr
|~FWE
|o_i
7eu(
6mwB
'{hI
`a O
|0Deh
i (?
#;US
0+6e
@pdE
NxNGN
j3C{
$Q:[g
qYb,
c]]/
N76g!m
3 C
k,gYZ
`_.E
%{d
&K$l
1_V#:
xxwmrVlSJLz
D<fj
&r<d8
#Z.4
"q .y
Go(
u!io
cEUzl
l%7_[
t[OH
-7I$cZt
k7q8
Lv\
QCiAbs3iGqb
L ,U
wSF}
zrOr'O
Ze+T
u{I\
~pj`
;jrP
gT,(
aaF>8
tR5Nu
un_.
;dB&
Rw#r
,jb!
VI{>v
YjO$
?aYFA
[6>
4#X^
ak4+7
_ ix
JDVI
hP7{
a+[Z
hP7r
c?kL
/vZr
OK2G
2"(a?[
PYojd2
Pw#(
s<dt
/!M
6)zIV
8hIzVr6uADIDcy
a%V1pZ"G
9lT/
1,kii
1qTm
k}<T
1vQD5
fWaFMKfHHE
, <Z
g3lo/
O(|G
4U]
-dYJ
q,t{
uqPem
F!pT
& Sc
Ixht
Mf]#
C iA
KDZU[
MUcy{
| E["
{_nKb
h>oe
;]sy
W8Me
1Obz
@TUB
D)l+
n&9Y
set_IV
NwNbN
S'7|
ORsej
) z+
Td`B?s
f0l3
+ a-7
|\'K
~9P;rs
Ho[+
f I[5
}l\z
-V?
{P8sF
gZq5`
5 o4V
2PxN
lJ<`V
F8;|
nAg.
sH\%F
63 +
x5X&
g&TD_
k^ah
}OqS
p}Sf
KzM1
:mam
,B;9)y
lTg?
mv6+
2@{-
Z^"w
b!TW
e k^
F6%E
)*`HJ
/k.c>
'$OQM
T9QO_e!
N3}x'
K;W5
U"d]
7$X
x[IQ%
T% '
b=p pi#>
N/Zv
l+Xk
? KX
(@(`
64s`<
v7\LOw t
H=1q
']g)
c 6*
&Bi^g
0+]~
03abS4
o~sLX
l'ZK
+LXc
f w
^ I\0
c -[0
: YM
's\xRu5
LvSlrM
'JR6
8]e)
|oYU54
!:dN
sd;ws
nvE
gT 5}
&N D:
K|tPT
V}ST"
Be]Ef
eTtu6'
w5z4
!5PGy
_YE61
;{*m
}<5z
+e#*
x#v^:B
EmVN
_<#
:<,W
[Tc}1
jRCs
>%UHDp&
3ba61
N^NuN;N|NBNSNpNEN
X**U
k&/Q!
)D/ n
;d],
T L%D
G2mk
F-{:
w%%[
o/qs
ye[
dm .
KOL
9*2a4!
q77v
p"7)p
6ix
pb&#
pZ,81
W,#?O9
x mby
fW5Z,
5Qv:OP
^bg~"
Qypn
Clq8
BW}h"B
Gk"`
MCL8 t
:_ 9
aMNJ
n}$
_&hC
JIl_
>TAG
)+'+
U& i
[v-b
(`8d
+8u0G
d?*lx
gU6 S{
&p^cT
x]B 4
LuAZ9
_hewj|
*e^y8rc
/cY_
J#nW7
W,T"
40UG
;cnd8
l(Oa!^
t&!V
-2sA
y/gj
svPq-g:
=D3T
N1NmN
VIM $C
]Cy U
.^2
kPM J
)/xr
#GUID
u?4^(
Az;kUN
KwQjt
;"o|$W
)&6erEq
B2>x
}Z|9@
)>}FF+{
z@Vn
Ik'[
-vR;
>]7R3m
nBOH
qdDm
4fnLBz
A><7V
%8q/K
\eTM,
*E2)
]K!7
} YS
+0J}
Bk$V
9cg}
jE}'
+RY-
En@]?A1
@e s
FoN
n-^!
/'!|
:o)kKw
KsTL
TecuB
` xs
{e]7
ao%U
y,$"E
g*<o4
=QsP
-LZm
GZu-
o~WM
qPL-
I1CX
#f'+
P]A/
"U5|
(?j~
BmV#
Ywhz
sFp
% 1D
EkU7.?
#>n\
`N9A
f ,1
i"Cy
!2|q;
eg7&
M,r4q
0IGU
i,*v
7Lbi
T`./
EEZu
[mVRO
@XSFe
Nl KF
r'<{
NFNxN
e2o7#
t3Kj
0- `t
+F}>
sW*[S
(Ve
c/-tM
6Ze5
.KRl
[CPT
?i/%-
Q+vWh
C:9I
75-#
%Tps
t*e'
I][1W
VpRs
N-NmNZN0N
}2rq
{ndk
jgBZ
TBlib|
OKFE
9qX0q
!l D
{M1&
]T><!)p
&a*
O,9U
~Q6d
tHIP
w |X
f[]P@
'!(g
YEyU
pX:
il}G&
+E~0C
MEGa
, =*
i%>b
.6.A
-{E^4
\ cZ
6nk/\
[7UV
"xqtF/
}NLXA2
zw#V
5?<{
^Ts#
hpWG
~Fd S>|
ZI+/%
0= f
C.&v(
)=ov
lFsV
S257
dL3qatUStvpdoU
6^Nw
1nN
R!+'
8=(,
\UwXp
0 2*
enM\
wHY
_MxK
5CX{B
Ulh{(J
HFj
rAH
/XP`
n*E6c
E1S #7
!<(n
YcwbQ
^O;7
/=P@
_ xk
l#\Z*x,H
c`U{
t C&1
:F{V
x$ V
G2,i
=\\z
~fCo
~I~C
%jY{
S@kymYX
VlbR FX3
-4 Le
$K v
s4(!
O6CoR
aIPlT
5$h
d y\
6A2
X+x_!
\Sg0
^Q&xu|
CI5z+
v=12
|GdB)
0.de
M2CL
aedsv
AssemblyCompanyAttribute
PJRw
hDf3E
*2X!
Wvp,
P7v{
"Z\-
LU4l
xXdt`
F CS
N j2
]t^_t6#
Ewkle
]|@G_
m]*Rb
%~^#
yM \
<`@U
7~p
S]zu
dmv2
"&xU
l@%@
SxMh
&:0m X
g'jY
o`0m
niP0
.>S
Y ^
.W[ &
!-4
o}%#
B bN
t5 sry\82
z"^a
9:$N
D;_;
0nihB_q
DH`n.
I N"
[i>t k
kAk0
5 ]>
@_VO
FZU iy W
[rvI
Cy!ob
Tf|]`
44{"
;'$jsP
Y{16vu
-ER|0uC
6xB
1+o0G
S{UL
+;W,mcS
T2T3h
|mK
Q8 ^
|;n{r-
ly@,
)|p3
an2[
)_|
;z s
)P^)/
`k_x{
$Us7
c@\u
IYg
o.Sc
un ;
Df+,
1LP?
AN c
Jym.
Co|
a<1s
nMg+
0&Kb0
'C Jg
1+}n=
J7[4
r/VN&<
mw/,(
&L )
\DeYb_
)6DU
8+8+R
(/Iju
\oRR\
z2B]r
jwh6
nA>j
^!j,
Pb I
6TA`
/V+{
Z}*
6 A5
$3e
nv ,
V0iY
W xZ
RD+wm
w7D9
5Tw wM\AA
g%=V
K"+"
jkM#x{
29>
)}TMB
Nn g
w$WE
CyP+
*VRC
Be|[
"62
EnSY
ooTkf
r vs
Okycd
u0{Z;
"::W#6`
29>F
:|Xi
`.rsrc
F%`z
!OBDs
]eL~fQh
bKtTX
<P\T
YoR?
IL'!
ZGl
f9\1
o-?KI
N"N"NDN]N N%N$N%N.N8NRN N
7d;v
oi* WD
67)*
|RMI
"[(k
::Hqv
TCo,
z1_8
TlyJv
h#|@
I1A.v
Yhaw@T)
yH 2
bu0"F
>}^nA
zDA^
.No ;
I8o'
m@'eO.
ro3&
3sJby
>09:q
W_`y]c
aTHh
h4)R
Hz]G
IN|
Hz*,f
D|jB<
dwZ!
*e|L
b !
Z{w
yU+WR
vW9VrA
A~6-
;3jp
NnN?N+NaNrNTN+NrN
Vko4
qA\X
v6bx
*3Fql/
wH
xTM),
,>dh
v? *$v!Q
IZB?
V*iN
TR>JB
C)'X
1HN.
u@Z[b
9k~0
N e|
(V`O
V3&l
U:G`
z$T46^
_&xCv
} '`
@:;md
gp2xp}Cb
=/J]
[-hu
G@ )##
OZwU
zrd&
V1 z>
n,'1
9@wj
T{00
$/Y)
)6o|
1SFwy`
vO(|
zH+:
i/9q
.zPx
R6;U(
" y\
);K?
.m3t
%R^Y
*0>5:d
UMgg
:#[f
OTI
g%BN
;&(^
gYa5
#Strings
7XiaO]
Vfe?
!Jur4
V!u{`
3 }V
<STXX
58$X
P-ybI
G'AH"v
*\!![kIS
iVRP
'aU
rtcY
<MN{NQN
Syi"
2h}O
:Ze^E
-P
;lB
- 5>
TEc"
k>{S
|OQ`U
/ t(M
,Xf
|`o[[
.b X
Ep-2
dX%%
O+r/
f%:t
0V0{
XW=;
;:T9
Qa% 1
2rOD
Wi6>
>hk
;@ui
@'1p
bOX7QZ
v;-1r
z>>Bvm
[8Z;
xa<
]?Maze
qbtMG
(Tk}'
RAZ
)>r
C>%s%
@I/LO
r6T'
dG>u
50&J
<Qu_
_E$Z
I_(4
aCb
l\ (
~<vic|I
C$m}
Jc4"
K "b]T
OT-%
m?!
1j^H5
lL8S
xLh161
,Bld[@
p u/
xn;q
`#eP
C^CB
iM./8
K)Bx:
m0 0t/
VLThh6
,ny\[7
I x(
0"&c
zkjA
Gw'^y
jL`q!
d<^o
aAq`
Bs3m
*ufvq7
lNTtd
^99
gJ~
wWE* U&1v i
\n (
u?}[
qq
8*'h
9ZDb
c;
C]#t
9'0k
p|vD
1z{X
SCHi
g(!CJP
Mgg%cUa
y-8M
Y+9K
4*,f
1Nd`CT
7|W^
AnlU
/fhc
mTq{L
L-+|
oc:9
ki!z
juL?T
E&`U
2yg?D
`r"H?5hEGq
X4p0b'c
@rq1E
v3 2
"iF2(G
8m6Rz
NeNWNlN
+5wX
g<M.
^0.Cp
"$&
L 0_i
Qw)XH}
hXKZi
F\.PS
a{o
~vw E
LPPfk_
q1F;
8~0F
zx[p
DgO#
%Xwc
.<U3
&N!n
&V/yL
Fh#d
h&/6
,XC{
.IW%
oEX:
'MEiO
_BWZL
dmZ77
9Jv-PCr"
*upz
/>j ^p
!8o[~
LM m
.IWA
51kB
%i&?
&W*'
sx2AbV9NO7irMse0lw6
sS:{;
LGCF
JLFT
@>Cn
4V. 03
t.NI
'}V=
KJgw)
g;I^uR
||
Dk0C
|[ ,
2xNeN
9['\
G7 t
^dwl9B
-3`ys
m0cE
]6E[s
?3#C
/NU+
^l+).H?q
Ck0PrLQh0QloxZuk
TAm
|2/G
fwKH
"6*]9
Mu`?At
|:5Z
[/%L
gx)'?
\J_
?tMCe
H+Nk
+2y9%
;iK`
wwCu
ZI.A
42IM
ymqe
+3 Z
2<xE
0 VX'TIU
fn@'
\bds
.ctor
7J/]
tt#G
J$(DAZ
@'?|u
`b#hG
:DM u/{
>i
9 UF
|*fo
p ~q^H
8, m
;_(%
&,W, +
n"`!
&W--k
mT!?
3c1.
,$&j
u{AC
=9 /
0";~!.
n~ y
s@$C
@S:F
q#T1~
ZJ1~
{y?!
>|XA
dMELa
!k/~
ks`?u
1( `*l
Z_WD
'4[?N
-B+;R:
kjg<
Ck%C
]YhM
S,ng
tp*]S
N0(Q
`l m
X!a-
g59J^
F"Yc
u\8`?@l
%}'v
acGU
yER=VV
" |M
j& ,
I0+_
Z:De
*^IU
?:2)%
6] S
vXj>
ad]c
/F%I
f$XH
m2:2V
QZj~
s!v-j
>~wf
# 5Ef
5iEo
U%]Y
IFQ4Q
u')n
[> .2
oS*%
r}rh
& m#
ff#c
C(#G
Tr b|
:B{]
;o_
`S a5
"LMio
[[15
!ytm
h6!PMH
^%?{j
%|yX
1 *7
xtM2q
i_
`~?ek
Q[U'V
}z)<q
:.IT
BP4(
Uwk
}-\g
3Ww
g&#h.u |
%At
<y(
x[}
wMjx4l
^*`L+
rX L
vb,~
L_Ui
]/F
0%g'
&@m'
Q}C2vT
BbNB
k 8F
i&DLp
/Vhg
3E]k
i^ Q
=!XI*
l*tB+
8s[W
=K[F
hq'a
"z+n
4~5$3
T>@
L WLmwdg
3p,`5e
'$j
:?yOcc
9k /s%)
obn
>19k1O1K
JQ+ + .
kkb6
EyBC
<`uO8"
:w5C
6eysgSxLApBmhk1CxW
{"85
/h?(u
U>w%
/(d&
mYs7S%
J=ti
cCI
Vg/
|BctY<
]($^
-c|Pw
5_|$
\?($
@pNvTVk
a\wWVykz
eCMr
Q^oH
yF`
~u%yZ
i5lWN{
8d0z
([c0D
z8#*
Q ?y
0434
93HV
F0dQ
3yV0
r87H!
^H h{
Bc>[
1j6Rr
t581
o$1%
^NDi
~?go
BM!i@&V
c _
9yp%A
:TNCN
kuesKNPsZ^L
YdH>
a/Uff9
c%d'J
FX14
5|Am#s2
7IVnI
0%`Y6
E7tn!$
Y&sH
wcHd
4FJ~
Ih,k
Y~lQ?
K$ /
ou J
$ [@(
1`jw
cf@n
M|[<M
x 7
'e=e
qQ2oI+]
>&b @`^t
}t,y
rm17w
#RO$
Y?i:
?>Q
Q'?Qp
-H].O
a N%?
52!
[\A
wxzCPm
rG9[
gw'@f
,=~[I3
5bzm
9IMS
1&-\C
;b"J
4d"w
IRQt
+r8?!
H9gg<
( wW)"
b ;~
5lLA
}OnU
30{I[
? $O
`C+C;:
ynqY
]:"Y
>!2Y:A
V]n]
Hf,D
#P.N
4]F-~E
FtCG
IQQq
U?Tc
]rs>:n
~$
P*gO
Kb%^
+ >0<
G`-AUe
)g.~
P*g$
KSOk
&>`c
o<7E
N|NLN/N
(XH
}}m5
7/CQ$
g^)~
0r=U
R7s)
f?"
_ "y
z_1s0
l{T4
x?E
Z=jH
S5B
uh?a
@b -
QNEd
{eU{
N}N{N\N0NJN
=q3 FMW$r
fg =
FDNC
5YO:
"HKY
1^ p
b)wYv
suX*
0I_F
E=g$?CB1
oX IV
r")
hW3
w9 (M<>
dx#!m
;3,$
9\ b
->fx
h*q5
5cxMDqI
9_YH'
<7~Y
!$j{"
IntPtr
Q^Jj
f G;IT$S
i~e"
J).>8
z(*/r
5dOX
R}:=
\xz+w{
NDNpN
g:,G
/j`8
Ht&d
!S}2 8
CdpE*
k3t_=
0 j%
iiIo0z9cVv
m@4 ]}u9c
8qk@
pX2_
"8L/
ze;&
Sk-a
vllx@"
fA77
cPnw
@jc\
=on JD
<. D
86CY
k]rQ2
WC t
Gk?i
[BJ>
Mvf]
cr%q
eVT8~e
Qq#<
!:qGjsG
bL};
Uu(b
q+2L
| B>
'R7O
rmSm
@"=}Y
4qF%
S(+/
<*.|
~h[03#
JD]YO
>_cHas
BiR.
hDG`
">R5
2oxl
=zE}r=
2.x,
> PmD
r9Z{^@
-)$=
v`i~
O?gp
h/fm
\"D5
Iu']/
R{h~
\YQD
2rz1z
Gd,Zw
~ Y{/
4m}p
:Fse
9j+q:IyMB
}O" xO
l"=K1
5nEg
%jQS
jr7s
XO N
F+ <2|$
)n y
.} ]
Sjj
2uaj
iEX"
dCV 41
I-nd
_rG}a
ITy
[w[D!
[y E
yF)+8
v.0#y
0."
hw/+
VF$DZ
W/5K
k4D:
m:,k
o<U+Q
AqZa
L|"H.V)7
deN}
lj.&
RijndaelManaged
$q
q<-s
S>KRD
Db/B
Ftd+
+@}-
!a'BO
11!>y
%VrFk
A2`$S&
ZI#Xe
DWSM
q:_1
aQ.
cmnGC
D1IX
S 8Js@
- On
Xjz=
@_V`[$4
XjRuN
p)*|
0]hj\Y
ga(V~
ZnSZ
}&Q+
p,DoA
&zJ
|$%E
;d1Lt
em&m
F7%V
9K!
_on|
w/>{
*>RG2
aOHZl/
W= I
IDAT5
/-k-
9=P5>
_h`:#
g>BY
\G4+V
#!S2
. ;<
le6 +
x,NO
dk+>_n
IDAT[
[/tC
Z`t7&t
+.
LEi.
IDATr
^s&<J[
4 jyj
j)+
V`Pa
,'t^
y4K&{
.5'DM
Jb(V
/"%]
dg({
m)/
1|7G
nPS&
.SXK
J+Ug
L(fB
cc!OV
!#bi
b g
GJFPI
Vo,5
!E& ~
"=,W
C:MD
e p}
3d 4o9
*{ |
61y}
yUan
4kgI``
K7UMW
sp+qM
w$%%
Ec.A/
wV^5
r!4
e'MN
f?'B
#c4z
^w(\?
@tIj
>AM0qt$j
X$XC(
W6My
;$Ho_
^lH|
>ZU0B
w'|+-C$
tuOoM
B8'J
m0eCUBKo4DrvMo0
E)Cv
9dpb9
UB,
1+En
3]<-@
idSp
{~:<Y
XFP
]-8M
NK6*
BQR
gL.o
#N+I&Cn
,wg)
#By
3= 6X
sG 2
/2~L/
S <M
^ C;
t|_H
{ @W}i
Ud><
T*c]
0>,M
4<!UV
\OV3
yy/+
5$w<
;AtP
ajN{
Cc2%
5?i
@!gd2
3HERG
KCN*
<1(
plNs;
\\|G
DBj}
56/$1
7pWB
UPLN
PcsP
FqN!
+:b|@uZ
c}/$
J3xc
mObe
sXaLk
K+K\
/39f
N w|
P}i-
v`i&N
hG]nd
2<:G
d]M
#r *l
wyx=
<zxoa
S)mb
V4z$?
#-VM
P.zl
M_<2
UyA6
jl/y]=+
kD giKFG'\
nz]~
R*u
\:hE
iovGs
@=Pc9
ef+P
6=G!~S
+K|1
MVlyR
+iKA
DNNB
"Y:9
>)G_D
0GJR
+_P&
#}Egg
?V>~
u~ E
@]=)
\0)-k4
\ -,ms
?`Q)e$
9f$m
scRS
kz.r
O^4.
N$N/NCN&N~N
Kr1f
9i($
|VF6$
sE4 :
!2c$;
h^e@D
%g>#
x][ y;
k+ 8
/S?p
juATE
7@H2
r<-
]S[q
PyokwrZgEfq
eslg@5
BgR!+
* lo-0
'1QT
Qm{-
xiV0
We:EF
v{B|
P!aN
0o6'=
~QJ0N
K[9!P
Z*+n
&uxB
8H_?
%ZZ9
r?w.
0u z
HZm 1
}}#2V
> 4
jmN
YR6Q
IeTpO
)q= M
Q<
v' 'v
sM W
>Q[A
7u+-
E#8|
TCqq
!t5(no&&a
N#+"I
fr {
h*$m-
Zb,F
8D dpv
iPR\<.=
we?!
le$t
7D n
*C!61
NVNtN NpN
#PEsA
kD;!
cSFw
jFZTTYG
c O7
rU2\
W5+h
t,f:(
,*Pl
C!a3C
NA/\2
/Id@J
]&E
[6P
M^ocI
9l\ D&
HO?#
%QL-
r[g 6-#S
OK(W<s
ci%}k=a
}=5b
U=XsTW
XE@a! w
Wcf
#81ic1
|. P9
0%)'
+}zV<z~>T*
,6PC0
%NI2
eMRR
r59W
<2bF6
E%=a
X[ib
%ImQW!W
@:3]b
_H'
.=:'
hGt8,
%{1@t
P bO
t}0j
Q6 W
L(E0Q
%<9q
?AR?
N&0 L p( D
O*x'
mExW
_+UM7T
AEF8
U w1r
AJgw
.f.3
l.Kd-rN96)O
|"N;)U
q4jJ
RsA9
h@7C
@B/9
#iKN
WjZB=
(fR/
.5r8
KUz*
nn|j
;a<p
oxvuI
`Ofy
Xfy
<Anj
"a4g
_TO9
zY] 1
N-:o
*vU
?BJ.kO
VI!|>2a
:Vw=
)=&=
MR &{"hR
B3AB>
mWP]2=
B qV^<
}+P7
3Z!|
Exception
pf+
z-u(
N/N1N
X>FH
#}!&
lI>JOY
2N{c
~|<"{cl'y
tNk^
GiQ9
rGRh3,K
I]r|
'xj8
ui \
}L3'
w I><
t[c*.
7+/?
z!O
q`cQ
kVMGo/
.ZSn
\w|%wh
66 G0
Q F
O`k1
a,4\
[K9v
_~ 6Q
5@g
[,e`;Q
Y} `
<LE0L1ifvEktoBih1dARtL0gTwkZIUvHQWmKQqFj9lDx7gUqDIw9yvm71gcKA
0o%4
e q8
5WrG
vdYZ
6.y^^
5VtJ
)CDWwk
~YJe
,XKL
gwYA
]h+.SZ
J_'4
H'jh
{i69g
.,B$
+g;'
d o(M
-?rhL
|Sek!
+Hf3
EkFr
gA3XfY
F%2o
h[j8
(eA}5h
lhf9`
;ak.
L~@.
y{ZpFH*
m3V@gM&
ol6>[
G*27
g;:V
OeM_
z&6y
@L`<
z% B
#v(]
WZ%e
ny9
)P {i%%
Q4>hO{
6HvL_
)\nuO
=^>!
:C7Nr
Z^ \
[E{
ZK3rK39nhMgEos4GSQF
qfJz}
~gp
kW]T$
J BN
pW,+
k<Sn
!y"pQ
W=x8
06-[
lQ V
Uk|$&K
H>Jx
{B);\
QH90'
AssemblyProductAttribute
}D.E
s]gHx
2nE6'
2,s`
h7 G7
NT2#(z
ZAF@<
`c1I#
JMD5
inAsYKm5HltxYa
$lkP
O<H#
~3R4z&wX_ZV,
k'fL
9}3o
z93
]=;x2HR(
;GT@a
F0Co
|<kg9
" z<
c _-
g)2{
9x[Lj
3z>'
#]P
xY+(
INZ-
@m^S
4%R1
XU)!
nZ}B
:iq B
*W=_H
%H45H
];3h K64
lX %
%4Em7H
19/F\
> vN
*TT5,
zqw6
,k%Q+
C/+
pvKL
/!]+
Ny(yj
`@5rJ
%z(/
7,u*e
d=S(
HR Z
aDn]@
g@{ Z
n3_>
/x`
/d-rc
UuTf
!-
IFB{
/N#lc
)iI@ xl
\'e-
*0;)
]Al3+
"s iB~U
oQ!)
;/0N
fL 4
s R)-
eR>
<$)f\l9
\ @W
J_"D
iA]K
4}ouHk
%mry
FIw^
N^M[
U3Kf
bWq,Ya
%8e=k
66t#
A$+]
gUuq
G;@V
-Gxa
l-Dc
s>:r
-Gxq
K~*d
Z&.6
$Fg'
1P.A
L^IG
r!*$LS
L,cC-
&/B7b
&q8ql}P
JymmtrhLeG
}lLO
=l/c
s{s}"
s)c~
NzNNNdN|NwN$N
W]zy
'3!(
GqKbi
,8|<&e
(R Y
S?vZ
/{
NaB4
@ u
* .C
MF d
D|*)~`
oA~a
GT5!}
]8R>T
;BDpK
D6::
[Y,9
[sjl
@6XSf
&PRO
( =]
vCNb
2`5:_kC
-"Qgr*&
.V2^z
1,Lc
vC3^1
QFU[
<j1N
/[&1
J]`2A
37b\
a+Zn
%<s0
9<
Xn/'
m2bmSNy
a[zy
L<jf
:N4q
BmT7
+L(y
.o&J
Kc B
DY%m
L-s7J[
Dz1
>uv"
]2<G
{`=S
c_c[3"wt07
"{ab
Ulj4
L/qKe
FEt{)
>lD@
g<["x0
T'S2
nX&gxn
K)-f
CJ8
$g_}
4OR$
%]^W
kX@"@
`Y'n
pGE3K
MIt< C
y|a3
^Y_[
1'~#T
? {4&
=&=M
4t Z
H`Qpk N
j w+
v+NnE
Y^O<u
K)-!
Z{W"
:;g&C"
&O17n
s$bg
yhs
ksB'
_|_};}
MW708
i;eM
_&XH
S"5S
K>'ws
N4;4@
)I5.
j?bc
&Ue2
l;Z
QK6N
LUmj
\D]!
!"&
:uB%|
W(B7B
s$b
-E*s
^-Qd
;UJ*)S 2
N2%G
W a@I@ :E
7TP^
;8O,n
Bl@"
{mGBx
;Z~%#
usN5
f0Yi
4_F^-
wR-*
d[SF
IRI8
(%QX
u% Ph
:j;{
jc6<
)kXhT
Mr|
!z<'s
4!<S
qCE|,
TS M
`S#E
QQ9=u
yc6T
6TN8Nu
MW#BIQ
{(3k/
Z:h'A|
WNQ9
x]UG
Gy0i
}_I$
iO@R
Rpc]
&P*W
j" Q
I|V}
+ TI
2F8>
<X:s=
u*o~
4i S
@jr2
0$|J
y= M
@1i_%
8*u K@
h&L3a}9
"R#5X
I^@E
v-_@
=>:d
*-mp]_
U ^:5
aW 5MH
\yNF N
-I#q
! 0_
t;6U)E
{P{{
d0I+
x?M\
~5ZVk
i5K "
-F*?)
@7o?
-V4v
e#:L
Y?$
K(zH]AN
K` /a
wW-1
n\: +g
@B-B
wlLyZa
>$\=\
AD~
]2W2
YNpPl
zoz[
no*k
DuZ@'*)
OjXB
FA/H
Z0 4=~s
CS+}
h*yp
C}/@
!9g`
KAvB7C
'`Np
q iL
} nw
hR`X6
-n}W
15E&
SjBo
j\['
vD6]
CQp
EC~S
ko<x
T2j%
%@LGk
N&k%u
;MBK
%D-.
=9_m
i~}(
gkqx
%Lz)fd=
1@+0ZP
~OYC
F#{(b
gT;oQv
.zg|!s1h
`kZR
~|NX
g'1}
c;f @
T]5Z0
"S=cR,gJOq
~IdHz
PE/Q
Xkt-
Ovoi
&UWRI
[z#5 e
A@&g
%%Ai
l* u
[(qV>
xXK\
Ml@^
{1u'
><f7wh
rg%Zg
gB#C:
>MAx
~XE|
Odc:
<k"[
aN),T
v`v~j
a m(
(M.b
N:fQ
-<Eu3
|ZUM
=CJ>$
; *Z
"h-vSU
E_72
`7q _v
-^} f
SX}mJ
J:AF*
41LH
MNI'
{H!,%
Kv6'
HM0@G
0*oA
D93L
(1XY
I)1T
}SgM
zfIpTqtInK2KJQ
5Mt-
CkYK
:8@JRN6
Uqk?
4s.t,
\9PQy
yI,CT
Gr N`
PF}O
!*V)6VY
<JE`
8Io
sGGH
Db'_
[TH8#
a3GG
8wUJ_
:9ls-
aWi*=
n+:c~"
9+SJ
MWM)
ZRy~r;j
WKWq
D/ [w
:4Jj
ia=H
}_@3
xTni
7[CG
8$ 0
tUQJd7
mc46
:efj
d< x
,Wms
l|}5
&"nQ
PcTT
uQ.{y
?mUq
=e0;%
(#Mz
F*]v
V16'
BV|P
J!3=6
k8;O
)2
sQJr
o|u'2
g{S:)D
b ==
y9-\dSZ
[,f`
NVuc1-
~K5xdw
48=V
m;Us{e
`N"P
Qj6%z
NVNRNGN
zyl
1"lG
{jPF
p^9~
je&%
QM^a
Oxj1
?6MP
}nSX
e}{6
8kRnAy6
#zMYj
?5\.
-FCY
0VLk
&F60%-0
#T(X
5xCRS
lE8x
#I3)
s@m#
).`-P/
v^@6
*g}[
KG<^
MC Z
Cx <
j=-Q
yVic
[5^V
HM7?}
";vc_
OK[b
^t8JO
yhOI
_Aa{
o_S0
LaNKN6NMN]N
J7|3b\
SURh
zZ )
B?X)
@I
:ya2
Y 1"{
/PLX>
ecuU
/%}h
!MsI
{yF7
'Vks
pZ*f
P% b
,rD*q
XN|_:
{&o3
L]L=
yZu.
3FUQD
O)xB*
/c'\
04)4&r
, FO
(T+Q[
)Po/
kE$r
w-T`Y
N3Wi
tL_iw
t?pi
S.nw
^hS8
LAPA
}+{!TJm
\NDQ
`wG><
HTa.
LWrc
_G_12
S7w^Cf
4xXr
65Zu
x:VMm
e=0f
i*pl;K
Mko\
V.#oC
`Z+^
I hr&~x
kcE1
Ns(-T
wNLb
k>OP5#
wHTY
]a]l]
a}#@
+T m
G9S_4
BLn2
vLu1ZC<\
16=`
.7 j
):x`
J|WM
EQ64zP7riMuNiCRRcw
SN '
["1*]
p;Cq
}13`
?q9[
J.K\
Ht~E
N~NRNrN
Be=a
Y ^R
=zQ 2
<VFmtbc6Gn7vOXe1yr3IpLPYAAKFTBHzhxnPPh5zm31voiU8VhlGNXV2d4MTJ
(&sv
b2m=
4{ t<
w])'
;r85%
N4uhz1
z<]p
'1dBeQ
zZF=
h#l
GlZ#,
C580y
\CF'G
j(nC
")+
@ $]
I+-+
7A~ l
7 Fu
{A: gD
NYr08<
p@Ak
sS,x
/kJS
R >u
uw! ^
`uJab
`=2
K;r1o
sL*c~e>
ha",xk~
Swj6
`xYP
$$5I
i+X-
BvWcVM
7' E:R"
Z 4
7kEe
rD U
Tp&t
8U`
iHEU
Ha0]
WYRfS
3 a~
j9!F^
j{4m
h.;Uog
[0`=
g1{8B_
00fqZ
"K~>hN\
`kd5
l)]$D
L1B:Fd
&Rt~
(P,1
0}ei
{1?(
-H/(
yUrw
Fw}Tm
:7eX
6]A^
(lTb 6
(v,X
V{XM
!|k*Y=
^[~0LY
fcm
^q(i
.V|Z
aG6b
S| [
wV-l
h J
!@9
H,>\
[VXf
Uk
]i,Zi8
$QM
V25F@X
ICryptoTransform
&(} 8G7
AppDomain
hspy
z]@n
$N,-y
NeNqNFNLNXN N1N|N2NeNPNGN)N\NPNmN
-H, '
!C&Wt
3 LU
8*~g
H$f?
&0z(
N~rH%-
4"^s
zsgb9o
mrSOa
UNTJ~
=lmX
[VlU>#
^V@Z
=7H:P
Y|s}
OD7
h~SK^
=2`C
NAj&
9 gB
GiBko
ic!
)bx+
Qq4
55f}g
0'~n.
.!@DN
yB-/
C0p>
a^3;
sA#~
rXG=
Nek+#
/pZ
'/WV
AO"
s>x@
% v|
dq.C
7 !`
?"yje
T<C>
`[({
{qx[
~^'&
Y}:
/mA,
o+*E2
1Dr3
!G B3
gD4i
)7&Vj
le67|
:If^
( ZV
y &;
cr6uD5C
c+fP
&Orp
R@#9[f
?Cuh
Y_2l
`bDY
B<t
F k@A1
M}~4
o+6UorR5
o/:
2>N9N NjN5NjN1N
zFey
u,IF
0M7}<E<
!_`@
su9I
@e> VM
xxR#
$IeY
q1W-t
]dUc
.B##
k![m
KK;W
z8eP
T2$b0
zAE+
RT'ux
\<?-
YE8p
cLkC,
#S /(P
`rgT
m`3Y
Ga!Q
QWf=
1.0v
{LJry
WF]F
$Q? }
i-w?=
(&Ug^l]
lm+xB
6w1-q
MLb b
5JP|
Q5)L
A0`.
g)]O
7 Qq!5
)GT=
MB1{
L)*`8
@?nW
>E4~y q
:_uG
U; W=
G1vJ
wx/o
-]q|
wpD[B
v<|&
N+N9N
oSAL
tS2b:4
$uYX
F HH
OJq`w
wz~[xrX
r/cf
"}*7
S`#x
vFH"
Vfo`
,fE=
65,c
yzUk
P'dPC
t4]BnQX
CSKl=
'Me
4c7Y|
d-]1
j~f8+
q#b~_e_
eO".I
X0`g2\
n#[=
mgd7
|BXR1
t=w:
w<<i
u&B=
43w%u
h?
9-:#
COOU>
% bJ'
e Q_
@&Fg
/a,<
5SVa
Q4UH
A#6b
i99L}
z]r`V
Y%5A
OF6za
*P<4;
r (N
X0&ou
*"^X
Ep8M
EAM.
o))Jl1TLDL
bX\?
5h2k
v%._ b
cRke
, W
$-uX
z@">
y3[>
lo\[
{U8k
Assembly
pJ*t
JrJ
ET_B
3{Vd
U] q
;VFi
mEN_e
*F{C
3V +
CD[|
pB)~'|
J/m\
^Q"8:
=*6U
|}VT
`08'
* CB
3U+<
5 xR
l/=Ghw
MVv
mbYI
v#eh~2P
,i|G
"pFv
E@;G
<`U-Q8
Gf7/&
:D^<
},="
d1]~
`uV]Z
O<0#
~B*6
36F5xr
8z
},=F
J9{b
q4y1
5[Fbb
]U^B
S|B4t=
D6 bk
v%64~
<5wt8XOKEyAwo5kKRct6A9wI1CoVG2bV4HWO3HBqp0udBRJpYkPnOO0v3RddS
,)z
yue>sax;)
k[lT_
qny>t
@v]qn
^ nw.>
&#U"
X 3M
_`j
JS.?
5v>sL_
,q4v
vtF^g@
+a)=L
Qm)b
@WTw
::r6t
a8&1q
87ifb
S|5f
7gGU
oo+m
X.pU
JS.B
D@gl
T7!o
t[z
bktK
p XhjQ
yA_C:
p>eI
d`KH
d1]
D9u<
|sk4
hZ I
N"YI
ee/X
d "K^
EdA+
9j^
NSNgN;NtNCN
^X `>
V0(
i}Mm
M3'U
{B@
&N x
Hb:q
+!X#
3qi'
vFe<
,=d5k
r((k}
v#<
&*YD
]<^/*
GMA
SYW'
`2P8
]9_m
oRXi
] m
.=t!q>{A
$arS
" 0H
k4rmU
Ra@`8
F5*k
F74^*
7iu :
DLKn
RH
WQv8H5
W@%mY
AG~z
V|U"
y!R
0+5%
vnUMv
_c6Z
^x?
NrNkN3NhNoNgNDNZNKNjN&N_N
jOE+
Yp|Q
NV(W5r!
?%24
=xIP
\%9Ij
S86'gh
)5Qq
r+mD
EK* ,
b71"
MtvA
B-Z;
v.I5
r+ms
?MyQ* n^
+{&b
u>@J
M><o
9#mi0
uRui
"+J"
V#+Ah
4IR$
<CrP5NiRTYBNOrVX3MXbz9rvl9fcMtGQESmnVUj9cfH9RC0ZCuRtYNiDLKk5A
k'sl
_ [
:6f1
l'"`
.v~-
/{W
E;td
L w0
,=gT0z
[bq
>OKe
hX|n
=Z >unp
%w~2~>
cK=p<
XN t
Jv)Cd{bQW
u<vu
}Z?[Z!
okbCj
rZL
Flan
:l9
A1(m
rYhPa
9h2m
pb^<
i= m
pE8 9!E
LV
hoGEx
j o,
%rF
W{B\c
J (tI
OG&ote>
#E+
d}e;@
b?&|I8
xF-+
*gVM
|5fE
gn}s
&3%N
NwNUN|NsN0N8NkNZNDNpNoN
NS0tDSP96vJv
e! Q7l
z-G%
n(wf
W: 2y
~F a
JCOgMjg+5
e!=#
O6jR
M:sG
?JV;V
n>-+UL
Ab@(
$e}4_
!idH:
RM5AbCFDeS9nXKF0vVS
I!eK(
+}R#
f1^" 5
quWM
^z}
Y&:28
9jA4
ZgU2
&c[b;a|Z
Dw|(
]kc
7TX0
GD*1 <"
WnCb
)1-1
:eFEn
&[(zL
?MBq
O'};u
rrr3v
<<fr
d)Zu
et;j
&:F/<9
-+8Z/
c7 a
+:0A0
)?;U
+|\p
>9du
)XbR
h< z
1A;yUt|c
0etW
*9:*
R%K]
ZK1\S
~Dn~
0KL% $
sW[:
`"jIe
*w+*rE
qd\<
//Pwm
'm?x
|JB<<
RN4p
J'3SR
[zk?
R6O@RQ
\#3/
EzO[
W" ]
ieC<
'+Es%e~
bImg
gOT/
0pcI%%d`
x2v"
dApn
hU/.
cj _
~@k^
{FNS
|B*Wq
f|2h
NqN/
\`o"
\*=Uy
q9*y
Dc k5
*T-r)
5+k
M-nob
4C&+
8$0;p
+ 37i0
EN7*
N[NEN
05'_
l7f|
6HGe
%Bo^
LT&
w[ 5
:N!
OfnX
P=\61Y
(`97aHhhZR
+dDL%_
0j3,
i~u#
ku[\b}
Jd@X
9U]S
>\j+
w0:|i
E0F1
jR@M
IU:
1vZ8vE
eO!Q?
HP#:
m5Pna
[gWM
D@)?
System.Resources
jl@A
9L c
>-YS}
{~AT9Bb
JnU{
y}53|
" L_
&Q9J
5;h
:]:
MlHw
~gK;B
1:X.
gDRHEgIq4zxBDP79
s(Ub.U
PE'G
n~^
b?
$ I
qF>{c,1
G{zM
?X0B
y6gn
5s7 b
S~TX=
'h~O
Lq,I
o0&K
#[Yi
SI63
\(C
\c )=
CBV5
rGLl
:qfM(
Qx;V
RVb"
=Ym^e
M jjA
+^"_
YHK3\c
>6RK
A4pO
SA#XF6
p5F$&
K7:,
?; J
0s DRmy
p!r)
$/E0.*
h]q`v
kmzt
fENl
@8a
c K4NX
=w}O
#QF I
-`J5
}$Fgjz
'Ssc0
R,8(9
\(k}WR
hzmv
F%].
Vv&,
El"{C
u> .'G
$:'Eqg
T `F
++UQ
l+:
jM5U[
pe'fA
S<?'
$zPs\y:
bc]p
fRK!h
({Xa
PP|L
[!"O
llHj>Q
1p/
({XZ
\Oc$
gt J6=D
ABkv
QUe
7KV@
(1jxU
Cs2C
o $+
!GQj
B$sLF
Q@'`
T/XG?Z
iUGI
?e*H#
Dg6L
.'~ YT
7 c;
C>etu@
;%=~A`
g$\
|!b'0
>jR <f
]2J$
tm-j
:;E5
Z ry
(\&y
rS_
%3v2P
#1ei
s7|Q
eQe4?
`~Qa
]Z"a ^G:
$ XN
WVouGZb
8U 8Ed(
Nby=
O,te^
t td
[mbg
O'/<
@#aZQ
+[Fr
uA6X3\
6_\CA
M6H>_@
DaM^
C$I7+
N>.1
j P.
>Fb8l0VQ_]Y
mh5w
3P[f
{bBI
e}y"Yu
D`@7A
lc)cG
L*e(
:s. !
h>b5o
|Ox|
wd\yA
uwa}
t~xk
&& Ij
Q*W*
2^2w
ly8g
D-$O
)Ic<
nn:w
a6d-
;cF-
YxU!
[uP3
V Y)
`EO
`2#m
pI8A
kwqS
c,9e?
%`QA
ZAyK
8H 0
s2DZ;
(W/e
~WWy
=8<%
$O&0
2pW7
<G'a
/duZy
oC %
U@Kc
Iq_9hc
95[*
i.Xe
0 *?
<a 'f
'O
u;In
M{j
2R``[J(
*2 vlXD
TU.w^
cd^
EEfO
Debugger
=.qL
C;cX{
Urg 2q
<~N<
{@*b
"9Y%
Lg ^
qN"?
eg \
GZa(#
;U%+
q^w1
UgIN
DPL v
System.Threading
}^R C
c(})
/B]I
uYD'
UVP!
%k*z
7qOi
v2.0.50727
[/yO
|MqQ
R_GYf@i
NDNZN
QTtI
D8Sv
F pW
x!Bdk
5 ^[
&}e2
Z8W4
MEIlT
+fKJ
NHgDh
kk%.
{_1
a U^
\cS@3
Oj2K!
0s~f
r`(r
T^:AP
))[k*
wk<v
gh/X
,,spgL
8WWC
QPa(=:
8p=&
`TKZZ
y9c?
SymmetricAlgorithm
sis
}<z
I/nH
+ocb
lKY
mUTNO
/5!FL
k QDqS
G6y!r
SqTh
WV%C
.|vl
X-T`
:&z{
,IbP
7Iv4
SaS
Tk'c
Uhrd
b/}p
-m0crDm
)=MV
03*]
vsFe:
5"=
DN^,
cijtk
*h ]
+[rN]
At8)
$cO#
?!y@
! }e
`4OT
]OG"
um1$
m8ya
Y9
:8LV
KU K
Q\(sl
f$Wfw]B
b6!z
B Tmw*
WB1:
't]Q1
fC*v
36us
T ._n
i5 J
Z *
hr-qz0J
fB1
=j;Dw
, {E
9Q<Am
hS6xG
c$|
zcu$[
zG!]
cibd.
VaYi
,AIQK
q|*x.
liaVDn
g,D"Z1
-V5US
[/A>
{XU^Q
Q+u2!
Equals
j(X`7A
^uS/
.m+$
I2]LA
r( :quG
Vzp9\
e1(
^uSO
/X=;k
Ru#f
B Cpu
r~aP
t KK
Ez1*h@`
9W:}s?a
W`p,
cJAJ
C N:
~j1A
iD|M
M=Rvq
s:;Hl
jz>
>>CW
zKCk'
9Me-
~4,f
Mh\ o
K4RW03
d`}2W
wK?D7
(Rnr
Ha:d
|@ ]i
YQ\[
zn+2
@[ T,
5E N
'88XH
[F2vW
['g=W
C<p`H
,28F
sUu`
L=w e
~[6^
\zRee
<Yfm[(
Q'[QW
Dc#
wNpS
mY($UI
"J0Avb
zx.Hqj
%IPO+
_GC`({9
](Z*
"peV
EVnr?P
.pP
Dz{M
f ,=
yq&o
&acW
d([<]G
]'v 0;
V[H&5
Sx3,
D(`\JT
A_{3
` Y;ZR
kVXV
2XZ\
zjTY
|mta
#+8Yvy
D&K~
X7!7
0w\P
e,0T
r8rV
H^}Z<
EbzS|
G6tP
r)qd
Uuk^
+k}o}
el r
p_9h
Z[%P
^WJ8X+W
lW_i
tCw~u
vqan
IBX[
/)h
<#wh
u5 "
w _
o0wI
4|9@
NIAl
YS _
<.?N i
`|R
~uc}?
e!QJr
}c!@
%`k@
_^ae
YYq
cp/v
$&P
^TWU@
OB6;Oil
q2P7
Y3sa
jSK\
yi%/j
#Q i
mA,;
}`9Q
D}q(
qcr)
fC
'u6<
1[iN5!
a[1Q
~e[?
++$
I2.Y
4xj#
0J,
P (C36
2_89
ey,
[S <
LK]&a
V vf
jP[G
&Z#a
}',f
~d:`^g
dO a
G[.`G
w9)y
u~2R-
'A
\.|
q 6y
6Uo:& E-
87lp
@ ``
)]5!
N5ik
)vNFp*
:~0I
QjT
wP>/?
|`h=
w|cXF
s@Np\
q^=z
~Hj)`Z
t,I |
gop%Y
)A7
Jnt
BTk;
NW[H,
>hrv9
j R2
v;|9
*U50
Kg%jA
GdI?_I
Bl/C
3BfT
bo5Ov
Q ,I
}x}v
8c9O
m{:g
k K3
QH+Z!
8>Fu-C.
&m<8
W!TM
)ZJ&'
"FUc
.1iMP
wY4y
IE5w
G:mu!
[ iq
/ABf
='(y@
SL.6
Q;Pm f
/,;
4=W.
,Yco
H`@E
|YK
O,e~
cFgc
bXuv
LL y
j%q#
*|)D
)2<E
NW&;+
%J#W
r {!
&phBqA
D 'L
N8N<NdNBN=N@NDNwNDNHNTN
/1:"
/NKO
4`OQ5
p VB
l|^(
w%`z
A<-B&v
G;Cd^
!LI.
]ba}w
@/BcC,o
-qbX#
<,h|
&d%
d~E_
2N`4
~YK&rX<
+"}-
HDu?
rq5&G6R,
0-l5
*Xf}"
>4hs`pF
X0;?<D
p"l~Y
H~ i(
'' C
q83o)
A:/!I
t4$2
F^- <_%
LFAU)=
oBtq
)jfQ
ZF@'
P X
pP.@ H
> f
c[p18
P,Q&H
:zah
[7gWYe
D\Ho
pm.G
vrYu
>kzIW8
]eG)
OC^U.G*
Yx<[
b59
AE5LT
5zD:
U))BL
PBn+
XP8 ]
dv
kJ+O
3$ % ^
oPGGz
=HY)
UW-%
Ib"ra
m =w
T^/
B!yJ
<(-R
&9S$
S7BE
LateGet
&mk7-
8wVM
fl:A
PGFGh
-~wX
^"f]
`:FTT
L>O1
)bNr
D64!
3B%1yTJ4
DwA^
,X@3
Q9Ku
N NfN
eGrN
$VV:
&\lT
fl:
@cm'm
'&ys
l%F8R=
~*CcT
+uX_
{U-K
mUR<a
8+FO
Tniu
8Mz'
.~jj
h)Q9w3
s= +
HU J
4--,
oN5<I
:wr8
$6m
OXz4
([0o
TIT_\
`Xge:
i{ki
Ao^m
{{m.
Gh>+
XIrm
67bn
D0.=^
h/Kg
a9+L`
$ks.1B=l[
cNNJ{O
C*jc&
7Yrs
/5n'
`5?Y=
?^lz!
~HFlo
7GsXq
tcxQM0cDvM8G
y xJ
jJ~# L
_d1[+b
pW;<
s6TUm o/g
[<u)
![r;d
iQ,9)
iE?mI_7
{<:Y
tM;D
|FulU
PD0
((cf
nZrf
'/;,+gq
#zKx
R)_
IF}ql~
,[8WMT
!T*|H
b BM8Z
O'qM
yL,
1l>B
JGS\
{+TC=i!
-'ks
?OI
) a-sg
k7zR
TVJy
' ,]
,'(+
cfrfY
m?#:$
UR6
dYU&
h.!!0Kc
@mIP
5W]#K-
\-FT
cWM-
9apo
w`z9
-gmL
0-w=
YY'=
~X(?
H,EU
$N8C
+QV
e|!x
EC!q
kscwYUcaLDzlsyNIL6
"]&=
jr9.
-Sf
Nt /r
/eWfZ
ymY)6}B
y6 r
Vt(L!$
AiV(|]N
S}M;@
Jf0|
h&-XA
jmqh
G}B@3
rVxQ
xPpI
z}D;
!iD<
LMs
@k~+
H 3z
(Q6n6
<"&NY
K_=,E
q}B{k
v]{x1a-
mN"6r9
/7 <
dpe_t
z8k{
W`!1
VA6Y
U<I(
= ib
yTFi:
>x}$*=
k15 $
zI:%
kYjst
$ AJ7&W
gjbUb
'r>%
q`ib r
?Ktk
S^PZ
Gu#wm1
=5.K
$"o2
AD h[5
qUM*:]
1PpygdfKS3Mj1dyWpt
Lbeqt
K$1
d<DomCCzf
O+5#
7:a?
=<AK
[x4o$
kPmVW
[_sw
zj&|9
@5 )
y,.w
5X&nf
Mg@"2
f1}M
srnS
_&9f
5CzM!iz
~^P`+
Z d+
iUz&
j.\{Sp
njE
1kOb
60XX
_x5P
Y"aj
uj)Aa?
024P
L<_i
@*M-
qWfI
(b }
ibbRf9z
E4g~
4$f.
?by e
jvM?
R~3s
a9m
ODS*
8ZAX
V&\/
M- =NxL&
'~ya
54n~
~"@!
#rbcT
?E"
IP7U
5L 6
b]7VQ
kUr1
OO+2{
&T$6
C9R}
C=xLi
Rf;_r
)u*U4
5 wc(
]V,.V
F-vC
%qOS
"=Wb
0) W
,eH3
Lso
!d9hE
npXX.
vJ9vQc
1[`}
I_'GKla
CDQ|z
N> 1
h|-AH
Hb,*06
OWR
u%rT
DZ|y
U=&-
H2 >0
H VT
,3]s
<aYV
Mv^d
8N-w
;^ -
Ry+^{&
Q+Mu+
\QpU
0jLNs
r lD
"\%cHr
Ak L
2mMm
A1 6
H9x&
qwwyK
QMDApXYT
`'C0
mf[Wq
5Xel
E[D
|sE]
F4^1
UK>P0/>
Q#+m
k:^4
_fQd
2PF;
KJT5
7;PJ'
5,BKe
6 s!
9~>2
i6:|;
asq1YVgw8QxmFj3A062
-2nR
)y/7
U#N&s
njy|p
B *
tFx+
get_Length
o<
.nx
$\yM43
kh4P
mnV^o
UnJQ
W@>' &)
l=C8
~+qD
S6v~"[
I2F'
kb:+
= }Du
lgIdm
wD?6
lzWb>yp
B-,h
J6 =)
D<U
v""?'@
y M
ZLNKp
w@^j6
f@jQ
]V6l!K
+]+!
2u}
]_vTZk
j h%6
# (F>
:Ke/(t]
P}^~Dv
>wzPwc
*u8E
%Tw]
4aU}V
M)(2ZZ
bz~.
-b!;
(tP4+
#ps;
\0 <
*> vg
60e!
G)NK
F8:5]
Hsq!
s\~H$E=
v_;P]
NLU@{e[
3y{%O
DWK]
<1Sg$
^p[7
tA#F
2tD
3dS
0?S;
r%B'n p
,"{&
U4ULwQ
+72r
S]v =VY
+_gx
X)ZB
|"7
%$j PpI
"c*]
nL%u5p67
.KU%
<$+3
&|[)a
%]&evr
r''C
wGmy
GrGL
'12X
l bE
*^*.T{
saKRH
;i<'
y dg`)X
Z0rU
2P'Ks
+~ p
0]>(
|di{
N>&=
3cQ3Y!
[&q+/3
+2 v
HqZ,
DZat
VYX@.
(,Z8:
T"Vq
ov2$
;W3Z!
pHYs
v_>j
Bz7:
&`# g
eQ>
Q:]RI
iU6k
LZqKjPMbOC4ffyVh
%V\=
W}Mt
^RzA
dccJ
PO] i
7 YS
8?b:l
Z[gI
Ee4Q
@@Qx
gI/J
#G3N
e,J+
J^Cj
BeP4i
!dk'=Me
S(=?Q3
|-CN"B`
N\N4NuN<N6N.N`NrNhNbN
RkL@
6`a+
^ J.#
>HtJ
*Ve4)*
&v.W
XwXS
MbU3
YR{n
|8Ao
/bOG
#$eM
IDAT\C
rG_R
>F~/_w
$ ?J
ZmmT
._do
h2gL
,j+ 7yOq
F/Lyhi {
PPiY
-;1c:p
6 mb
*rO x
~2J{9
{4T~v)
U.SD
|$"V
f@w
/)!S
0iA
T#B;A
akp
B@ r
MJy?
_)UY@
K#/k
r]Q^
u -n|
nui12
]N*z
SPRjU
,H:z
BfSDd
N( J
*gGeF
;u T
E`+z
<Ed8
T=HI!
$p[ -v"
?"T@
^G4L
&r[f
!(c@a
9rv
[ +5
0`VZ
PG|_
Ra~"=
SB9TB)
8T~|
}r0Sb
s5o8
bq
t5i
.eV^
GVCV
pt1I~z
9jyi
I8Wg(e
ZUhN
rKe*T
qMvg
?Iq'N
%7U,X
xucl
\X A
Z>$?l
Zq)=
[x[i
>BG c]c
nil'[r
OFa
{<kA
`BC
o1j}
F xj
\ih@u
R )v
gu4r
y(u
^-*
@L v
UH,!
{cJ1
)za
Le>9
VAh!S
( kqS
3c[:
R"oz
:p%i
&qQr
Qy/Nm
$dq>
oyo.:c?
4A);
^qOrb"T
X}( eTs
I5t%
Camf
-vV2Q
X$j
s;'u
1 zj_{
{NU&!
T %<
z`j$.l
+|?&h
J]mWl
mu~8
Ar:$
rhVe
Gk.H6
o]'nu
vXj_O
fr#Z
up<n
w~/<
:`5b
I JaiC
}#J C
RG1
5,S$9
mFv(
P?@uI!i
XJ'<Rw
0I78:|
E6u>h\SJA
E_QE
K#iHo
e^Qk
Vv=P/
>oi
N1NUN NYNgNBN
Qa{
(x5Y~gE@
-8;
%.<6
KTWM
,,4w
gS-x
!Q|Uf
KAm}7_
SM9P
!<HS}
$[p6
s/^>P"o}
W8M5
l:d.;
4?OQ
>HQ<
mV>*Q
'&GK
Z}!Z
<34S
t"1Y
?,qG
eW}0n
maIMz
%O]=
rMu9
%'r-
K*o,
`JNxb
L=>n
N NANCN]N
EC9}R
xtb"?
Q|4>
*2B7
J =B
~pL~
&s N
'P:o
OL"nlQ
=w 9^
*olh
r6@[NC
N p;
F)Dh]
# @=|=
:6<\
KdVI
/Dz.
;o`'
w<L{[
k\v2
NV{2
XF!iB
$)+@
NIN8N`NoNMN+NwNQNfN\NMN
~8oNxHts
xda=
,p;F
HM1WO
Dc;4
?GvyB
RICg
z@Ya
BcSE:
}9[
p&GP
po6/
E] 2
R&"b
=LLo9
|>E
X x2hL
HxWtEk*
[M
1n&Db
\[!k
XnYK
I<M<
Rm9+VY
MO P
kC2o;
{ |dFEfU?
w~k6
8`%A
:OD4
BtXh
DK+)
t }-f!yp
!E1m
C ,%=O@
Hk _
cv5W
<3~i
_<\I
X>Lc
2GL!o
tB7A
w?M}Z
I3E;
_JHH~P
b/)'e6
P)m)
3'Fc)
2^dZ
G{+A\C
gD`,v
Pvl=g
c.%7H
g#_V
Lv@a
YKTm$R
c3!_
?.E;G
bT
:$IJK
wH*k
:c*
XfQ
W[;P
x;SZG7}h
7v/G
BuJ9
-}7H
G[wY
}`Y@v
_TwP
SK (
$~AF
mQ)5
4!W/V
OSb:
Z/%o
c$o'
)R6"
y`[h
YGw8
H{1a
^ a+
^4B@
`wG
*@e|
JE[r
NtcF
LxX+\
p+p:
]M =Cg
n)5D
&|?-
9G.#
CL=H
5P.l
Hpa(F
E_D@=P
qs%;
Td6
5lcS
$(V6
QR' <
e0O|
[n6"
O A|
j+*y
V'&Grd
ZS+f
%XWK
7 ,2
,W*^
:B@@F
aUpX
s4^'
W2F@
CB} )
pB!D5
OGl)*{"
o#v>
F{~P
CYP:
~=g2
X !Y-o
<4 EYw
w$ {Y
SxdOF
I&
)k*
e9u)
.I9yw
|INy
m)#F%
2wc(
K*+9^
y *O
9sc9\
H\XN
`al7V
e6Y"o
+\=)mQ
21 <
(&Yi
>6[KP[c-
IE-
C}Kn
\'5/v
\d*y
I!n2
uhU(
\KgZP
w4!x
(imJ
Ajbv,
4#0<
X^)c
2HsDS
2Ruh}
R`aZ
s;m*
C>;)
NisR
"Q(q
#7)tQ
j[e
CgQL
z9={
|}F{
&?2sFj
*8N0]
'F{29
5WB
XBWX
>)mhr
G Ju.gSXKq
ti=4
$?fD
g:z_
SA_Z_
G \%
=m)@
Z'xx#
]Cb_
7(Zx
")b"%
f{d,?-H
j/ y
gt&|1
#6dt
Ot n
v6tl
*4bJ
o.p
\T{v
X?Cf
zM,S
M!t
lFrP e
hv3I*
[L%>
4^UTp
E.YgDx%4D
"bq*3V
Ik@
Qww~%
+yv1
#.[JM 7
bt /EDNd
&M9ej
d2EC
?Y?FG5
:jLZ
V0X1
.8Y_
q]IZ
DN|1
jwn
-02!Sy"
v:Wi
CobC
Z&.;
,AC^
x5`)
`/cg
YDsp
>P"3
mZ,`
|I\U
NtD/
!Z+WE}
"@l\
*=
6DE.
/{dC
]ze~
pwuf
N3c~6C
&- ;*K
D%#;
8Yf!
'O0l3
&QU&,
*jmW
IH=i_w
pmL}y6
$)_S
oOeZm
&y]B
lSoL
L6"}
a0QYj
]V|=P
lJW~
[%gl
ZT-3
reZ`
!N+]
^}ND
h" Xg
ECcq
Al"^C
B<sk0
\AC6
J7s 4
H\5?
{us(
AViP
Qu{g
Kv<"')
ywgu
M}D3
L<:8=)
J4`(|
`Omil
BHZYi'"
o}yG
q} ?
,8$/f
NkN N
Sr B
WfK+
W Ep
ao8J
~\?M
|[~
X4vX
Z#5p
:%P {
-k3H
Y68X
!Aln
gsq6e
>fs:
tm ~2/ ?
nI*%
7#%j
1.'z
~ ^`
k*WQ(
Chzy
y i^-
$2<
1JU`/y
hgG{%
CbmL
FwR
< C=
f L$
"].{
.$6n.
*P_J<
0vD|v
U'?nHO
n~]9
E'.9
YJvLN
I{5Vj
%C`3
g|;|N
ZOG*
P<m9
w`r[
1= #Lk
p=X3
-nBS
FE3Y
yuXp/
S,iL
Gis_
52<K3
iQ_3
;R {
]$X/
6/=:
frh4
l &{Q
`vMor'
:8-M
,`nY_
( L \
C v(
pcDO
z5gWGP
C ^/i1?C
5+[4
hW 7
o ,
M |H
xe$T$f
e{s+
+|Lv
% /
1Ec~Y
7}@CF
BJvm
X}eH
I)L'
I)L:
KjY_
X2])
?( 97K
NTMk
{EO0
Nn~0{S
-ooax
buppX
%T
~I3Z
,}-Of2
_PDE
RQ-!
(^|+0q
ib57&m
k.*IgF
Zy1:
x/2>ru
F],
:n` L
S,74 x
6t5w
jt:N8
f/i8
nfrA
s>9c
lUZz
J4 ,
BNgWm
bJLF
cNy<
rorSj
m-w4
8cfZ J8*
b{-B
FU{W'
$]R>
:$i\
cY P
-o<MAhEf
QY;F
VJT
\vnL
Udu.U
j.Na
cxrg
kJU
QzmC
jeQ#
G*|44\
| |9
m#aW
y"9%s
#T CE
6-cl
#Te8
6S
Wvug:
9,$
8%Bv
L6O
~zp$b<q
X(_bw
&A/{7K
BW7I
+:.t
QgBaJ
)Rk-8
>;-c
ODK:
B $o
(Fy<
NA
Qztz>
BVf0j9 5
\;mf+
=dN$G
fHa+
r IR
'pkn
\V83
uR`J
WG|
pe$_
-=q3d
gF`"p
QW%/
^'Z:
~ CY
qF!
&~GZ3u
_r[jRv
%gJ
3orw
5/9h
Q^0e
CGq
${uog
BH,6
>5 `g
=R&7'@
MoIG
**Sz
Rw1pM
RqvSV
6s;c|
mk+q?LU4
' 4\
KAej
<S)sL
cQAm3
4F1PKxNg85YAtnjnM7
74G\
s30_K
F|NYNINpNgN=N}N#NrNkN(NBNxN
*5I>EtI
|=1zY'
}s*zB
kmQZ
gyuR"J
SZr <
/"igV[V
yz@,m"
bl1<
h"Y8
mb ho
`kp'y
:[M8
,q7vc
Je2Z
z-JU
c*q7
/U]'
yO8N6O
`!op
i 'I_h
`9tH(g
F3 Fm
+"P
Z"qOj
>^05S
5]n?k
E}A4
e0m
s{%
rnv&F
v\a-
G9Z
foO
&@sl
d=e$'Bx
ZXh0
}Bh5
A'.T
n42@
Q+E
} D}
b"A n
`3|{
Z 'er
+XX|
}Ly /
DN4]l
j O#"
o#!%
d8~!t!
|k1dL
USPU
C,8s
=o*Q
7&gL 9i
&KM
X&B]1
y?sW
#H<5#
o?[1L
5BeB
Z(`L~
%?bNeQ}
5BeI
#<p3
I&~Z
SQ9g
j.SL
6O+0
A,'~]
dW[V
)mAJ
?r&
System.Runtime.CompilerServices

+LV
"u|)
C%H%a
85N%
G7lw
Fh&o
Z y:s
wLo2
4lW S
qm#<1
N g}
m BJ
{T-X
wGu#
tFe6Z&7
%)=o
,GN=
w\HQ
j @fB
efZ
!h%R
bu7M
U4&t
L Uh
>c-\
\ 61
7\1y
R3w{^L
qE^S2Q,
D-4Q
bk5%
Ni$(Q
<May
j" ^rq
5z I
ZU >
}]zx
Wh%3K
k,7f
elL~
+x;Eg
B]m6
wilW
,@@D
.l(/
mHS
6xIm4
LR#C
wlo^
Cfna
]]Mh#
pBn/
3 PC
d {Qm*
K4q1
X5
<:~8
sum
=?nd
{#t
y LR
@9/0i
:p=W
:p=F
ckeUI
+C(:&9nL
e'm'
cz=[
i\bU
5l!z
Z,oH
2G aL
+6b3
4bBo'8
UCjp
rHA+
Rrc2>
[( o
DO^!'
_'sD?@
+Km|3
R(|k
D&wlI
K]o &
[FyCLs'[
<)Xsp
h3TG?
-WTV
T]G=
s-{|
?7Me
i)E
=p1L6
l /4
!^Bf8
z b
%5+~m
ll{S
J13
rs)>
X]EY
-l`<"
To~^G~_ C
,1 @
fw!aN
'2 g
Fo\
j4P%q
)@w]H1y{
_%c&^D
W/.Q
6:tV
^^nrW
iu^uN
]J_
!V5h=
KMrr,l
(uHH
R#kce D_
nYTjF
a ~'
3b*XR
#eQY
&AV~
1BUs
}~z!<8&
/GcP^
w~&lS
Gh]j
<ph;
NX_J
]"v&
kv7n
] C.
3-u}S)
<)N,M\
*[;O
mmN'5
S h[
&&4X
au 0
75?#
O"o
tm
~Ryf
*V
E#$>5
NGN*NKNjN
}%aFa
-Y g(GX
dxCg
526_
'p!F
?UO4
?$^'
oyY"
G F?
x{'S!u
z EIm
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05_64 Seven05_64 VirtualBox 2017-11-20 11:18:35 2017-11-20 11:21:37 182

16 Behaviors detected by system signatures

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05_64 Seven05_64 VirtualBox 2017-11-20 11:18:35 2017-11-20 11:21:37 182

11 Summary items with data

Files

C:\Windows\System32\MSCOREE.DLL.local
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\Microsoft.NET\Framework\*
C:\Windows\Microsoft.NET\Framework\v1.0.3705\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\clr.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
C:\Users\Seven01\AppData\Local\Temp\7q.exe.config
C:\Users\Seven01\AppData\Local\Temp\7q.exe
C:\Users\Seven01\AppData\Local\Temp\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Windows\System32\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Windows\system\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Windows\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\ProgramData\Oracle\Java\javapath\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Windows\System32\wbem\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Users\Seven01\AppData\Local\Temp\7q.exe.Local\
C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e
C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\msvcr80.dll
C:\Windows
C:\Windows\winsxs
C:\Windows\Microsoft.NET\Framework\v4.0.30319
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\fusion.localgac
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch
C:\Windows\assembly\NativeImages_v2.0.50727_32\index126.dat
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\62a0b3e4b40ec0e8c5cfaa0c8848e64a\mscorlib.ni.dll
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.INI
C:\Users
C:\Users\Seven01
C:\Users\Seven01\AppData
C:\Users\Seven01\AppData\Local
C:\Users\Seven01\AppData\Local\Temp
C:\Windows\System32\l_intl.nls
C:\Windows\Microsoft.NET\Framework\v2.0.50727\ole32.dll
\Device\KsecDD
C:\Users\Seven01\AppData\Local\Temp\7q.INI
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\assembly\pubpol23.dat
C:\Windows\assembly\GAC\PublisherPolicy.tme
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9e0a3b9b9f457233a335d7fba8f95419\System.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\dbfe8642a8ed7b2b103ad28e0c96418a\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3afcd5168c7a6cb02eab99d7fd71e102\System.Windows.Forms.ni.dll
C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.INI
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.INI
C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.INI
C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\08d608378aa405adc844f3cf36974b8c\Microsoft.VisualBasic.ni.dll
C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.INI
C:\Windows\Globalization\it-it.nlp
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sorttbls.nlp
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sortkey.nlp
C:\Users\Seven01\AppData\Local\Temp\it-IT\7q.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\7q.resources\7q.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\7q.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it-IT\7q.resources\7q.resources.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\it-IT\mscorrc.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\it-IT\mscorrc.dll.DLL
C:\Windows\Microsoft.NET\Framework\v2.0.50727\it\mscorrc.dll
C:\Windows\Globalization\it.nlp
C:\Users\Seven01\AppData\Local\Temp\it\7q.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it\7q.resources\7q.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it\7q.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it\7q.resources\7q.resources.exe
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\bcrypt.dll
C:\Windows\Globalization\en-us.nlp
C:\Windows\assembly\GAC_32\mscorlib.resources\2.0.0.0_it-IT_b77a5c561934e089
C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it-IT_b77a5c561934e089
C:\Windows\assembly\GAC\mscorlib.resources\2.0.0.0_it-IT_b77a5c561934e089
C:\Users\Seven01\AppData\Local\Temp\it-IT\mscorlib.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\mscorlib.resources\mscorlib.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\mscorlib.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it-IT\mscorlib.resources\mscorlib.resources.exe
C:\Windows\assembly\GAC_32\mscorlib.resources\2.0.0.0_it_b77a5c561934e089
C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it_b77a5c561934e089
C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.dll
C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.INI
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\psapi.dll
C:\Users\Seven01\AppData\Local\Temp\RunPEDll.dll
C:\Users\Seven01\AppData\Local\Temp\RunPEDll\RunPEDll.dll
C:\Users\Seven01\AppData\Local\Temp\RunPEDll.exe
C:\Users\Seven01\AppData\Local\Temp\RunPEDll\RunPEDll.exe
C:\Users\Seven01\AppData\Local\Temp\it-IT\stub.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\stub.resources\stub.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it-IT\stub.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it-IT\stub.resources\stub.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it\stub.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it\stub.resources\stub.resources.dll
C:\Users\Seven01\AppData\Local\Temp\it\stub.resources.exe
C:\Users\Seven01\AppData\Local\Temp\it\stub.resources\stub.resources.exe
C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\msvcrt.dll
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\ntdll.dll
C:\Users\Seven01\AppData\Roaming
C:\Users\Seven01\AppData\Roaming\Mydd.exe
\Device\NamedPipe\
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch.2408.33659828
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch.2408.33659828
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch.2408.33659859
C:\Windows\System32\Branding\Basebrd\Basebrd.dll
C:\Windows\Branding\Basebrd\basebrd.dll
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Users\Seven01\AppData\Local\Temp\"C:\Users\Seven01\AppData\Roaming\Mydd.exe"
C:\Users\Seven01\AppData\Roaming\Mydd.exe.config
C:\Users\Seven01\AppData\Roaming\api-ms-win-appmodel-runtime-l1-1-0.dll
C:\Users\Seven01\AppData\Roaming\Mydd.exe.Local\
C:\Users\Seven01\AppData\Roaming\Mydd.INI
C:\Users\Seven01\AppData\Roaming\it-IT\7q.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\7q.resources\7q.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\7q.resources.exe
C:\Users\Seven01\AppData\Roaming\it-IT\7q.resources\7q.resources.exe
C:\Users\Seven01\AppData\Roaming\it\7q.resources.dll
C:\Users\Seven01\AppData\Roaming\it\7q.resources\7q.resources.dll
C:\Users\Seven01\AppData\Roaming\it\7q.resources.exe
C:\Users\Seven01\AppData\Roaming\it\7q.resources\7q.resources.exe
C:\Users\Seven01\AppData\Roaming\it-IT\mscorlib.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\mscorlib.resources\mscorlib.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\mscorlib.resources.exe
C:\Users\Seven01\AppData\Roaming\it-IT\mscorlib.resources\mscorlib.resources.exe
C:\Users\Seven01\AppData\Roaming\RunPEDll.dll
C:\Users\Seven01\AppData\Roaming\RunPEDll\RunPEDll.dll
C:\Users\Seven01\AppData\Roaming\RunPEDll.exe
C:\Users\Seven01\AppData\Roaming\RunPEDll\RunPEDll.exe
C:\Users\Seven01\AppData\Roaming\it-IT\stub.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\stub.resources\stub.resources.dll
C:\Users\Seven01\AppData\Roaming\it-IT\stub.resources.exe
C:\Users\Seven01\AppData\Roaming\it-IT\stub.resources\stub.resources.exe
C:\Users\Seven01\AppData\Roaming\it\stub.resources.dll
C:\Users\Seven01\AppData\Roaming\it\stub.resources\stub.resources.dll
C:\Users\Seven01\AppData\Roaming\it\stub.resources.exe
C:\Users\Seven01\AppData\Roaming\it\stub.resources\stub.resources.exe
C:\Users\Seven01\AppData\Local\Temp\Update.txt
C:\Users\Seven01\AppData\Local\Temp\1056904581.xml
C:\Users\Seven01\AppData\Local\Temp\1021954255.xml
C:\Users\Seven01\AppData\Local\Temp\687167387.xml
C:\Users\Seven01\AppData\Roaming\TcPR.exe
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\shell32.dll
\??\MountPointManager
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch.2644.33661343
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch.2644.33661343
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch.2644.33661343
C:\Users\Seven01\AppData\Local\Temp\schtasks.exe
C:\Users\Seven01\AppData\Local\Temp\schtasks.exe.*
C:\ProgramData\Oracle\Java\javapath\schtasks.exe
C:\ProgramData\Oracle\Java\javapath\schtasks.exe.*
C:\Windows\System32\schtasks.exe
C:\Windows\SysWOW64\it-IT\KERNELBASE.dll.mui
C:\Windows\sysnative\Tasks
C:\Windows\sysnative\Tasks\*
C:\Windows\sysnative\Tasks\Adobe Flash Player Updater
C:\Windows\sysnative\Tasks\Update\Update
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64
C:\Windows\AppPatch\sysmain.sdb
C:\Windows\SysWOW64\
C:\Windows\SysWOW64\*.*
C:\Windows\SysWOW64\ui\SwDRM.dll
C:\Windows\SysWOW64\schtasks.exe
C:\Windows\sysnative\Tasks\Update
C:\Windows\sysnative\Tasks\Update\
\Device\LanmanDatagramReceiver
C:\Windows\SysWOW64\shdocvw.dll
C:\Windows\appcompat\Programs\RecentFileCache.bcf
C:\Users\Seven01\AppData\Roaming\
C:\Users\Seven01\AppData\Roaming\*.*
C:\Users\Seven01\AppData\Roaming\ui\SwDRM.dll
C:\Windows\SysWOW64\net.exe
C:\Windows\SysWOW64\net1.exe
C:\Windows\Temp\fwtsqmfile00.sqm
C:\Windows\Temp\fwtsqmfile01.sqm
C:\Windows\SysWOW64\netsh.exe
C:\Windows\SysWOW64\it-IT\netsh.exe.mui
C:\Windows\sysnative\Tasks\Microsoft\Windows\WDI\ResolutionHost
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\ProgramData\Microsoft\Network\
C:\ProgramData\Microsoft\Network\Downloader\
C:\Windows\sysnative\tzres.dll
C:\Windows\SysWOW64\sc.exe
C:\Windows\SysWOW64\it-IT\sc.exe.mui
C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat
C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat
\??\PIPE\samr
C:\DosDevices\pipe\
C:\Windows\sysnative\Tasks\Microsoft\Windows\SoftwareProtectionPlatform
C:\Windows\sysnative\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\*
C:\Windows\sysnative\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
C:\Windows\sysnative\WerFault.exe
C:\Windows\sysnative
C:\Users\Seven01\AppData\Roaming\TcPR.exe.config
C:\Users\Seven01\AppData\Roaming\TcPR.exe.Local\
C:\Users\Seven01\AppData\Roaming\TcPR.INI
C:\Users\Seven01\AppData\Local\Temp\314858923.xml
\Device\NamedPipe
C:\Users\Seven01\AppData\Local\Temp\795044399.xml
C:\Users\Seven01\AppData\Local\Temp\333847103.xml
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\b8d41a36c0f1de1ae26bf020f0fd54bc.exe
C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\ntdll.DLL
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bc09ad2d49d8535371845cd7532f9271\System.Configuration.ni.dll
C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.INI
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\461d3b6b3f43e6fbe6c897d5936e17e4\System.Xml.ni.dll
C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.INI
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\ws2_32.dll
C:\Windows\Globalization\en.nlp
C:\Windows\System32\tzres.dll
C:\Users\Seven01\AppData\Local\Temp\258980613.xml
C:\Users\Seven01\AppData\Local\Temp\925317006.xml
C:\Users\Seven01\AppData\Local\Temp\1164852515.xml
C:\Users\Seven01\AppData\Local\Temp\973373516.xml
C:\Users\Seven01\AppData\Local\Temp\1684124138.xml
C:\Users\Seven01\AppData\Local\Temp\808079159.xml
C:\Users\Seven01\AppData\Local\Temp\760397400.xml
C:\Users\Seven01\AppData\Local\Temp\1783871101.xml
C:\Users\Seven01\AppData\Local\Temp\1759965905.xml
\Device\Http\Communication
C:\Windows\System32\p2pcollab.dll
C:\Windows\System32\qagentrt.dll
C:\Windows\System32\dnsapi.dll
C:\Windows\System32\DHCPQEC.DLL
C:\Windows\System32\napipsec.dll
C:\Windows\System32\it-IT\napipsec.dll.mui
C:\Windows\System32\tsgqec.dll
C:\Windows\System32\EAPQEC.DLL
C:\Windows\System32\it-IT\eapqec.dll.mui
C:\Windows\SysWOW64\it-IT\P2PNETSH.DLL.mui
C:\Windows\Temp
C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp
C:\Windows\ServiceProfiles
C:\Windows\ServiceProfiles\NetworkService
C:\Windows\sysnative\LogFiles\Scm\eaca24ff-236c-401d-a1e7-b3d5267b8a50
C:\Windows\sysnative\LogFiles\Scm\994c86ad-a929-4b2c-88a0-4e25a107a029
C:\Windows\sysnative\LogFiles\Scm\044a6734-e90e-4f8f-b357-b2dc8ab3b5ec
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp
C:\Windows\ServiceProfiles\LocalService
C:\Windows\sysnative\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime
C:\Windows\sysnative\LogFiles\Scm\046fbef8-2dd6-4a92-a08e-608464edcc44
C:\Windows\sysnative\LogFiles\Scm\2f57269b-1e09-4e2d-ab1e-b0fdac7d279c
C:\Windows\sysnative\LogFiles\Scm\47536d45-eeec-4bdc-8183-a4dc1f8da9e4
C:\Windows\sysnative\LogFiles\Scm\5c0aeeea-c154-45be-8499-bea5f11baff6
C:\Windows\sysnative\LogFiles\Scm\a7c73732-9f11-4281-8d19-764d4ec9d94d
C:\Windows\sysnative\LogFiles\Scm\ac4e5acf-89f7-4220-ba21-81ee183975e2
C:\Windows\sysnative\LogFiles\Scm\b4bdb6a0-417f-4e60-a0ac-aa00b1c79b4c
C:\Windows\sysnative\LogFiles\Scm\be669c13-8165-4536-96d0-6d6c39292aae
C:\Windows\sysnative\LogFiles\Scm\c016366b-7126-46ca-b36b-592a3d95a60b
C:\Windows\sysnative\LogFiles\Scm\ca4b8ff2-a4d2-4d88-a52e-3a5bdaf7f56e
C:\Windows\sysnative\Tasks\Microsoft\Windows\RAC\RacTask
C:\Windows\sysnative\LogFiles\Scm\fb3c354d-297a-4eb2-9b58-090f6361906b
C:\Windows\sysnative\LogFiles\Scm\fdd56c73-f0d5-41b6-b767-6effd7966428
\??\SPDevice
C:\Windows\sysnative\spp\plugin-manifests-signed\sppwinob-spp-plugin-manifest-signed.xrm-ms
C:\Windows\sysnative\sppwinob.dll
C:\Windows\sysnative\spp\plugin-manifests-signed\sppobjs-spp-plugin-manifest-signed.xrm-ms
C:\Windows\sysnative\sppobjs.dll
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
C:
\??\PhysicalDrive0
\??\pci#ven_8086&dev_100e&subsys_001e8086&rev_02#3&267a616a&0&18#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{c2d43895-0262-4873-a789-c2f96d24b693}
\??\root#*isatap#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{684bb8b6-2793-49a5-8012-e0a941b4b4df}
\??\root#*isatap#0001#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{5f6d61d9-d207-449a-bd48-652a5d1f25be}
\??\root#ms_agilevpnminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{29898c9d-b0a4-4fef-bdb6-57a562022cee}
\??\root#ms_l2tpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{e43d242b-9eab-4626-a952-46649fbb939a}
\??\root#ms_ndiswanbh#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanbh
\??\root#ms_ndiswanip#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanip
\??\root#ms_ndiswanipv6#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanipv6
\??\root#ms_pppoeminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{8e301a52-affa-4f49-b9ca-c79096a1a056}
\??\root#ms_pptpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{df4a9d2c-8742-4eb1-8703-d395c4183f33}
\??\root#ms_sstpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{71f897d7-eb7c-4d8d-89db-ac80d9dd2270}
\??\root#system#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{eeab7790-c514-11d1-b42b-00805fc1270e}&asyncmac
\??\sw#{eeab7790-c514-11d1-b42b-00805fc1270e}#asyncmac#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{78032b7e-4968-42d3-9f37-287ea86c0aaa}
\??\PIPE\lsarpc
C:\Windows\sysnative\it-IT\KERNELBASE.dll.mui
C:\ProgramData\Microsoft\Windows\WER\ReportQueue
C:\Windows\sysnative\winxp\triage.ini
C:\Windows\sysnative\WINXP
C:\Windows\sysnative\winext
C:\Windows\sysnative\winext\arcade
C:\Windows\sysnative\pri
C:\Windows\sysnative\
C:\ProgramData\Oracle\Java\javapath
C:\ProgramData\Oracle\Java\javapath\
C:\Windows\
C:\Windows\sysnative\wbem
C:\Windows\sysnative\wbem\
C:\Windows\sysnative\WindowsPowerShell\v1.0
C:\Windows\sysnative\WindowsPowerShell\v1.0\
C:\Windows\sysnative\WINXP\dbghelp.dll
C:\Windows\sysnative\winext\dbghelp.dll
C:\Windows\sysnative\winext\arcade\dbghelp.dll
C:\Windows\sysnative\pri\dbghelp.dll
C:\Windows\sysnative\dbghelp.dll
C:\Windows\sysnative\WINXP\ext.dll
C:\Windows\sysnative\winext\ext.dll
C:\Windows\sysnative\winext\arcade\ext.dll
C:\Windows\sysnative\pri\ext.dll
C:\Windows\sysnative\ext.dll
C:\ProgramData\Oracle\Java\javapath\ext.dll
C:\Windows\ext.dll
C:\Windows\sysnative\wbem\ext.dll
C:\Windows\sysnative\WindowsPowerShell\v1.0\ext.dll
C:\Windows\sysnative\WINXP\exts.dll
C:\Windows\sysnative\winext\exts.dll
C:\Windows\sysnative\winext\arcade\exts.dll
C:\Windows\sysnative\pri\exts.dll
C:\Windows\sysnative\exts.dll
C:\ProgramData\Oracle\Java\javapath\exts.dll
C:\Windows\exts.dll
C:\Windows\sysnative\wbem\exts.dll
C:\Windows\sysnative\WindowsPowerShell\v1.0\exts.dll
C:\Windows\sysnative\WINXP\uext.dll
C:\Windows\sysnative\winext\uext.dll
C:\Windows\sysnative\winext\arcade\uext.dll
C:\Windows\sysnative\pri\uext.dll
C:\Windows\sysnative\uext.dll
C:\ProgramData\Oracle\Java\javapath\uext.dll
C:\Windows\uext.dll
C:\Windows\sysnative\wbem\uext.dll
C:\Windows\sysnative\WindowsPowerShell\v1.0\uext.dll
C:\Windows\sysnative\WINXP\ntsdexts.dll
C:\Windows\sysnative\winext\ntsdexts.dll
C:\Windows\sysnative\winext\arcade\ntsdexts.dll
C:\Windows\sysnative\pri\ntsdexts.dll
C:\Windows\sysnative\ntsdexts.dll
C:\ProgramData\Oracle\Java\javapath\ntsdexts.dll
C:\Windows\ntsdexts.dll
C:\Windows\sysnative\wbem\ntsdexts.dll
C:\Windows\sysnative\WindowsPowerShell\v1.0\ntsdexts.dll

Read Files

C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Users\Seven01\AppData\Local\Temp\7q.exe.config
C:\Users\Seven01\AppData\Local\Temp\7q.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\msvcr80.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch
C:\Windows\assembly\NativeImages_v2.0.50727_32\index126.dat
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\62a0b3e4b40ec0e8c5cfaa0c8848e64a\mscorlib.ni.dll
C:\Windows\System32\l_intl.nls
\Device\KsecDD
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\assembly\pubpol23.dat
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9e0a3b9b9f457233a335d7fba8f95419\System.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\dbfe8642a8ed7b2b103ad28e0c96418a\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3afcd5168c7a6cb02eab99d7fd71e102\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\08d608378aa405adc844f3cf36974b8c\Microsoft.VisualBasic.ni.dll
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sorttbls.nlp
C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sortkey.nlp
C:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\it\mscorrc.dll
C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.dll
\Device\NamedPipe\
C:\Windows\Branding\Basebrd\basebrd.dll
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Users\Seven01\AppData\Roaming\Mydd.exe.config
C:\Users\Seven01\AppData\Roaming\Mydd.exe
C:\Users\Seven01\AppData\Roaming\TcPR.exe
C:\Windows\SysWOW64\it-IT\KERNELBASE.dll.mui
C:\Windows\sysnative\Tasks\Update\Update
C:\Windows\SysWOW64\cmd.exe
C:\Windows\AppPatch\sysmain.sdb
C:\Windows\SysWOW64\
C:\Windows\SysWOW64\schtasks.exe
\Device\LanmanDatagramReceiver
C:\Windows\SysWOW64\shdocvw.dll
C:\Windows\appcompat\Programs\RecentFileCache.bcf
C:\Users\Seven01\AppData\Roaming\
C:\Windows\SysWOW64\net.exe
C:\Windows\SysWOW64\net1.exe
C:\Windows\Temp\fwtsqmfile01.sqm
C:\Windows\SysWOW64\netsh.exe
C:\Windows\SysWOW64\it-IT\netsh.exe.mui
C:\Windows\sysnative\Tasks\Microsoft\Windows\WDI\ResolutionHost
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Windows\sysnative\tzres.dll
C:\Windows\SysWOW64\sc.exe
C:\Windows\SysWOW64\it-IT\sc.exe.mui
C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat
C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat
\??\PIPE\samr
C:\Windows\sysnative\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
C:\Windows\sysnative\WerFault.exe
C:\Users\Seven01\AppData\Local\Temp\1056904581.xml
C:\Users\Seven01\AppData\Local\Temp\1021954255.xml
C:\Users\Seven01\AppData\Local\Temp\687167387.xml
C:\Users\Seven01\AppData\Roaming\TcPR.exe.config
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\b8d41a36c0f1de1ae26bf020f0fd54bc.exe
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bc09ad2d49d8535371845cd7532f9271\System.Configuration.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\461d3b6b3f43e6fbe6c897d5936e17e4\System.Xml.ni.dll
C:\Windows\System32\tzres.dll
C:\Users\Seven01\AppData\Local\Temp\314858923.xml
C:\Users\Seven01\AppData\Local\Temp\795044399.xml
\Device\Http\Communication
C:\Windows\System32\DHCPQEC.DLL
C:\Windows\System32\napipsec.dll
C:\Windows\System32\it-IT\napipsec.dll.mui
C:\Windows\System32\tsgqec.dll
C:\Windows\System32\EAPQEC.DLL
C:\Windows\System32\it-IT\eapqec.dll.mui
C:\Windows\SysWOW64\it-IT\P2PNETSH.DLL.mui
C:\Users\Seven01\AppData\Local\Temp\333847103.xml
C:\Users\Seven01\AppData\Local\Temp\258980613.xml
C:\Users\Seven01\AppData\Local\Temp\925317006.xml
C:\Users\Seven01\AppData\Local\Temp\1164852515.xml
C:\Users\Seven01\AppData\Local\Temp\973373516.xml
C:\Users\Seven01\AppData\Local\Temp\1684124138.xml
C:\Users\Seven01\AppData\Local\Temp\808079159.xml
C:\Users\Seven01\AppData\Local\Temp\760397400.xml
C:\Windows\sysnative\LogFiles\Scm\eaca24ff-236c-401d-a1e7-b3d5267b8a50
C:\Windows\sysnative\LogFiles\Scm\994c86ad-a929-4b2c-88a0-4e25a107a029
C:\Windows\sysnative\LogFiles\Scm\044a6734-e90e-4f8f-b357-b2dc8ab3b5ec
C:\Windows\sysnative\LogFiles\Scm\046fbef8-2dd6-4a92-a08e-608464edcc44
C:\Windows\sysnative\LogFiles\Scm\2f57269b-1e09-4e2d-ab1e-b0fdac7d279c
C:\Windows\sysnative\LogFiles\Scm\47536d45-eeec-4bdc-8183-a4dc1f8da9e4
C:\Windows\sysnative\LogFiles\Scm\5c0aeeea-c154-45be-8499-bea5f11baff6
C:\Windows\sysnative\LogFiles\Scm\a7c73732-9f11-4281-8d19-764d4ec9d94d
C:\Windows\sysnative\LogFiles\Scm\ac4e5acf-89f7-4220-ba21-81ee183975e2
C:\Windows\sysnative\LogFiles\Scm\b4bdb6a0-417f-4e60-a0ac-aa00b1c79b4c
C:\Windows\sysnative\LogFiles\Scm\be669c13-8165-4536-96d0-6d6c39292aae
C:\Windows\sysnative\LogFiles\Scm\c016366b-7126-46ca-b36b-592a3d95a60b
C:\Windows\sysnative\LogFiles\Scm\ca4b8ff2-a4d2-4d88-a52e-3a5bdaf7f56e
C:\Windows\sysnative\LogFiles\Scm\fb3c354d-297a-4eb2-9b58-090f6361906b
C:\Windows\sysnative\LogFiles\Scm\fdd56c73-f0d5-41b6-b767-6effd7966428
C:\Windows\sysnative
C:\Windows\sysnative\spp\plugin-manifests-signed\sppwinob-spp-plugin-manifest-signed.xrm-ms
C:\Windows\sysnative\sppwinob.dll
C:\Windows\sysnative\spp\plugin-manifests-signed\sppobjs-spp-plugin-manifest-signed.xrm-ms
C:\Windows\sysnative\sppobjs.dll
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
\??\pci#ven_8086&dev_100e&subsys_001e8086&rev_02#3&267a616a&0&18#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{c2d43895-0262-4873-a789-c2f96d24b693}
\??\root#*isatap#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{684bb8b6-2793-49a5-8012-e0a941b4b4df}
\??\root#*isatap#0001#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{5f6d61d9-d207-449a-bd48-652a5d1f25be}
\??\root#ms_agilevpnminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{29898c9d-b0a4-4fef-bdb6-57a562022cee}
\??\root#ms_l2tpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{e43d242b-9eab-4626-a952-46649fbb939a}
\??\root#ms_ndiswanbh#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanbh
\??\root#ms_ndiswanip#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanip
\??\root#ms_ndiswanipv6#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\ndiswanipv6
\??\root#ms_pppoeminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{8e301a52-affa-4f49-b9ca-c79096a1a056}
\??\root#ms_pptpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{df4a9d2c-8742-4eb1-8703-d395c4183f33}
\??\root#ms_sstpminiport#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{71f897d7-eb7c-4d8d-89db-ac80d9dd2270}
\??\root#system#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{eeab7790-c514-11d1-b42b-00805fc1270e}&asyncmac
\??\sw#{eeab7790-c514-11d1-b42b-00805fc1270e}#asyncmac#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{78032b7e-4968-42d3-9f37-287ea86c0aaa}
C:\Users\Seven01\AppData\Local\Temp\1783871101.xml
\??\PIPE\lsarpc
C:\Windows\sysnative\it-IT\KERNELBASE.dll.mui
C:\Windows\sysnative\winxp\triage.ini

Write Files

C:\Users\Seven01\AppData\Roaming\Mydd.exe
C:\Users\Seven01\AppData\Local\Temp\Update.txt
C:\Users\Seven01\AppData\Local\Temp\1056904581.xml
C:\Users\Seven01\AppData\Local\Temp\1021954255.xml
C:\Users\Seven01\AppData\Local\Temp\687167387.xml
C:\Users\Seven01\AppData\Roaming\TcPR.exe
C:\Windows\sysnative\Tasks\Update\Update
\Device\LanmanDatagramReceiver
C:\Windows\appcompat\Programs\RecentFileCache.bcf
C:\Windows\Temp\fwtsqmfile01.sqm
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat
C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat
\??\PIPE\samr
C:\Users\Seven01\AppData\Local\Temp\314858923.xml
\Device\NamedPipe
C:\Users\Seven01\AppData\Local\Temp\795044399.xml
C:\Users\Seven01\AppData\Local\Temp\333847103.xml
C:\Users\Seven01\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\b8d41a36c0f1de1ae26bf020f0fd54bc.exe
C:\Users\Seven01\AppData\Local\Temp\258980613.xml
C:\Users\Seven01\AppData\Local\Temp\925317006.xml
C:\Users\Seven01\AppData\Local\Temp\1164852515.xml
C:\Users\Seven01\AppData\Local\Temp\973373516.xml
C:\Users\Seven01\AppData\Local\Temp\1684124138.xml
C:\Users\Seven01\AppData\Local\Temp\808079159.xml
C:\Users\Seven01\AppData\Local\Temp\760397400.xml
C:\Users\Seven01\AppData\Local\Temp\1783871101.xml
C:\Users\Seven01\AppData\Local\Temp\1759965905.xml
\Device\Http\Communication
C:\Windows\sysnative\LogFiles\Scm\044a6734-e90e-4f8f-b357-b2dc8ab3b5ec
C:\Windows\sysnative\LogFiles\Scm\eaca24ff-236c-401d-a1e7-b3d5267b8a50
\??\SPDevice
\??\PIPE\lsarpc

Delete Files

C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch.2408.33659828
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch.2408.33659828
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch.2408.33659859
C:\Users\Seven01\AppData\Local\Temp\1056904581.xml
C:\Users\Seven01\AppData\Local\Temp\1021954255.xml
C:\Users\Seven01\AppData\Local\Temp\687167387.xml
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch.2644.33661343
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch.2644.33661343
C:\Users\Seven01\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch.2644.33661343
C:\Windows\sysnative\Tasks\Update\Update
C:\Users\Seven01\AppData\Local\Temp\314858923.xml
C:\Users\Seven01\AppData\Local\Temp\795044399.xml
C:\Users\Seven01\AppData\Local\Temp\333847103.xml
C:\Users\Seven01\AppData\Local\Temp\258980613.xml
C:\Users\Seven01\AppData\Local\Temp\925317006.xml
C:\Users\Seven01\AppData\Local\Temp\1164852515.xml
C:\Users\Seven01\AppData\Local\Temp\973373516.xml
C:\Users\Seven01\AppData\Local\Temp\1684124138.xml
C:\Users\Seven01\AppData\Local\Temp\808079159.xml
C:\Users\Seven01\AppData\Local\Temp\760397400.xml
C:\Users\Seven01\AppData\Local\Temp\1783871101.xml

Keys

HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Policy\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\v4.0
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\CLRLoadLogDir
HKEY_CURRENT_USER\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\UseLegacyV2RuntimeActivationPolicyDefaultValue
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\OnlyUseLatestCLR
Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\Standards
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\Standards\v2.0.50727
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide\AssemblyStorageRoots
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\GCStressStart
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\GCStressStartAtJit
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Policy\AppPatch
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\AppPatch\v4.0.30319.00000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\AppPatch\v4.0.30319.00000\mscorwks.dll
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\7q.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_CURRENT_USER\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\VersioningLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Security\Policy\Extensions\NamedPermissionSets
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Security\Policy\Extensions\NamedPermissionSets\Internet
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Security\Policy\Extensions\NamedPermissionSets\LocalIntranet
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1822907384-1282624486-319450072-1000
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\v2.0.50727\Security\Policy
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\LatestIndex
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\index126
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\index126\NIUsageMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\index126\ILUsageMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\LastModTime
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion\GACChangeNotification\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\mscorlib,2.0.0.0,,b77a5c561934e089,x86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\370dfa\7bb886a7
HKEY_LOCAL_MACHINE\Software\Microsoft\StrongName
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion\PublisherPolicy\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\index23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\LegacyPolicyTimeStamp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Windows.Forms__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Windows.Forms,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Drawing__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Drawing,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Xml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Xml,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Configuration__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Configuration,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Deployment__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Deployment,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Runtime.Serialization.Formatters.Soap__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Runtime.Serialization.Formatters.Soap,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.Accessibility__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\Accessibility,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Security__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Security,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\APTCA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.8.0.Microsoft.VisualBasic__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\Microsoft.VisualBasic,8.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Web__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Web,2.0.0.0,,b03f5f7f11d50a3a,x86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Management__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Management,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Runtime.Remoting__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Runtime.Remoting,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1624a811\ec7dcaf
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-1822907384-1282624486-319450072-1000\Installer\Assemblies\C:|Users|Seven01|AppData|Local|Temp|7q.exe
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\C:|Users|Seven01|AppData|Local|Temp|7q.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Users|Seven01|AppData|Local|Temp|7q.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-1822907384-1282624486-319450072-1000\Installer\Assemblies\Global
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\Global
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\Global
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1624a811\6741ce09
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.mscorlib.resources_it-IT_b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\5e8c75c\40dcb014
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.mscorlib.resources_it_b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\5e8c75c\1ffc8ca7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\4ad60644\6f323003
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\5d1b2185\235dd0a9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\5d1b2185\9e47f51
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\System
HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DisableUNCCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\EnableExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DelayedExpansion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DefaultColor
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\CompletionChar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\PathCompletionChar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\AutoRun
HKEY_CURRENT_USER\Software\Microsoft\Command Processor
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DisableUNCCheck
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\EnableExtensions
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DelayedExpansion
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DefaultColor
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\CompletionChar
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\PathCompletionChar
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\AutoRun
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it-IT
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it-IT
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale\Alternate Sorts
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Language Groups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000410
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Mydd.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-1822907384-1282624486-319450072-1000\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|Mydd.exe
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|Mydd.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|Mydd.exe
HKEY_CURRENT_USER\di
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Classes
HKEY_CURRENT_USER\Software\Classes\AppID\Mydd.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BFE
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledProcesses\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\C766B40C
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledSessions\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CEIPEnable
HKEY_CURRENT_USER\Software\Classes\AppID\schtasks.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater\Id
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Control Panel\International
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Control Panel\International\LocaleName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\cmd.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\schtasks.exe
HKEY_LOCAL_MACHINE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\SchedulingEngineKnob
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\svchost.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\svchost.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Index
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\DynamicInfo
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\SecurityService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\shdocvw.dll
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\TcPR.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\net.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\net1.exe
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\DynamicInfo
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\netsh.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\ResolutionHost
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\ResolutionHost\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\ESS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/subscription
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2
HKEY_LOCAL_MACHINE\system\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2\SCM Event Provider
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\minint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\DynamicInfo
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileMinMemory
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\PerfMMFileName
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\BackupRestore\FilesNotToBackup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_metadata
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\BITS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobInactivityTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TimeQuantaLength
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobNoProgressTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobMinimumRetryDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TransferBufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackBegin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackEnd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackDuration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TestFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\ForceFileFlush
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\UseLmCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\IGDSearcherDLL
HKEY_LOCAL_MACHINE\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2085F28-FEB7-404A-B8E7-E659BDEAAA02}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2085F28-FEB7-404A-B8E7-E659BDEAAA02}\TreatAs
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\sc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\DynamicInfo
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\BITS\Throttling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StatefileChunk
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StatefileWriteBuffer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StateIndex
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_LOG
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_BAK
HKEY_LOCAL_MACHINE\SYSTEM\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Safeboot\Option
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\VssAccessControl
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Settings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}\Triggers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Time Zones\W. Europe Standard Time\Dynamic DST
HKEY_USERS\S-1-5-20
HKEY_USERS\S-1-5-20\Control Panel\International
HKEY_USERS\S-1-5-20\Control Panel\International\LocaleName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\DynamicInfo
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TcPR.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-1822907384-1282624486-319450072-1000\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|TcPR.exe
HKEY_CURRENT_USER\Software\Microsoft\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|TcPR.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Users|Seven01|AppData|Roaming|TcPR.exe
HKEY_CURRENT_USER\Environment
HKEY_CURRENT_USER\Environment\SEE_MASK_NOZONECHECKS
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_CURRENT_USER\Software\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DbgJITDebugLaunchSetting
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DbgManagedDebugger
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.2.0.System.Data.SqlXml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Data.SqlXml,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\InstallationType
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.NET CLR Networking\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\Library
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\IsMultiInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\.net clr networking\Performance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\CategoryOptions
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\FileMappingSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\Counter Names
HKEY_CURRENT_USER\Software\b8d41a36c0f1de1ae26bf020f0fd54bc\[kl]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NetSh
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuildNumber
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TCPIP6\Parameters\DisabledComponents
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\IPSEC\Policy\Local
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\iphlpsvc\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc\config\Connectivity_Platform_Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.44.3.4!7
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.44.3.4!7
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.44.3.4!7\Name
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_CURRENT_USER
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4b\7F06864B
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\LanguageList
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\p2pcollab.dll,-8042
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.47.1.1!7
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.47.1.1!7
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.47.1.1!7\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dnsapi.dll,-103
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NapAgent\LocalConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Enroll\HcsGroups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Enroll\HcsGroups\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Enable Tracing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Tracing Level
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Qecs\79617
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\PlumbIpsecPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Qecs\79619
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Qecs\79621
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Qecs\79623
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\UI
HKEY_CURRENT_USER\Software\Classes\AppID\netsh.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\F6C4EC9A
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\PeerDist
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\PolicyProvider
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Diagnostics
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\System
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GpSvcDebugLevel
HKEY_LOCAL_MACHINE\System\Setup
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\PeerDist
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\Service
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Service
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Service\Enable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Service\PolicyRefreshInProgress
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\TransportDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\CryptoAlgo
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\Protocol
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\Protocol
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\Download
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\Download
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\Upload
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\Upload
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\UtilityIndex
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\UtilityIndex
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DownloadManager\Peers\Connection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\Peers\Connection
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\SecurityManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\BlockSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\NumBlocksPerSegment
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\SecurityManager\Restricted
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\Restricted
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\Restricted\Seed
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\CacheMgr\Republication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\CacheMgr\Republication
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\CacheMgr\Publication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\CacheMgr\Publication
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\HandleMgr
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HandleMgr
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\HostedCache\Connection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\Connection
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\HostedCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\ServerRole
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\ClientAuth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\TransportDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxSimultaneousDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxSimultaneousUploads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxPendingOffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxPendingDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\DoNotUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\CooperativeCaching
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\CooperativeCaching
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\DiscoveryManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\RepubQuorumSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\MinBackoffWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\DiscoveryProviderDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\Publisher
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Publisher
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PeerDist\Roaming
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\ForceRoamingDetect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\RefreshDllName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\RefreshProcName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\RequiredPrivileges
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20\ProfileImagePath
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_USERS\S-1-5-20\Environment
HKEY_USERS\S-1-5-20\Volatile Environment
HKEY_USERS\S-1-5-20\Volatile Environment\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Winmgmt
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Winmgmt\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_32\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_64\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Group
HKEY_USERS\S-1-5-19
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19\ProfileImagePath
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_USERS\S-1-5-19\Environment
HKEY_USERS\S-1-5-19\Volatile Environment
HKEY_USERS\S-1-5-19\Volatile Environment\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\RequiredPrivileges
HKEY_USERS\S-1-5-18
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_USERS\.DEFAULT\Environment
HKEY_USERS\.DEFAULT\Volatile Environment
HKEY_USERS\.DEFAULT\Volatile Environment\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\sppsvc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\ServiceSessionId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\179b8a65-b0f6-41d9-acea-12006ef9b32a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\179b8a65-b0f6-41d9-acea-12006ef9b32a\ManifestFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\179b8a65-b0f6-41d9-acea-12006ef9b32a\PluginFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\c42d83ff-5958-4af4-a0dd-ba02fed39662
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\c42d83ff-5958-4af4-a0dd-ba02fed39662\ManifestFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\c42d83ff-5958-4af4-a0dd-ba02fed39662\PluginFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/bios/4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/bios/4.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/bios/4.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/flags/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/flags/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/hwid/4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/hwid/4.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/phone/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/phone/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/pkey/2005
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/pkey/2005\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/vmd/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/vmd/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/volume/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/volume/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/eul/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/eul/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/pkc/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/pkc/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/rac/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/rac/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/spc/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/spc/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/sequence/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/sequence/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/TaskScheduler/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/TaskScheduler/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/windowsfunctionality/agent/7.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/windowsfunctionality/agent/7.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/windowsfunctionality/agent/7.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/flags/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/hwid/4.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/phone/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/pkey/2005\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/vmd/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/volume/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/eul/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/pkc/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/rac/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/spc/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/sequence/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/TaskScheduler/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\EnableTestVolumeIntervals
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLActivationInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalScheduleDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalScheduleTolerance
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PublisherPolicyChangeTime
HKEY_LOCAL_MACHINE\SYSTEM\Setup\OOBEInProgress
HKEY_LOCAL_MACHINE\System\Setup\Status
HKEY_LOCAL_MACHINE\SYSTEM\Setup\Status\AuditBoot
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Reboot.SL_BRT_COMMIT
HKEY_CURRENT_USER\Control Panel\International
HKEY_CURRENT_USER\Control Panel\International\LocaleName
HKEY_CURRENT_USER\Control Panel\International\sCountry
HKEY_CURRENT_USER\Control Panel\International\sList
HKEY_CURRENT_USER\Control Panel\International\sDecimal
HKEY_CURRENT_USER\Control Panel\International\sThousand
HKEY_CURRENT_USER\Control Panel\International\sGrouping
HKEY_CURRENT_USER\Control Panel\International\sNativeDigits
HKEY_CURRENT_USER\Control Panel\International\sCurrency
HKEY_CURRENT_USER\Control Panel\International\sMonDecimalSep
HKEY_CURRENT_USER\Control Panel\International\sMonThousandSep
HKEY_CURRENT_USER\Control Panel\International\sMonGrouping
HKEY_CURRENT_USER\Control Panel\International\sPositiveSign
HKEY_CURRENT_USER\Control Panel\International\sNegativeSign
HKEY_CURRENT_USER\Control Panel\International\sTimeFormat
HKEY_CURRENT_USER\Control Panel\International\sShortTime
HKEY_CURRENT_USER\Control Panel\International\s1159
HKEY_CURRENT_USER\Control Panel\International\s2359
HKEY_CURRENT_USER\Control Panel\International\sShortDate
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_CURRENT_USER\Control Panel\International\sLongDate
HKEY_CURRENT_USER\Control Panel\International\iCountry
HKEY_CURRENT_USER\Control Panel\International\iMeasure
HKEY_CURRENT_USER\Control Panel\International\iPaperSize
HKEY_CURRENT_USER\Control Panel\International\iDigits
HKEY_CURRENT_USER\Control Panel\International\iLZero
HKEY_CURRENT_USER\Control Panel\International\iNegNumber
HKEY_CURRENT_USER\Control Panel\International\NumShape
HKEY_CURRENT_USER\Control Panel\International\iCurrDigits
HKEY_CURRENT_USER\Control Panel\International\iCurrency
HKEY_CURRENT_USER\Control Panel\International\iNegCurr
HKEY_CURRENT_USER\Control Panel\International\iCalendarType
HKEY_CURRENT_USER\Control Panel\International\iFirstDayOfWeek
HKEY_CURRENT_USER\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SafeBoot\Option
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\InactivityShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\KeepRunningThresholdMins
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\taskhost.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\CoInitializeSecurityParam
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\ImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\AuthenticationCapabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\CoInitializeSecurityAppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\DeferredCoInitializeSecurityServices
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\SystemCritical
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\svchost.exe
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\w32time
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogEntries
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\RefreshSettingsFlags
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\InputProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\InputProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\InputProvider
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\W32Time\TimeProviders
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\W32Time\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\PhaseCorrectRate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\UpdateInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FrequencyCorrectRate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\PollAdjustFactor
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\LargePhaseOffset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\SpikeWatchPeriod
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\HoldPeriod
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MinPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\AnnounceFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\LocalClockDispersion
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxNegPhaseCorrection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxPosPhaseCorrection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\EventLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxAllowedPhaseOffset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\TimeJumpAuditOffset
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\Rpc
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\W32Time\TimeProviders\NtpClient
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\W32Time\Parameters
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\AllowNonstandardModeCombinations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\CompatibilityFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\SpecialPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\ResolvePeerBackoffMinutes
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\ResolvePeerBackoffMaxTimes
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\EventLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\LargeSampleSkew
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\NtpServer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\SpecialPollTimeRemaining
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\VML
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Rpc\Linkage
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\VMICTimeProvider\Parameters\IPC
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\WerSvcGroup
HKEY_USERS\.DEFAULT\Control Panel\International
HKEY_USERS\.DEFAULT\Control Panel\International\LocaleName
HKEY_USERS\.DEFAULT\Control Panel\International\sCountry
HKEY_USERS\.DEFAULT\Control Panel\International\sList
HKEY_USERS\.DEFAULT\Control Panel\International\sDecimal
HKEY_USERS\.DEFAULT\Control Panel\International\sThousand
HKEY_USERS\.DEFAULT\Control Panel\International\sGrouping
HKEY_USERS\.DEFAULT\Control Panel\International\sNativeDigits
HKEY_USERS\.DEFAULT\Control Panel\International\sCurrency
HKEY_USERS\.DEFAULT\Control Panel\International\sMonDecimalSep
HKEY_USERS\.DEFAULT\Control Panel\International\sMonThousandSep
HKEY_USERS\.DEFAULT\Control Panel\International\sMonGrouping
HKEY_USERS\.DEFAULT\Control Panel\International\sPositiveSign
HKEY_USERS\.DEFAULT\Control Panel\International\sNegativeSign
HKEY_USERS\.DEFAULT\Control Panel\International\sTimeFormat
HKEY_USERS\.DEFAULT\Control Panel\International\sShortTime
HKEY_USERS\.DEFAULT\Control Panel\International\s1159
HKEY_USERS\.DEFAULT\Control Panel\International\s2359
HKEY_USERS\.DEFAULT\Control Panel\International\sShortDate
HKEY_USERS\.DEFAULT\Control Panel\International\sYearMonth
HKEY_USERS\.DEFAULT\Control Panel\International\sLongDate
HKEY_USERS\.DEFAULT\Control Panel\International\iCountry
HKEY_USERS\.DEFAULT\Control Panel\International\iMeasure
HKEY_USERS\.DEFAULT\Control Panel\International\iPaperSize
HKEY_USERS\.DEFAULT\Control Panel\International\iDigits
HKEY_USERS\.DEFAULT\Control Panel\International\iLZero
HKEY_USERS\.DEFAULT\Control Panel\International\iNegNumber
HKEY_USERS\.DEFAULT\Control Panel\International\NumShape
HKEY_USERS\.DEFAULT\Control Panel\International\iCurrDigits
HKEY_USERS\.DEFAULT\Control Panel\International\iCurrency
HKEY_USERS\.DEFAULT\Control Panel\International\iNegCurr
HKEY_USERS\.DEFAULT\Control Panel\International\iCalendarType
HKEY_USERS\.DEFAULT\Control Panel\International\iFirstDayOfWeek
HKEY_USERS\.DEFAULT\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wersvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ServiceTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoReflection
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PropertyBag
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\TraceFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\Debug
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\NoReflection
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AeDebug
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug\Debugger
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MiniNT
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Plugins\AppRecorder
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Plugins\FDR\CurrentSession
HKEY_CURRENT_USER\Software\Microsoft\Windiff
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\CurrentType

Read Keys

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\CLRLoadLogDir
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\UseLegacyV2RuntimeActivationPolicyDefaultValue
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\OnlyUseLatestCLR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\GCStressStart
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\GCStressStartAtJit
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\VersioningLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NoClientChecks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\LatestIndex
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\index126\NIUsageMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\index126\ILUsageMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\181938c6\7950e2c5\83\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\7950e2c5\183e33de\83\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\mscorlib,2.0.0.0,,b77a5c561934e089,x86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\index23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\LegacyPolicyTimeStamp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\61e7e666\c991064\7a\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\475dce40\2d382ce6\85\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\19ab8d57\1bd7b0d8\87\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2dd6ac50\163e1f5e\80\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\424bd4d8\1c83327b\86\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\41c04c7e\7f3b6ac4\78\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3ced59c5\1b2590b1\7c\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\c991064\2bd33e1c\79\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\30bc7c4f\3f50fe4f\88\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\3f50fe4f\6f1da7aa\88\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\3cca06a0\6dc7d4c0\7b\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\6dc7d4c0\a5cd4db\7e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Windows.Forms,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Drawing,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Xml,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Configuration,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Deployment,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Runtime.Serialization.Formatters.Soap,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\Accessibility,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Security,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\1c22df2f\4f99a7c9\2e\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\f6e8397\46ad0879\6f\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\2b1a4e4\38a3212c\44\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\24bf93f6\455bab30\6e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\4f99a7c9\53bea2b0\2e\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\Microsoft.VisualBasic,8.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Web,2.0.0.0,,b03f5f7f11d50a3a,x86
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Management,2.0.0.0,,b03f5f7f11d50a3a,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Runtime.Remoting,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DisableUNCCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\EnableExtensions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DelayedExpansion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\DefaultColor
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\CompletionChar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\PathCompletionChar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Command Processor\AutoRun
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DisableUNCCheck
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\EnableExtensions
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DelayedExpansion
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\DefaultColor
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\CompletionChar
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\PathCompletionChar
HKEY_CURRENT_USER\Software\Microsoft\Command Processor\AutoRun
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\it-IT
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\it-IT
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000410
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_CURRENT_USER\di
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3512230a-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122306-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{35122307-fb0b-11e5-b945-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\C766B40C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CEIPEnable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater\Id
HKEY_USERS\S-1-5-21-1822907384-1282624486-319450072-1000\Control Panel\International\LocaleName
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\SchedulingEngineKnob
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Index
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\ResolutionHost\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Triggers
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Triggers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\LogFileMinMemory
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\First Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\Last Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\Last Help
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_metadata
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobInactivityTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TimeQuantaLength
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobNoProgressTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\JobMinimumRetryDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TransferBufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackBegin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackEnd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\SleepAtCallbackDuration
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\TestFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\ForceFileFlush
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\UseLmCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\IGDSearcherDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StatefileChunk
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StatefileWriteBuffer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS\StateIndex
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{659CDEA7-489E-11D9-A9CD-000D56965251}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03CA98D6-FF5D-49B8-ABC6-03DD84127020}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D18AD12-BDE3-4393-B311-099C346E6DF9}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F087771F-D74F-4C1A-BB8A-E16ACA9124EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4991D34B-80A1-4291-83B6-3328366B9097}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69AD4AEE-51BE-439B-A92C-86AE490E8B30}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}\Triggers
HKEY_USERS\S-1-5-20\Control Panel\International\LocaleName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\DynamicInfo
HKEY_CURRENT_USER\Environment\SEE_MASK_NOZONECHECKS
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DbgJITDebugLaunchSetting
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DbgManagedDebugger
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\159a66b8\424bd4d8\87\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ConfigMask
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ConfigString
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\MVID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\EvalationData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\ILDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\NIDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\NI\6faf58\19ab8d57\86\MissingDependencies
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\DisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\Status
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\Modules
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\SIG
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\NativeImagesIndex\v2.0.50727_32\IL\75638fee\7566cac\84\LastModTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\GACChangeNotification\Default\System.Data.SqlXml,2.0.0.0,,b77a5c561934e089,MSIL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\InstallationType
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\Library
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\IsMultiInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\First Counter
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\CategoryOptions
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\FileMappingSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance\Counter Names
HKEY_CURRENT_USER\Software\b8d41a36c0f1de1ae26bf020f0fd54bc\[kl]
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\CurrentBuildNumber
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TCPIP6\Parameters\DisabledComponents
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iphlpsvc\config\Connectivity_Platform_Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.44.3.4!7\Name
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\p2pcollab.dll,-8042
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.47.1.1!7\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dnsapi.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Enable Tracing
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\Tracing Level
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79617\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79619\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79621\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Friendly Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-100
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Description
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Version
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-102
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Vendor Name
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Info Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Config Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Validator Clsid
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Registration Date
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\Qecs\79623\Component Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\napagent\LocalConfig\PlumbIpsecPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\F6C4EC9A
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GpSvcDebugLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Service\Enable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Service\PolicyRefreshInProgress
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\TransportDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DownloadManager\CryptoAlgo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\BlockSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\NumBlocksPerSegment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\SecurityManager\Restricted\Seed
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\ServerRole
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\ClientAuth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\TransportDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxSimultaneousDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxSimultaneousUploads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxPendingOffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\MaxPendingDownloads
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\HostedCache\DoNotUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\RepubQuorumSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\MinBackoffWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\DiscoveryManager\DiscoveryProviderDllPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\ForceRoamingDetect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\RefreshDllName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PeerDist\Roaming\RefreshProcName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\RequiredPrivileges
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20\ProfileImagePath
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sppsvc\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Winmgmt\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_32\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\clr_optimization_v4.0.30319_64\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wscsvc\Group
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19\ProfileImagePath
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gpsvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\RequiredPrivileges
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\179b8a65-b0f6-41d9-acea-12006ef9b32a\ManifestFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\179b8a65-b0f6-41d9-acea-12006ef9b32a\PluginFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\c42d83ff-5958-4af4-a0dd-ba02fed39662\ManifestFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Modules\c42d83ff-5958-4af4-a0dd-ba02fed39662\PluginFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/bios/4.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/bios/4.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/flags/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/hwid/4.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/phone/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/pkey/2005\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/vmd/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/volume/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/eul/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/pkc/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/rac/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/spc/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/sequence/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/TaskScheduler/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/windowsfunctionality/agent/7.0\ModuleId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/windowsfunctionality/agent/7.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/flags/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/hwid/4.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/phone/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/pkey/2005\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/vmd/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:rm/algorithm/volume/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/eul/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/pkc/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/rac/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/payloadhandler/spc/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/licenseacquisition/sequence/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/TaskScheduler/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0\IsService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\EnableTestVolumeIntervals
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLActivationInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalScheduleDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\VLRenewalScheduleTolerance
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PublisherPolicyChangeTime
HKEY_LOCAL_MACHINE\SYSTEM\Setup\OOBEInProgress
HKEY_LOCAL_MACHINE\SYSTEM\Setup\Status\AuditBoot
HKEY_CURRENT_USER\Control Panel\International\LocaleName
HKEY_CURRENT_USER\Control Panel\International\sCountry
HKEY_CURRENT_USER\Control Panel\International\sList
HKEY_CURRENT_USER\Control Panel\International\sDecimal
HKEY_CURRENT_USER\Control Panel\International\sThousand
HKEY_CURRENT_USER\Control Panel\International\sGrouping
HKEY_CURRENT_USER\Control Panel\International\sNativeDigits
HKEY_CURRENT_USER\Control Panel\International\sCurrency
HKEY_CURRENT_USER\Control Panel\International\sMonDecimalSep
HKEY_CURRENT_USER\Control Panel\International\sMonThousandSep
HKEY_CURRENT_USER\Control Panel\International\sMonGrouping
HKEY_CURRENT_USER\Control Panel\International\sPositiveSign
HKEY_CURRENT_USER\Control Panel\International\sNegativeSign
HKEY_CURRENT_USER\Control Panel\International\sTimeFormat
HKEY_CURRENT_USER\Control Panel\International\sShortTime
HKEY_CURRENT_USER\Control Panel\International\s1159
HKEY_CURRENT_USER\Control Panel\International\s2359
HKEY_CURRENT_USER\Control Panel\International\sShortDate
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_CURRENT_USER\Control Panel\International\sLongDate
HKEY_CURRENT_USER\Control Panel\International\iCountry
HKEY_CURRENT_USER\Control Panel\International\iMeasure
HKEY_CURRENT_USER\Control Panel\International\iPaperSize
HKEY_CURRENT_USER\Control Panel\International\iDigits
HKEY_CURRENT_USER\Control Panel\International\iLZero
HKEY_CURRENT_USER\Control Panel\International\iNegNumber
HKEY_CURRENT_USER\Control Panel\International\NumShape
HKEY_CURRENT_USER\Control Panel\International\iCurrDigits
HKEY_CURRENT_USER\Control Panel\International\iCurrency
HKEY_CURRENT_USER\Control Panel\International\iNegCurr
HKEY_CURRENT_USER\Control Panel\International\iCalendarType
HKEY_CURRENT_USER\Control Panel\International\iFirstDayOfWeek
HKEY_CURRENT_USER\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\InactivityShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\KeepRunningThresholdMins
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\CoInitializeSecurityParam
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\ImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\AuthenticationCapabilities
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\CoInitializeSecurityAppID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\DeferredCoInitializeSecurityServices
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\LocalService\SystemCritical
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogEntries
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FileLogSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\RefreshSettingsFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\InputProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpServer\InputProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\DllName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\VMICTimeProvider\InputProvider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\PhaseCorrectRate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\UpdateInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\FrequencyCorrectRate
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\PollAdjustFactor
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\LargePhaseOffset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\SpikeWatchPeriod
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\HoldPeriod
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MinPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\AnnounceFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\LocalClockDispersion
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxNegPhaseCorrection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxPosPhaseCorrection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\EventLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\MaxAllowedPhaseOffset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Config\TimeJumpAuditOffset
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\UserenvDebugLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\AllowNonstandardModeCombinations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\CompatibilityFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\SpecialPollInterval
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\ResolvePeerBackoffMinutes
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\ResolvePeerBackoffMaxTimes
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\EventLogFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\LargeSampleSkew
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\NtpServer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\SpecialPollTimeRemaining
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\WerSvcGroup
HKEY_USERS\.DEFAULT\Control Panel\International\LocaleName
HKEY_USERS\.DEFAULT\Control Panel\International\sCountry
HKEY_USERS\.DEFAULT\Control Panel\International\sList
HKEY_USERS\.DEFAULT\Control Panel\International\sDecimal
HKEY_USERS\.DEFAULT\Control Panel\International\sThousand
HKEY_USERS\.DEFAULT\Control Panel\International\sGrouping
HKEY_USERS\.DEFAULT\Control Panel\International\sNativeDigits
HKEY_USERS\.DEFAULT\Control Panel\International\sCurrency
HKEY_USERS\.DEFAULT\Control Panel\International\sMonDecimalSep
HKEY_USERS\.DEFAULT\Control Panel\International\sMonThousandSep
HKEY_USERS\.DEFAULT\Control Panel\International\sMonGrouping
HKEY_USERS\.DEFAULT\Control Panel\International\sPositiveSign
HKEY_USERS\.DEFAULT\Control Panel\International\sNegativeSign
HKEY_USERS\.DEFAULT\Control Panel\International\sTimeFormat
HKEY_USERS\.DEFAULT\Control Panel\International\sShortTime
HKEY_USERS\.DEFAULT\Control Panel\International\s1159
HKEY_USERS\.DEFAULT\Control Panel\International\s2359
HKEY_USERS\.DEFAULT\Control Panel\International\sShortDate
HKEY_USERS\.DEFAULT\Control Panel\International\sYearMonth
HKEY_USERS\.DEFAULT\Control Panel\International\sLongDate
HKEY_USERS\.DEFAULT\Control Panel\International\iCountry
HKEY_USERS\.DEFAULT\Control Panel\International\iMeasure
HKEY_USERS\.DEFAULT\Control Panel\International\iPaperSize
HKEY_USERS\.DEFAULT\Control Panel\International\iDigits
HKEY_USERS\.DEFAULT\Control Panel\International\iLZero
HKEY_USERS\.DEFAULT\Control Panel\International\iNegNumber
HKEY_USERS\.DEFAULT\Control Panel\International\NumShape
HKEY_USERS\.DEFAULT\Control Panel\International\iCurrDigits
HKEY_USERS\.DEFAULT\Control Panel\International\iCurrency
HKEY_USERS\.DEFAULT\Control Panel\International\iNegCurr
HKEY_USERS\.DEFAULT\Control Panel\International\iCalendarType
HKEY_USERS\.DEFAULT\Control Panel\International\iFirstDayOfWeek
HKEY_USERS\.DEFAULT\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceManifest
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceMain
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ServiceTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Parameters\ServiceDllUnloadOnStop
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoReflection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\TraceFlags
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\NoReflection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug\Debugger
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\CurrentType

Write Keys

HKEY_CURRENT_USER\di
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Id
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Update\Update\Index
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7685B23C-0D1A-4D5B-8C55-AEF050E58D51}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96AAB160-F086-4B5F-A285-B4A293DF5598}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABB32AB-93AE-4FC4-B632-03D37E29F5A2}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AC697FA-F3D2-48B3-A7E3-CC0EE794F7AE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0FF33E6-F176-4B19-B8A0-D14E6582FC40}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71A59522-3E49-480C-8D83-32AB8C02CC2B}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B9C6516-0633-4F45-B863-9A3A748F6AE8}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99ED4FCB-A7A0-49FE-B2CD-E06490B0650F}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90DBF541-B965-457A-9353-97B61740C9F1}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62B2AA40-CE6E-4019-B20E-46A865841EDE}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F68300D-720E-439E-948E-8EA113CCABA6}\DynamicInfo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EE6C49-81B1-4EEF-9B6F-C3487E20E6E6}\DynamicInfo
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BITS\Performance\PerfMMFileName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C3D8DDA-6256-4258-8FAE-3211ACC9D122}\DynamicInfo
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_LOG
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\BackupRestore\FilesNotToBackup\BITS_BAK
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Path
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Hash
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\Triggers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C4FE9B-71A2-498C-9862-BFB882690E11}\DynamicInfo
HKEY_CURRENT_USER\Environment\SEE_MASK_NOZONECHECKS
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_CURRENT_USER\Software\b8d41a36c0f1de1ae26bf020f0fd54bc
HKEY_CURRENT_USER\Software\b8d41a36c0f1de1ae26bf020f0fd54bc\[kl]
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\LanguageList
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-100
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-101
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-103
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\dhcpqec.dll,-102
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-1
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-2
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-4
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\napipsec.dll,-3
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-100
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-101
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-102
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\tsgqec.dll,-103
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-100
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-101
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-102
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\4B\7F06864B\@%SystemRoot%\system32\eapqec.dll,-103
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Type
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\ServiceSessionId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\W32Time\TimeProviders\NtpClient\SpecialPollTimeRemaining

Delete Keys

Nothing to display

Mutexes

Global\CLR_CASOFF_MUTEX
b8d41a36c0f1de1ae26bf020f0fd54bc
Global\.net clr networking
Local\WERReportingForProcess2056

Resolved APIs

advapi32.dll.RegOpenKeyExW
advapi32.dll.RegQueryInfoKeyW
advapi32.dll.RegEnumKeyExW
advapi32.dll.RegEnumValueW
advapi32.dll.RegCloseKey
advapi32.dll.RegQueryValueExW
kernel32.dll.FlsAlloc
kernel32.dll.FlsFree
kernel32.dll.FlsGetValue
kernel32.dll.FlsSetValue
kernel32.dll.InitializeCriticalSectionEx
kernel32.dll.CreateEventExW
kernel32.dll.CreateSemaphoreExW
kernel32.dll.SetThreadStackGuarantee
kernel32.dll.CreateThreadpoolTimer
kernel32.dll.SetThreadpoolTimer
kernel32.dll.WaitForThreadpoolTimerCallbacks
kernel32.dll.CloseThreadpoolTimer
kernel32.dll.CreateThreadpoolWait
kernel32.dll.SetThreadpoolWait
kernel32.dll.CloseThreadpoolWait
kernel32.dll.FlushProcessWriteBuffers
kernel32.dll.FreeLibraryWhenCallbackReturns
kernel32.dll.GetCurrentProcessorNumber
kernel32.dll.GetLogicalProcessorInformation
kernel32.dll.CreateSymbolicLinkW
kernel32.dll.EnumSystemLocalesEx
kernel32.dll.CompareStringEx
kernel32.dll.GetDateFormatEx
kernel32.dll.GetLocaleInfoEx
kernel32.dll.GetTimeFormatEx
kernel32.dll.GetUserDefaultLocaleName
kernel32.dll.IsValidLocaleName
kernel32.dll.LCMapStringEx
kernel32.dll.GetTickCount64
advapi32.dll.EventRegister
mscoree.dll.#142
mscoreei.dll.RegisterShimImplCallback
mscoreei.dll.OnShimDllMainCalled
mscoreei.dll._CorExeMain
shlwapi.dll.UrlIsW
version.dll.GetFileVersionInfoSizeW
version.dll.GetFileVersionInfoW
version.dll.VerQueryValueW
kernel32.dll.InitializeCriticalSectionAndSpinCount
kernel32.dll.IsProcessorFeaturePresent
msvcrt.dll._set_error_mode
msvcrt.dll.?set_terminate@@YAP6AXXZP6AXXZ@Z
kernel32.dll.FindActCtxSectionStringW
kernel32.dll.GetSystemWindowsDirectoryW
mscoree.dll.GetProcessExecutableHeap
mscoreei.dll.GetProcessExecutableHeap
mscorwks.dll._CorExeMain
mscorwks.dll.GetCLRFunction
advapi32.dll.RegisterTraceGuidsW
advapi32.dll.UnregisterTraceGuids
advapi32.dll.GetTraceLoggerHandle
advapi32.dll.GetTraceEnableLevel
advapi32.dll.GetTraceEnableFlags
advapi32.dll.TraceEvent
mscoree.dll.IEE
mscoreei.dll.IEE
mscorwks.dll.IEE
mscoree.dll.GetStartupFlags
mscoreei.dll.GetStartupFlags
mscoree.dll.GetHostConfigurationFile
mscoreei.dll.GetHostConfigurationFile
mscoreei.dll.GetCORVersion
mscoree.dll.GetCORSystemDirectory
mscoreei.dll.GetCORSystemDirectory_RetAddr
mscoreei.dll.CreateConfigStream
ntdll.dll.RtlUnwind
kernel32.dll.IsWow64Process
advapi32.dll.AllocateAndInitializeSid
advapi32.dll.OpenProcessToken
advapi32.dll.GetTokenInformation
advapi32.dll.InitializeAcl
advapi32.dll.AddAccessAllowedAce
advapi32.dll.FreeSid
kernel32.dll.AddVectoredContinueHandler
kernel32.dll.RemoveVectoredContinueHandler
advapi32.dll.ConvertSidToStringSidW
shell32.dll.SHGetFolderPathW
kernel32.dll.GetWriteWatch
kernel32.dll.ResetWriteWatch
kernel32.dll.CreateMemoryResourceNotification
kernel32.dll.QueryMemoryResourceNotification
kernel32.dll.QueryActCtxW
kernel32.dll.GetVersionExW
kernel32.dll.GetFullPathNameW
ole32.dll.CoInitializeEx
cryptbase.dll.SystemFunction036
ole32.dll.CoGetContextToken
advapi32.dll.CryptAcquireContextA
advapi32.dll.CryptReleaseContext
advapi32.dll.CryptCreateHash
advapi32.dll.CryptDestroyHash
advapi32.dll.CryptHashData
advapi32.dll.CryptGetHashParam
advapi32.dll.CryptImportKey
advapi32.dll.CryptExportKey
advapi32.dll.CryptGenKey
advapi32.dll.CryptGetKeyParam
advapi32.dll.CryptDestroyKey
advapi32.dll.CryptVerifySignatureA
advapi32.dll.CryptSignHashA
advapi32.dll.CryptGetProvParam
advapi32.dll.CryptGetUserKey
advapi32.dll.CryptEnumProvidersA
mscoree.dll.GetMetaDataInternalInterface
mscoreei.dll.GetMetaDataInternalInterface
mscorwks.dll.GetMetaDataInternalInterface
mscorjit.dll.getJit
kernel32.dll.VirtualProtect
kernel32.dll.GetEnvironmentVariableW
kernel32.dll.SwitchToThread
kernel32.dll.GetUserDefaultUILanguage
kernel32.dll.SetErrorMode
kernel32.dll.GetFileAttributesExW
mscoreei.dll.LoadLibraryShim
culture.dll.ConvertLangIdToCultureName
kernel32.dll.lstrlen
kernel32.dll.lstrlenW
mscoree.dll.ND_RI4
mscoreei.dll.ND_RI4
kernel32.dll.GlobalMemoryStatusEx
bcrypt.dll.BCryptGetFipsAlgorithmMode
kernel32.dll.CloseHandle
kernel32.dll.GetCurrentProcessId
advapi32.dll.LookupPrivilegeValueW
kernel32.dll.GetCurrentProcess
advapi32.dll.AdjustTokenPrivileges
kernel32.dll.OpenProcess
psapi.dll.EnumProcessModules
psapi.dll.GetModuleInformation
psapi.dll.GetModuleBaseNameW
psapi.dll.GetModuleFileNameExW
kernel32.dll.GetProcAddress
kernel32.dll.DebugActiveProcess
kernel32.dll.WaitForDebugEvent
kernel32.dll.ContinueDebugEvent
kernel32.dll.DeleteFileA
advapi32.dll.SetKernelObjectSecurity
advapi32.dll.GetKernelObjectSecurity
ntdll.dll.NtSetInformationProcess
ntdll.dll.NtProtectVirtualMemory
kernel32.dll.GetSystemInfo
kernel32.dll.VirtualQueryEx
kernel32.dll.ReadProcessMemory
msvcrt.dll.memcmp
kernel32.dll.WriteProcessMemory
ntdll.dll.NtQuerySystemInformation
kernel32.dll.GetModuleFileNameW
shfolder.dll.SHGetFolderPathW
kernel32.dll.CopyFileW
kernel32.dll.LocalFree
kernel32.dll.CreatePipe
kernel32.dll.DuplicateHandle
kernel32.dll.GetStdHandle
kernel32.dll.GetCurrentDirectoryW
kernel32.dll.CreateProcessW
kernel32.dll.GetFileType
kernel32.dll.GetConsoleCP
kernel32.dll.GetACP
kernel32.dll.UnmapViewOfFile
kernel32.dll.GetConsoleOutputCP
kernel32.dll.WriteFile
ole32.dll.CoUninitialize
kernel32.dll.CreateActCtxW
kernel32.dll.AddRefActCtx
kernel32.dll.ReleaseActCtx
kernel32.dll.ActivateActCtx
kernel32.dll.DeactivateActCtx
kernel32.dll.GetCurrentActCtx
advapi32.dll.EventUnregister
kernel32.dll.SetThreadUILanguage
kernel32.dll.SortGetHandle
kernel32.dll.SortCloseHandle
kernel32.dll.CopyFileExW
kernel32.dll.IsDebuggerPresent
kernel32.dll.SetConsoleInputExeNameW
ntdll.dll.NtQueryInformationProcess
kernel32.dll.GetTempPathW
kernel32.dll.CreateFileW
kernel32.dll.LocalAlloc
mscoree.dll.ND_RU1
mscoreei.dll.ND_RU1
advapi32.dll.LsaClose
advapi32.dll.LsaFreeMemory
advapi32.dll.LsaOpenPolicy
advapi32.dll.LsaLookupSids
kernel32.dll.DeleteFileW
kernel32.dll.SetFileAttributesW
uxtheme.dll.ThemeInitApiHook
user32.dll.IsProcessDPIAware
advapi32.dll.RegSetValueExW
kernel32.dll.ReleaseMutex
kernel32.dll.CreateMutexW
kernel32.dll.GetFileSize
kernel32.dll.ReadFile
kernel32.dll.RtlMoveMemory
shell32.dll.ShellExecuteEx
shell32.dll.ShellExecuteExW
setupapi.dll.CM_Get_Device_Interface_List_Size_ExW
setupapi.dll.CM_Get_Device_Interface_List_ExW
comctl32.dll.#386
ole32.dll.CoWaitForMultipleHandles
sechost.dll.LookupAccountNameLocalW
advapi32.dll.LookupAccountSidW
sechost.dll.LookupAccountSidLocalW
cryptsp.dll.CryptAcquireContextW
cryptsp.dll.CryptGenRandom
ole32.dll.NdrOleInitializeExtension
ole32.dll.CoGetClassObject
ole32.dll.CoGetMarshalSizeMax
ole32.dll.CoMarshalInterface
ole32.dll.CoUnmarshalInterface
ole32.dll.StringFromIID
ole32.dll.CoGetPSClsid
ole32.dll.CoTaskMemAlloc
ole32.dll.CoTaskMemFree
ole32.dll.CoCreateInstance
ole32.dll.CoReleaseMarshalData
ole32.dll.DcomChannelSetHResult
rpcrtremote.dll.I_RpcExtInitializeExtensionPoint
comctl32.dll.#321
cryptsp.dll.CryptReleaseContext
sechost.dll.OpenSCManagerW
sechost.dll.OpenServiceW
sechost.dll.QueryServiceStatus
sechost.dll.CloseServiceHandle
sspicli.dll.GetUserNameExW
wbemcore.dll.Reinitialize
pcwum.dll.PerfDeleteInstance
pcwum.dll.PerfStopProvider
advapi32.dll.WmiNotificationRegistrationW
wtsapi32.dll.WTSQueryUserToken
ole32.dll.CLSIDFromString
oleaut32.dll.#17
oleaut32.dll.#20
oleaut32.dll.#19
oleaut32.dll.#25
authz.dll.AuthzInitializeContextFromToken
authz.dll.AuthzInitializeResourceManager
authz.dll.AuthzInitializeContextFromSid
authz.dll.AuthzAccessCheck
authz.dll.AuthzFreeContext
authz.dll.AuthzFreeResourceManager
oleaut32.dll.#8
oleaut32.dll.#2
oleaut32.dll.#9
ole32.dll.CoCreateGuid
oleaut32.dll.#6
oleaut32.dll.#7
sechost.dll.ConvertStringSecurityDescriptorToSecurityDescriptorW
qmgr.dll.ServiceMain
advapi32.dll.SetEntriesInAclW
ws2_32.dll.#115
ws2_32.dll.WSASocketW
ws2_32.dll.WSAIoctl
ws2_32.dll.#111
bitsigd.dll.InitializeEx
upnp.dll.DllGetClassObject
upnp.dll.DllCanUnloadNow
rpcrt4.dll.RpcStringBindingComposeA
rpcrt4.dll.RpcBindingFromStringBindingA
rpcrt4.dll.RpcStringFreeA
rpcrt4.dll.NdrClientCall3
rpcrt4.dll.I_RpcExceptionFilter
sechost.dll.OpenSCManagerA
sechost.dll.OpenServiceA
sechost.dll.StartServiceA
rpcrt4.dll.RpcBindingFree
ws2_32.dll.#116
advapi32.dll.LogonUserW
sspicli.dll.LogonUserExExW
wtsapi32.dll.WTSEnumerateSessionsW
wtsapi32.dll.WTSFreeMemory
advapi32.dll.QueryAllTracesW
vssapi.dll.CreateWriter
ole32.dll.CoRegisterClassObject
iphlpapi.dll.GetAdaptersAddresses
user32.dll.SendMessageTimeoutA
kernel32.dll.GetStartupInfoW
kernel32.dll.WaitForSingleObject
user32.dll.GetProcessWindowStation
user32.dll.GetUserObjectInformationA
kernel32.dll.SetConsoleCtrlHandler
kernel32.dll.GetModuleHandleW
user32.dll.GetClassInfoW
user32.dll.RegisterClassW
user32.dll.CreateWindowExW
user32.dll.DefWindowProcW
kernel32.dll.GetExitCodeProcess
user32.dll.GetAsyncKeyState
user32.dll.RegisterWindowMessageW
user32.dll.GetKeyState
user32.dll.GetKeyboardState
user32.dll.MapVirtualKeyA
user32.dll.GetForegroundWindow
user32.dll.GetWindowThreadProcessId
user32.dll.GetKeyboardLayout
user32.dll.ToUnicodeEx
kernel32.dll.GetCurrentThread
kernel32.dll.GetCurrentThreadId
user32.dll.GetSystemMetrics
gdi32.dll.GetStockObject
user32.dll.SetWindowLongW
user32.dll.GetWindowLongW
user32.dll.CallWindowProcW
user32.dll.GetClientRect
user32.dll.GetWindowRect
user32.dll.GetParent
ole32.dll.OleInitialize
ole32.dll.CoRegisterMessageFilter
user32.dll.PeekMessageW
mscoree.dll.ND_RI2
mscoreei.dll.ND_RI2
ws2_32.dll.WSAStartup
ws2_32.dll.setsockopt
ws2_32.dll.WSAEventSelect
ws2_32.dll.ioctlsocket
ws2_32.dll.closesocket
kernel32.dll.GetComputerNameW
advapi32.dll.ConvertStringSecurityDescriptorToSecurityDescriptorW
kernel32.dll.CreateFileMappingW
kernel32.dll.MapViewOfFile
kernel32.dll.VirtualQuery
advapi32.dll.CreateWellKnownSid
kernel32.dll.OpenMutexW
kernel32.dll.GetProcessTimes
ws2_32.dll.inet_addr
ws2_32.dll.WSAConnect
kernel32.dll.FormatMessageW
kernel32.dll.GetProcessWorkingSetSize
kernel32.dll.SetProcessWorkingSetSize
ws2_32.dll.shutdown
user32.dll.GetWindowTextLengthA
user32.dll.GetWindowTextA
advapi32.dll.RegCreateKeyExW
rasmontr.dll.InitHelperDll
nshwfp.dll.InitHelperDll
dhcpcmonitor.dll.InitHelperDll
wshelper.dll.InitHelperDll
nshhttp.dll.InitHelperDll
fwcfg.dll.InitHelperDll
authfwcfg.dll.InitHelperDll
ifmon.dll.InitHelperDll
netiohlp.dll.InitHelperDll
whhelper.dll.InitHelperDll
hnetmon.dll.InitHelperDll
rpcnsh.dll.InitHelperDll
dot3cfg.dll.InitHelperDll
napmontr.dll.InitHelperDll
nshipsec.dll.InitHelperDll
p2pnetsh.dll.InitHelperDll
wlancfg.dll.InitHelperDll
peerdistsh.dll.InitHelperDll
cryptsp.dll.CryptEnumProvidersW
user32.dll.LoadStringW
sechost.dll.QueryServiceConfigW
httpapi.dll.HttpInitialize
userenv.dll.RegisterGPNotification
userenv.dll.UnregisterGPNotification
gpapi.dll.RegisterGPNotificationInternal
bcryptprimitives.dll.GetHashInterface
bcryptprimitives.dll.GetCipherInterface
mprmsg.dll.MprmsgGetErrorString
oleaut32.dll.#500
httpapi.dll.HttpTerminate
gpapi.dll.UnregisterGPNotificationInternal
comctl32.dll.#388
advapi32.dll.EventWrite
advapi32.dll.EventEnabled
ntdll.dll.ZwQueryInformationProcess
ntdll.dll.NtQuerySection
ntdll.dll.LdrProcessRelocationBlock
sppwinob.dll.SppPluginInitialize
sppwinob.dll.SppPluginShutdown
sppwinob.dll.SppPluginCreateInstance
sppwinob.dll.SppPluginCanUnloadNow
sppobjs.dll.SppPluginInitialize
sppobjs.dll.SppPluginShutdown
sppobjs.dll.SppPluginCreateInstance
sppobjs.dll.SppPluginCanUnloadNow
advapi32.dll.NotifyServiceStatusChangeW
setupapi.dll.SetupDiGetClassDevsW
setupapi.dll.SetupDiEnumDeviceInfo
setupapi.dll.SetupDiGetDeviceRegistryPropertyW
setupapi.dll.SetupDiDestroyDeviceInfoList
wintrust.dll.WinVerifyTrust
setupapi.dll.SetupDiEnumDeviceInterfaces
setupapi.dll.SetupDiGetDeviceInterfaceDetailW
kernel32.dll.GetSystemFirmwareTable
ole32.dll.CoInitializeSecurity
w32time.dll.SvchostEntry_W32Time
w32time.dll.SvchostPushServiceGlobals
dsrole.dll.DsRoleGetPrimaryDomainInformation
dsrole.dll.DsRoleFreeMemory
sspicli.dll.LsaRegisterPolicyChangeNotification
w32time.dll.TimeProvClose
w32time.dll.TimeProvCommand
w32time.dll.TimeProvOpen
ws2_32.dll.getaddrinfo
ws2_32.dll.freeaddrinfo
ws2_32.dll.#23
ws2_32.dll.#21
ws2_32.dll.#2
vmictimeprovider.dll.TimeProvClose
vmictimeprovider.dll.TimeProvCommand
vmictimeprovider.dll.TimeProvOpen
ws2_32.dll.GetAddrInfoW
ws2_32.dll.FreeAddrInfoW
ws2_32.dll.WSAAddressToStringW
ws2_32.dll.#3
sspicli.dll.LsaUnregisterPolicyChangeNotification
wersvc.dll.ServiceMain
wersvc.dll.SvchostPushServiceGlobals
advapi32.dll.RegGetValueW
faultrep.dll.WerpInitiateCrashReporting
wer.dll.WerpCreateMachineStore
shell32.dll.SHGetFolderPathEx
ole32.dll.StringFromGUID2
profapi.dll.#104
userenv.dll.CreateEnvironmentBlock
sechost.dll.ConvertSidToStringSidW
userenv.dll.DestroyEnvironmentBlock
imm32.dll.ImmDisableIME
wer.dll.WerpCreateIntegratorReportId
wer.dll.WerReportCreate
wer.dll.WerpSetIntegratorReportId
wer.dll.WerReportSetParameter
dbgeng.dll.DebugCreate
ntdll.dll.CsrGetProcessId
ntdll.dll.DbgBreakPoint
ntdll.dll.DbgPrint
ntdll.dll.DbgPrompt
ntdll.dll.DbgUiConvertStateChangeStructure
ntdll.dll.DbgUiGetThreadDebugObject
ntdll.dll.DbgUiIssueRemoteBreakin
ntdll.dll.DbgUiSetThreadDebugObject
ntdll.dll.NtAllocateVirtualMemory
ntdll.dll.NtClose
ntdll.dll.NtCreateDebugObject
ntdll.dll.NtCreateFile
ntdll.dll.NtDebugActiveProcess
ntdll.dll.NtDebugContinue
ntdll.dll.NtFreeVirtualMemory
ntdll.dll.NtOpenProcess
ntdll.dll.NtOpenThread
ntdll.dll.NtQueryInformationThread
ntdll.dll.NtQueryMutant
ntdll.dll.NtQueryObject
ntdll.dll.NtRemoveProcessDebug
ntdll.dll.NtResumeThread
ntdll.dll.NtSetInformationDebugObject
ntdll.dll.NtSystemDebugControl
ntdll.dll.NtWaitForDebugEvent
ntdll.dll.RtlAnsiStringToUnicodeString
ntdll.dll.RtlCreateProcessParameters
ntdll.dll.RtlCreateUserProcess
ntdll.dll.RtlDestroyProcessParameters
ntdll.dll.RtlDosPathNameToNtPathName_U
ntdll.dll.RtlFindMessage
ntdll.dll.RtlFreeHeap
ntdll.dll.RtlFreeUnicodeString
ntdll.dll.RtlGetFunctionTableListHead
ntdll.dll.RtlGetUnloadEventTrace
ntdll.dll.RtlGetUnloadEventTraceEx
ntdll.dll.RtlInitAnsiString
ntdll.dll.RtlInitUnicodeString
ntdll.dll.RtlTryEnterCriticalSection
ntdll.dll.RtlUnicodeStringToAnsiString
ntdll.dll.NtOpenProcessToken
ntdll.dll.NtOpenThreadToken
ntdll.dll.NtQueryInformationToken
kernel32.dll.CloseProfileUserMapping
kernel32.dll.CreateToolhelp32Snapshot
kernel32.dll.DebugActiveProcessStop
kernel32.dll.DebugBreak
kernel32.dll.DebugBreakProcess
kernel32.dll.DebugSetProcessKillOnExit
kernel32.dll.Module32First
kernel32.dll.Module32FirstW
kernel32.dll.Module32Next
kernel32.dll.Module32NextW
kernel32.dll.OpenThread
kernel32.dll.Process32First
kernel32.dll.Process32FirstW
kernel32.dll.Process32Next
kernel32.dll.Process32NextW
kernel32.dll.ProcessIdToSessionId
kernel32.dll.SetProcessShutdownParameters
kernel32.dll.Thread32First
kernel32.dll.Thread32Next
kernel32.dll.GetTimeZoneInformation
kernel32.dll.Wow64GetThreadSelectorEntry
advapi32.dll.CloseServiceHandle
advapi32.dll.ControlService
advapi32.dll.CreateServiceA
advapi32.dll.CreateServiceW
advapi32.dll.DeleteService
advapi32.dll.EnumServicesStatusExA
advapi32.dll.EnumServicesStatusExW
advapi32.dll.GetEventLogInformation
advapi32.dll.OpenSCManagerA
advapi32.dll.OpenSCManagerW
advapi32.dll.OpenServiceA
advapi32.dll.OpenServiceW
advapi32.dll.StartServiceA
advapi32.dll.StartServiceW
advapi32.dll.GetSidSubAuthority
advapi32.dll.GetSidSubAuthorityCount
version.dll.GetFileVersionInfoSizeExW
version.dll.GetFileVersionInfoExW
dbghelp.dll.WinDbgExtensionDllInit
dbghelp.dll.ExtensionApiVersion

Execute Commands

"cmd"
"C:\Users\Seven01\AppData\Roaming\Mydd.exe"
C:\Users\Seven01\AppData\Roaming\TcPR.exe 
schtasks.exe  /Delete /TN "Update\Update" /F
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\1056904581.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\1021954255.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\687167387.xml"
netsh firewall add allowedprogram "C:\Users\Seven01\AppData\Roaming\TcPR.exe" "TcPR.exe" ENABLE
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\314858923.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\795044399.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\333847103.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\258980613.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\925317006.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\1164852515.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\973373516.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\1684124138.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\808079159.xml"
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\760397400.xml"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\sc.exe start w32time task_started
taskhost.exe $(Arg0)
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k WerSvcGroup
schtasks.exe  /Create /TN "Update\Update" /XML "C:\Users\Seven01\AppData\Local\Temp\1783871101.xml"
C:\Windows\system32\WerFault.exe -u -p 2056 -s 288

Started Services

SSDPSRV
WerSvc
W32Time

Created Services

Nothing to display
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05_64 Seven05_64 VirtualBox 2017-11-20 11:18:35 2017-11-20 11:21:37 182

1 Host(s) detected

IP Address Hostname Reverse DNS
212.83.167.116 France 212-83-167-116.rev.poneytelecom.eu.

Host(s) by Country

Hosts Country 1
1 France France