trustworthy computingand
defense in depth.
Note: these well-known weaknesses are documented as CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), CWE-73: External Control of File Name or Path, CWE-426: Untrusted Search Path, CWE-427: Uncontrolled Search Path Element and CWE-428: Unquoted Search Path or Element in the CWE™, allowing well-known attacks like CAPEC-13: Subverting Environment Variable Values and CAPEC-471: Search Order Hijacking documented in the CAPEC™.
longfilenames, and despite their own copious documentation, Microsoft still ships Windows with vulnerable command lines missing (double) quotes as well as fully qualified (absolute) pathnames and COM classes registered with vulnerable unqualified filenames.
The cause for the prevalence of these trivial to exploit vulnerabilities are careless, clueless and sloppy developers who are most obviously not aware of any security (implications) as well as their own company’s documentation, plus the total absence of any (serious) quality assurance and supervision!
Use quotation marks when specifying long filenames or paths with spaces.In section
[…]
Note that the quotation marks must be used.
ShellExecute, ShellExecuteEx, and Related Functionsthe MSDN article Security Considerations: Microsoft Windows Shell specifies:
Make sure you provide an unambiguous definition of the application that is to be executed.In section
- When providing the executable file's path, provide the fully qualified path. Do not depend on the Shell to locate the file.
- If you provide a command-line string that contains white space, wrap the string in quotation marks. Otherwise, the parser might interpret a single element that contains spaces as multiple elements.
Security Remarksthe MSDN article WinExec function specifies:
The executable name is treated as the first white space-delimited string in lpCmdLine. If the executable or path name has a space in it, there is a risk that a different executable could be run because of the way the function parses spaces.In section
Shortcut Menu Verbsthe MSDN article Verbs and File Associations specifies:
If any element of the command string contains or might contain spaces, it must be enclosed in quotation marks. Otherwise, if the element contains a space, it will not parse correctly. For instance, "My Program.exe" starts the application properly. If you use My Program.exe without quotation marks, then the system attempts to launch My with Program.exe as its first command line argument. You should always use quotation marks with arguments such as %1 that are expanded to strings by the Shell, because you cannot be certain that the string will not contain a space.In section
Registering an Open Verbthe MSDN article Registering Programs with Client Types specifies:
The command line must specify a fully qualified absolute path to the file, followed by optional command-line options. If the entry type is REG_EXPAND_SZ, environment variables can be used in the path. Use quotation marks appropriately to ensure that spaces in the command line are not misinterpreted.Above section
Security Issuesthe MSDN article Registering an Application to a URI Scheme specifies:
WhenIn sectionShellExecute()
executes the pluggable protocol handler with a string on the command line, any non-encoded spaces, quotes, and backslashes in the URI will be interpreted as part of the command line. This means that if you use C/C++'s argc and argv to determine the arguments passed to your application, the string may be broken across multiple parameters. To mitigate this issue:
- Avoid spaces, quotes, or backslashes in your URI
- Quote the %1 in the registration ("%1" as written in the 'alert' example registration)
Security Remarksthe MSDN article CreateProcess function specifies:
If the executable or path name has a space in it, there is a risk that a different executable could be run because of the way the function parses spaces.In section
Parametersthe MSDN article CreateService function specifies:
At its bottom the MSDN article Self-Registration specifies:
- lpBinaryPathName [in, optional]
- The fully qualified path to the service binary file. If the path contains a space, it must be quoted so that it is correctly interpreted. For example, "d:\\my share\\myservice.exe" should be specified as "\"d:\\my share\\myservice.exe\"".
The server must register the full path to the installation location of the DLL or EXE module for their respective InprocServer32, InprocHandler32, and LocalServer32 keys in the registry.In section
Remarksthe MSDN article DefaultIcon specifies:
This is a REG_SZ value that specifies the full path to the executable name […]In section
Remarksthe MSDN article LocalServer specifies:
Specifies the full path to a 16-bit local server application.In section
Remarksthe MSDN article LocalServer32 specifies:
Specifies the full path to a 32-bit local server application.Note: the MSDN articles InprocHandler, InprocHandler32, InprocServer, InprocServer32 and ToolBoxBitmap32 fail to specify the use of fully qualified (absolute) pathnames and need to be corrected!
[…]
The ServerExecutable value, which is of type REG_SZ and is supported starting with Windows Server 2003, works in conjunction with the LocalServer32 subkey to prevent any ambiguity when using the CreateProcess function. LocalServer32 specifies the location of the COM server application to launch, and this information is passed as the first parameter lpApplicationName for CreateProcess. Depending on the implementation of CreateProcess, this information might be ambiguous. For this reason, if ServerExecutable is specified, COM passes the ServerExecutable named value to the lpApplicationName parameter of CreateProcess. If ServerExecutable is not specified, COM passes NULL as the value for the first parameter of CreateProcess.To help provide system security, use quoted strings in the path to indicate where the executable filename ends and the arguments begin.
Since COM
in-process
handlers and servers are implemented in
DLLs,
the MSDN
article
Dynamic-Link Library Security,
the MSKB
article
2389418,
the Security Advisory
2269637
and the
MSRC
blog post
Load Library Safely
apply too:
Wherever possible, specify a fully qualified path when using the LoadLibrary, LoadLibraryEx, CreateProcess, or ShellExecute functions.
Use fully qualified paths for all calls to LoadLibrary, CreateProcess, and ShellExecute where you can.
This exploit may occur when applications do not directly specify the fully qualified path to a library it intends to load.
Always specify the fully qualified path when the library location is constant.
generalisedsystem images, designed to run from a single hard disk partition with the drive letter
C
assigned. All
directories and files contained within these system images have
fixed, language-independent (path)names and can
neither be relocated nor renamed: see the
MSKB
articles
933700,
949977
and
2787623
for some details. Additionally the vast majority of files are
(nowadays) registered with their absolute (fully qualified) pathname
containing the (fixed) drive letter and the language-independent
directory name, which renders their change or relocation practically
impossible.
The use of environment variables within pathnames serves no (good) purpose, it is not just deprecated and superfluous, but outright dangerous, allowing attacks like those shown below in the first place, and must therefore be avoided and banned!
This holds of course against the use of environment variables in
code too, where functions like
GetAllUsersProfileDirectory()
,
GetComputerName()
,
GetComputerNameEx()
,
GetComputerObjectName()
,
GetProfilesDirectory()
,
GetSystemDirectory()
,
GetSystemWow64Directory()
,
GetUserName()
,
GetUserNameEx()
,
GetUserProfileDirectory()
,
GetWindowsDirectory()
,
SHGetFolderPath()
and
SHGetKnownFolderPath()
are available to get at least the information provided in the
environment variables %ALLUSERSPROFILE%
,
%APPDATA%
, %CommonProgramFiles%
,
%CommonProgramFiles(x86)%
, %COMPUTERNAME%
,
%LOCALAPPDATA%
, %ProgramData%
,
%ProgramFiles%
, %ProgramFiles(x86)%
,
%PUBLIC%
, %SystemDrive%
,
%SystemRoot%
, %USERDOMAIN%
,
%USERNAME%
as well as %USERPROFILE%
, which
should must be used instead of functions like
ExpandEnvironmentStrings()
,
ExpandEnvironmentStringsForUser()
or
GetEnvironmentVariable()
!
longpathnames containing spaces, with unquoted pathnames containing environment variables and with unquoted arguments.
Note: the command lines can be copied and pasted as blocks into the Command Processor window!
Note: offending parts of matching command lines are highlighted in the output.
Note: the search is far from
exhaustive, it covers just the command lines returned from the
FTYPE
command, i.e.
file types
registered with the Verb
Open
, executables
registered with
COM classes,
cryptography providers and Group Policy client side
extensions!
Cryptography providers:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:64 /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:64 /S /V "$DLL" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:32 /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /REG:32 /S /V "$DLL"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\AggregateSSLHandshakeTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptsvcDllCtrl\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\crypttpmeksvc.dll\0C:\Windows\System32\cryptcatsvc.dll\0C:\Windows\System32\webauthn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\GetSecureTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\System32\cryptdlg.dll End of search: 207 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\SysWOW64\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\SysWOW64\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\SysWOW64\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\SysWOW64\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\SysWOW64\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\SysWOW64\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\SysWOW64\cryptdlg.dll End of search: 204 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\SysWOW64\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\SysWOW64\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found.Note: only 231 of these 607 entries comply with Microsoft’s own recommendation and security guidance, while the other 378 entries show a total number of 378 bugs!
Group Policy client side extensions:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /F "D*Name" /S REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DisplayName" REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DllName"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} DisplayName REG_EXPAND_SZ @wlgpclnt.dll,-100 DllName REG_EXPAND_SZ wlgpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0E28E245-9368-4853-AD84-6DA3BA35BB75} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-1 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{169EBF44-942F-4C43-87CE-13C93996EBBE} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{16be69fa-4209-4250-88cb-716cf41954e0} DisplayName REG_EXPAND_SZ @auditcse.dll,-4000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{17D89FEC-5C44-4972-B12D-241CAEF74509} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-2 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{1A6364EB-776B-4120-ADE1-B63A406A76B5} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-3 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861} DisplayName REG_EXPAND_SZ @fdeploy.dll,-261 DllName REG_EXPAND_SZ fdeploy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2A8FDC61-2347-4C87-92F6-B05EB91A201A} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2BFCC077-22D2-48DE-BDE1-2F618D9B476D} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\dskquota.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-4 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39} DisplayName REG_EXPAND_SZ @gptext.dll,-201 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{42B5FAAE-6536-11d2-AE5A-0000F87571E3} DisplayName REG_EXPAND_SZ @gpscript.dll,-1 DllName REG_SZ C:\Windows\System32\gpscript.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4B7C3B0F-E993-4E06-A241-3FBE06943684} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6} DllName REG_SZ C:\Windows\System32\tsworkspace.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4d968b55-cac2-4ff5-983f-0a54603781a3} DisplayName REG_EXPAND_SZ @WorkFoldersGPExt.dll,-261 DllName REG_EXPAND_SZ WorkFoldersGPExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{5794DAFD-BE60-433f-88A2-1A31939AC01F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-5 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6232C319-91AC-4931-9385-E70C2B099F0E} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-6 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-7 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7150F9BF-48AD-4da4-A49C-29EF4A8369BA} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-8 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{728EE579-943C-4519-9EF7-AB56765798ED} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-9 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{74EE6C03-5363-4554-B161-627540339CAB} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-10 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7909AD9E-09EE-4247-BAB9-7029D5F0A278} DllName REG_EXPAND_SZ dmenrollengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93} DllName REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} DisplayName REG_EXPAND_SZ @(runtime.system32)\scecli.dll,-7650 DllName REG_EXPAND_SZ scecli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17} DisplayName REG_EXPAND_SZ @%systemroot%\system32\gpprnext.dll,-1 DllName REG_EXPAND_SZ %systemroot%\system32\gpprnext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{91FBB303-0CD5-4055-BF42-E512A681B325} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-11 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{9650FDBC-053A-4715-AD14-FC2DC65E8330} DllName REG_EXPAND_SZ hvsigpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A3F3E39B-5D83-4940-B954-28315B82F0A8} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-12 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{AADCED64-746C-4633-A97C-D61349046527} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-13 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B087BE9D-ED37-454f-AF9C-04291E351182} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-14 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} DisplayName REG_EXPAND_SZ @dot3gpclnt.dll,-100 DllName REG_EXPAND_SZ dot3gpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BA649533-0AAC-4E04-B9BC-4DBAE0325B12} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-16 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C34B2751-1CF4-44F5-9262-C3FC39666591} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-17 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} DllName REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{c6dc5466-785a-11d2-84d0-00c04fb169f7} DisplayName REG_EXPAND_SZ @appmgmts.dll,-3252 DllName REG_EXPAND_SZ appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa} DisplayName REG_EXPAND_SZ @gptext.dll,-204 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CFF649BD-601D-4361-AD3D-0FC365DB4DB7} DllName REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27} DisplayName REG_EXPAND_SZ @C:\Windows\System32\polstore.dll,-5012 DllName REG_EXPAND_SZ %SystemRoot%\System32\polstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E47248BA-94CC-49c4-BBB5-9EB7F05183D0} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-18 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E4F48E54-F38D-4884-BFB9-D4D2E5729C18} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-19 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-20 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E62688F0-25FD-4c90-BFF5-F508B9D2E31F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-21 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F312195E-3D9D-447A-A3F5-08DFFA24735E} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a} DisplayName REG_EXPAND_SZ @auditcse.dll,-3000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F9C77450-3A41-477E-9310-9ACD617BD9E3} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-15 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C} DisplayName REG_EXPAND_SZ @gptext.dll,-203 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f} DisplayName REG_EXPAND_SZ @gptext.dll,-205 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FC491EF1-C4AA-4CE1-B329-414B101DB823} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll End of search: 100 match(es) found.Note: 68 of these 100 filenames are either unqualified or contain an environment variable.
All command lines registered with Programmatic Identifiers or Client Types:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "Command" /K /S /VE
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Manifest\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Reference\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\shell\Open\command (Default) REG_SZ "PrintBrmUI.exe" /import /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\NoAddOns\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\OpenHomePage\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,Control_RunDLL C:\Windows\System32\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpen\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpenInNewWindow\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0850302A-B344-4fda-9BE9-90576B8D46F0}\Shell\Bluetooth\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\bthprops.cpl,,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{70FFD812-4C7F-4C7D-926A-637B7DD852AF}\Shell\DeviceInstall\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\newdev.dll,DeviceInternetSettingUi 2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{884b96c3-56ef-11d1-bc8c-00a0c91405dd}\Shell\Regional\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe %SystemRoot%\System32\intl.cpl,,/p:"keyboard" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /cab "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /open "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /res /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe -pw %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe /name Microsoft.BitLockerDriveEncryption /page ?InitialVolume==%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdeunlock.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\runas\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\open\command (Default) REG_SZ C:\Windows\System32\fxscover.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\print\command (Default) REG_SZ C:\Windows\System32\fxscover.exe /P "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FindApp.DVD\Shell\Play\command (Default) REG_EXPAND_SZ explorer "ms-windows-store://search/?query=DVD" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ftp\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\winhlp32.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htafile\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\http\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\https\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.PARTIAL\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.WEBSITE\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.FTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTPS\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IMEDictionaryCompiler\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\imesxfile\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Launcher.Computer\Shell\Manage\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install\command (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\0\Command (Default) REG_SZ "C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ProvTool.Provisioning.1\Shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Website\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Workfolders\Shell\Open\command (Default) REG_SZ C:\Windows\System32\control.exe /name Microsoft.WorkFolders HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-availablenetworks\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-mmsys\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msdt\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\msdt.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imepad\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imjpdct\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-perception-simulation\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-quick-assist\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\quickassist.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-rdx-document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-connectabledevices\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-displays-topology\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-virtualtouchpad\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe /a "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\RunAs\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSDASC\shell\open\command (Default) REG_EXPAND_SZ Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /i "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /f "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /x "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /p "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSppLicenseFile\shell\open\command (Default) REG_SZ "iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSStorageSense\shell\open\command (Default) REG_EXPAND_SZ explorer ms-settings:storagesense HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetServer\shell\remotedesktop\command (Default) REG_SZ mstsc.exe -v %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetworkExplorerPlugins\urn:schemas-upnp-org:device:MediaServer:1\shell\Open Media Player\command (Default) REG_EXPAND_SZ C:\Program Files\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchfilefolderresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7SFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasphone.exe -f "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\piffile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Connect\command (Default) REG_SZ mstsc.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Edit\command (Default) REG_SZ mstsc.exe -edit "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mstsc.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regedit\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command (Default) REG_EXPAND_SZ "%systemRoot%\system32\msra.exe" -openfile "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlogin\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\config\command (Default) REG_SZ "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\install\command (Default) REG_SZ rundll32.exe desk.cpl,InstallScreenSaver %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\open\command (Default) REG_SZ "%1" /S HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Generate Typelib\command (Default) REG_SZ "C:\Windows\System32\RUNDLL32.EXE" "C:\Windows\System32\scrobj.dll",GenerateTypeLib "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Open\command (Default) REG_SZ "C:\Windows\System32\NOTEPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Register\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Unregister\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /u /n /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SHCmdFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Shell.CDBurn\Shell\Prepare\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,PrepareDiscForBurnRunDll %L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddSPC %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avci\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avci\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avcs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avcs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avif\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avifs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.avifs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heic\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heic\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heics\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heics\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heif\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heifs\Shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.heifs\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.inf\shell\Install\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\InfDefaultInstall.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ps1\Shell\0\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" "-Command" "if((Get-ExecutionPolicy ) -ne 'AllSigned') { Set-ExecutionPolicy -Scope Process Bypass }; & '%1'" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ps1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.psd1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.psm1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\telnet\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\tn3270\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\Open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\OpenWithSetDefaultOn\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe -override "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /restorepage HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wcxfile\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\xwizard.exe" RunWizard /u {7940acf8-60ba-4213-a7c3-f3b400ee266d} /z%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\printto\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpnpinst.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.CompositeFont\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\isoburn.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /FOLDEROPTIONS %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.BurnCD\Shell\Burn\Command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:3 /Task:CDWrite /Device:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:DVD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.VCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:8 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M3U\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M3U\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:9 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:5 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMD\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMZ\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\rundll32.exe C:\Windows\SysWOW64\shell32.dll,Control_RunDLL C:\Windows\SysWOW64\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\SysWOW64\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WPDContextMenu.Url\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.HistoryVaultRestore\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\SysWOW64\rundll32.exe C:\Windows\SysWOW64\shell32.dll,Control_RunDLL C:\Windows\SysWOW64\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\SysWOW64\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe End of search: 587 match(es) found.Note: only 219 of these 587 command lines comply with Microsoft’s own documentation, while the other 368 command lines show a total number of 573 bugs!
Command lines without a dot, i.e. without any file extension:
FTYPE | FIND.EXE /V "."
batfile="%1" %*
cmdfile="%1" %*
comfile="%1" %*
exefile="%1" %*
MSStorageSense=explorer ms-settings:storagesense
piffile="%1" %*
scrfile="%1" /S
Command lines without a backslash, i.e. without any qualified pathname:
FTYPE | FIND.EXE /V "\"
batfile="%1" %* brmFile="PrintBrmUI.exe" /import /file:"%1" cmdfile="%1" %* comfile="%1" %* exefile="%1" %* MSSppLicenseFile="iexplore.exe" "%1" MSStorageSense=explorer ms-settings:storagesense piffile="%1" %* regedit=regedit.exe "%1" regfile=regedit.exe "%1" scrfile="%1" /S
Command lines without a (double) quote:
FTYPE | FIND.EXE /V """"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 Microsoft.Workfolders=C:\Windows\System32\control.exe /name Microsoft.WorkFolders ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSStorageSense=explorer ms-settings:storagesense opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted environment variable in the application’s pathname:
FTYPE | FIND.EXE "=%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted long
argument:
FTYPE | FIND.EXE /I " %L"
IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l
Command lines with an unquoted argument:
FTYPE | FIND.EXE " %1"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with unquoted environment variable(s) in an argument or with unquoted argument(s):
FTYPE | FIND.EXE " %"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 batfile="%1" %* CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 cmdfile="%1" %* comfile="%1" %* CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 exefile="%1" %* ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htafile=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l IE.AssocFile.WEBSITE="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l JSEFile=C:\Windows\System32\WScript.exe "%1" %* JSFile=C:\Windows\System32\WScript.exe "%1" %* mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* Microsoft.Website="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 piffile="%1" %* prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.XamlDocument="C:\Windows\System32\PresentationHost.exe" "%1" %* Windows.Xbap="C:\Windows\System32\PresentationHost.exe" "%1" %* WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines containing an environment variable:
SET SLOPPY=APPDATA CommonProgramFiles CommonProgramFiles(x86) CommonProgramW6432 ComSpec LOCALAPPDATA LOGONSERVER ProgramData ProgramFiles ProgramFiles(x86) ProgramW6432 PUBLIC SystemDrive SystemRoot TEMP TMP USERPROFILE WINDIR FTYPE | FINDSTR.EXE /I "%!SLOPPY: =% %!%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 certificate_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" chm.file="%SystemRoot%\hh.exe" %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L contact_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" docxfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" emffile="%systemroot%\system32\mspaint.exe" "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe group_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" hlpfile=%SystemRoot%\winhlp32.exe %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* imesxfile="%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" MacromediaFlashPaper.MacromediaFlashPaper="%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" Microsoft.ProvTool.Provisioning.1="%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* ms-availablenetworks="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-perception-simulation=%SystemRoot%\system32\PerceptionSimulation\PerceptionSimulationInput.exe %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 ms-settings-connectabledevices="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-settings-displays-topology="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-virtualtouchpad="%SystemRoot%\system32\LaunchWinApp.exe" "%1" mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" odtfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 RDP.File="%systemroot%\system32\mstsc.exe" "%1" RemoteAssistance.1="%systemRoot%\system32\msra.exe" -openfile "%1" rlefile="%systemroot%\system32\mspaint.exe" "%1" rtffile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 textfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* vcard_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" WAB.AssocProtocol.LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.CompositeFont="%SystemRoot%\System32\notepad.exe" "%1" WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" wmffile="%systemroot%\system32\mspaint.exe" "%1" Wordpad.Document.1="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
All registered path names containing environment variables:
REG.EXE QUERY "HKEY_LOCAL_MACHINE" /D /F "%*^%\\" /S
COM classes registered with an unqualified filename or a pathname containing an environment variable:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcHandler32" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "InProcServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /V "\\" "%TMP%\Sloppy.tmp" FINDSTR.EXE "%" "%TMP%\Sloppy.tmp"
COM servers
registered with an unquoted long
pathname containing a space:
( REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer" /K /S /VE REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "LocalServer32" /K /S /VE ) | FINDSTR.EXE /B /C:" (Default) REG_" 1>"%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %CommonProgram" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %Program" "%TMP%\Sloppy.tmp" FINDSTR.EXE /I /C:"_SZ %ProgramFiles%" "%TMP%\Sloppy.tmp"
Command lines of services with unquoted long
pathnames
containing a space:
WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" Service WHERE "NOT PathName LIKE '%.%' OR NOT PathName LIKE '%\\%' OR PathName LIKE '%SystemDrive%\\Program %' OR PathName LIKE '%\\Windows %'" GET Name, PathName, StartName
Name PathName StartName Sense "C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe" LocalSystem WdNisSvc "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe" NT AUTHORITY\LocalService WinDefend "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe" LocalSystem WMPNetworkSvc "C:\Program Files\Windows Media Player\wmpnetwk.exe" NT AUTHORITY\NetworkService
COM classes registered with an unqualified filename or a pathname containing an environment variable:
FOR %? IN (InProcHandler InProcHandler32 InProcServer InProcServer32 LocalServer LocalServer32 DefaultIcon ToolBoxBitmap32) DO @WMIC.EXE /APPEND:"%USERPROFILE%\Desktop\Sloppy.log" PATH Win32_ClassicCOMClassSetting WHERE "NOT %? LIKE '%.%' OR NOT %? LIKE '%\\%' OR %? LIKE '%[%]APPDATA[%]%' OR %? LIKE '%[%]CommonProgramFiles[%]%' OR %? LIKE '%[%]CommonProgramFiles(x86)[%]%' OR %? LIKE '%[%]LOCALAPPDATA[%]%' OR %? LIKE '%[%]LOGONSERVER[%]%' OR %? LIKE '%[%]ProgramData[%]%' OR %? LIKE '%[%]ProgramFiles[%]%' OR %? LIKE '%[%]ProgramFiles(x86)[%]%' OR %? LIKE '%[%]PUBLIC[%]%' OR %? LIKE '%[%]SystemDrive[%]%' OR %? LIKE '%[%]SystemRoot[%]%' OR %? LIKE '%[%]TEMP[%]%' OR %? LIKE '%[%]TMP[%]%' OR %? LIKE '%[%]USERPROFILE[%]%' OR %? LIKE '%[%]WINDIR[%]%'" GET ComponentId, ProgId, %?
No Instance(s) Available. ComponentId InprocHandler32 ProgId {0e119e63-267a-4030-8c80-5b1972e0a456} %SystemRoot%\system32\shcore.dll {1535D95C-2365-447D-9800-B75501A19C0C} %SystemRoot%\system32\ShareHost.dll {195C8ACD-5F96-4C67-BBCF-B0CD7073500C} %SystemRoot%\system32\ShareHost.dll {1cc78354-9ded-4c1b-bd81-c67b0289a4e5} %SystemRoot%\system32\windows.storage.dll {214DFBF5-5983-4B54-996D-B7FC67E0A1FD} %SystemRoot%\system32\Windows.Storage.dll {251b1498-5cba-4bee-8242-2f57773151aa} %SystemRoot%\system32\Windows.Storage.dll {320690f4-8d7b-4f55-a98d-89ebb01fa776} %SystemRoot%\system32\Windows.Storage.dll {36BAA497-8C84-4700-96A1-88E1876EC5B9} %SystemRoot%\system32\ShareHost.dll {3c5edebe-16c6-4ee4-906b-436aa1f6ef9e} %SystemRoot%\system32\twinapi.appcore.dll {4333fd20-ca5f-4095-a535-edb00455ce66} %SystemRoot%\system32\shcore.dll {4347F4C2-6A7D-40DF-9A4F-C185317AF183} %SystemRoot%\system32\ShareHost.dll {594103b8-e428-4461-b8d7-dd0ae12d31d9} %SystemRoot%\system32\Windows.Storage.dll {70BF9CA8-182C-4BE8-8BE8-1A9217A5D1B5} %SystemRoot%\system32\Windows.Storage.dll {73FDDC80-AEA9-101A-98A7-00AA00374959} ole32.dll WordPad.Document.1 {7513af53-9c75-4ad4-b47e-8d855099e023} %SystemRoot%\system32\shcore.dll {788B686B-EA20-41CD-A018-1BFD506194B2} %SystemRoot%\system32\ShareHost.dll {7bce3cfb-954c-438f-974c-73a8e0593f1a} %SystemRoot%\system32\shcore.dll {7e57f418-1f71-4411-9e09-45884f4f4714} %SystemRoot%\system32\shcore.dll {8FF007D1-C3E3-44D5-86AF-2ECB5F663D7C} %SystemRoot%\system32\Windows.Storage.dll {a5183349-82de-4bfc-9c13-7d9dc578729c} %SystemRoot%\system32\Windows.Storage.dll {B243A9FD-C57A-4D3E-A7CF-21CAED64CB5A} %systemroot%\system32\CoreUIComponents.dll {be88f957-42cc-4da7-92cf-9bc35c5d5ee2} %SystemRoot%\system32\Windows.Storage.dll {ccc63ae1-56a5-4f9c-abe8-e55674f0c0a6} %SystemRoot%\system32\Windows.Storage.dll {CF0E916A-DA25-49CA-A264-1D41C009EED0} %SystemRoot%\system32\ShareHost.dll {D3E34B21-9D75-101A-8C3D-00AA001A1652} ole32.dll Paint.Picture {da158800-7434-4410-a0cd-e497c3b4a9da} %SystemRoot%\system32\Windows.Storage.dll {da620430-5f6c-447d-8091-c5757e275b37} %SystemRoot%\system32\shcore.dll {f1f72421-6433-4de9-982d-c8dc12cb569c} %SystemRoot%\system32\shcore.dll {fd8d7f86-2f0c-43bb-b225-97ac3c04567b} %SystemRoot%\system32\shcore.dll No Instance(s) Available. ERROR: Description = Exception occured. No Instance(s) Available. ComponentId LocalServer32 ProgId {0002DF01-0000-0000-C000-000000000046} "%ProgramFiles%\Internet Explorer\iexplore.exe" InternetExplorer.Application.1 {0002DF02-0000-0000-C000-000000000046} %SystemRoot%\system32\browser_broker.exe BrowserBroker.BrowserBroker.1 {00f2b433-44e4-4d88-b2b0-2698a0a91dba} "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} Microsoft.PhotoAcqHWEventHandler.1 {0289a7c5-91bf-4547-81ae-fec91a89dec5} %systemroot%\system32\WinrsHost.exe {031EE060-67BC-460d-8847-E4A7C5E45A27} "%ProgramFiles%\Windows Media Player\wmprph.exe" {03837511-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProviderCollection.1 {03837513-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceDataProvider.1 {0383751C-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSession.1 {03837521-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSet.1 {03837525-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.DataCollectorSetCollection.1 {03837526-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSet.1 {03837527-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyDataCollectorSetCollection.1 {03837528-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSession.1 {03837529-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.LegacyTraceSessionCollection.1 {03837530-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.TraceSessionCollection.1 {03837531-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSet.1 {03837532-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.ServerDataCollectorSetCollection.1 {03837538-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSession.1 {03837539-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.BootTraceSessionCollection.1 {03837546-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSet.1 {03837547-098B-11D8-9414-505054503030} %SystemRoot%\system32\plasrv.exe PLA.SystemDataCollectorSetCollection.1 {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe {054AAE20-4BEA-4347-8A35-64A533254A9D} "%CommonProgramFiles%\microsoft shared\ink\TabTip.exe" {0823B6F8-F499-4d5e-B885-EA9CB4F43B24} %SystemRoot%\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.153_none_e74acfe72624a02b\TiWorker.exe {08FC06E4-C6B5-40BE-97B0-B80F943C615B} %SystemRoot%\System32\ProximityUxHost.exe {115e13cf-cfe8-4821-b0da-e06aa4d51426} %SystemRoot%\system32\RdpSaProxy.exe {1202DB60-1DAC-42C5-AED5-1ABDD432248E} %SystemRoot%\System32\mobsync.exe {152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC} "%SystemRoot%\System32\RmtTpmVscMgrSvr.exe" {16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} "%SystemRoot%\System32\TpmVscMgrSvr.exe" {19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} "%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe" {19C65143-6230-42FA-A58E-7D9FA9BE2EB5} %SystemRoot%\system32\wkspbroker.exe WorkspaceBroker.WorkspaceBroker.1 {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} %SystemRoot%\System32\mobsync.exe {1C749B87-568C-4865-8E73-6413F8372CE6} "%systemroot%\system32\lpksetup.exe" {1F87137D-0E7C-44d5-8C73-4EFFB68962F2} %systemroot%\system32\wbem\wmiprvse.exe -secured {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} {25B25D91-69A2-47fa-A375-FDC98189A06F} %systemroot%\system32\SyncHost.exe {266C72E7-62E8-11D1-AD89-00C04FD8FDFF} %SystemRoot%\system32\wbem\scrcons.exe {2744BC6A-4039-11E3-ABAD-8CFB6188709B} %SystemRoot%\system32\SettingSyncHost.exe {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} {32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF} %SystemRoot%\System32\cttunesvr.exe cttunesvr.CtTuner.1 {3C296D07-90AE-4FAC-86F9-65EAA8B82D22} %SystemRoot%\system32\SppExtComObj.exe {3eef301f-b596-4c0b-bd92-013beafce793} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {3eef301f-b596-4c0b-bd92-013beafce793} {4545dea0-2dfc-4906-a728-6d986ba399a9} %SystemRoot%\System32\ThumbnailExtractionHost.exe {45597c98-80f6-4549-84ff-752cf55e2d29} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Enqueue {494C063B-1024-4DD1-89D3-713784E82044} %systemroot%\system32\spool\tools\PrintBrmEngine.exe {49B2791A-B1AE-4C90-9B8E-E860BA07F889} %SystemRoot%\system32\mmc.exe MMC20.Application.1 {49BD2028-1523-11D1-AD79-00C04FD8FDFF} %SystemRoot%\system32\wbem\unsecapp.exe {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} %SystemRoot%\system32\SettingSyncHost.exe {4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C} %SystemRoot%\system32\wksprt.exe WorkspaceRuntime.Workspace.1 {515980c3-57fe-4c1e-a561-730dd256ab98} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {515980c3-57fe-4c1e-a561-730dd256ab98} {549e57e9-b362-49d1-b679-b64d510efe4b} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {549e57e9-b362-49d1-b679-b64d510efe4b} {5BD95610-9434-43C2-886C-57852CC8A120} %SystemRoot%\explorer.exe /factory,{5BD95610-9434-43C2-886C-57852CC8A120} {6295DF2D-35EE-11D1-8707-00C04FD93327} %SystemRoot%\System32\mobsync.exe {62AD5CB4-F168-4B95-8AAE-6F47A75D5D30} %SystemRoot%\system32\oobe\UserOOBEBroker.exe {682159d9-c321-47ca-b3f1-30e36b2ec8b9} %SystemRoot%\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} {69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8} %SystemRoot%\System32\mobsync.exe {6d8ff8e8-730d-11d4-bf42-00b0d0118b56} %SystemRoot%\system32\upnpcont.exe {722b3793-5367-4446-b6bb-db89b05c1f24} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {722b3793-5367-4446-b6bb-db89b05c1f24} {73E709EA-5D93-4B2E-BBB0-99B7938DA9E4} %systemroot%\system32\wbem\wmiprvse.exe {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" WordPad.Document.1 {75dff2b7-6936-4c06-a8bb-676a7b00b24b} %SystemRoot%\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} {8086ebd4-43e3-4b19-beb3-f0ea4ecf319c} %SystemRoot%\System32\sdiagnhost.exe {884e2049-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentWebClassFactory.1 {884e2050-217d-11da-b2a4-000e7bbb2b09} %systemroot%\system32\CertEnrollCtrl.exe X509Enrollment.CX509EnrollmentHelper.1 {8b455e45-7cc8-4253-af5b-b2cd3313e9cc} %SystemRoot%\system32\SettingSyncHost.exe {8D8B8E30-C451-421B-8553-D2976AFA648C} %SystemRoot%\System32\mobsync.exe {94E03510-31B9-47a0-A44E-E932AC86BB17} "%ProgramFiles%\Windows Media Player\wmlaunch.exe" WMP.Device.1 {9678f47f-2435-475c-b24a-4606f8161c16} %systemroot%\system32\wsmprovhost.exe {98068995-54d2-4136-9bc9-6dbcb0a4683f} %systemroot%\system32\WinrsHost.exe {98BB952B-B23E-4737-8ABD-B553E7484B38} %SystemRoot%\system32\DeviceEnroller.exe {995C996E-D918-4a8c-A302-45719A6F4EA7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} {9aa46009-3ce0-458a-a354-715610a075e6} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} {9acf41ed-d457-4cc1-941b-ab02c26e4686} %systemroot%\system32\wsmprovhost.exe {9BA05972-F6A8-11CF-A442-00A0C90A8F39} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} {9C38ED61-D565-4728-AEEE-C80952F0ECDE} %SystemRoot%\System32\vdsldr.exe {9ecb380c-2333-4c68-9691-a569fe446820} %SystemRoot%\system32\fixmapi.exe {A19141CE-D197-4C8B-82C9-4995F5303497} %SystemRoot%\System32\DisplaySwitch.exe {A55803CC-4D53-404c-8557-FD63DBA95D24} %SystemRoot%\system32\WPDShextAutoplay.exe {a677570a-2ba2-4e9a-b2e2-8a02cd8b4fd3} %SystemRoot%\system32\PrintIsolationHost.exe PrintSys.CoPrintIsolationHost.1 {aac1009f-ab33-48f9-9a21-7f5b88426a2e} %SystemRoot%\system32\TSTheme.exe {AB93B6F1-BE76-4185-A488-A9001B105B94} %SystemRoot%\System32\BdeUISrv.exe BdeUISrv.BDEUILauncher.1 {B43A0C1E-B63F-4691-B68F-CD807A45DA01} %SystemRoot%\system32\TSWbPrxy.exe MSTSWebProxy.MSTSWebProxy.1 {B8558612-DF5E-4F95-BB81-8E910B327FB2} %SystemRoot%\System32\mobsync.exe {b8f87e75-d1d5-446b-931c-3f61b97bca7a} %systemroot%\system32\DXPServer.exe {B9B05098-3E30-483F-87F7-027CA78DA287} %SystemRoot%\system32\ApplicationFrameHost.exe {BA441419-0B3F-4FB6-A903-D16CC14CCA44} %SystemRoot%\system32\PickerHost.exe {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} {c08afd90-f2a1-11d1-8455-00a0c91f3880} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c08afd90-f2a1-11d1-8455-00a0c91f3880} {C6B167EA-DB3E-4659-BADC-D1CCC00EFE9C} %SystemRoot%\System32\FodHelper.exe FodHelper.FodHelperObj.1 {c82192ee-6cb5-4bc0-9ef0-fb818773790a} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {c82192ee-6cb5-4bc0-9ef0-fb818773790a} {C947D50F-378E-4FF6-8835-FCB50305244D} %SystemRoot%\system32\mobsync.exe {CC6D9715-F553-4299-B2CE-6C7851FAA03A} %SystemRoot%\system32\browser_broker.exe {cdc32574-7521-4124-90c3-8d5605a34933} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /BurnCD {ceff45ee-c862-41de-aee2-a022c81eda92} %SystemRoot%\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe Paint.Picture {d54378cd-91d8-4e10-a00b-819f9a9efcb1} %systemroot%\system32\printfilterpipelinesvc.exe PrintSys.CoFilterPipeline.1 {D5E8041D-920F-45e9-B8FB-B1DEB82C6E5E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmediumtab {DC7A02CD-2E47-406C-BA5A-B08EC00C4238} %SystemRoot%\SysWOW64\fixmapi.exe {DF4FCC34-067A-4E0A-8352-4A1A5095346E} "%ProgramFiles%\Internet Explorer\iexplore.exe" -startmanager {e3a4e5ca-55b2-4a06-b1ab-8fbecc7bca4b} %SystemRoot%\system32\rundll32.exe /sta {fcc2867c-69ea-4d85-8058-7c214e611c97} {e44e9428-bdbc-4987-a099-40dc8fd255e7} %SystemRoot%\system32\OpenWith.exe {E7B3C0E0-FB47-49F6-A66B-8A7C2E4E7B9C} %SystemRoot%\splwow64.exe {ed1d0fdf-4414-470a-a56d-cfb68623fc58} "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Play {F0A3A195-8D6A-4BC7-BD1F-3B2A2D5807CA} %SystemRoot%\system32\SettingSyncHost.exe {F1EFACAA-08A1-461B-9D28-7AA8947889A0} %systemroot%\system32\SyncHost.exe {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} {F827EC16-664E-4B05-878C-02D242229094} %SystemRoot%\system32\CloudNotifications.exe {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} %SystemRoot%\System32\slui.exe SPPUI.SPPUIObjectInteractive.1 {fb479c02-9ec4-4fed-8599-debe037452cb} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {fb479c02-9ec4-4fed-8599-debe037452cb} {FDA74D11-C4A6-4577-9F73-D7CA8586E10C} %SystemRoot%\System32\ProximityUxHost.exe {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} Shell.HWEventHandlerShellExecute.1 ComponentId DefaultIcon ProgId {025A5937-A6BE-4686-A844-36FE4BEC8B6D} %SystemRoot%\System32\powercpl.dll,-1 {031E4825-7B94-4dc3-B131-E946B44C8DD5} %SystemRoot%\system32\imageres.dll,-1023 {04731B67-D933-450a-90E6-4ACD2E9408FE} %SystemRoot%\system32\Windows.Storage.Search.dll,-323 {047ea9a0-93bb-415f-a1c3-d7aeb3dd5087} %SystemRoot%\System32\fsquirt.exe,-107 {05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} %SystemRoot%\System32\taskbarcpl.dll,-1 {088e3905-0323-4b02-9826-5d99428e115f} %SystemRoot%\system32\imageres.dll,-184 {0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd} %SystemRoot%\system32\imageres.dll,-117 {0DB7E03F-FC29-4DC6-9020-FF41B59E513A} %SystemRoot%\system32\imageres.dll,-198 {0DF44EAA-FF21-4412-828E-260A8728E7F1} %SystemRoot%\system32\imageres.dll,-80 {0F563B5F-8EE2-4516-BA0A-544DE058C75B} %SystemRoot%\System32\FileHistory.exe,-100 {1206F5F1-0569-412C-8FEC-3204630DFB70} %SystemRoot%\system32\Vault.dll,-1 {148BD520-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,-101 {148BD52A-A2AB-11CE-B11F-00AA00530503} %systemroot%\System32\mstask.dll,0 {15eae92e-f17a-4431-9f28-805e482dafd4} %SystemRoot%\system32\imageres.dll,-87 {17cd9488-1228-4b2f-88ce-4298e93e0966} %SystemRoot%\System32\imageres.dll,-24 {1CF1260C-4DD0-4ebb-811F-33C572699FDE} %SystemRoot%\system32\imageres.dll,-108 {1FA9085F-25A2-489B-85D4-86326EEDCD87} %SystemRoot%\System32\wlanpref.dll {208D2C60-3AEA-1069-A2D7-08002B30309D} %SystemRoot%\system32\imageres.dll,-25 {20D04FE0-3AEA-1069-A2D8-08002B30309D} %SystemRoot%\System32\imageres.dll,-109 {21EC2020-3AEA-1069-A2DD-08002B30309D} %SystemRoot%\System32\imageres.dll,-27 {2227A280-3AEA-1069-A2DE-08002B30309D} %SystemRoot%\System32\imageres.dll,-26 {22877a6d-37a1-461a-91b0-dbda5aaebc99} %SystemRoot%\system32\imageres.dll,-117 {24ad3ad4-a569-4530-98e1-ab02f9417aa8} %SystemRoot%\system32\imageres.dll,-113 {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-177 {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\shell32.dll,-48 {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-100 {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\explorer.exe,-254 {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} %SystemRoot%\System32\imageres.dll,-24 {26EE0668-A00A-44D7-9371-BEB064C98683} %SystemRoot%\System32\imageres.dll,-27 {28803F59-3A75-4058-995F-4EE5503B023C} %systemroot%\system32\DevicePairingFolder.dll,-200 {289AF617-1CC3-42A6-926C-E6A863F0E3BA} dlnashext.dll,-200 {2E17C0EF-2851-459b-A3C8-27A41D4BC9F7} %SystemRoot%\system32\themeui.dll,7 Theme.Manager.1 {2F6CE85C-F9EE-43CA-90C7-8A9BD53A2467} FileHistory.exe,0 {3080F90D-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-103 {3080F90E-D7AD-11D9-BD98-0000947B0257} %SystemRoot%\explorer.exe,-258 {3134ef9c-6b18-4996-ad04-ed5912e00eb5} %SystemRoot%\system32\imageres.dll,-117 {323CA680-C24D-4099-B94D-446DD2D7249E} %SystemRoot%\system32\imageres.dll,-1024 {328B0346-7EAF-4BBE-A479-7CB88A095F5B} %SystemRoot%\system32\imageres.dll,-27 LayoutFolder {374DE290-123F-4565-9164-39C4925E467B} %SystemRoot%\system32\imageres.dll,-184 {38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B} %SystemRoot%\system32\imageres.dll,-171 {3936E9E4-D92C-4EEE-A85A-BC16D5EA0819} %SystemRoot%\system32\shell32.dll,-37219 {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} %SystemRoot%\system32\imageres.dll,-113 {3dfdf296-dbec-4fb4-81d1-6a3438bcf4de} %SystemRoot%\system32\imageres.dll,-108 {3f6bc534-dfa1-4ab4-ae54-ef25a74e0107} %SystemRoot%\System32\rstrui.exe,0 {40419485-C444-4567-851A-2DD7BFA1684D} %SystemRoot%\System32\telephon.cpl,-100 {430da762-8632-4840-bc61-3eeaa078e62e} %SystemRoot%\system32\display.dll,1 {450D8FBA-AD25-11D0-98A8-0800361B1103} %SystemRoot%\system32\shell32.dll,-235 {48123BC4-99D9-11D1-A6B3-00C04FD91555} %SystemRoot%\System32\msxml3.dll,0 xmlfile {4c892621-6757-4fe0-ad8c-a6301be7fba2} %SystemRoot%\system32\themeui.dll,7 {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} %SystemRoot%\system32\imageres.dll,-27 {58E3C745-D971-4081-9034-86E34B30836A} %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1 {59031a47-3f72-44a7-89c5-5595fe6b30ee} %SystemRoot%\system32\imageres.dll,-123 {5ea4f148-308c-46d7-98a9-49041b1dd468} %SystemRoot%\system32\mblctr.exe,0 {5ED4F38C-D3FF-4D61-B506-6820320AEBFE} %SystemRoot%\System32\imageres.dll,-27 {5ef4af3a-f726-11d0-b8a2-00c04fc309a4} %SystemRoot%\system32\shell32.dll,-33 {60632754-c523-4b62-b45c-4172da012619} %SystemRoot%\System32\usercpl.dll,-1 {60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C} %SystemRoot%\System32\DATACLEN.DLL,-2002 {62D8ED13-C9D0-4CE8-A914-47DD628FB1B0} %SystemRoot%\System32\intl.cpl,-200 {6377013E-2C35-40F3-B8E1-1AB47D12982B} %SystemRoot%\system32\WABSyncProvider.dll,0 {63da6ec0-2e98-11cf-8d82-444553540000} %SystemRoot%\system32\imageres.dll,-73 {645FF040-5081-101B-9F08-00AA002F954E} %SystemRoot%\System32\imageres.dll,-55 {67718415-c450-4f3c-bf8a-b487642dc39b} %SystemRoot%\system32\imageres.dll,-87 {679f85cb-0220-4080-b29b-5540cc05aab6} %SystemRoot%\system32\shell32.dll,-51380 {67CA7650-96E6-4FDD-BB43-A8E774F73A57} %SystemRoot%\System32\imageres.dll,-1013 {6C8EEC18-8D75-41B2-A177-8831D59D2D50} %SystemRoot%\System32\main.cpl,-100 {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} %SystemRoot%\system32\imageres.dll,-166 {7007ACC7-3202-11D1-AAD2-00805FC1270E} %SystemRoot%\system32\netshell.dll {725BE8F7-668E-4C7B-8F90-46BDB0936430} %SystemRoot%\System32\main.cpl,-200 {73FDDC80-AEA9-101A-98A7-00AA00374959} "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 WordPad.Document.1 {74246bfc-4c96-11d0-abef-0020af6b0b7a} %SystemRoot%\system32\devmgr.dll,-201 {7A9D77BD-5403-11d2-8785-2E0420524153} %SystemRoot%\system32\netplwiz.dll,-102 {7b81be6a-ce2b-4676-a29e-eb907a5126c5} %SystemRoot%\system32\imageres.dll,-87 {80F3F1D5-FECA-45F3-BC32-752C152E456E} %SystemRoot%\System32\tabletpc.cpl,-10200 {863aa9fd-42df-457b-8e4d-0de1b8015c60} %SystemRoot%\System32\imageres.dll,-26 {87D66A43-7B11-4A28-9811-C86EE395ACF7} %SystemRoot%\System32\srchadmin.dll,-201 {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} %SystemRoot%\system32\zipfldr.dll {89D83576-6BD1-4c86-9454-BEB04E94C819} %systemroot%\system32\mssvp.dll,-504 {8E908FC9-BECC-40f6-915B-F4CA0E70D03D} %SystemRoot%\System32\netcenter.dll,-1 {8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA} %systemroot%\system32\dxp.dll,0 {9324DA94-50EC-4A14-A770-E90CA03E7C8F} %SystemRoot%\system32\themeui.dll,7 {93412589-74D4-4E4E-AD0E-E0CB621440FD} %SystemRoot%\System32\fontext.dll {9343812e-1c37-4a49-a12e-4b2d810d956b} %SystemRoot%\System32\searchfolder.dll,-323 {98F275B4-4FFF-11E0-89E2-7B86DFD72085} %SystemRoot%\system32\SearchFolder.dll,-323 {992CFFA0-F557-101A-88EC-00DD010CCC48} %SystemRoot%\system32\netshell.dll {9C60DE1E-E5FC-40f4-A487-460851A8D915} %SystemRoot%\System32\autoplay.dll,-1 {9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} %SystemRoot%\System32\SyncCenter.dll,-1000 {9DB7A13C-F208-4981-8353-73CC61AE2783} %SystemRoot%\system32\twext.dll,-100 Previous.Versions {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\sendmail.dll,-2001 {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} %SystemRoot%\system32\imageres.dll,-110 {9FE63AFD-59CF-4419-9775-ABCC3849F861} %SystemRoot%\System32\imageres.dll,-1022 {a00ee528-ebd9-48b8-944a-8942113d46ac} %SystemRoot%\system32\SearchFolder.dll,-323 {A0953C92-50DC-43bf-BE83-3742FED03C9C} %SystemRoot%\system32\imageres.dll,-189 {A8A91A66-3A7D-4424-8D24-04E180695C7A} %systemroot%\system32\DeviceCenter.dll,-1 {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0} %SystemRoot%\system32\imageres.dll,-112 {A9B48EAC-3ED8-11d2-8216-00C04FB687DA} %SystemRoot%\System32\DATACLEN.DLL,-2000 {ADB9F5A4-E73E-49b8-99B6-2FA317EF9DBC} %SystemRoot%\system32\themeui.dll,7 {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} %SystemRoot%\System32\cscui.dll {B12AE898-D056-4378-A844-6D393FE37956} %SystemRoot%\system32\themeui.dll,7 {B4BFCC3A-DB2C-424C-B029-7FE99A87C641} %SystemRoot%\system32\imageres.dll,-183 {B4FB3F98-C1EA-428d-A78A-D1F5659CBA93} %SystemRoot%\system32\imageres.dll,-1013 {B7BBD408-F09C-4aa8-B65E-A00B8FE0F0B9} %SystemRoot%\system32\themeui.dll,7 {B98A2BEA-7D42-4558-8BD1-832F41BAC6FD} %SystemRoot%\System32\sdcpl.dll,-1 {BA126E01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BA126F01-2166-11D1-B1D0-00805FC1270E} %SystemRoot%\system32\netshell.dll {BB06C0E4-D293-4f75-8A90-CB05B6477EEE} %SystemRoot%\System32\imageres.dll,-149 {BB64F8A7-BEE7-4E1A-AB8D-7D8273F7FDB6} %SystemRoot%\System32\ActionCenterCPL.dll,-1 {BC48B32F-5910-47F5-8570-5074A8A5636A} %SystemRoot%\System32\SyncCenter.dll,-1000 {BD7A2E7B-21CB-41b2-A086-B309680C6B7E} %systemroot%\system32\mssvp.dll,-505 {BD84B380-8CA2-1069-AB1D-08000948F534} %SystemRoot%\System32\fontext.dll {c57a6066-66a3-4d91-9eb9-41532179f0a5} %SystemRoot%\system32\imageres.dll,-1020 {C58C4893-3BE0-4B45-ABB5-A63E4B8C8651} %SystemRoot%\System32\DiagCpl.dll,-1 {c79d1575-b8c6-4862-a284-788836518b97} %SystemRoot%\system32\display.dll,1 {d0da2915-3f89-4519-a4ca-5e02528c8ec4} %SystemRoot%\system32\playlistfolder.dll {D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3} %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl,-138 {D2035EDF-75CB-4EF1-95A7-410D9EE17170} dlnashext.dll,-200 {D20EA4E1-3957-11d2-A40B-0C5020524153} %SystemRoot%\System32\imageres.dll,-114 {d3162b92-9365-467a-956b-92703aca08af} %SystemRoot%\system32\imageres.dll,-112 {D3E34B21-9D75-101A-8C3D-00AA001A1652} %systemroot%\system32\mspaint.exe,-3 Paint.Picture {D4480A50-BA28-11d1-8E75-00C04FA31A86} %SystemRoot%\System32\shwebsvc.dll,-107 {d450a8a1-9568-45c7-9c0e-b4f9fb4537bd} appwiz.cpl,-1507 {D555645E-D4F8-4c29-A827-D93C859C4F2A} %SystemRoot%\System32\accessibilitycpl.dll,-1 {D9EF8727-CAC2-4e60-809E-86F80A666C91} %SystemRoot%\System32\fvecpl.dll,-1 {daf95313-e44d-46af-be1b-cbacea2c3065} %SystemRoot%\system32\SearchFolder.dll,-323 {E2E7934B-DCE5-43C4-9576-7FE4F75E7480} %SystemRoot%\System32\timedate.cpl,-50 {e345f35f-9397-435c-8f95-4e922c26259e} %SystemRoot%\system32\SearchFolder.dll,-323 {E413D040-6788-4C22-957E-175D1C513A34} %SystemRoot%\System32\SyncCenter.dll,-1000 {E44E5D18-0652-4508-A4E2-8A090067BCB0} %SystemRoot%\system32\imageres.dll,-24 {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} %SystemRoot%\system32\zipfldr.dll CompressedFolder {E96F5460-09CE-4f46-88B1-F4B6B4A8E252} %SystemRoot%\system32\wmploc.dll, 101 {ECF03A32-103D-11d2-854D-006008059367} %SystemRoot%\system32\imageres.dll,-1002 {ED7BA470-8E54-465E-825C-99712043E01C} %SystemRoot%\System32\imageres.dll,-27 {ED834ED6-4B5A-4bfe-8F11-A626DCB6A921} %SystemRoot%\System32\themecpl.dll,-1 {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} %SystemRoot%\System32\imageres.dll,-25 {F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C} %SystemRoot%\System32\SyncCenter.dll,-1000 {F20DA720-C02F-11CE-927B-0800095AE340} %SystemRoot%\system32\packager.dll,0 Package {F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D} %SystemRoot%\System32\mmsys.cpl,-100 {F5078F40-C551-11D3-89B9-0000F81FE221} %SystemRoot%\System32\msxml3.dll,0 xmlfile {F6B6E965-E9B2-444B-9286-10C9152EDBC5} %SystemRoot%\System32\FileHistory.exe {F82DF8F7-8B9F-442E-A48C-818EA735FF9B} %SystemRoot%\System32\tabletpc.cpl,-10201 {f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a} %SystemRoot%\system32\imageres.dll,-189 {FF3AE31D-55B0-4945-BDE9-622ABB334C1A} %SystemRoot%\system32\WABSyncProvider.dll,0 ComponentId ProgId ToolBoxBitmap32 {04a1e553-fe36-4fde-865e-344194e69424} msinkaut.InkPicture.1 %CommonProgramFiles%\Microsoft Shared\Ink\InkObj.dll, 212 {289228DE-A31E-11D1-A19C-0000F875B132} ListPad.ListPad.1 cic.dll, 1 {44F9A03B-A3EC-4F3B-9364-08E0007F21DF} Control.TaskSymbol.1 mmcndmgr.dll, 101 {545AE700-50BF-11D1-9FE9-00600832DB4A} MMCCtrl.MMCCtrl.1 cic.dll, 1 {5828227c-20cf-4408-b73f-73ab70b8849f} RdpCoreTS.WRdsProtocolManager.1 %windir%\system32\rdpcorets.dll, 1 {6BF52A52-394A-11d3-B153-00C04F79FAA6} WMPlayer.OCX.7 %SystemRoot%\system32\wmploc.dll, 101 {850D1D11-70F3-4BE5-9A11-77AA6B2BB201} WIA.CommonDialog.1 %SystemRoot%\System32\wiaaut.dll, 102 {9BA05971-F6A8-11CF-A442-00A0C90A8F39} Shell.FolderView.1 %SystemRoot%\system32\shell32.dll, 260 {AEB84C83-95DC-11D0-B7FC-B61140119C4A} DiskManagement.Control %SystemRoot%\System32\dmview.ocx,1 {B0395DA5-6A15-4E44-9F36-9A9DC7A2F341} MMC.IconControl.1 mmcndmgr.dll, 1 {C3701884-B39B-11D1-9D68-00C04FC30DF6} OlePrn.OleInstall.1 %SystemRoot%\system32\oleprn.dll, 1 {C47195EC-CD7A-11D1-8EA3-00C04F9900D7} SysColorCtrl.SysColorCtrl.1 cic.dll, 1 {E1C5D730-7E97-4D8A-9E42-BBAE87C2059F} WIA.DeviceManager.1 %SystemRoot%\System32\wiaaut.dll, 103
Cryptography providers:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /S /V "Dll" REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography" /S /V "$DLL"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\AggregateSSLHandshakeTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllLogMismatchPinRules\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16 Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap Dll REG_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllProtectedRootMessageBox\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllProtectPrompt\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetCaps\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSealedDigest\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllIsMyFileType2\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{000C10F1-0000-0000-C000-000000000046} Dll REG_SZ C:\Windows\System32\MSISIP.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090} Dll REG_SZ C:\Windows\System32\wshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351} Dll REG_SZ C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F} Dll REG_SZ C:\Windows\System32\EsdSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C} Dll REG_SZ C:\Windows\System32\AppxSip.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE} Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptsvcDllCtrl\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\crypttpmeksvc.dll\0C:\Windows\System32\cryptcatsvc.dll\0C:\Windows\System32\webauthn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\GetSecureTime\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\SecureTimeAggregator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyCTLUsage\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllVerifyRevocation\DEFAULT Dll REG_MULTI_SZ C:\Windows\System32\cryptnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4 Dll REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4 Dll REG_SZ C:\Windows\System32\inetcomm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\1.3.6.1.5.5.7.3.4 Dll REG_SZ C:\Windows\System32\cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllFormatObject\2.5.29.32 Dll REG_SZ C:\Windows\System32\cryptdlg.dll End of search: 207 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\urlmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\ieframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{7801EBD0-CF4B-11D0-851F-0060979387EA} $DLL REG_SZ C:\Windows\System32\Cryptdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{00AAC56B-CD44-11D0-8CC2-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{189A3842-3041-11D1-85E1-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{31D1ADC1-D329-11D1-8ED8-0080C76516C6} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-DDBA-11D0-8CCB-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{6078065b-8f22-4b13-bd9b-5b762776f386} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{64B9D180-8DA2-11CF-8736-00AA00A485EB} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{A7F4C378-21BE-494e-BA0F-BB12C5D208C5} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{C6B2E8D0-E005-11CF-A134-00C04FD7BF43} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1D-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{D41E4F1F-A407-11D1-8BC9-00C04FA30A41} $DLL REG_SZ C:\Windows\System32\WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{F750E6C3-38EE-11D1-85E5-00C04FC295EE} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature\{FC451C16-AC75-11D1-B4B8-00C04FB66EA0} $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.4.1.311.10.3.3 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.1 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\1.3.6.1.5.5.7.3.2 $DLL REG_SZ WINTRUST.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Usages\2.16.840.1.113730.4.1 $DLL REG_SZ WINTRUST.DLL End of search: 97 match(es) found.Note: only 116 of these 304 entries comply with Microsoft’s own recommendation and security guidance, while the other 188 entries show a total number of 188 bugs!
Group Policy client side extensions:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /F "D*Name" /S REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DisplayName" REM REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions" /S /V "DllName"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} DisplayName REG_EXPAND_SZ @wlgpclnt.dll,-100 DllName REG_EXPAND_SZ wlgpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0E28E245-9368-4853-AD84-6DA3BA35BB75} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-1 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{169EBF44-942F-4C43-87CE-13C93996EBBE} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{16be69fa-4209-4250-88cb-716cf41954e0} DisplayName REG_EXPAND_SZ @auditcse.dll,-4000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{17D89FEC-5C44-4972-B12D-241CAEF74509} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-2 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{1A6364EB-776B-4120-ADE1-B63A406A76B5} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-3 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861} DisplayName REG_EXPAND_SZ @fdeploy.dll,-261 DllName REG_EXPAND_SZ fdeploy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2A8FDC61-2347-4C87-92F6-B05EB91A201A} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{2BFCC077-22D2-48DE-BDE1-2F618D9B476D} DllName REG_EXPAND_SZ AppManagementConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\dskquota.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-4 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39} DisplayName REG_EXPAND_SZ @gptext.dll,-201 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{42B5FAAE-6536-11d2-AE5A-0000F87571E3} DisplayName REG_EXPAND_SZ @gpscript.dll,-1 DllName REG_SZ C:\Windows\System32\gpscript.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4B7C3B0F-E993-4E06-A241-3FBE06943684} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-22 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4bcd6cde-777b-48b6-9804-43568e23545d} DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll,-100 DllName REG_EXPAND_SZ %SystemRoot%\System32\TsUsbRedirectionGroupPolicyExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6} DllName REG_SZ C:\Windows\System32\tsworkspace.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4d968b55-cac2-4ff5-983f-0a54603781a3} DisplayName REG_EXPAND_SZ @WorkFoldersGPExt.dll,-261 DllName REG_EXPAND_SZ WorkFoldersGPExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{5794DAFD-BE60-433f-88A2-1A31939AC01F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-5 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6232C319-91AC-4931-9385-E70C2B099F0E} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-6 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-7 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7150F9BF-48AD-4da4-A49C-29EF4A8369BA} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-8 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{728EE579-943C-4519-9EF7-AB56765798ED} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-9 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{74EE6C03-5363-4554-B161-627540339CAB} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-10 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7909AD9E-09EE-4247-BAB9-7029D5F0A278} DllName REG_EXPAND_SZ dmenrollengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7933F41E-56F8-41d6-A31C-4148A711EE93} DllName REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{7B849a69-220F-451E-B3FE-2CB811AF94AE} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} DisplayName REG_EXPAND_SZ @(runtime.system32)\scecli.dll,-7650 DllName REG_EXPAND_SZ scecli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{8A28E2C5-8D06-49A4-A08C-632DAA493E17} DisplayName REG_EXPAND_SZ @%systemroot%\system32\gpprnext.dll,-1 DllName REG_EXPAND_SZ %systemroot%\system32\gpprnext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{91FBB303-0CD5-4055-BF42-E512A681B325} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-11 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A3F3E39B-5D83-4940-B954-28315B82F0A8} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-12 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{AADCED64-746C-4633-A97C-D61349046527} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-13 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B087BE9D-ED37-454f-AF9C-04291E351182} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-14 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} DisplayName REG_EXPAND_SZ @dot3gpclnt.dll,-100 DllName REG_EXPAND_SZ dot3gpclnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BA649533-0AAC-4E04-B9BC-4DBAE0325B12} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-16 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C34B2751-1CF4-44F5-9262-C3FC39666591} DllName REG_EXPAND_SZ pwlauncher.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-17 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} DllName REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{c6dc5466-785a-11d2-84d0-00c04fb169f7} DisplayName REG_EXPAND_SZ @appmgmts.dll,-3252 DllName REG_EXPAND_SZ appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{cdeafc3d-948d-49dd-ab12-e578ba4af7aa} DisplayName REG_EXPAND_SZ @gptext.dll,-204 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} DisplayName REG_SZ @C:\Windows\System32\iedkcs32.dll,-3051 DllName REG_SZ C:\Windows\System32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{CFF649BD-601D-4361-AD3D-0FC365DB4DB7} DllName REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27} DisplayName REG_EXPAND_SZ @C:\Windows\System32\polstore.dll,-5012 DllName REG_EXPAND_SZ %SystemRoot%\System32\polstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E47248BA-94CC-49c4-BBB5-9EB7F05183D0} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-18 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E4F48E54-F38D-4884-BFB9-D4D2E5729C18} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-19 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-20 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E5094040-C46C-4115-B030-04FB2E545B00} DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{E62688F0-25FD-4c90-BFF5-F508B9D2E31F} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-21 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F312195E-3D9D-447A-A3F5-08DFFA24735E} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{f3ccc681-b74c-4060-9f26-cd84525dca2a} DisplayName REG_EXPAND_SZ @auditcse.dll,-3000 DllName REG_EXPAND_SZ auditcse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{F9C77450-3A41-477E-9310-9ACD617BD9E3} DisplayName REG_EXPAND_SZ @gpprefcl.dll,-15 DllName REG_SZ C:\Windows\System32\gpprefcl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FB2CA36D-0B40-4307-821B-A13B252DE56C} DisplayName REG_EXPAND_SZ @gptext.dll,-203 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f} DisplayName REG_EXPAND_SZ @gptext.dll,-205 DllName REG_EXPAND_SZ gptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{FC491EF1-C4AA-4CE1-B329-414B101DB823} DisplayName REG_EXPAND_SZ @dggpext.dll,-600 DllName REG_EXPAND_SZ dggpext.dll End of search: 99 match(es) found.Note: 67 of these 99 filenames are either unqualified or contain an environment variable.
All command lines registered with Programmatic Identifiers or Client Types:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /E /F "Command" /K /S /VE
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Manifest\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Application.Reference\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wmplayer.exe\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AudioCD\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\shell\Open\command (Default) REG_SZ "PrintBrmUI.exe" /import /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\Shell\Open\Command (Default) REG_EXPAND_SZ netplwiz.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\NoAddOns\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\OpenHomePage\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3DD4F92-658A-410F-84FD-6FBBBEF2FFFE}\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,Control_RunDLL C:\Windows\System32\inetcpl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2C761C6-29BC-4f19-9251-E6195265BAF1}\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\colorcpl.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\changehomegroupsettings\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\sharewithdevices\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.NetworkAndSharingCenter /page ShareMedia HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\starthomegrouptroubleshooter\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\msdt.exe -id HomegroupDiagnostic HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}\shell\viewhomegrouppassword\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.HomeGroup /page Passkey HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D17D1D6D-CC3F-4815-8FE3-607E7D5D10B3}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\Speech\SpeechUX\sapi.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4480A50-BA28-11d1-8E75-00C04FA31A86}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2E7934B-DCE5-43C4-9576-7FE4F75E7480}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E44E5D18-0652-4508-A4E2-8A090067BCB0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\control.exe /name Microsoft.DefaultPrograms HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2DDFC82-8F12-4CDD-B7DC-D4FE1425AA4D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F82DF8F7-8B9F-442E-A48C-818EA735FF9B}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cmdfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\comfile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\cplopen\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cplfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CRLFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\desktopthemepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpen\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\AllItems\Shell\Microsoft.DxpOpenInNewWindow\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0850302A-B344-4fda-9BE9-90576B8D46F0}\Shell\Bluetooth\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\bthprops.cpl,,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{70FFD812-4C7F-4C7D-926A-637B7DD852AF}\Shell\DeviceInstall\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\newdev.dll,DeviceInternetSettingUi 2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{884b96c3-56ef-11d1-bc8c-00a0c91405dd}\Shell\Regional\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe %SystemRoot%\System32\intl.cpl,,/p:"keyboard" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Cabinet\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /cab "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msdt.exe /path "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Perfmon.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /sys /open "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Diagnostic.Resmon.Config\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\perfmon /res /load "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\background\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dlna-playsingle\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-passphrase\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe -pw %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\change-pin\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdechangepin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\cmd\command (Default) REG_SZ cmd.exe /s /k pushd "%V" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\encrypt-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 T HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\manage-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\control.exe /name Microsoft.BitLockerDriveEncryption /page ?InitialVolume==%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\Powershell\command (Default) REG_SZ powershell.exe -noexit -command Set-Location -literalPath '%V' HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizard.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\resume-bde-elev\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\BitLockerWizardElev.exe %1 V HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shell\unlock-bde\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\bdeunlock.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\emffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\evtxfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\eventvwr.exe /l:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\runas\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.BurnSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.EraseDisc\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocActionId.ZipSelection\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Explorer.AssocProtocol.search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\open\command (Default) REG_SZ C:\Windows\System32\fxscover.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FaxCover.Document\shell\print\command (Default) REG_SZ C:\Windows\System32\fxscover.exe /P "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FindApp.DVD\Shell\Play\command (Default) REG_EXPAND_SZ explorer "ms-windows-store://search/?query=DVD" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\fonfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ftp\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\giffile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\gmmpfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\winhlp32.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htafile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\http\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\https\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icmfile\shell\Install Profile\command (Default) REG_SZ "colorcpl.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.HTM\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.MHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.PARTIAL\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.SVG\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.URL\Shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.WEBSITE\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.AssocFile.XHT\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintXHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.FTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTP\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IE.HTTPS\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IMEDictionaryCompiler\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\imesxfile\shell\open\command (Default) REG_EXPAND_SZ "%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\Install\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\InfDefaultInstall.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\inifile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\print\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\shell\printto\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSEFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Edit\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open\Command (Default) REG_SZ C:\Windows\System32\WScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Open2\Command (Default) REG_SZ C:\Windows\System32\CScript.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\JSFile\Shell\Print\Command (Default) REG_SZ C:\Windows\System32\Notepad.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Launcher.Computer\Shell\Manage\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LpkSetup.1\Shell\install\command (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellConsole.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellData.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellModule.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\0\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" "-Command" "if((Get-ExecutionPolicy ) -ne 'AllSigned') { Set-ExecutionPolicy -Scope Process Bypass }; & '%1'" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Edit\Command (Default) REG_SZ "C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.PowerShellScript.1\Shell\Open\Command (Default) REG_SZ "C:\Windows\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ProvTool.Provisioning.1\Shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.System.Update.1\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\wusa.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Website\Shell\Open\Command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Workfolders\Shell\Open\command (Default) REG_SZ C:\Windows\System32\control.exe /name Microsoft.WorkFolders HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-availablenetworks\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-mmsys\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msdt\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\msdt.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imepad\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-msime-imjpdct\shell\open\command (Default) REG_SZ C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-quick-assist\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\quickassist.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-rdx-document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-connectabledevices\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-settings-displays-topology\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ms-virtualtouchpad\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\system32\LaunchWinApp.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\Author\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe /a "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\mscfile\shell\RunAs\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSDASC\shell\open\command (Default) REG_EXPAND_SZ Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /i "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Repair\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /f "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Package\shell\Uninstall\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /x "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msi.Patch\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\msiexec.exe" /p "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSInfoFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\msinfo32.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSppLicenseFile\shell\open\command (Default) REG_SZ "iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSStorageSense\shell\open\command (Default) REG_EXPAND_SZ explorer ms-settings:storagesense HKEY_LOCAL_MACHINE\SOFTWARE\Classes\msstylesfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetServer\shell\remotedesktop\command (Default) REG_SZ mstsc.exe -v %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NetworkExplorerPlugins\urn:schemas-upnp-org:device:MediaServer:1\shell\Open Media Player\command (Default) REG_EXPAND_SZ C:\Program Files\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchdescription\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchfilefolderresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\open\command (Default) REG_SZ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\opensearchresult\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\otffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7RFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\P7SFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Paint.Picture\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pbkfile\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasphone.exe -f "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PBrush\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PerfFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pfmfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PFXFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\piffile\shell\open\command (Default) REG_SZ "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pjpegfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pngfile\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Connect\command (Default) REG_SZ mstsc.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Edit\command (Default) REG_SZ mstsc.exe -edit "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RDP.File\shell\Open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mstsc.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regedit\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open\command (Default) REG_SZ regedit.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command (Default) REG_EXPAND_SZ "%systemRoot%\system32\msra.exe" -openfile "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlefile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rlogin\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SavedDsQuery\Shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\config\command (Default) REG_SZ "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\install\command (Default) REG_SZ rundll32.exe desk.cpl,InstallScreenSaver %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\open\command (Default) REG_SZ "%1" /S HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Generate Typelib\command (Default) REG_SZ "C:\Windows\System32\RUNDLL32.EXE" "C:\Windows\System32\scrobj.dll",GenerateTypeLib "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Open\command (Default) REG_SZ "C:\Windows\System32\NOTEPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Register\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scriptletfile\Shell\Unregister\command (Default) REG_SZ "C:\Windows\System32\REGSVR32.EXE" /u /n /i:"%1" "C:\Windows\System32\scrobj.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\search-ms\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SHCmdFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Shell.CDBurn\Shell\Prepare\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,PrepareDiscForBurnRunDll %L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddSPC %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SPCFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\svgfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.3mf\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.bmp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.dib\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.fbx\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.gif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.glb\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jfif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpe\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpeg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.jpg\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.obj\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.ply\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.png\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.stl\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tif\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\3D Edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mspaint.exe "%1" /ForceBootstrapPaint3D HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.tiff\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\.wdp\Shell\setdesktopwallpaper\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\text\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\telnet\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themefile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\themepackfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\printto\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\shimgvw.dll",ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\tn3270\shell\open\command (Default) REG_SZ "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttcfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\preview\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ttffile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontview.exe /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Undecided\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\Open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\OpenWithSetDefaultOn\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\OpenWith.exe -override "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBEFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBSFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wbcatfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /restorepage HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wcxfile\shell\Open\Command (Default) REG_SZ "C:\Windows\System32\xwizard.exe" RunWizard /u {7940acf8-60ba-4213-a7c3-f3b400ee266d} /z%1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\print\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wdpfile\shell\printto\command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_PrintTo /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\webpnpFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpnpinst.exe %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.CompositeFont\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\burn\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\isoburn.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.IsoFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.VhdFile\shell\mount\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.XamlDocument\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\edit\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\notepad.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Windows.Xbap\shell\open\command (Default) REG_SZ "C:\Windows\System32\PresentationHost.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsBackupFolderOptions\shell\openDesktopIni\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\sdclt.exe /FOLDEROPTIONS %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsStore.License\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\open\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmffile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.AudioCD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.BurnCD\Shell\Burn\Command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:3 /Task:CDWrite /Device:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:DVD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.DVR-MSFile\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.VCD\Shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP.WTVFile\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3G2\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.3GP\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ADTS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AIFF\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASF\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.ASX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AU\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.AVI\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.CDA\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.FLAC\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M2TS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.m3u\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.m3u\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.M4A\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MIDI\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MK3D\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKA\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MKV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MOV\shell\play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP3\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MP4\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.MPEG\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.TTS\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WAX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.wma\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMD\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMV\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WMZ\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WPL\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocFile.WVX\shell\Play\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Play "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.DLNA-PLAYSINGLE\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMP11.AssocProtocol.MMS\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WPDContextMenu.Url\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Edit\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSFFile\Shell\Print\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\Notepad.exe" /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\WScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WSHFile\Shell\Open2\Command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\CScript.exe" "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\opennew\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\print\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xhtmlfile\shell\printto\command (Default) REG_EXPAND_SZ "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xmlfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\xslfile\shell\Open\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zapfile\shell\printto\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\Protocols\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Contacts\Address Book\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /showexisting HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\Protocols\mailto\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",MailToProtocolHandler %1 HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Mail\Hotmail\shell\open\command (Default) REG_EXPAND_SZ %systemRoot%\system32\rundll32.exe "%ProgramFiles%\Internet Explorer\hmmapi.dll",OpenInboxHandler HKEY_LOCAL_MACHINE\SOFTWARE\Clients\Media\Windows Media Player\shell\open\command (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Media Player\wmplayer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\naom\command (Default) REG_SZ "C:\Program Files\Internet Explorer\iexplore.exe" -extoff HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command (Default) REG_SZ C:\Program Files\Internet Explorer\iexplore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddNetworkLocation\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32 %SystemRoot%\System32\shwebsvc.dll,AddNetPlaceRunDll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.AddPrinter\command (Default) REG_EXPAND_SZ %systemroot%\system32\rundll32.exe printui.dll,PrintUIEntry /il HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\CommandStore\shell\Windows.HistoryVaultRestore\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\0\{27dfca82-8593-46e4-98d8-23eb83452f65}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewEmail %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\1\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\2\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\3\{9d4b9c0a-7b4e-4c0d-926e-a536d781cff6}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnEdit %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\6\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksItemsSelected\7\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\0\{5099caf3-7ab4-4c18-ab35-3f3e664638e4}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewContact %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\1\{da8c976e-ec82-48ad-8ae4-38872e958dc5}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnNewGroup %* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\2\{0b51213d-c59c-4b59-bc10-f27d0b330294}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnImport HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{de2b70ec-9bf7-4a93-bd3d-243f7881d492}\TasksNoItemsSelected\3\{165095b1-322d-47b1-bc9f-2a9234c1c4cb}\shell\InvokeTask\command (Default) REG_EXPAND_SZ rundll32.exe "%CommonProgramFiles%\System\wab32.dll",ShellUICommand_OnExport End of search: 481 match(es) found.Note: only 207 of these 481 command lines comply with Microsoft’s own documentation, while the other 274 command lines show a total number of 411 bugs!
Command lines without a dot, i.e. without any file extension:
FTYPE | FIND.EXE /V "."
batfile="%1" %*
cmdfile="%1" %*
comfile="%1" %*
exefile="%1" %*
MSStorageSense=explorer ms-settings:storagesense
piffile="%1" %*
scrfile="%1" /S
Command lines without a backslash, i.e. without any qualified pathname:
FTYPE | FIND.EXE /V "\"
batfile="%1" %* brmFile="PrintBrmUI.exe" /import /file:"%1" cmdfile="%1" %* comfile="%1" %* exefile="%1" %* MSSppLicenseFile="iexplore.exe" "%1" MSStorageSense=explorer ms-settings:storagesense piffile="%1" %* regedit=regedit.exe "%1" regfile=regedit.exe "%1" scrfile="%1" /S
Command lines without a (double) quote:
FTYPE | FIND.EXE /V """"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 Microsoft.Workfolders=C:\Windows\System32\control.exe /name Microsoft.WorkFolders ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSStorageSense=explorer ms-settings:storagesense opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted environment variable in the application’s pathname:
FTYPE | FIND.EXE "=%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe hlpfile=%SystemRoot%\winhlp32.exe %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with an unquoted long
argument:
FTYPE | FIND.EXE /I " %L"
IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l
Command lines with an unquoted argument:
FTYPE | FIND.EXE " %1"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines with unquoted environment variable(s) in an argument or with unquoted argument(s):
FTYPE | FIND.EXE " %"
Application.Manifest="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbApplication %1 Application.Reference="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\dfshim.dll",ShOpenVerbShortcut %1|%2 batfile="%1" %* CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 chm.file="%SystemRoot%\hh.exe" %1 cmdfile="%1" %* comfile="%1" %* CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 exefile="%1" %* ftp="C:\Program Files\Internet Explorer\iexplore.exe" %1 giffile="C:\Program Files\Internet Explorer\iexplore.exe" %1 hlpfile=%SystemRoot%\winhlp32.exe %1 htafile=C:\Windows\System32\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* htmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 http="C:\Program Files\Internet Explorer\iexplore.exe" %1 https="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.HTM="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.MHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.PARTIAL="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.SVG="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.AssocFile.URL="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l IE.AssocFile.WEBSITE="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* IE.AssocFile.XHT="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.FTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTP="C:\Program Files\Internet Explorer\iexplore.exe" %1 IE.HTTPS="C:\Program Files\Internet Explorer\iexplore.exe" %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 InternetShortcut="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l JSEFile=C:\Windows\System32\WScript.exe "%1" %* JSFile=C:\Windows\System32\WScript.exe "%1" %* mhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* Microsoft.Website="C:\Program Files\Internet Explorer\iexplore.exe" -w "%l" %* ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-msime-imepad=C:\Windows\System32\IME\SHARED\IMEPADSV.EXE %1 ms-msime-imjpdct=C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 piffile="%1" %* prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 rlogin="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 svgfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 telnet="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 tn3270="C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.XamlDocument="C:\Windows\System32\PresentationHost.exe" "%1" %* Windows.Xbap="C:\Windows\System32\PresentationHost.exe" "%1" %* WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* xhtmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xmlfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 xslfile="C:\Program Files\Internet Explorer\iexplore.exe" %1 zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
Command lines containing an environment variable:
SET SLOPPY=APPDATA CommonProgramFiles CommonProgramFiles(x86) CommonProgramW6432 ComSpec LOCALAPPDATA LOGONSERVER ProgramData ProgramFiles ProgramFiles(x86) ProgramW6432 PUBLIC SystemDrive SystemRoot TEMP TMP USERPROFILE WINDIR FTYPE | FINDSTR.EXE /I "%!SLOPPY: =% %!%"
CABFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L CATFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 CERFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 CertificateStoreFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 certificate_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" chm.file="%SystemRoot%\hh.exe" %1 CompressedFolder=%SystemRoot%\Explorer.exe /idlist,%I,%L contact_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" CRLFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCRL %1 desktopthemepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 Diagnostic.Cabinet=%SystemRoot%\system32\msdt.exe /cab "%1" Diagnostic.Config=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Document=%SystemRoot%\system32\msdt.exe /path "%1" Diagnostic.Perfmon.Config=%SystemRoot%\system32\perfmon /sys /load "%1" Diagnostic.Perfmon.Document=%SystemRoot%\system32\perfmon /sys /open "%1" Diagnostic.Resmon.Config=%SystemRoot%\system32\perfmon /res /load "%1" dlna-playsingle="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" docxfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" emffile="%systemroot%\system32\mspaint.exe" "%1" evtfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" evtxfile=%SystemRoot%\system32\eventvwr.exe /l:"%1" Explorer.AssocActionId.BurnSelection=%SystemRoot%\explorer.exe Explorer.AssocActionId.EraseDisc=%SystemRoot%\explorer.exe Explorer.AssocActionId.ZipSelection=%SystemRoot%\explorer.exe Explorer.AssocProtocol.search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L Folder=%SystemRoot%\Explorer.exe group_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" hlpfile=%SystemRoot%\winhlp32.exe %1 IMEDictionaryCompiler="%WINDIR%\system32\IME\SHARED\imewdbld.exe" "%1" %* imesxfile="%WINDIR%\system32\IME\SHARED\imesearch.exe" "%1" inffile=%SystemRoot%\system32\NOTEPAD.EXE %1 inifile=%SystemRoot%\system32\NOTEPAD.EXE %1 LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" MacromediaFlashPaper.MacromediaFlashPaper="%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" Microsoft.ProvTool.Provisioning.1="%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen Microsoft.System.Update.1="%systemroot%\system32\wusa.exe" "%1" %* MMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" ms-availablenetworks="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-mmsys=%SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\mmsys.cpl %1 ms-msdt="%SystemRoot%\system32\msdt.exe" %1 ms-quick-assist="%SystemRoot%\system32\quickassist.exe" %1 ms-rdx-document=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\RDXService,OpenRDXDocument %1 ms-settings-connectabledevices="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-settings-displays-topology="%SystemRoot%\system32\LaunchWinApp.exe" "%1" ms-virtualtouchpad="%SystemRoot%\system32\LaunchWinApp.exe" "%1" mscfile=%SystemRoot%\system32\mmc.exe "%1" %* MSDASC=Rundll32.exe "%CommonProgramFiles%\System\OLE DB\oledb32.dll",OpenDSLFile %1 Msi.Package="%SystemRoot%\System32\msiexec.exe" /i "%1" %* Msi.Patch="%SystemRoot%\System32\msiexec.exe" /p "%1" %* MSInfoFile=%SystemRoot%\system32\msinfo32.exe "%1" msstylesfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,Control_RunDLL %SystemRoot%\system32\desk.cpl desk,@Appearance /Action:OpenMSTheme /file:"%1" odtfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" opensearchdescription=%SystemRoot%\explorer.exe P7RFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenP7R %1 P7SFile=%SystemRoot%\system32\\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 pbkfile=%SystemRoot%\system32\rasphone.exe -f "%1" PerfFile=%SystemRoot%\system32\mmc.exe %systemroot%\system32\perfmon.msc /F "%1" PFXFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPFX %1 PhotoViewer.FileAssoc.Tiff=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 prffile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1 ratfile="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1 RDP.File="%systemroot%\system32\mstsc.exe" "%1" RemoteAssistance.1="%systemRoot%\system32\msra.exe" -openfile "%1" rlefile="%systemroot%\system32\mspaint.exe" "%1" rtffile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" SavedDsQuery=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\dsquery.dll,OpenSavedDsQuery %1 search=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L search-ms=%SystemRoot%\Explorer.exe /separate,/idlist,%I,%L SHCmdFile=%SystemRoot%\explorer.exe SPCFile=%SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenPKCS7 %1 textfile="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" themefile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 themepackfile=%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\themecpl.dll,OpenThemeAction %1 TIFImage.Document=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 Undecided=%SystemRoot%\system32\OpenWith.exe "%1" Unknown=%SystemRoot%\system32\OpenWith.exe "%1" VBEFile="%SystemRoot%\System32\WScript.exe" "%1" %* VBSFile="%SystemRoot%\System32\WScript.exe" "%1" %* vcard_wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" WAB.AssocProtocol.LDAP="%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" wab_auto_file="%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" wbcatfile=%SystemRoot%\system32\sdclt.exe /restorepage webpnpFile=%SystemRoot%\system32\wpnpinst.exe %1 Windows.CompositeFont="%SystemRoot%\System32\notepad.exe" "%1" WindowsStore.License=%SystemRoot%\System32\licensemanagershellext.exe "%1" wmffile="%systemroot%\system32\mspaint.exe" "%1" WMP.DVR-MSFile="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP.WTVFile="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.3G2="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.3GP="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.ADTS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.AIFF="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.ASF="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" WMP11.AssocFile.ASX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.AU="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.AVI="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L" WMP11.AssocFile.CDA="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.FLAC="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.M2TS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" WMP11.AssocFile.m3u="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.M4A="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MIDI="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.MK3D="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MKA="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MKV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MOV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MP3="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MP4="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L" WMP11.AssocFile.MPEG="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L" WMP11.AssocFile.TTS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:12 /Open "%L" WMP11.AssocFile.WAV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.WAX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.wma="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L" WMP11.AssocFile.WMD="%ProgramFiles%\Windows Media Player\wmplayer.exe" /WMPackage:"%L" WMP11.AssocFile.WMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" WMP11.AssocFile.WMV="%ProgramFiles%\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L" WMP11.AssocFile.WMZ="%ProgramFiles%\Windows Media Player\wmplayer.exe" /layout:"%L" WMP11.AssocFile.WPL="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocFile.WVX="%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L" WMP11.AssocProtocol.DLNA-PLAYSINGLE="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" WMP11.AssocProtocol.MMS="%ProgramFiles%\Windows Media Player\wmplayer.exe" "%L" Wordpad.Document.1="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" WPDContextMenu.Url="%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\ieframe.dll",OpenURL %l WSFFile="%SystemRoot%\System32\WScript.exe" "%1" %* WSHFile="%SystemRoot%\System32\WScript.exe" "%1" %* zapfile=%SystemRoot%\system32\NOTEPAD.EXE %1
All registered path names containing environment variables:
REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%*Dir^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%Common*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%Program*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%System*^%\\" /S REG.EXE QUERY "HKEY_LOCAL_MACHINE\SOFTWARE" /D /F "%WinDir^%\\" /S
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.contact\ShellNew command REG_EXPAND_SZ "%programFiles%\Windows Mail\Wab.exe" /CreateContact "%1" iconpath REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.rtf\ShellNew ItemName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-213 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\certificate_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /certificate "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f20eb5-8fd6-4d9d-b75e-36801766c8f1}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f210a1-62f0-438b-9f7e-9618d72a1831}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f24ca0-748f-4e8a-894f-0e0357c6799f}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f26e02-e9f2-4a9f-9fdd-5a962fb26a98}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f29a34-b8a1-482c-bcf8-3ac7b0fe8f62}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f2b433-44e4-4d88-b2b0-2698a0a91dba}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00F2CE1E-935E-4248-892C-130F32C45CB4}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{195B4D07-3DE2-4744-BBF2-D90121AE785B}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\DefenderCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpOav.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32624F4B-F1D5-4877-989E-555640109D2B}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{361290c0-cb1b-49ae-9f3e-ba1cbe5dab35}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959} LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\AuxUserType\3 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-57344 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\LocalServer32 (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\verb\0 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FDDC80-AEA9-101A-98A7-00AA00374959}\verb\1 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76D0CB12-7604-4048-B83C-1005C7DDC503}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a696d12-576b-422e-9712-01b9dd84b446}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MpProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2D75874-6750-4931-94C1-C99D3BC9D0C7} LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2D75874-6750-4931-94C1-C99D3BC9D0C7}\Elevation IconReference REG_EXPAND_SZ @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7C452EF-8E9F-42EB-9F2B-245613CA0DC9}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\ProtectionManagement.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A1416-FCEC-4431-862F-E8056223DD03}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DACA056E-216A-4FD1-84A6-C306A017ECEC}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender\AMMonitoringProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\InProcServer32 (Default) REG_EXPAND_SZ %programFiles%\Windows NT\TableTextService\TableTextService.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E598560B-28D5-46aa-A14A-8A3BEA34B576}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FEEE9C23-C4E2-4A34-8C73-FE8F9786C8B4}\InprocServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Defender Advanced Threat Protection\WATPCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFE2A43C-56B9-4bf5-9A79-CC6D4285608A}\InProcServer32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /contact "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\contact_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\docxfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\edit\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Group "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\group_wab_auto_file\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Print "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe",-17 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Internet Explorer\iexplore.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\odtfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll,-3058 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open MuiVerb REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\photoviewer.dll,-3043 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PhotoViewer.FileAssoc.Tiff\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-190 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\rtffile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\image\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-189 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\textfile\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open MuiVerb REG_EXPAND_SZ @%ProgramFiles%\Windows Photo Viewer\photoviewer.dll,-3043 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TIFImage.Document\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\0\win32 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\0\win64 (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00F25AE8-3625-4E34-92D4-F0918CF010EE}\1.0\HELPDIR (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Photo Viewer HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\vcard_wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /vcard "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WAB.AssocProtocol.LDAP\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" "/ldap:%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\DefaultIcon (Default) REG_EXPAND_SZ %ProgramFiles%\Windows Mail\wab.exe,10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wab_auto_file\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows Mail\wab.exe" /Import "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1 FriendlyTypeName REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\DefaultIcon (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE",1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\Protocol\StdFileEditing\Server (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\Protocol\StdFileEditing\Verb\0 LocalizedString REG_EXPAND_SZ @%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE,-6300 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\open\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\print\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /p "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wordpad.Document.1\shell\printto\command (Default) REG_EXPAND_SZ "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" /pt "%1" "%2" "%3" "%4" End of search: 86 match(es) found. HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bmp\ShellNew ItemName REG_EXPAND_SZ @%systemroot%\system32\mspaint.exe,-59414 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.library-ms\ShellNew IconPath REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.lnk\ShellNew IconPath REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-16769 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.symlink FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\shell32.dll,-4153 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.txt\ShellNew ItemName REG_EXPAND_SZ @%SystemRoot%\system32\notepad.exe,-470 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zip\CompressedFolder\ShellNew ItemName REG_EXPAND_SZ @%SystemRoot%\system32\zipfldr.dll,-10194 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\accountpicturefile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-5203 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActivatableClasses\Package\Windows.PrintDialog_6.2.1.0_neutral_neutral_cw5n1h2txyewy\Server\Microsoft.Windows.PrintDialog ExePath REG_EXPAND_SZ %SystemRoot%\PrintDialog\PrintDialog.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shell\LaunchWorkfoldersControl MuiVerb REG_SZ @%SystemRoot%\system32\WorkfoldersControl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shell\OfflineFilesLaunchSyncCenter MuiVerb REG_SZ @%SystemRoot%\system32\cscui.dll,-7006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllProtocols\shell\openas MUIVerb REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9016 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\anifile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\main.cpl,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{06C792F8-6212-4F39-BF70-E8C0AC965C23} (Default) REG_EXPAND_SZ %systemroot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de} (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1C749B87-568C-4865-8E73-6413F8372CE6} (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{514B5E31-5596-422F-BE58-D804464683B5} (Default) REG_EXPAND_SZ %systemroot%\system32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6d2b5079-2f0b-48dd-ab7f-97cec514d30b} DllSurrogate REG_EXPAND_SZ %SystemRoot%\system32\prevhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{7B130458-E09C-4823-A8AF-2583DCD9AEC7} DllSurrogate REG_EXPAND_SZ %SystemRoot%\System32\Eap3Host.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{87BB326B-E4A0-4DE1-94F0-B9F41D0C6059} DllSurrogate REG_EXPAND_SZ %SystemRoot%\System32\Eap3Host.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{A7A63E5C-3877-4840-8727-C1EA9D7A4D50} (Default) REG_EXPAND_SZ %SystemRoot%\System32\fveui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{D3E34B21-9D75-101A-8C3D-00AA001A1652} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mspaint.exe,-59419 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8} (Default) REG_EXPAND_SZ %systemroot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ApplicationContent FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\shell32.dll,-34649 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\explorer.exe TaskbarGroupIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\isoburn.exe FriendlyAppName REG_SZ @%SystemRoot%\System32\isoburn.exe,-352 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\licensemanagershellext.exe\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\licensemanagershellext.exe,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe\shell\edit\command (Default) REG_EXPAND_SZ "%systemroot%\system32\mspaint.exe" "%1" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\photoviewer.dll\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\provtool.exe\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.InputSwitchToastHandler DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\InputSwitchToastHandler.exe,-600 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@advancedkeysettingsnotification.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.LanguageComponentsInstaller DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\LanguageComponentsInstallerComHandler.exe,-600 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Microsoft.Windows.ParentalControls DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\WpcRefreshTask.dll,-32000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.Defender.SecurityCenter DisplayName REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 IconUri REG_EXPAND_SZ %systemroot%\system32\WindowsSecurityIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.AppInitiatedDownload DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-1209 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.Continuum DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.MiracastReceiver DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\MiracastReceiver.dll,-2050 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WirelessDisplayToast.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.NearShareExperienceReceive DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Microsoft-Windows-Internal-Shell-NearShareExperience.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.System.ShareExperience DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\windows.internal.shellcommon.shareexperience.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.AudioTroubleshooter DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\sndvolsso.dll,-2021 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@AudioToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.AutoPlay DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-9914 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BackgroundAccess DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\modernexecserver.dll,-45058 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@BackgroundAccessToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BdeUnlock DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\bdeunlock.exe,-150 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BitLockerPolicyRefresh DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\edptask,-211 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@bitlockertoastimage.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Bthprops DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\bthprops.cpl,-2132 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.BthQuickPair DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-109 IconUri REG_EXPAND_SZ %SystemRoot%\system32\BluetoothSystemToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Calling DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\TelephonyInteractiveUserRes.dll,-10006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Compat DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\pcaui.dll,-103 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@AppHelpToast.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceConsent DisplayName REG_EXPAND_SZ %SystemRoot%\system32\consentux.dll,103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceEnrollmentActivity DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Internal.Management.dll,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@EnrollmentToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DeviceManagement DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\DMAppsRes.dll,-26094 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Devices DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-9520 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.DisplaySettings DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wpnuserservice.dll,-50 IconUri REG_EXPAND_SZ %SystemRoot%\ImmersiveControlPanel\images\logo.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.EnterpriseDataProtection DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\edptask,-201 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@edptoastimage.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Explorer DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22067 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.FodHelper DisplayName REG_EXPAND_SZ @%SystemRoot%\System32\fodhelper.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@optionalfeatures.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.HelloFace DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\facecredentialprovider.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.LocationManager DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\locationframework.dll,-203 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.LowDisk DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-51467 IconUri REG_EXPAND_SZ %SystemRoot%\ImmersiveControlPanel\images\logo.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.MobilityExperience DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ContentDeliveryManager.Utilities.dll,-36873 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpAppAcquire DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1010 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpAppLaunch DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpDevicePairing DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-2000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.NfpReceiveContent DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ProximityUxHost.exe,-1020 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Print.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\prnntfy.dll,-140 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.RasToastNotifier DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\RasApi32.dll,-1000 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@VpnToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SecurityAndMaintenance DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\actioncentercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SecurityCenter DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\actioncentercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.ServiceInitiatedHealing.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\sihclient.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WindowsUpdateToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Share DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-2701 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.SoftLanding DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12601 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Suggested DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\ContentDeliveryManager.Utilities.dll,-36872 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Usb.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\usbui.dll,-500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WiFiNetworkManager DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wifinetworkmanager.dll,-4099 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WindowsTip DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\twinui.dll,-12601 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.WindowsUpdate.Notification DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\musnotificationux.exe,-100 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WindowsUpdateToastIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Winlogon DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\wlrmdr.exe,-1003 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppUserModelId\Windows.SystemToast.Wwansvc DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\mbaeapi.dll,-500 IconUri REG_EXPAND_SZ %SystemRoot%\system32\@WwanNotificationIcon.png HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-internet-signup DllFile REG_EXPAND_SZ %SystemRoot%\system32\iedkcs32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoProxyTypes\Application/x-ns-proxy-autoconfig DllFile REG_EXPAND_SZ %SystemRoot%\system32\jsproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-68 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\edit\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\print\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\NOTEPAD.EXE /p %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\batfile\shell\runas\command (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmd.exe /C "%1" %* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\printbrmui.exe,-10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\brmFile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\printbrmui.exe,-104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\cabview.dll,-20 InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\cabview.dll,-21 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\cabview.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CABFolder\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe /idlist,%I,%L HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-13 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-17 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\campfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CATFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCAT %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\colorui.dll,-12 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\colorui.dll,-16 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cdmpfile\shell\Install Profile MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mscms.dll,-170 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\add\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtAddCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CERFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenCER %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CertificateStoreFile\shell\open\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\rundll32.exe cryptext.dll,CryptExtOpenSTR %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chkfile FriendlyTypeName REG_EXPAND_SZ @%systemroot%\system32\ulib.dll,-1000 InfoTip REG_EXPAND_SZ @%systemroot%\system32\ulib.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\System32\hhctrl.ocx,-452 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\hh.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command (Default) REG_EXPAND_SZ "%SystemRoot%\hh.exe" %1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000301-A8F2-4877-BA0A-FD2B6645FB94}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000315-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000316-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000319-0000-0000-C000-000000000046}\AuxUserType\2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\combase.dll,-5101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021400-0000-0000-C000-000000000046}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0002DF02-0000-0000-C000-000000000046}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\browser_broker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0010668C-0801-4DA6-A4A4-826522B6D28F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00108226-EE41-44A2-9E9C-4BE4D5B1D2CD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0010890e-8789-413c-adbc-48f5b511b3af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{001DC1E0-0F8C-4720-98DB-39D32A661422}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{003e0278-eca8-4bb8-a256-3689ca1c2600}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006E61DF-1A43-4F2C-B26F-780BAEA3A92D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0070746C-9A38-4236-822A-72CC4E5C8087}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00722F5F-CB8F-44D3-AC27-CC37F76CFE92}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{009F3B45-8A6B-4360-B997-B2A009A16402}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A77FF7-A514-493e-B721-CDF8CB0F5B59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\systemcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00B8308C-09F2-4c18-A7B0-4594D6B22EFE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2763-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2764-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00BB2765-6A77-11D0-A535-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00CA399E-4CC0-43D2-902B-CEA3D36DC9E4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00da2f99-f2a6-40c2-b770-a920f8e44abc}\MergedFolder DefaultOverlayIcon REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-169 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00eebf57-477d-4084-9921-7ab3c2c9459d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00f2b433-44e4-4d88-b2b0-2698a0a91dba}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\rundll32.exe" "%ProgramFiles%\Windows Photo Viewer\PhotoAcq.dll",AutoplayComServerW {00f2b433-44e4-4d88-b2b0-2698a0a91dba} ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0102563D-F16D-434d-82A2-37968BD3E31E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{011BE22D-E453-11D1-945A-00C04FB984F9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0131BE10-2001-4C5F-A9B0-CC88FAB64CE8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01458CF0-A1A2-11D1-8F85-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01575CFE-9A55-4003-A5E1-F38D1EBDCBE1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MsCtfMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{016fd94e-b02a-4ab8-94c6-149fdab56b8d}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01776DF3-B9AF-4E50-9B1C-56E93116D704} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\EditionUpgradeHelper.dll,-3100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01776DF3-B9AF-4E50-9B1C-56E93116D704}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\EditionUpgradeHelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{017F10E3-89E4-49F0-B545-618DE31FD27C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{018BA427-F311-44FD-8AA1-ABEEB57739D9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01A30791-40AE-4653-AB2E-FD210019AE88}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mgmtrefreshcredprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01A3BF5C-CC93-4C12-A4C3-09B0BBE7F63F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01afc156-f2eb-4c1c-a722-8550417d396f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\actioncenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01B90D9A-8209-47F7-9C52-E1244BF50CED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01C6CA30-792B-404B-A5C2-0A34434B3AA4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01D0A625-782D-4777-8D4E-547E6457FAD5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-351 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01D0A625-782D-4777-8D4E-547E6457FAD5}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-6 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01E04581-4EEE-11d0-BFE9-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01F3E95C-7D8F-46e6-A408-9BA5D1FA5067}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01FA60A0-BBFF-11D0-8825-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{021003e9-aac0-4975-979f-14b5d4e717f8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{021812bc-ae59-4f3c-9e04-72adc0ac9da5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0245858B-948D-4f36-A574-1A71EF5111CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fvecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\powercpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{025A5937-A6BE-4686-A844-36FE4BEC8B6D}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02665D88-6A3E-4DFC-BEFF-8CA2118A5061}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02783ae2-02a6-4403-a482-e08bf20ffd06}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02805F1E-D5AA-415B-82C5-61C033A988A6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0289a7c5-91bf-4547-81ae-fec91a89dec5}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02A3586C-D264-40BF-97F7-FE40F7E3A882}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsdyn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02df6db6-9405-4812-b3f6-500e8615b7af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E6EC4C-96E4-42E8-B533-336916A0087D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\lsmproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E7E69E-E80A-48E3-8B1D-6448C25B1710}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02E7E69E-E80A-48E3-8B1D-6448C25B1710}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03012959-F4F6-44D7-9D09-DAA087A9DB57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-50691 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03372354-C040-4C4E-94D1-27DB5A879A33}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Win32CompatibilityAppraiserCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0340F119-A598-4ed9-B0AC-6F6A12D3E755}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0358b920-0ac7-461f-98f4-58e32cd89148}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wininet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0363215C-3B87-4C3D-8300-FF3FD3E02B91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{037c3380-0855-4e8a-8c80-0aa3f697cd27}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837511-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837511-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837513-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837513-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0383751C-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0383751C-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837521-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837521-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837525-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837525-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837526-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837526-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837527-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837527-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837528-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837528-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837529-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837529-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837530-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837530-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837531-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837531-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837532-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837532-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837538-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837538-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837539-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837539-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837546-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837546-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837547-098B-11D8-9414-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pla.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03837547-098B-11D8-9414-505054503030}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\plasrv.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03C036F1-A186-11D0-824A-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\tapiui.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\tapiui.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03e15b2e-cca6-451c-8fb0-1e2ee37a27dd}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tapilua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E7DAD7-17A6-4F91-A879-F276B6FD62F8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\delegatorprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0413965e-17f3-46b2-b39f-f8aced04194c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{046AEAD9-5A27-4D3C-8A67-F82552E0A91B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Storage.Search.dll,-30523 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04731B67-D933-450a-90E6-4ACD2E9408FE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04788120-12C2-498D-83C1-A7D92E677AC6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipcima.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047DEC5A-95C1-4C86-827F-7B8C92EBA67A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\winrssrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047ea9a0-93bb-415f-a1c3-d7aeb3dd5087}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fsquirt.exe,-107 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{047ea9a0-93bb-415f-a1c3-d7aeb3dd5087}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fsquirt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04A7F8A1-F465-4079-A4FD-B8F4700DF426}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04AF2416-5F4C-4FEB-A9A8-BBF9893A4E6B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05058F23-20BE-11d2-8F18-0000F87A4335}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Pimstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0520af9e-e3da-4b32-8be8-0f3e475bfc5f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05238C14-A6E1-11D0-9A84-00C04FD8DBF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{055E80CA-DD63-4C25-93AB-448BBDB7AA17}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{056440FD-8568-48e7-A632-72157243B55B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{057EEE47-2572-4AA1-88D7-60CE2149E33C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wininet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\taskbarcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\taskbarcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05d7b0f4-2121-4eff-bf6b-ed3f69b894d9}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\taskbarcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05DF8D13-C355-47f4-A11E-851B338CEFB8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05F3561D-0358-4687-8ACD-A34D24C488DF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05FDB3A2-5639-4D24-AF7D-4C6FB0684661}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06334b1f-d73e-42f5-a448-5bd2df3c5ec7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapsimextdesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{063B79F5-7539-11D2-9773-00A0C9B4D50C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{063B79F6-7539-11D2-9773-00A0C9B4D50C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06405088-BC01-4E08-B392-5303E75090C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0655E396-25D0-11D3-9C26-00C04F8EF87C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06587E71-F043-403A-BF49-CB591BA6E103}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06622D85-6856-4460-8DE1-A81921B41C4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{067B4B81-B1EC-489f-B111-940EBDC44EBE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\cewmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06946266-393A-456E-92BC-91DDDBF6893C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06A03425-C9EB-11d2-8CAA-0080C739E3E0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06C792F8-6212-4F39-BF70-E8C0AC965C23} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\UserAccountControlSettings.dll,-70 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06C792F8-6212-4F39-BF70-E8C0AC965C23}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UserAccountControlSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{06CCA63E-9941-441B-B004-39F999ADA412}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mmdevapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0700F42F-EEE3-443a-9899-166F16286796}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07252659-bb6b-4b79-b78b-623f6699a579}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0725C3CB-FEFB-11D0-99F9-00C04FC2F8EC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07398dcf-2e0b-4ece-99dd-56b262db948b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{076C2A6C-F78F-4C46-A723-3583E70876EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{078759d3-423b-48ad-ab6a-5638c2884dbe}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0794B86D-0158-4EC1-8D52-E4025DCE746A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{079AA557-4A18-424A-8EEE-E39F0A8D41B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07D26616-6136-11D1-8C9C-00C04FC3261D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07FFDD7A-0300-4FDC-B113-1C5364E61F54}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{080d0d78-f421-11d0-a36e-00c04fb950dc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0823B6F8-F499-4d5e-B885-EA9CB4F43B24}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.350_none_5f2790f858f0e2a7\TiWorker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{087798c4-3c0a-48d4-abc9-ed60912fa139}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\VmApplicationHealthMonitorProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088e3905-0323-4b02-9826-5d99428e115f}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088e3905-0323-4b02-9826-5d99428e115f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{088E8DFB-2464-4C21-BAD2-F0AA6DB5D4BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d450b7-f7e5-4424-8229-11888adb7c14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08d5bfbf-fbca-4322-9f70-ca9f66f8ed6a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08DFCEF6-4F00-436F-B621-B1585343C2FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08F91D9D-1F00-48C2-B90F-CC75FFAFE727}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FC06E4-C6B5-40BE-97B0-B80F943C615B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ProximityUxHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09017262-fdb4-4ff2-9013-26332c926ee7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09156f15-2b3d-4864-a60e-82b82baa18da}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09474572-B2FB-11D1-A1A1-0000F875B132}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0947c622-f98a-48a5-9df7-60e5fe202e07}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0968e258-16c7-4dba-aa86-462dd61e31a3} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\urlmon.dll,-4200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09799AFB-AD67-11d1-ABCD-00C04FC30936}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0991CE67-3649-4138-85A8-E17D037298DB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0997898B-0713-11d2-A4AA-00C04F8EEB3E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09a28848-0e97-4cef-b950-cea037161155}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09A5DFC5-8BA2-47DD-BF84-FFD7E0B24481}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.cortana.onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09A81E78-E1D3-44D4-84E3-C33A04A4CC6E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CIWmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09F81337-D568-41d1-A177-D6779AF55847}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A14D3FF-EC53-450f-AA30-FFBC55BE26A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A29F9BD-86B3-4384-B25D-EF1FFE020266}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WSDScanProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A4B5474-4226-4D28-B4FC-369CC68A7211}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A556D98-CFEE-4D84-82A7-00377F939198}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A6C76BD-9A96-4FD9-930B-F60AF68F6388}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A860B80-3773-4DDE-85B4-E68C520A858C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A88C858-7D0C-4549-9499-7DB05F0CB0BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0a9bbb1e-03ee-4201-9900-abbff56c9c6c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AC71593-60FC-4a6a-BF85-A0B93BCC3785}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ADD8D9B-E3C3-43B5-BBCE-1E158E027A64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UserDataPlatformHelperUtil.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0af96ede-aebf-41ed-a1c8-cf7a685505b6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFACED1-E828-11D1-9187-B532F1E9575D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AFCCBA6-BF90-4A4E-8482-0AC960981F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B124F8F-91F0-11D1-B8B5-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B2C35D2-C8BC-4470-BFC0-D6BB1235E5CE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0b2c9183-c9fa-4c53-ae21-c900b0c39965}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B4CD745-723E-4D23-B898-47BECD7F0DEF}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\vpnclientpsprovider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0B5A7836-4C16-4560-90B2-0F5DAF6D6D1B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0bdc6fc7-83e3-46a4-bfa0-1bc14dbf8b38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\logoncontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0bf754aa-c967-445c-ab3d-d8fda9bae7ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BFCF7B7-E7B6-433a-B205-2904FCF040DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c0b25f5-e762-4004-96cd-00ffc1ecb5bf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C11C759-23B0-4731-8D48-5FE3EA62051F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c194cb2-2959-4d14-8964-37fd3e48c32d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C1A0EF4-B44F-4179-BDDD-31C27DE7A6D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\InternetMailCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C313C67-199B-4e68-884D-D36914E26EDD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c39a5cf-1a7a-40c8-ba74-8900e6df5fcd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-361 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-562 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C3B05FB-3498-40C3-9C03-4B22D735550C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C41D1E6-9D16-41ED-9CDD-D0665039857B}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tcpipcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C5672F9-3EDC-4b24-95B5-A6C54C0B79AD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C657D21-CE8E-4D86-AEEB-63FFBC70846D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0c9ac398-8c78-4b4b-b8c6-675ed1b734a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA545C6-37AD-4A6C-BF92-9F7610067EF5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD069CF-AC9B-41F4-9571-3A95A62C36A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD397F8-20A2-46F0-BAE8-952DEEEDA2C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ConnectedAccountState.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cabview.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0cdb500e-123f-4e98-b446-0f3eae3c7ebc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CE7A4A6-03E8-4A60-9D15-282EF32EE7DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CF07551-EEF2-420C-B5AB-7E4FEB2249CF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CF32AA1-7571-11D0-93C4-00AA00A3DDEA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sysmon.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CFAE939-931E-4305-8D05-8C76C254EB34}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D0E47ED-7220-411f-8F81-1118095DA5E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D41EBA2-17EA-4B0D-9172-DBD2AE0CC97A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\srhelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D45D530-764B-11d0-A1CA-00AA00C16E65}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D6417E3-866C-4959-9816-4BF5B85CDAD7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsrx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D722F1A-9FCF-4E62-96D8-6DF8F01A26AA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D816B02-D487-44FB-8BD3-7EADB66604CA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0d81ea0d-13bf-44b2-af1c-fcdf6be7927c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0d9948a9-e79f-4a06-8784-c32583d034f2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-1507 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DB7E03F-FC29-4DC6-9020-FF41B59E513A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-198 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DB7E03F-FC29-4DC6-9020-FF41B59E513A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DBD7044-8EA5-4573-A924-FE8565CCE18F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0dbecec1-9eb3-4860-9c6f-ddbe86634575}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msheif.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DC1AB8B-A52D-4BA8-BD76-E2819386FB2F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DD1B55E-2EB8-42E2-B8D0-F11594A29477}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-30348 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32517 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-80 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0DF44EAA-FF21-4412-828E-260A8728E7F1}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e119e63-267a-4030-8c80-5b1972e0a456}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E1487F2-9865-4CD5-B99A-9C5EB063A2BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E1EEFB2-E336-481C-B178-36261EC5A843}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E21C2A5-88A5-408D-A3F4-480755678C61}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlidprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E25DC18-9F5E-48B1-80B3-D124E81B773B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E32D9F9-10FB-4b90-8B24-826B07B084D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e3be0d7-030e-4ca3-a911-d86e24ae0a3c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCCFG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E5AAE11-A475-4c5b-AB00-C66DE400274E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E5CBF21-D15F-11D0-8301-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e6daa63-dd4e-47ce-bf9d-fdb72ece4a0d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fdprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0e971350-4039-4a03-85fe-4c210917c26d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E9847B3-13E8-44E6-9659-2B60A140A573}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\DMWmiBridgeProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0eb06e8d-d00a-11da-a46c-0040f4b33241}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\TSErrRedir.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EEA25CC-4362-4a12-850B-86EE61B0D3EB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EEF5FBE-18F3-478A-BD28-4899C2E90323}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f3079cc-f843-4c8e-9a5e-4af1e37b4c95}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f3ed1f2-afdd-4b0c-b6d9-229c1bc58a08}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F469577-F241-4632-941A-C592F64FC1C4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VoiceActivationManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F563B5F-8EE2-4516-BA0A-544DE058C75B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\FileHistory.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F563B5F-8EE2-4516-BA0A-544DE058C75B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcleanup.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F6221DB-8EE7-450D-A28A-2898956004F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F7434B6-59B6-4250-999E-D168D6AE4293}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F7650EE-9AFA-47B4-9BE7-F74D9D3C41D7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F92030A-CBFD-4AB8-A164-FF5985547FF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f92ff8d-2f19-4b9a-b9dd-3efc2b3becec}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FA53099-5317-46AF-9376-9A04A4B550F9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0fafd998-c8e8-42a1-86d7-7c10c664a415}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.ui.picturepassword.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FC988D4-C935-4b97-A973-46282EA175C8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0FDE5092-AA2A-11D1-A7D4-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{102D1D13-BD88-435f-99C1-DE69F1886168}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{103E1E59-66D1-4143-B772-8D846E96FEBF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{104846ab-42b1-4e38-a80d-136f78c3f258}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10493933-661B-4083-9CE0-EFE48ADD0770}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1050489C-0702-493F-94AB-58A9C5BE620C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10898C3A-D2EB-483A-BC44-66BCCF03D6F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Devices.HumanInterfaceDevice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10964DDD-6A53-4C60-917F-7B5723014344} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10964DDD-6A53-4C60-917F-7B5723014344}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10A59D3A-E15C-44EC-B6C8-950E713DCA7D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\settingsync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10E59D21-3860-4ed8-BD52-883E116A892E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11103421-354C-4CCA-A7A3-1AFF9A5B6701}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1123D0C1-886C-42C3-98E6-7109780E8BE2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SmartCardSimulator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11275A82-5E5A-47fd-A01C-3683C12FB196}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{114F5598-0B22-40A0-86A1-C83EA495ADBD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{115e13cf-cfe8-4821-b0da-e06aa4d51426}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RdpSaProxy.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{116F8D13-101E-4fa5-84D4-FF8279381935}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11a25a1d-b9a3-4edd-af83-3b59adbed361}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11d162b6-1cea-4b4a-8037-2518ecd6554b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11dbb47c-a525-400b-9e80-a54615a090c0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-30309 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11dbb47c-a525-400b-9e80-a54615a090c0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1202DB60-1DAC-42C5-AED5-1ABDD432248E}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\Vault.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Vault.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1206F5F1-0569-412C-8FEC-3204630DFB70}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{120CED89-3BF4-4173-A132-3CB406CF3231}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{122EC645-CD7E-44D8-B186-2C8C20C3B50F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1249B20C-5DD0-44FE-B0B3-8F92C8E6D080}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{124E2045-8D63-4C23-B420-BBCD6A0ED61A}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\qoswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12518493-00B2-11d2-9FA5-9E3420524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{125B0F61-0EC3-4f07-9A49-AFB340D9E57F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhlisten.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\npmproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\DiagCpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\DiagCpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12C21EA7-2EB8-4B55-9249-AC243DA8C666}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12D73610-A1C9-11D3-BC90-00C04F72DF9F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12DD4DBB-532B-4FCE-8653-74CDB9C8FE5A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12fc5e89-5446-4a7c-ba46-207a29e2945d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{130F6206-B21A-4B21-9D98-526B5AECC0BB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{133eac4f-5891-4d04-bada-d84870380a80}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{135698D2-3A37-4d26-99DF-E2BB6AE3AC61}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1362ada1-eb60-456a-b6e1-118050db741b}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13639463-00DB-4646-803D-528026140D88} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63520 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{136BFD13-0C9E-49B3-8C4E-74A235AFEA37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13709620-C279-11CE-A49E-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{139D8403-E74F-41d2-B103-8790C5C7A517}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13a4bbe8-6527-40cb-a996-1602829541ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{13EE36D8-2EFD-44F6-AF3B-75FF35E6C691}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14010e02-bbbd-41f0-88e3-eda371216584}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14074e0b-7216-4862-96e6-53cada442a56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14074e0b-7216-4862-96e6-53cada442a56}\Instance\InitPropertyBag DefaultIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14795a8f-78f3-47bd-acb6-e767414fe293}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A9C5D-36F4-4e3e-BD47-F5F207425085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD520-A2AB-11CE-B11F-00AA00530503}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD520-A2AB-11CE-B11F-00AA00530503}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD52A-A2AB-11CE-B11F-00AA00530503}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{148BD52A-A2AB-11CE-B11F-00AA00530503}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mstask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14ce31dc-abc2-484c-b061-cf3416aed8ff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shutdownux.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14DD9A1C-7CFF-41be-B1B9-BA1AC6ECB571}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14E74C62-DC97-43B0-8F2F-581496A65D60}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{150F28F1-49A5-4C28-BE1A-CFA854A1D04B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tpmvsc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\RmtTpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\RmtTpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1531d583-8375-4d3f-b5fb-d23bbd169f22}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1535D95C-2365-447D-9800-B75501A19C0C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15756be1-a4ad-449c-b576-df3df0e068d3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{157D9A5F-5139-4AD7-AC07-6E8B996FE99F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15A58581-C545-46FE-BD72-FC6416CD2AF7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15b0bb4c-0f7d-11D1-b21f-00C04Fb9473f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15deef81-c4c4-431f-b0c9-b62cb9ea3aa9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15E16AEC-F2F0-4E52-B0DF-029D11E58E4B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4} InfoTip REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-155 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-156 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15eae92e-f17a-4431-9f28-805e482dafd4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{15fc1bac-8d83-4e87-8cc2-a70c9f66f943}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1649d1cf-deaf-4a68-abe8-5c9f68572fd1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16671E5F-0CE6-4CC4-9768-E89FE5018ADE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{167c0a56-c490-4623-9225-8ffdc546e56c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1685D4AB-A51B-4af1-A4E5-CEE87002431D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{168F4281-EC0D-46D3-951D-FBCB2F7C9079}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1698790a-e2b4-11d0-b0b1-00c04fd8dca6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{169A0691-8DF9-11d1-A1C4-00C04FD75D13}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\TpmVscMgrSvr.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\TpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\TpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16CA098E-5156-4EDC-B064-741AB2B08A38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16D5A2BE-B1C5-47b3-8EAE-CCBCF452C7E8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\webcamui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{172BDDF8-CEEA-11D1-8B05-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17383A17-6B93-4193-9B60-4D4F99C05163}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{173FD26E-B0F7-42BF-BFD0-D91DF64CC298}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tpmvsc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1765E14E-1BD4-462E-B6B1-590BF1262AC6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1767B93A-B021-44EA-920F-863C11F4F768}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{178167bc-4ee3-403e-8430-a6434162db17}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\webplatstorageserver.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sppcomapi.dll,-3200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\sppcomapi.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179CC917-3A82-40E7-9F8C-2FC8A3D2212B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17B21A1B-6C59-48E0-A448-6BC9AD2C5BFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17B75166-928F-417d-9685-64AA135565C1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17C82257-654E-4C47-8E23-DCA24EAA76A0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17CCA47D-DAE5-4E4A-AC42-CC54E28F334A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\EditionUpgradeManagerObj.dll,-3100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17CCA47D-DAE5-4E4A-AC42-CC54E28F334A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\EditionUpgradeManagerObj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\sud.dll,-10#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sud.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-24 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17cd9488-1228-4b2f-88ce-4298e93e0966}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\sud.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17f418ed-5cd0-4067-be51-4c96d386ebc1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{181b54fc-380b-4a75-b3f1-4ac45e9605b0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{182C40F0-32E4-11D0-818B-00A0C9231C29}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{184132B8-32F8-4784-9131-DD7224B23438}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1860E246-E924-4F73-B2C5-93E0577E3AA1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18619969-3835-41E5-B457-44FE0DB77653}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxStreamingDataSourcePS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{186cda7f-de22-4b95-99b7-49efba0a08f4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{188890A9-EFC6-4B11-8E76-D8579F739E86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18907f3b-9afb-4f87-b764-f9a4e16a21b8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{189255E0-6EF0-41C5-8A1E-3B391D691215}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18FBD4BC-16EA-47f2-8AD0-868C1269C79A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\easinvoker.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1910E202-236A-43E6-9469-FE0B3149F3D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WwanRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19129EAC-A717-4BBD-87E0-615E3C939668}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19198abd-d4b9-4e14-b156-725f85205f0f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19204EDD-187C-40B7-ADA4-79772BD10FB2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.Devices.SmartCards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19227DC0-FC88-4AAA-8C2D-A0DB913AA2FF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19352205-42B0-4690-9AA4-D7DB9AE5F259}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{193B4137-0480-11D1-97DA-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{195C8ACD-5F96-4C67-BBCF-B0CD7073500C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1968106d-f3b5-44cf-890e-116fcb9ecef1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sud.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{196f128d-dce9-4090-b061-3d29c6ca32c2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19833350-BF9B-42A1-BDF0-BD1FCBE1FD31}\LocalServer32 (Default) REG_EXPAND_SZ "%SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe" ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\ImmersiveTpmVscMgrSvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19A76FE0-7494-11D0-8816-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19AD99AE-0DD2-495A-AAC4-015E479722FD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VscMgrPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19b9dcc7-6f37-4dc7-9da6-8af601c5fce2}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WWanMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\sharemediacpl.dll,-4 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\wmploc.dll,-2957 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19BA17F2-2602-4E77-9027-103894607626}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sharemediacpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19C65143-6230-42FA-A58E-7D9FA9BE2EB5}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wkspbroker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19eb3aee-148e-42fe-a569-a7dc9b25d658}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A0391BF-9564-4294-B0A4-06C298929EF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1a184871-359e-4f67-aad9-5b9905d62232}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A1F4206-0688-4E7F-BE03-D82EC69DF9A5}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A34F5C1-4A5A-46DC-B644-1F4567E7A676}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A3F11DC-B514-4B17-8C5F-2154513852F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A68CF90-753A-4523-A4A4-40CAB4BC6EFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ms3dthumbnailprovider.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ab4a8c0-6a0b-11d2-ad49-00c04fa31a86}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AB78400-B5A3-4D91-8ACE-33FCD1499BE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AC32B1A-E379-4CAD-B655-F978A30856EC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SmartCardSimulator.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AD699A6-31F7-4EF0-93E9-FFD576F35D30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ADD3454-9CD8-449B-8777-341DAC8A3B0A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1AF81E4E-FC45-48ee-B236-A2A663494390}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B02C1F5-555B-4802-96A7-ADDDCCBCA38A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Dot3MM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1A897E-FBEE-41CF-8C48-9BF764F62B8B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\softkbd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1b283861-754f-4022-ad47-a5eaaa618894}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B2AFB92-0B5E-4A30-B5CC-353DB4F9E150}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B57B2A1-E763-4676-9064-297F1B413632}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B6FC61A-648A-4493-A303-A1A22B543F01}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1b9f2bf2-27f5-4dec-a175-3cf7bb8cfd3e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BA783C1-2A30-4ad3-B928-A9A46C604C28} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-13056 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BA783C1-2A30-4ad3-B928-A9A46C604C28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC972D6-555C-4FF7-BE2C-C584021A0A6A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BCD547A-62F6-4F2D-A0E3-B4930A3F3C33}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\EventTracingManagement.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1bef2128-2f96-4500-ba7c-098dc0049cb2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C0F439D-7C29-4bde-8952-4EEB6A49E048}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C16EBAB-7C12-4F21-A2A9-56D67931108F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\HttpsDataSource.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c1800c1-3258-44c2-be80-3deadb6c5e39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c391f2b-801a-416c-9838-6be810293dfc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c5346b8-63e1-4c2b-b125-3c5db94e946c}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\applets\imtcskf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\lpksetup.exe,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C749B87-568C-4865-8E73-6413F8372CE6}\LocalServer32 (Default) REG_EXPAND_SZ "%systemroot%\system32\lpksetup.exe" ServerExecutable REG_EXPAND_SZ %systemroot%\system32\lpksetup.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CC6B704-D0F5-4dc3-A521-13620D89E8BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1cc78354-9ded-4c1b-bd81-c67b0289a4e5}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CD0938D-1AC1-49DE-AA04-F2C92D4A02D1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FirewallControlPanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CE75EE1-E27E-4D22-804F-C76D53192D55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1cedc5da-3614-11d2-bf96-00c04fd8d5b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12689 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CFC4CDA-1271-11D1-9BD4-00C04FB683FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d16438c-54dc-404f-83a9-c041e77a32dd}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d27f844-3a1f-4410-85ac-14651078412d}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\acppage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d2b8d89-9324-46a0-b797-5725d8c8d881}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D3529C7-671A-468d-AD2A-499A96B073D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WLanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D5532BB-1E08-4002-8445-8BA35E462045}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hotplug.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D583ABC-8A0E-4657-9982-A380CA58FB4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D6322AD-AA85-4EF5-A828-86D71067D145}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D858A97-49A3-4805-8390-3BD5976E7ABB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1d8a9b47-3a28-4ce2-8a4b-bd34e45bceeb}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1DCB3A00-33ED-11D3-8470-00C04F79DBC0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\wmdmps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1DF7C823-B2D4-4B54-975A-F2AC5D7CF8B8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E1714A3-50B9-480b-A94A-636D9A9B56D1} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-625 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E1714A3-50B9-480b-A94A-636D9A9B56D1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E35B0D0-49F2-4ACB-A9A5-4D2DA8331B02}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E589E9D-8A8D-46d9-A2F9-E6D4F8161EE9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E8F0D70-7399-41BF-8598-7949A2DEC898}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1e94e93c-852d-47fb-9197-7edeb41101b0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ea5fb56-9ee8-47dc-8998-f45585c2e3e0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MFPlay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1ee7337f-85ac-45e2-a23c-37c753209769}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1eeb5b5a-06fb-4732-96b3-975c0194eb39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1EF94880-01A8-11D2-A90B-00AA00BF3363}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\dsprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f01f4e9-8b75-4e20-8eb0-e49f17f2be61}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F046ABF-3202-4DC1-8CB5-3C67617CE1FA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dwmapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F068127-5760-490e-998C-6E35B845F49E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f09b058-f3fd-4a9d-a8ba-a8a05f8fe283}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F0BC6AD-46D4-488B-BE1F-047FC7505E60}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\rshx32.DLL,-59 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\imageres.dll,-3 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f2e5c40-9550-11ce-99d2-00aa006e086c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rshx32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f3427c8-5c10-4210-aa03-2ee45287d668}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f3d8aa5-9ebf-4ee4-85c2-ea40379aede8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdiageng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F5EEC01-1214-4D94-80C5-4BDCD2014DDD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroleui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F7D1BE9-7A50-40b6-A605-C4F3696F49C0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f849cce-2546-4b9f-b03e-4004781bdc40}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe -secured ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F872270-D68C-4C28-85D9-70CD5FC47A70}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f9a2c18-d89e-463e-b4f4-bb90152acc64}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmkvsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\wlanpref.dll,-20002 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wlanpref.dll,-20001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FA9085F-25A2-489B-85D4-86326EEDCD87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fb2a002-4c6c-4de7-85c2-cb8db9a4f728} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\dskquoui.dll,-40615 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\dtsh.dll,-40001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\dtsh.dll,-40002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955b-61ff-11da-978c-0008744faab7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1fda955c-61ff-11da-978c-0008744faab7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dtsh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FE45ED3-B842-4CF2-8DF6-43E3D6D10E64}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audiokse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20076C7E-4851-41ed-9EB8-F4E5F2BB0286}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{201600d8-6eff-48ce-b842-e14d37a0682d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpninprc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20404060-F24F-4F89-84C6-8AF80B0A17CB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audiokse.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20425B74-41F5-426F-A145-13BBB45A2F66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{205447d9-4af1-4f97-a773-e10ff2e44ead}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2087c2f4-2cef-4953-a8ab-66779b670495}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\winhttpcom.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22912 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9217 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-25 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-29188 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{208D2C60-3AEA-1069-A2D7-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{209D8461-E6FB-49DD-A824-C9962A9D2F2B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20b1cb23-6968-4eb9-b7d4-a66d00d07cee}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22913 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-9216 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find (Default) REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-8503 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage (Default) REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command (Default) REG_EXPAND_SZ %SystemRoot%\system32\CompMgmtLauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20E25881-F081-448e-85C9-4707A9400593}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\profprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20E8B2FE-7568-46AE-A0DB-76B7F469B92D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{210DDC43-689C-46E3-BDC1-38C16C8F4C96}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2135f72a-90b5-4ed3-a7f1-8bb705ac276a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovslegacy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{214DFBF5-5983-4B54-996D-B7FC67E0A1FD}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21690A61-3629-4E3B-A72D-BBC8A88DB81F} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63528 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2001-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2003-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2004-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217700E0-2005-11DF-ADB9-F4CE462D9137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{217FC9C0-3AEA-1069-A2DB-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21B22460-3AEA-1069-A2DC-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32012 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21EC2020-3AEA-1069-A2DD-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21F71DD1-2398-4150-825A-CBDE00272EE4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{220898A1-E3F3-46B4-96EA-B0855DC968B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8062 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8036 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-26 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2227A280-3AEA-1069-A2DE-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\prnfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2269DAA3-2A9F-4165-A501-CE00A6F7A75B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{227C5B36-F148-4B4B-AEC1-943E394D9885}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wfascim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{227ec397-6791-4ac6-a762-2f70f99015c2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-37217 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22877a6d-37a1-461a-91b0-dbda5aaebc99}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{228D9A81-C302-11cf-9AA4-00AA004A5691}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{228D9A82-C302-11cf-9AA4-00AA004A5691}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22A7E88C-5BF5-4DE6-B687-60F7331DF190}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22C21F93-7DDB-411C-9B17-C5B7BD064ABC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22c6c651-f6ea-46be-bc83-54e83314c67f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22D8B4F2-F577-4adb-A335-C2AE88416FAB}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22ff30d1-a59e-4580-9190-da3042ceca64}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{233664b0-0367-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23571E11-E545-4DD8-A337-B89BF44B10DF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23B77E99-5C2D-482D-A795-62CA3AE5B673}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipiprt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23C1F3CF-C110-4512-ACA9-7B6174ECE888}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23CF860E-9D2C-451A-8E83-C79C848D85A6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sxproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24264891-E80B-4fd3-B7CE-4FF2FAE8931F}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{242A95A9-8D6C-4974-A5DA-D9B6C9E619B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24400D16-5754-11d2-8218-00C04FB687DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24AC8F2B-4D4A-4C17-9607-6A4B14068F97}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24CA8AEF-F6D8-4732-8DB5-9D83EFD8CFBC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24D568C5-F3AE-4F91-9CD9-AA18876DA7C2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{24DF3111-8474-4955-AA18-F6750BAD2A2B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{250e91a0-0367-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25150040-b8f1-418e-af61-b51071ac1ee2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{251b1498-5cba-4bee-8242-2f57773151aa}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25256c24-3b75-49b3-a433-4bb2f8865896}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25585dc7-4da0-438d-ad04-e42c8d2d64b9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7020 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-177 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7022 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll,-48 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7023 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\explorer.exe,-7025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-254 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-24 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{255a6fda-6f93-4e8a-9611-ded1169eefb4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25ab468c-3974-4075-be50-193135461727}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25B25D91-69A2-47fa-A375-FDC98189A06F}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25BAAD81-3560-11D3-8471-00C04F79DBC0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mswmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25BE9228-00AF-11D2-BF87-00C04FD8D5B0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25CBB996-92ED-457e-B28C-4774084BD562}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25EC352E-72E1-4724-9A28-4AE730072149}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25ecf786-a925-4706-a269-eef5ad6899db}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IME\IMETC\IMTCCORE.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25F843F3-1ED6-4B4E-8749-DF294C7FEB30}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{263A4743-BC0D-40b6-8F7F-1B2135C204D2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26671179-2ec2-42bf-93d3-64108589cad5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72D4-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E5-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E6-62E8-11D1-AD89-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcons.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266C72E7-62E8-11D1-AD89-00C04FD8FDFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\scrcons.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266EEE40-6C63-11cf-8A03-00AA006ECB65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\kstvtune.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{266EEE41-6C63-11cf-8A03-00AA006ECB65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\kstvtune.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{267cf8a9-f4e3-41e6-95b1-af881be130ff}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26A1F020-DDD8-472D-8B7C-2F98B80024F3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26D32566-760A-40A2-AA82-A40366528916} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63513 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26D32566-760A-40A2-AA82-A40366528916}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\wuapi.dll,-63101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4161 System.AppUserModel.RelaunchCommand REG_SZ %SystemRoot%\system32\control.exe System.AppUserModel.RelaunchDisplayNameResource REG_EXPAND_SZ #%SystemRoot%\system32\shell32.dll,-4161 System.AppUserModel.RelaunchIconResource REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EE0668-A00A-44D7-9371-BEB064C98683}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26EEC7CE-6C67-4568-BA8F-52BEA143D756}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{26fdc864-be88-46e7-9235-032d8ea5162e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27171325-5F06-407C-AA8F-61154A674DE2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsDocumentTargetPrint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{271C3902-6095-4c45-A22F-20091816EE9E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2737EE87-ABA3-4F28-89A6-C370484D85F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{273eb5e7-88b0-4843-bfef-e2c81d43aae5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2744BC6A-4039-11E3-ABAD-8CFB6188709B}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{274fae1f-3626-11d1-a3a4-00c04fb950dc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mlang.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2769280B-5108-498c-9C7F-A51239B63147}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{276C88CA-7533-4A86-B676-66B36080D484}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27949969-876A-41D7-9447-568F6A35A4DC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2797B627-B7FA-4CBF-9472-6B8ACFDF3E41}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27a4e414-20a5-4dc1-b426-e42289729560}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27AAD1C8-3564-4A15-B0B8-F73F90FB95A7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27c98999-2895-4829-b080-5a8b65bd3db0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27D62E77-6AFE-4AAE-AF27-E6CC20A884D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27F71832-6815-48CB-902A-7A1D891BA962}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27FBDB57-B613-4AF2-9D7E-4FA7A66C21AD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\TrustedSignalCredProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{280A7B65-8F00-438F-989B-8EAF9E438A71}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{280ECF1B-B8F6-41B6-BC14-0E58035C4DCC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\PackageStateChangeHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{286AA738-2928-49af-A410-4118F5C31626}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dot3hc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{286F484D-375E-4458-A272-B138E2F80A6A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C} InfoTip REG_EXPAND_SZ @%systemroot%\system32\DevicePairingFolder.dll,-1501 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\DevicePairingFolder.dll,-1500 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\DevicePairingFolder.dll,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28803F59-3A75-4058-995F-4EE5503B023C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DevicePairingFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{288a2d5f-253c-46b4-b58c-2ced3180b993}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289228DE-A31E-11D1-A19C-0000F875B132}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289978AC-A101-4341-A817-21EBA7FD046D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6104 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{289978AC-A101-4341-A817-21EBA7FD046D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28D18BFA-85E3-4419-9AFD-7ECCE53F8D13}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28F4700C-44EB-4BD8-BC25-95812DE98E08}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF90-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF90-7B36-11D2-B20E-00C04F983E60}\VersionList 3.0 REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF91-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2933BF94-7B36-11D2-B20E-00C04F983E60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{293ccd4b-0d59-43c0-997e-3449c780ac65}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{294935CE-F637-4E7C-A41B-AB255460B862}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2959380c-1567-40ec-80b0-05907ad6f9de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2965e715-eb66-4719-b53f-1672673bbefa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2968B3C3-CC07-40BE-B78F-094B7C310479}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{297EE78C-BA95-4E94-81D3-D6E7F089C7B5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2984A9DB-5689-43AD-877D-14999A15DD46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsrx_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{299D0193-6DAA-11d2-B679-006097DF5BD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msieftp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29B5828C-CAB9-11D2-B35C-00105A1F8177}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29D365AE-D23B-4004-8658-5ED2A59CD77C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29EA1611-529B-4113-8EE3-EE0F6DD2C715}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{29F06F0C-FB7F-44A5-83CD-D41705D5C525}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ncprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A614240-A4C5-4C33-BD87-1BC709331639}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\bidispl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A744BD8-158A-4bbf-9513-4A656F6C01D7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2aa2b5fe-b846-4d07-810c-b21ee45320e3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\xmlprovi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2AABFCD0-1797-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2ACFC431-A2E7-4FC6-8C4B-0B4BD201A797}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2af6bcaa-f526-4803-aeb8-5777ce386647}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2AFCECBA-ABA5-404B-8F4F-15BECC9FEE20}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\ndisimplatcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B1C6F4F-4F0D-490F-8D88-A3EAF66130AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MaintenanceUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B1FFCE5-DD0F-4f1f-B150-A87AE69CE009}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B20FE1A-1B2C-4DC5-8595-616B0E182FD1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B32ECC3-C3BB-4701-82BB-EB7FE370D999}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B32ECC3-C3BB-4701-82BB-EB7FE370D999}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2B32ECC3-C3BB-4701-82BB-EB7FE370D999} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B4099B4-ABED-4014-881E-AB96D7CC4E48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C01D35E-79DE-45DE-9D5F-11923C2D0894}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\faultrep.dll,-5000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C3E140B-7A0D-42d1-B2AA-D343500A90CF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5BC43E-3369-4C33-AB0C-BE9469677AF4} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C673043-FC2E-4d67-8920-517D24DEBD2C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ActionCenterCPL.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C786341-0E36-4BE8-AA51-524CC1F2AE15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NPSMDesktopProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2c86c843-77ae-4284-9722-27d65366543c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C875213-FCE5-11d1-A0B0-00C04FA31A86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D0F7985-9EE6-427C-AAAA-A9D72CBFA853}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.Security.Credentials.UI.UserConsentVerifier.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D11CF10-4FE0-45B2-88DF-6FFBF92BE9AB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D12DD17-6C4E-456E-A953-D210E3C64176}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D1F634B-BA35-4BA0-A3B4-B03AC5FE724A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthpanContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2d3468c1-36a7-43b6-ac24-d3f02fd9607a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DA1964A-7232-48BF-9946-D0510557C492}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DB5E62B-0D67-495F-8F9D-C2F0188647AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DCD1DAF-A110-49c0-BFDB-6FDF557B5FDF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2de55398-137e-4c4c-bf72-5cc7f18d9109}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DE92DB3-CD3E-4ad6-80F9-089036E1C81E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DE967D6-9BE7-458A-9B1C-6D3A6FF425F8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DEA658F-54C1-4227-AF9B-260AB5FC3543}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PlaySndSrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2df7b51e-797b-4d06-be71-d14a52cf8421}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2dfb3a35-6071-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E0BC2B7-6C66-4FD1-AF55-C2D671754431}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2e167ea7-85e3-4395-995a-77af9875d79a}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E17C0EF-2851-459b-A3C8-27A41D4BC9F7}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E17C0EF-2851-459b-A3C8-27A41D4BC9F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E1DCDFF-AB5C-47B6-AD3B-169E65344720}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\RemoteWipeCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E8EA1E5-F406-46F5-AF10-661FD6539F28}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E9E59C0-B437-4981-A647-9C34B9B90891} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6121 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E9E59C0-B437-4981-A647-9C34B9B90891}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EBDEE67-3505-43f8-9946-EA44ABC8E5B0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2ED326ED-C4C0-434a-B4CE-FB0318D725A7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EF44DE8-80C9-42D9-8541-F40EF0862FA3} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EF44DE8-80C9-42D9-8541-F40EF0862FA3}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F0888F4-2C5B-4353-A395-40CF3B6BA29E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F096B28-C65D-4C05-A37E-7E88735E32FA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F2165FF-2C2D-4612-87B2-CC8E5002EF4C} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-617 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F2165FF-2C2D-4612-87B2-CC8E5002EF4C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f2dc38b-34d2-462c-add4-f74cc15510a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f49412a-3ed3-4da7-b041-f2a55fcc1150}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F5E64E3-0B46-4DAF-AEA6-721994E5AC8B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F63C206-752B-4B26-9DA7-CD264895A7C8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F6CE85C-F9EE-43CA-90C7-8A9BD53A2467}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhshl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f712f0f-ed71-474b-9529-9b9627ed0a6b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7ED5E3-06C9-4B61-97DB-067CC8AE0664}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F86B8BD-EFF5-4C07-8FA5-60788517EF95}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\PrintManagementProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f8891f3-f692-450e-a222-ff28d9daaaf8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2f893820-7089-46cc-a6e8-c4aae45f151b}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F93C02D-77F9-46B4-95FB-8CBB81EEB62C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F94D7B0-BF63-11D1-A6A2-00C04FB9988E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2FB21955-33A2-46A0-8F60-B475DC33FD5A}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\prntvpt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301F77B0-A470-11D0-8821-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30276b4f-f25c-457c-a4b7-08574f8ea528}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{304CE942-6E39-40D8-943A-B913C40C9CD4} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\FirewallControlPanel.dll,-12122 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{304FC8AB-6643-4DAA-9027-4B21389DCB2D}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RemoveDeviceElevated.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3059ACB9-9875-44CC-ABA9-EAA6EFBEBA39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30655864-f8cd-45f9-b7d6-6721acb69c5e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-10113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90D-D7AD-11D9-BD98-0000947B0257}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90E-D7AD-11D9-BD98-0000947B0257}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe,-258 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3080F90E-D7AD-11D9-BD98-0000947B0257}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30d49246-d217-465f-b00b-ac9ddd652eb7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IDStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30fb9e79-61dc-4a66-bbff-a362b09a6866}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31220067-EE3A-4ED7-B579-103D74930CB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3124C396-FB13-4836-A6AD-1317F1713688}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{312A6884-4ABE-4C4E-AE73-C69874C8318B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3134ef9c-6b18-4996-ad04-ed5912e00eb5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-117 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3134ef9c-6b18-4996-ad04-ed5912e00eb5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31350404-77AC-4471-B33A-9020A2EDA1D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3140F5B6-093F-4F94-9141-5DF9EE10BC27}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31430c59-bed1-11D1-8De8-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{317D06E8-5F24-433D-BDF7-79CE68D8ABC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{317E92FC-1679-46FD-A0B5-F08914DD8623} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63515 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3185a766-b338-11e4-a71e-12e3f512a338}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31879719-E751-4DF8-981D-68DFF67704ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31b11d80-9ed7-44f7-b1cd-c95992a738b9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31b231f6-546d-4f9b-ac95-0f963d72559c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{320690f4-8d7b-4f55-a98d-89ebb01fa776}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3213CD15-4DF2-415F-83F2-9FC58F3AEB3A} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3213CD15-4DF2-415F-83F2-9FC58F3AEB3A}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-21796 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32433977-2283-4853-8a6d-e7f4cc3053bc}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{324C321B-D91A-451C-AB3C-362A7849773D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32557D3B-69DC-4F95-836E-F5972B2F6159}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3261BF13-9B3E-4DD5-B6D3-0006F3FFE8BC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32665929-D77E-4ab5-8C08-FBF409B8A233}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3279762A-C6C8-4274-A2FB-FD390DAEB7E7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328489c8-f25e-44b5-93d4-8f811b4dc326}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuthExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328B0346-7EAF-4BBE-A479-7CB88A095F5B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{328B0346-7EAF-4BBE-A479-7CB88A095F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3292A418-BAC2-4BBF-BB07-66A1CB3B8B7D}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\NetPeerDistCim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\cttunesvr.exe,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32BA16FD-77D9-4AFB-9C9F-703E92AD4BFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cttunesvr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32be5ed2-5c86-480f-a914-0ff8885a1b3f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpviewerax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32C5A81F-27C0-4E66-A894-786F646F1236}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32E7DC13-1E22-4D7E-8AC7-D2E718DE8042}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32EAC0F0-1C2B-4775-942E-0AC11121A0F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3318360C-1AFC-4D09-A86B-9F9CB6DCEB9C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msutb.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{333E6924-4353-4934-A7BE-5FB5BDDDB2D6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{334857cc-f934-11d2-ba96-00c04fb6d0d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33831ED4-42B8-11D2-93AD-00805F853771}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\dsprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{338B40F9-9D68-4B53-A793-6B9AA0C5F63B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BCC8EC-0D01-4E10-AD3D-4DAF749873ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33C4643C-7811-46FA-A89A-768597BD7223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33de48c4-943f-4b96-8cd8-b117c94576cf}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33fd0563-d81a-4393-83cc-0195b1da2f91}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{341301BA-111C-408D-A8E3-14D1DDC62A6F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{347CBD95-DD80-4144-81AF-AE803E633A00}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DXPPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{348ef17d-6c81-4982-92b4-ee188a43867a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsDocumentTargetPrint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34996c91-9897-40eb-944b-28b5c9308383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DevPropMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34AB8E82-C27E-11D1-A6C0-00C04FB94F17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3522D7AF-4617-4237-AAD8-5860231FC9BA} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3522D7AF-4617-4237-AAD8-5860231FC9BA}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3523c2fb-4031-44e4-9a3b-f1e94986ee7f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{352EC2B7-8B9A-11D1-B8AE-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{356F2F88-05A6-4728-B9A4-1BFBCE04D838}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35786D3C-B075-49b9-88DD-029876E11C01} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-512 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wpdshext.dll,-510 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35786D3C-B075-49b9-88DD-029876E11C01}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wpdshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{357b663c-d9fa-4188-99af-2943920f96c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35A069A1-A029-46AF-B531-454C0F66D61F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\NetworkStatus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35A5E985-12E6-46ee-B385-E887F3940FB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35B78F79-B973-48C8-A045-CAEC732A35D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35C61CC2-5851-4F2D-89B6-4F9BB4B4193F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35CEC8A3-2BE6-11D2-8773-92E220524153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3613F1D2-C9A5-4f41-A070-E5BB823B2E5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{361778EC-D741-4CE1-90F9-743435F56E13}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RemoveDeviceContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3692CA39-E082-4350-9E1F-3704CB083CD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{369647e0-17b0-11ce-9950-00aa004bbb1f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3697790B-223B-484E-9925-C4869218F17A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36a479ef-8b67-4d01-8dda-753cfcb2dd96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36BAA497-8C84-4700-96A1-88E1876EC5B9}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36CB6E0C-78C1-42B2-9943-846262F31786}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36f0bd14-d84d-468c-b79c-9990f3fa897f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36F99745-23C9-4C9C-8DD5-CC31CE964390}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{370F8FEA-1B4A-470E-B5F7-25AAFC6702F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{371CCB71-D045-45C5-9952-BB07B1711B0B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cmgrcspps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3722c3b1-82e8-4022-8b27-1f8a68b44ac7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3730BBF8-631A-48FB-9085-E2143C11563B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3734FF83-6764-44B7-A1B9-55F56183CDB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{373984C9-B845-449B-91E7-45AC83036ADE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374DE290-123F-4565-9164-39C4925E467B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374DE290-123F-4565-9164-39C4925E467B}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{374EE8E8-DEA6-4DB7-B14A-B43EE3E8948E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3756e7f5-e514-4776-a32b-eb24bc1efe7a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{375ff002-dd27-11d9-8f9c-0002b3988e81}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fdwcn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{378E0446-5384-43B7-8877-E7DBDD883446}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{379E501F-B231-11D1-ADC1-00805FC752D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37de7045-5056-456f-8409-c871e0f8b0e0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37ea3a21-7493-4208-a011-7f9ea79ce9f5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3807BD87-D141-439A-B711-25A053A020F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38086A84-31E7-4C8E-BB0E-9758D634C7E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Windows.UI.Shell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{381DDA3C-9CE9-4834-A23E-1F98F8FC52BE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3829dfb4-9eed-434e-88c7-dcbe810b1a6e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{382AC1B5-9C16-4CCD-9D00-D5053977B8D6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sysmain.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{384742B1-2A77-4CB3-8CF8-1136F5E17E59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dwmapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{384ea5ae-ade1-4e8a-8a9b-7bea78fff1e9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3852C2E2-4A16-4b11-8E71-F8904C37EC3D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{385906fb-1482-4f64-8a23-5d74e1ce1815}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3886CA90-AB09-49D1-A047-7A62D096D275} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3886CA90-AB09-49D1-A047-7A62D096D275}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{389EA17B-5078-4CDE-B6EF-25C15175C751}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\van.dll,-2401 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\van.dll,-2400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-171 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\Open\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics MUIVerb REG_EXPAND_SZ @%systemroot%\system32\van.dll,-2402 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38A98528-6CBF-4CA9-8DC0-B1E1D10F7B1B}\Shell\OpenWithoutDiagnostics\Command (Default) REG_EXPAND_SZ rundll32.exe %SystemRoot%\system32\van.dll,RunVAN /disablediagnostics HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38BFA80B-F989-45B2-AAFD-1E0C04E50E56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38fbe75f-57ac-4c15-8988-7c5284c51508}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcProxyStubs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38FE8128-B282-4A98-B2B0-0BAFB49815FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3901CC3F-84B5-4FA4-BA35-AA8172B8A09B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3918D75F-0ACB-41F2-B733-92AA15BCECF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-37218 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-37219 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3936E9E4-D92C-4EEE-A85A-BC16D5EA0819}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{394C052E-B830-11D0-9A86-00C04FD8DBF7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{395165EF-52F5-4520-81D6-4D18ED96DDCC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39524FB7-028F-4035-8C2B-8E65D2B17E67}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{395671b6-129e-4e7a-a2d8-204cd8e72d6a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3957a5ba-4448-bec4-24ac-16c4f5784ef5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.cortana.Desktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{397a2e5f-348c-482d-b9a3-57d383b483cd} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\icsvc.dll,-103 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39AEDC00-6B60-46DB-8D31-3642BE0E4373}\InProcServer32 (Default) REG_EXPAND_SZ %Systemroot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39F8D76B-0928-11D1-97DF-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A410F21-553F-11d1-8E5E-00A0C92C9D5D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A57CB65-1857-4239-B130-FA0F8F06522A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A614B00-FB18-46F3-950E-682A46A48B9F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UICOM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A66787A-8B15-4321-A09D-6E862D2DD2D4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ABEAFC4-F48F-4517-A9B0-8AD6A94A99A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AC83423-3112-4AA6-9B5B-1FEB23D0C5F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ad05575-8857-4850-9277-11b85bdb8e09} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50176 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ad05575-8857-4850-9277-11b85bdb8e09}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B1599F9-E00A-4BBF-AD3E-B3F99FA87779}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3b176793-1c28-467d-bf13-ff0ac689e18b}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapsimextdesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B17FD9C-F7CF-4736-AF6B-616C2D1ED854}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B1B5147-715E-49e0-AE9F-ADF86724BB89}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B269952-C2CE-40CC-BB36-94858E0A7CD4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B2B6775-70B6-45AF-8DEA-A209C69559F3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B873591-9427-4418-A086-79175735738F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\smbwmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bb4118f-ddfd-4d30-a348-9fb5d6bf1afe}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BB46AD9-4D42-4EC6-B96B-68973FCD26F1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95A4-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95DA-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95F5-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95FB-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BBE95FE-C53F-11d1-B3A2-00A0C9083365}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BEE4890-4FE9-4A37-8C1E-5E7E12791C1F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BF043EF-A974-49B3-8322-B853CF1E5EC5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SndVolSSO.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3bfe6eb7-281d-4333-999e-e949e3621de7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3c2654c6-7372-4f6b-b310-55d6128f49d2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C296D07-90AE-4FAC-86F9-65EAA8B82D22}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SppExtComObj.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C305196-50DB-11D3-9CFE-00C04FD930C5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddraw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C4059B0-FB29-4EBA-9947-289E0D824E64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C4512DC-AEFA-4a1e-95CF-EDF896092447}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3c5edebe-16c6-4ee4-906b-436aa1f6ef9e}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinapi.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C5F432A-EF40-4669-9974-9671D4FC2E12}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C852D74-7E49-4FF3-BF21-81EF888078D4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mpeval.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C925F4E-F236-4BCF-9330-F15B8AD8765B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CE74DE4-53D3-4D74-8B83-431B3828BA53}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D112E22-62B2-11D1-9FEF-00600832DB4A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3d154a2d-d911-437e-a30c-5f56a9b7081d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D813DFE-6C91-4A4E-8F41-04346A841D9C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dad6c5d-2167-4cae-9914-f99e41c12cfa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DBFEF35-6F15-4453-BC19-D7AD5CC04756}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC09436-7D83-4BA0-ADDC-CD47F996C5BA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dd6bec0-8193-4ffe-ae25-e08e39ea4063}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DD82D10-E6F1-11D2-B139-00105A1F77A1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\cimwin32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3df11260-58db-46ca-85ee-35459e115b9c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eappcfgui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de} Infotip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-12689 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\cmlua.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\cmlua.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E000D72-A845-4CD9-BD83-80C07C3B881F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmlua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E4D4F1C-2AEE-11D1-9D3D-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\cmstplua.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\cmstplua.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E5FC7F9-9A51-4367-9063-A120244FBEC7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmstplua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E6147C9-902B-48BA-B1B8-5B1FFD874FB2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E784A01-F3AE-4DC0-9354-9526B9370EBA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3EA48300-8CF6-101B-84FB-666CCB9BCD32}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\docprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3EC569DC-6FB5-45D1-8B46-E122D27962E9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreUIComponents.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3eef301f-b596-4c0b-bd92-013beafce793}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {3eef301f-b596-4c0b-bd92-013beafce793} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F13AB10-AE95-48AA-8C94-533730760A20}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F30C968-480A-4C6C-862D-EFC0897BB84B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f454f0e-42ae-4d7c-8ea3-328250d6e272}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F66389B-BA65-4782-BA9D-B66367C8E7F1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F66CF3F-68BE-485e-8BFE-0A005B2D00F2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-191 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\appwiz.cpl,-190 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3f6bc534-dfa1-4ab4-ae54-ef25a74e0107}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rstrui.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F9A55B0-8355-4CE4-B6D6-A65CAC63DB67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F9FF9AB-AC3E-40BB-BBC9-27B648AD1FB2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\XboxGipRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FBA60A6-7BF5-4868-A2CA-6623B3DFFEA6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FC0B520-68A9-11D0-8D77-00C04FD70822}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3fd7f233-a716-472e-8f2f-c25954f34e96}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FF566F0-6E6B-49D4-96E6-B78886692C62}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3FFB3B8C-EB99-472b-8902-E1C1B05F07CF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4000C97B-791B-425F-9AD6-5046210503B1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4026492F-2F69-46B8-B9BF-5654FC07E423}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4026492F-2F69-46B8-B9BF-5654FC07E423}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\FirewallControlPanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40319fab-cc2f-4cea-890c-1e676b139824}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\telephon.cpl,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\telephon.cpl,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\telephon.cpl,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40419485-C444-4567-851A-2DD7BFA1684D}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\telephon.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4057C1AD-A51F-40BB-B960-22888CEB9812}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\domgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405EC9AB-0C64-4B9F-B726-3A858A9E2BD6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4082B93D-99AF-4E6F-BE9F-6AA54C0BC6BE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40871C59-AB40-471F-8DC3-1F259D862479}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmpeg2srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40AFA0B6-3B2F-4654-8C3F-161DE85CF80E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\IDStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B47A8F-C442-4f06-8304-AA1058EDEEA0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\POSyncServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B6664F-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66650-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66660-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40B66661-4972-11D1-A7CA-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\scrptadm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40b8879a-9b26-42fd-8fec-00c32f8443be}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40dd6e20-7c17-11ce-a804-00aa003ca9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41070793-59E4-479A-A1F7-954ADC2EF5FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4125dd96-e03a-4103-8f70-e0597d803b9c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41457294-644C-4298-A28A-BD69F2C0CF3B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfasfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{418c8b64-5463-461d-88e0-75e2afa3c6fa}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{418DFBFA-4DE8-41C0-A272-727307252DBD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41937347-2aba-4d4c-a4ca-6fe4f11f1bac}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\NetworkItemFactory.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MSRAWImage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41B89B6B-9399-11D2-9623-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41B9BE05-B3AF-460C-BF0B-2CDD44A093B1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\xmlfilter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41CA099A-B8AF-4fc2-A285-03FAEAA8B109}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41E300E0-78B6-11ce-849B-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41FCCC3A-1FA1-4949-953A-6EE61C46A4D1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42044394-8c34-11d1-83bc-00c04fbbc34e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42060D27-CA53-41f5-96E4-B1E8169308A6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\RacEngn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071712-76d4-11d1-8b24-00a0c9068ff3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\deskadp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42071713-76d4-11d1-8b24-00a0c9068ff3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\deskmon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42281387-EDEA-477C-89DB-6F7033D518AB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42393E99-8513-42d3-8AEA-E0E5FBDC8F64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{424bed78-ef88-4b7c-945c-b8cf46d56e20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4278BB8C-D0FC-4380-A2C4-525B9A396F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{427BC7E3-F833-4584-8745-CFAB9D7A5761}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4290CAD6-A75D-4AC8-A496-56DBBB28EB88}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42C9B9F5-16FC-47ef-AF22-DA05F7C842E3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42D69529-136E-49D6-8407-3026853038BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42FEBF74-65EA-4D27-B3AC-86393B6AFAE1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{430da762-8632-4840-bc61-3eeaa078e62e}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll,1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{430da762-8632-4840-bc61-3eeaa078e62e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\display.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43136EB5-D36C-11CF-ADBC-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43324B33-A78F-480F-9111-9638AACCC832}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4333fd20-ca5f-4095-a535-edb00455ce66}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4336a54d-038b-4685-ab02-99bb52d3fb8b} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9113 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4336a54d-038b-4685-ab02-99bb52d3fb8b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4347F4C2-6A7D-40DF-9A4F-C185317AF183}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{434A6274-C539-4E99-88FC-44206D942775} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\AccessibilityCpl.dll,-6000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{434A6274-C539-4E99-88FC-44206D942775}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AccessibilityCpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{435899C9-44AB-11D1-AF00-080036234103}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{437ff9c0-a07f-4fa0-af80-84b6c6440a16}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43A1BB0E-2CE9-405C-8799-12E7D7550D3F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43C103A6-696F-4D05-AF04-9E44A6844B30}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43D7FDB4-B94D-4415-8792-54AF9FBEBB82}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\netttcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4405b37b-60fe-49ed-ba8f-691a78f84daf}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{442FF639-3DA0-4A70-A1D8-579E26C46A60}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\PSModuleDiscoveryProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{443E7B79-DE31-11D2-B340-00104BCC4B4A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{444F7305-1D7D-4BE9-8C29-CC3F1D220C40}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44A50F5F-78E2-4D17-930C-68BB9F69EC9E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44CB442B-9DA9-49df-B3FD-023777B16E50}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44EC053A-400F-11D0-9DCD-00A0C90391D3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\atl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44f3dab6-4392-4186-bb7b-6282ccb7a9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mydocs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{44F9A03B-A3EC-4F3B-9364-08E0007F21DF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22914 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-9227 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-235 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4522c772-9a2b-4920-ad7f-62d3d15eac52}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{453D9F45-B2A2-4DF0-B42A-51A3AEC86452}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4545dea0-2dfc-4906-a728-6d986ba399a9}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ThumbnailExtractionHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{455F24E9-7396-4A16-9715-7C0FDBE3EFE3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{455f6102-c83a-4d07-ba36-b6da9d589ae2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4564b25e-30cd-4787-82ba-39e73a750b14}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4582EBA9-6AA1-4D79-824E-728929EF455D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4590F812-1D3A-11D0-891F-00AA004B2E24}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45BA127D-10A8-46EA-8AB7-56EA9078943C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45FD65ED-6BC2-47ae-B391-9E2B79F07C52}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\systemcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45ffc283-e417-4bc2-b0b8-6654081d10d7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingsHandlers_SignInOptions.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46031ba1-083f-47d9-8369-23c92bdab2ff}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{461CDD3F-D54E-4033-A0AA-6CD24F152AA1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{461DED9E-81D5-494F-BC96-6432C8645733}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4655840e-ab1a-49d0-a4c4-261fa1c20e86}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4657278A-411B-11d2-839A-00C04FD918D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46615ACE-28BC-47A8-8176-3713A64C9FDC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{466936A9-E281-45E6-A239-9FE53D07B4A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LockScreenContent.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469afbdf-084f-4dc9-904f-9e824c48bc37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\hnetcfgclient.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46C166AA-3108-11D4-9348-00C04F8EEB71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfgclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46CB32FA-B5CA-8A3A-62CA-A7023C0496C5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-39184 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{46CF315B-2D3A-4765-852A-6500C42D9865}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4705A6B4-E4CB-4ed1-AF8D-851C644A0459}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47206204-5ECA-11D2-960F-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4753da60-5b71-11cf-b035-00aa006e0975}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{477EC299-1421-4bdd-971F-7CCB933F21AD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47B706B0-B103-4AFD-8ECF-16C2DDF81C15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\netnccim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47B73B70-1964-444A-B390-FAB1565DCAA3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D35BB4-71CC-4810-9669-D03D9FF7CEAF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceDriverRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47D4D946-62E8-11cf-93BC-444553540000}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsound.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47DFBE54-CF76-11D3-B38F-00105A1F473A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47e30d54-dac1-473a-aff7-2355bf78881f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ngctasks.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{480FF4B0-28B2-11D1-BEF7-00C04FBF8FEF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmusic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48123BC4-99D9-11D1-A6B3-00C04FD91555}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48123BC4-99D9-11D1-A6B3-00C04FD91555}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{483afb5d-70df-4e16-abdc-a1de4d015a3e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48527bb3-e8de-450b-8910-8c4099cb8624}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4876DC0E-F963-4227-9A8F-19872B75D231}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StorageContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{487af411-1d5e-4f7f-b4f4-4721fe1e95d9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{487BA7B8-4DB0-465F-B122-C74A445A095D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{488C2839-8ABA-4368-B4DF-8EF11CF99F99}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{489331DC-F5E0-4528-9FDA-45331BF4A571}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{489AE5DA-059A-4aca-93E5-7B7CFD1BD752}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48C6BE7C-3871-43cc-B46F-1449A1BB2FF3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48da6741-1bf0-4a44-8325-293086c79077}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasdatastore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48DE828C-730C-49AF-AE84-759C609911EE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48E277F6-4E74-4cd6-BA6F-FA4F42898223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e2ed0f-98c2-4a37-bed5-166312ddd83f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfreadwrite.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-21786 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48e7caab-b918-4e58-a94d-505519c795dc}\shell\find\command (Default) REG_EXPAND_SZ %SystemRoot%\Explorer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{48F4CE0C-BC11-4C9B-A165-2097308F9C25}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{494C063B-1024-4DD1-89D3-713784E82044}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spool\tools\PrintBrmEngine.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4955DD33-B159-11D0-8FCF-00AA006BCC59}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msimtf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{496241E9-161B-4007-AF56-B4E006F65FA9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4988dd22-ccec-48ec-9271-5951e8653903}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{498A0351-BA2F-46DD-96D9-C19988FEA0C4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppLockerCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49A832D7-C7B3-4556-8716-5BDC745C3C1B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49B2791A-B1AE-4C90-9B8E-E860BA07F889}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe ServerExecutable REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49BD2028-1523-11D1-AD79-00C04FD8FDFF}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\unsecapp.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49C407EF-78B9-4C82-A40B-2FE02F8E771D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49eb6558-c09c-46dc-8668-1f848c290d0b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49EBD8BE-1A92-4A86-A651-70AC565E0FEB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49F371E1-8C5C-4d9c-9A3B-54A6827F513C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a04656d-52aa-49de-8a09-cb178760e748}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A1E5ACD-A108-4100-9E26-D2FAFA1BA486}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\icsigd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A65D267-1539-4BD1-921D-1C49B3E58EB7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a698512-80cc-4b0e-8ae6-f394ef39f9d0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-361 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\rasdlg.dll,-562 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6B8BAD-9872-4525-A812-71A52367DC17}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4A6CBDD0-0922-4463-A2AB-D8F8E21F4A86}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\prntvpt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a714c8e-e664-4024-9c74-1a82a3da842a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a76b469-7b66-4dd4-ba2d-ddf244c766dc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4a7ded0a-ad25-11d0-98a8-0800361b1103}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mydocs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ac6c205-2853-4bf5-b47c-919a42a48a16}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AF3F4A4-06C8-4B79-A523-633CC65CE297}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipdskq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AF4A5FC-912A-11D1-B945-00A0C90312E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B0A2997-E555-4F84-B45B-68AB8BC57635}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpendp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B314A47-12E0-4d52-95FE-084B9224DD4F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4b360c3c-d284-4384-abcc-ef133e1445da} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-55341 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B534112-3AF6-4697-A77C-D62CE9B9E7CF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B59AFCC-B8C3-408A-B670-89E5FAB6FDA7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B966436-6781-4906-8035-9AF94B32C3F7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BB24BC2-ABFD-433D-935F-5950B42A4B3F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-350 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\werconcpl.dll,-6 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bc70a10-fbab-4ada-8fc4-e4f898a6f810}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BCCBCE4-20E8-44A1-A170-C9A4D941CBA4}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\dnsclientcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4BDAFC52-FE6A-11d2-93F8-00105A11164A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmintf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bec2015-bfa1-42fa-9c0c-59431bbe880e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4bf684f8-3d29-4403-810d-494e72c4291b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C1FC63A-695C-47E8-A339-1A194BE3D0B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C3624D8-57AF-11E1-B779-E5CC4724019B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C5EBD71-431C-43A0-B93C-3EBF917B540F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C5EF749-A380-44FE-853D-FF928F2CD1AE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C60517F-C1F8-473A-B1D8-247952876A5A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c649c49-c48f-4222-9a0d-cbbf4231221d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\photowiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C6F940C-3CFE-11D2-9EE7-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c892621-6757-4fe0-ad8c-a6301be7fba2}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4c892621-6757-4fe0-ad8c-a6301be7fba2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C8A0917-F587-4ECF-9C89-48147528F4E1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C8CC9CB-80CA-4e16-9F60-F5EB55092361}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CB43D7F-7EEE-4906-8698-60DA1C38F2FE} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63516 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CBE39A3-BD8A-4D51-9BD3-B7853737FD93}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ce6767d-e09b-45dc-831d-20c8b4ea9a26}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4CFC7932-0F9D-4BEF-9C32-8EA2A6B56FCB}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmidcprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4269 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-109 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D111E08-CBF7-4f12-A926-2C7920AF52FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d4dedaa-43c5-480d-9ee0-1464f9f4ff4b}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d56df98-e082-4bf4-9a09-df655d8427b6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D728E35-16FA-4320-9E8B-BFD7100A8846}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DC9C264-730E-4CF6-8374-70F079E4F82B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwsso.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DD1D1C3-B36A-4eb4-AAEF-815891A58A30}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DD441AD-526D-4A77-9F1B-9841ED802FB0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DE225BF-CF59-4CFC-85F7-68B90F185355}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4de7016c-5ef9-11d1-8c13-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4df0c730-df9d-4ae3-9153-aa6b82e9795a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\modemui.dll,-20100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\System32\mdminst.dll,-5100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DF929E7-4C5E-4587-A598-7ED7B3D6E462}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UICOM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E0680A0-A0A2-11D0-8821-00A0C903B83C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E14FBA2-2E22-11D1-9964-00C04FBBB345}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4e3c6645-b839-4a06-a27b-0190f9e6a0af}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E40F770-369C-11d0-8922-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dssec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E77131D-3629-431c-9818-C5679DC83E81}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4E7D6B2C-1F7E-45B6-9EC0-8FA541BDD163}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb2f086-c818-447e-b32c-c51ce2b30d31}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eeb9b7c-0f47-4fae-a284-a0ec40c5719a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CapabilityAccessHandlers.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EF5D9A8-0116-4C93-8142-0AB93AB603A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wksprt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F23C296-F56E-45AF-904D-D245BF750759}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f37e3a9-1d2b-42ab-a5b0-31fc05627def}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F414126-DFE3-4629-99EE-797978317EAD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f495385-cab7-4470-9e0d-1bc0ec792e04}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F4DB904-CA35-4A3A-90AF-C9D8BE7532AC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsrx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F4DD15E-F431-4536-AEE8-AF20BA847A33}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F637904-2CAB-4F0E-8688-D3717EBD2975}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F664F91-FF01-11D0-8AED-00C04FD7B597}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f6bcd94-c2a5-42ce-8dbc-31e794be4630}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F786E23-0F32-4888-BA02-6BB105AE3024}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f8e67d6-de03-480b-80aa-52f9c1aeffea} LocalServer32 REG_EXPAND_SZ %SystemRoot%\System32\WUDFHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FA18276-912A-11D1-AD9B-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4fab6371-6d65-47ba-b8f1-ca6273c6c69e}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FDBC3E5-7121-4487-AB95-B58EC04648DB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ucmhc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FDEF69C-DBC9-454e-9910-B34F3C64B510}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FE8C25F-C8E9-4322-98EE-A11E117CF049}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ppcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FF2FE0E-E74A-4B71-98C4-AB7DC16707BA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4FF787E6-9A86-4BA3-BED9-8019A2B4BE1C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50040C1D-BDBF-4924-B873-F14D6C5BFD66}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\mswmdm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{500DD1A1-B32A-4a37-9283-1185FB613899}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5014B7C8-934E-4262-9816-887FA745A6C4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\TpmTasks.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{506229ae-09c7-4ffd-8ec9-6a957f6da601}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5088B39A-29B4-4d9d-8245-4EE289222F66}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50A41EF1-6BFA-4b7e-973E-798EA0BEBAD4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50B1904B-F28F-4574-93F4-0BADE82C69E9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50B6327F-AFD1-11d2-9CB9-0000F87A369E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsldp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50CA0A46-1588-4161-8ED2-EF9E469CED5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50D42F09-ECD1-4B41-B65D-DA1FDAA75663}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50D5107A-D278-4871-8989-F4CEAAF59CFC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msimtf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50FDBB99-5C92-495E-9E81-E2C2F48CDDAE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{513a0312-3345-4d16-94e5-630b0262c2eb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\acppage.dll,-6006 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\intl.cpl,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\intl.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{514B5E31-5596-422F-BE58-D804464683B5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51571744-7FE4-4FF2-A498-2DC34FF74F1B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSVideoDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{515980c3-57fe-4c1e-a561-730dd256ab98}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{515980c3-57fe-4c1e-a561-730dd256ab98}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {515980c3-57fe-4c1e-a561-730dd256ab98} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5160F343-7A1F-46C2-9E21-FC7F1DAF37F3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51648e7c-d7b2-449c-b513-46050dcfd917}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LegacyNetUX.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51653423-E62D-4FF7-894A-DABB2B8E21E2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{517F6AA6-D6FA-46D0-8094-17FF17E4CCF4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31478 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-63012 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51a1467f-96a2-4b1c-9632-4b4d950fe216}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51ad6d44-32f8-4aa7-9ee6-24a37fa09354}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.UI.Immersive.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51D1268C-D0A5-47CC-A514-547F346F45E8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{520E9D28-64C4-43df-BEED-02D9A6044A4B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FdDevQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52205fd8-5dfb-447d-801a-d0b52f2e83e1} (Default) REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22067 MUIVerb REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-37411 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52205fd8-5dfb-447d-801a-d0b52f2e83e1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{522e34a4-07f7-40a1-94d0-1bfe832efc3a}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5255EFED-103A-4444-B124-F88F99E4EF8D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{525C410E-B007-4F15-81DD-49DF9B17139B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Vault.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{527c9a9b-b9a2-44b0-84f9-f0dc11c2bcfb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32 (Default) REG_EXPAND_SZ %Systemroot%\System32\msctf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52B65EB7-907C-4D83-A535-283BE9104DE4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52C84ACA-027A-4536-A74A-E0BB50C44782}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\iscsiwmiv2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52ce2fe5-04c3-42fd-8a8b-4251affb8408}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52F15C89-5A17-48e1-BBCD-46A3F89C7CC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5310BE71-5C14-4FBC-8CF5-BD75D3F11A44}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{531A5E27-80E7-4EAC-9AC6-13953AF33693}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5326dddc-ec38-428d-b219-ce6dadb35de3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\van.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53445BED-3213-453B-A12A-79AA20A702DC}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\printui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-31361 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-4161 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53a01e9d-61cc-4cb0-83b1-31bc8df63156}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53bd6b4e-3780-4693-afc3-7161c2f3ee9c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53BEDF0B-4E5B-4183-8DC9-B844344FA104} DisplayName REG_EXPAND_SZ @%systemroot%\system32\mssvp.dll,-127 Icon REG_EXPAND_SZ %systemroot%\system32\mssvp.dll,-504 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53BEDF0B-4E5B-4183-8DC9-B844344FA104}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53C74826-AB99-4d33-ACA4-3117F51D3788}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53D6AB1D-2488-11D1-A28C-00C04FB94F17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53DEC7F6-5448-43E2-9573-3F7B91B751DC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53E9771B-6A21-4FEC-B8F1-3B0DAE4FACC6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54058896-4775-4C34-8B62-789FB2E263A4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5408B2F0-C816-11D1-8F99-00600895E7D5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{540D8A8B-1C3F-4E32-8132-530F6A502090} MenuTextPUI REG_EXPAND_SZ @%SystemRoot%\System32\msutb.dll,-328 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{540D8A8B-1C3F-4E32-8132-530F6A502090}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msutb.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{541987EE-0E02-411E-9A85-1FC6156E7F4B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{545AE700-50BF-11D1-9FE9-00600832DB4A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{548968f5-17f7-4751-a581-ff0f1c732995}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{548F0526-B0EC-4915-9C4E-9CEE327CF105}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\BrowserSettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5491AB67-AFEB-48B1-B8DF-B2D63810EF40}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{549365d0-ec26-11cf-8310-00aa00b505db}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{549e57e9-b362-49d1-b679-b64d510efe4b}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {549e57e9-b362-49d1-b679-b64d510efe4b} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54d38bf7-b1ef-4479-9674-1bd6ea465258}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54E14197-88B0-442F-B9A3-86837061E2FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreShellExtFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54E211B6-3650-4F75-8334-FA359598E1C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{550DDA30-0541-11D2-9CA9-0060B0EC3D39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5537E283-B1E7-4EF8-9C6E-7AB0AFE5056D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rasplap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{558E3D9C-F033-4A44-A019-4F3F39EC8E4F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55B3A0BD-4D28-42fe-8CFB-FA3EDFF969B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdbui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55d7b852-f6d1-42f2-aa75-8728a1b2d264}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{562462DD-4F9A-4110-9D6A-C3CA0407FF76}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56276483-5c2d-472c-b375-23ce4eb6a4f9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RdpSaPs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5645C8C2-E277-11CF-8FDA-00AA00A14F93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mimefilt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{566296fe-e0e8-475f-ba9c-a31ad31620b1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5672BB8A-BBF5-482E-B7B9-742C70C604D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56871D63-FE46-4c7e-84BB-5DB82D4A99F8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56a91da5-5051-49f5-8d23-1f050a63e966}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56ad4c5d-b908-4f85-8ff1-7940c29b3bcf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56DA6136-B95E-4249-BB50-E4773A2B3B5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56EA1054-1959-467f-BE3B-A2A787C4B6EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacctprofile.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{573bdf38-df23-427f-acb8-a67abd702698}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\vssapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57523D96-B7F6-4D2C-8AFC-BCC5F5392E94}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57558531-C262-471E-95DB-8B181925C61B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57635537-C856-4cc2-AE5C-62C34708070C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57651662-CE3E-11D0-8D77-00C04FC99D61}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{576C5669-E07F-4a1b-9A7A-8F85D944283B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{576C9E85-1300-4EF5-BF6B-D00509F4EDCD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{577289b6-6e75-11df-86f8-18a905160fe0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57756B48-2D36-478F-B4F4-E8C67C5A9454}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\locationapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5791BC26-CE9C-11D1-97BF-0000F81E849C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57B67A1A-2C81-4820-96EC-FA33567A9155}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5805137A-E348-4F7C-B3CC-6DB9965A0599}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58141F2A-7598-4B93-9D77-4ADF00E044B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C65-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C66-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C67-EA27-11CF-ADCF-00AA00A80033} MUIVerb REG_EXPAND_SZ @%systemroot%\system32\mycomput.dll,-400 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C69-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58221C6A-EA27-11CF-ADCF-00AA00A80033}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5842a140-ff9f-4166-8f5c-62f5b7b0c781}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5860E1C5-F95C-4a7a-8EC8-8AEF24F379A1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SysFxUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{586d1936-bc46-4f9c-bf65-77c95ad9d9ad}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58859c43-2c82-454b-86c0-9efb11e54838}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58AB2366-D597-11d1-B90E-00C04FC9B263}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58c061d5-8c8f-4439-b50a-bb5f7356e621}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58C2B4D0-46E7-11D1-89AC-00A0C9054129}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmsynth.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58DDEF94-53B5-4BD5-AF79-C4581BBDf7AC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58E3C745-D971-4081-9034-86E34B30836A}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\Speech\SpeechUX\speechuxcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58fb76b9-ac85-4e55-ac04-427593b1d060}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dimsjob.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59031a47-3f72-44a7-89c5-5595fe6b30ee}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59031a47-3f72-44a7-89c5-5595fe6b30ee}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59347292-B72D-41F2-98C5-E9ACA1B247A2} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\fxsutility.dll,-4716 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593817A0-7DB3-11CF-A2DE-00AA00B93356}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddraw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593FB605-4854-4965-B5A1-70AB54AB6475}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594103b8-e428-4461-b8d7-dd0ae12d31d9}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596742A5-1393-4e13-8765-AE1DF71ACAFB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596AB062-B4D2-4215-9F74-E9109B0A8153} PageTitle REG_EXPAND_SZ @%SystemRoot%\system32\twext.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{596AB062-B4D2-4215-9F74-E9109B0A8153}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59899957-02f6-44ac-a369-7704e65a1364}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{598c2d1b-616c-4782-8cc2-fda9d459be71}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eappcfgui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59A437AB-74F3-4de2-AFE6-54203634C4DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B7D16A-C309-47C4-9667-363B9B8D8255}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\spool\tools\PrintBrmPs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B7DE6C-57AF-11E1-B7A4-EACC4724019B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59B9640B-3F70-4D1C-B159-F26EEB8A4C87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59BA10A2-E577-488D-BAFA-2D0A3D89D93B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59be4990-f85c-11ce-aff7-00aa003ca9f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntlanui2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59C88A5A-702B-4DAB-9FBE-F53140BA899B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fhsrchph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59D95679-9799-458F-8B5B-FE00D8DA0AE4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\NetTCPIP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59EF44D1-4917-4f05-B10F-48C891E95DCC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59F927B8-B249-4672-88D5-2D688BAFDF24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A1826AF-F5A9-4495-88CD-A04A6CF07B2D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\Docking.VirtualInput.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A823D1E-8DDC-44DD-8AB4-F9D32C7FBB05}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\embeddedmodesvcapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A90DD8E-2A0C-45D1-873A-82B61604CEB2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A90DD8E-2A0C-45D1-873A-82B61604CEB2}\Instance\PropertySetStorage Schema REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,2 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A984BF5-D07C-4C99-9E5C-37156F21EE8F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA730D8-0F13-4AD6-B6C6-1EA85218C9A0}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5acb106d-1a06-4fcd-862d-02a74de81835}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DevPropMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AFFD66E-3C01-4217-BE18-414C155F67B1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B18AB61-091D-11D1-97DF-00C04FB9618A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b389765-edc1-4adf-9812-1c8a83175892}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b4dae26-b807-11d0-9815-00c04fd91972}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b53b2c2-46d6-433e-ab6e-b82efef22b6e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B681E0D-BD15-4A0E-8B8C-8E90663344E4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B6D1451-B1E1-4372-90F5-88E541B4DAB9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b858418-cfb4-4b32-8501-54d8b0c59f90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B9084E3-CE4E-4C66-8713-5B02396C090B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b934b42-522b-4c34-bbfe-37a3ef7b9c90} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\windows.storage.dll,-51409 System.ItemNameDisplayWithoutExtension REG_EXPAND_SZ @%SystemRoot%\system32\Windows.Storage.dll,-51409 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5b934b42-522b-4c34-bbfe-37a3ef7b9c90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BAF654A-5A07-4264-A255-9FF54C7151E7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63521 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BBC2C71-DEC2-4BA3-961A-36F37D1CC8A5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AUDIOENG.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5bbd58bb-993e-4c17-8af6-3af8e908fca8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-42000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BD3EA21-163B-4B17-951E-E73EEBF0601A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\RotMgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BE4911E-3D99-4546-898D-7EE70201C519}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BF01503-42BD-41CA-9F75-A465F07A6B11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5BFF4E02-D379-4050-A382-C6504A980D46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\powercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0786ED-1847-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0786EE-1847-11D2-ABA2-00C04FB6C6FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C0D19E4-A364-4ef6-9288-DBD194593879}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C24B264-3A01-475C-8EE8-ED4B9DC4F86C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c2dc96f-8d51-434b-b33c-379bccae77c3}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\azroles.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C5C1935-0235-4434-80BC-251BC1EC39C6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C63C1AD-3956-4FF8-8486-40034758315B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hnetcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C659257-E236-11D2-8899-00104B2AFB46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcntl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C659258-E236-11D2-8899-00104B2AFB46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemcntl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5c70bc6a-4ab5-48ee-bce3-e6dd857cbdc6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C9EA9AA-5541-49C5-97C4-781B1E720F5C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5cd80a0d-5627-49ff-ad53-c8b1791c85f6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D08B586-343A-11D0-AD46-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemess.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d1026ee-3f2e-4ccb-a83d-cefb7ac22a71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sharemediacpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D429AF6-D20F-4363-B378-C4AA2FA685EE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d4d54b3-9fb4-4662-8173-c48568d5e79e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D6179C8-17EC-11D1-9AA9-00C04FD8FE93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\localsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D6179D2-17EC-11D1-9AA9-00C04FD8FE93}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\localsec.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D75245F-29AE-450D-8924-A7611DE279AF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5d8d315e-8adc-48e5-80ed-7ccf370c971f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D9DD151-65F4-11CE-900D-00AA00445589}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcprx.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5da8fe1f-f485-4516-be06-426b0dddf555}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E032150-8C1E-4c9e-BC60-36E9BFFCFF56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E33D52F-2EE2-48EE-80FC-543DFF43E326}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\igdDiag.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E5F29CE-E0A8-49D3-AF32-7A7BDC173478}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E6AB780-7743-11CF-A12B-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\mblctr.exe,-1003 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\mblctr.exe,-1002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ea4f148-308c-46d7-98a9-49041b1dd468}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mblctr.exe /open HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ead82c2-28f1-4f7f-956d-d37420b5a687}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32540 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-32539 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-27 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ED4F38C-D3FF-4D61-B506-6820320AEBFE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ed5ada6-d9c5-4645-afec-6b68e54dcf32}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DdcComImplementationsDesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ef4af3a-f726-11d0-b8a2-00c04fc309a4}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-33 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5ef4af3a-f726-11d0-b8a2-00c04fc309a4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F02227D-BF38-48BE-B01A-A47D3006DFA2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F35421F-3313-4AD6-A3D9-DC4CD7DB4BED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceSetupManagerAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F5295E0-429F-1069-A2E2-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F884992-EE6D-418B-9E6C-0C2A0FA94D17}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DeviceCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5FB7EF7D-DFF4-468a-B6B7-2FCBD188F994}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6004c347-d3f3-472a-8f9e-319b5c583d55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{600e7adb-da3e-41a4-9225-3c0399e88c0c}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\cngcredui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6011C1F5-A2E0-491A-83CD-D4C5CBA72B73\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspLte.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6011C1F5-A2E0-491A-83CD-D4C5CBA72B73}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspLte.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60173D16-A550-47f0-A14B-C6F9E4DA0831} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50181 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60173D16-A550-47f0-A14B-C6F9E4DA0831}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{603D3800-BD81-11d0-A3A5-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{603D3801-BD81-11d0-A3A5-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60632754-c523-4b62-b45c-4172da012619}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60664caf-af0d-0005-a300-5c7d25ff22a0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shgina.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{606B3777-3051-401F-974A-E66ACA82A3A3}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\scavengeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60ABC2F2-6305-4E03-8645-5F9BA071954B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60b78e88-ead8-445c-9cfd-0b87f74ea6cd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL,-2002 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E464-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E465-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E466-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F6E467-4DEF-11d2-B2D9-00C04F8EEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DATACLEN.DLL HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60F9F51E-4613-4b35-AE88-332542B567B8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{60fd46de-f830-4894-a628-6fa81bc0190d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\photowiz.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6101F767-998E-452B-B54A-E836DD486BAD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsClassExtension.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{614C2902-8C8F-4D8F-90A2-FB9017B19FF9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6150FC78-21A1-46A4-BF3F-897090C6D79D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61625667-893E-4707-B925-A82B528C00B8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61667EE4-8071-46E2-9016-3DB2D7BE9E28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61A48126-EF74-4D4A-9DDA-43FD542CAD1E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSWB7.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{61BCD1B9-340C-40EC-9D41-D7F1C0632F05}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\edptask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62079164-233b-41f8-a80f-f01705f514a8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\evr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6208889B-F7A7-44B4-A34E-3C40E83281DB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{620E38AE-D62C-486B-8339-3DF3C04D88C3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfmp4srcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62112AA1-EBE4-11cf-A5FB-0020AFE7292D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{622A8646-1096-4765-8E07-91A3E661CEF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62323107-AD7E-49D1-9223-7ADD7C922D1B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62547D24-2ACA-4A33-8F15-AE95CE1A45BD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{626C80C1-D410-4DE4-9E82-1B4B9610C404}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62907C17-0036-4D44-B59C-70F2621A3EE4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Management.SecureAssessment.CfgProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6295DF27-35EE-11D1-8707-00C04FD93327}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6295DF2D-35EE-11D1-8707-00C04FD93327}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62AD5CB4-F168-4B95-8AAE-6F47A75D5D30}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oobe\UserOOBEBroker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62AE1F9A-126A-11D0-A14B-0800361B1103}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsuiext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62ba9430-9624-46ec-9034-d5ffabb0fca0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D3F5B6-7C5F-4914-82AF-E3C39743F380}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspCellularSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\intl.cpl,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\intl.cpl,-3#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\intl.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62D8ED13-C9D0-4CE8-A914-47DD628FB1B0}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\intl.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62dc1a93-ae24-464c-a43e-452f824c4250}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WMALFXGFXDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62E607F5-D6C2-4F5C-92EF-0D68452F5715}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6311429E-2F1A-4777-880F-C7289FD10169}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{631E88E6-45C5-40DC-B2D4-28B732E45F96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63480537-5d3d-4c42-8ac4-22a2bc016244}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WaaSMedicPS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636B1538-4AD1-4FA5-831A-403D7146B11D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636B9F10-0C7D-11D1-95B2-0020AFDC7421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmusic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{636c15cf-df63-4790-866a-117163d10a46}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tsmf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{637118F4-0E4E-4C90-BC39-161165F55B6E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\lockcontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6377013E-2C35-40F3-B8E1-1AB47D12982B}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6377013E-2C35-40F3-B8E1-1AB47D12982B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WABSyncProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{637c490d-eee3-4c0a-973f-371958802da2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WMALFXGFXDSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{639bdb5a-7959-48d4-afc3-44f252bf2924}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63B51F81-C868-11D0-999C-00C04FD655E1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63C04987-37C1-4CE6-9A11-4E0C1F8FC2A9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63da6ec0-2e98-11cf-8d82-444553540000}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-73 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63da6ec0-2e98-11cf-8d82-444553540000}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msieftp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63df056d-a8c7-4a2e-87ff-215de332c21f}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsvr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63E23168-BFF7-4E87-A246-EF024425E4EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{641ABA69-56FD-4029-A445-4D8375D3A699}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64226369-CCEB-477D-88D5-7A9CB465BEAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\IdCtrls.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{643B0017-1AAE-4AFA-B921-4BE3FB8308A2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\tspubwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22915 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-8964 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-55 Empty REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-55 Full REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-54 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6468e186-485e-47e4-83d8-8d9318675219}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64693913-1c21-4f30-a98f-4e52906d3b56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6473E7E7-D8D6-4696-9FBB-9F41DF134B7B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{647BD8C2-658B-4ECA-ABC7-FC5C0BF1704D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64B8F404-A4AE-11D1-B7B6-00C04FB926AF}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64BA50D0-40FD-4FD0-A846-65A2ACE6A075}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WpcRefreshTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64BC32B5-4EEC-4de7-972D-BD8BD0324537}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{650503CF-9108-4DDC-A2CE-6C2341E1C582} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63525 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6515834D-6125-4878-A3A3-6B0A73B809A2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6522CF99-94C7-4958-B18D-4F6159E6926B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{652527C4-4A72-4bd3-BFAB-4B06AB172D7C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65303443-AD66-11D1-9D65-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6543D242-A80B-44A3-B828-95C1EC452423}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{655D9BF9-3876-43D0-B6E8-C83C1224154C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65A04334-9DD4-4FA2-94DB-A62922B8BA24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65a5160f-a093-48b9-8f79-05098d5087ad}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66182EC4-AFD1-11d2-9CB9-0000F87A369E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66275315-bfa5-451b-88b6-e56ebc8d9b58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66742402-F9B9-11D1-A202-0000F81FEDEE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{667955AD-6B3B-43CA-B949-BC69B5BAFF7F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66D0DB14-5638-475f-A386-629522D8C461}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66d56b60-97b7-4e6a-9aa1-3ec5e3fdaa0f}\InProcServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\system32\WinsockHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50130 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0}\Elevation IconResource REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-320 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66eea0f5-001a-4073-a496-783f86fcf4c0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6705C562-0AE7-40EA-8474-F39DAB1813D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\RasMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6746c347-576b-4f73-9012-cdfeea251bc4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{674B6698-EE92-11D0-AD71-00C04FD8FDFF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6756A641-DE71-11d0-831B-00AA005B4383}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67677441-3350-45B4-9455-4D7F4A50F4E4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67718415-c450-4f3c-bf8a-b487642dc39b}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\optionalfeatures.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{677561f9-50fc-4b24-921d-eacb89706059}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6785BFAC-9D2D-4be5-B7E2-59937E8FB80A} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-50688 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6785BFAC-9D2D-4be5-B7E2-59937E8FB80A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{679f85cb-0220-4080-b29b-5540cc05aab6}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll,-51380 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{679f85cb-0220-4080-b29b-5540cc05aab6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67a33041-b8aa-4429-b02a-60f8d007c29e}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67A66362-050E-42ff-B241-82C1F51EA9B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\hgcpl.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\hgcpl.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67CA7650-96E6-4FDD-BB43-A8E774F73A57}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67EA3D48-83F2-408C-AD46-97F207D79DB3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{682159d9-c321-47ca-b3f1-30e36b2ec8b9}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{683a732e-eee1-4aec-8b45-455890e87ff1}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687607A0-6BA1-4355-99F4-4E3D749FFB19}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687734A3-65F2-43E5-B9AE-E775B351FD2C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68b07bff-cb50-4d60-a7d5-02b1a523bc8c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68b07bff-cb50-4d60-a7d5-02b1a523bc8c}\Instance\InitPropertyBag DefaultIcon REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-1025 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68c67565-410e-45e6-8560-4091ae193481}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\colbact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68DB2410-63D2-4D4A-9449-FBD53FA4E7A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68ddbb56-9d1d-4fd9-89c5-c0da2a625392}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\stobject.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68E1DF8C-9512-4801-A105-25A44DCCB164}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68E3F2FD-31AE-4441-BB6A-FD7047525F90}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68e52c1c-37cb-41d2-afe1-1e77d5f10676}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69375D35-B310-40fd-A7DC-9548E1DBC3B5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{693BADEA-1EB1-4013-B799-285F624A55BD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69546697-5b53-43c5-8391-9e227b54957b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{698F7D05-37F0-4902-8A63-AEF7D44DC7FC} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\pwlauncher.dll,-202 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{699583D1-6BA0-4DF2-B559-2487ED3A58CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{699745C2-5066-4B82-A8E3-D40478DBEC8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A25C12-1811-11D2-A52B-0000F803A951}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A25C14-1811-11D2-A52B-0000F803A951}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69a568cf-86d1-4e47-b1fc-a74a110583fb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69A95A38-C637-46A0-9FB2-1C939AEBF2E8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69BE8BB4-D66D-47C8-865A-ED1589433782}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69D76D1B-B12E-4913-8F48-671B90195A2B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\policman.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69F31C37-09E1-433b-AECB-EBC83E4065D9}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A205B57-2567-4a2c-B881-F787FAB579A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A323D92-38A8-449B-8A98-CB1CF3903F5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PrintPlatformConfig.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A49950E-CE8A-4EF7-88B4-9D112366511C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\softkbd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\MsRdpWebAccess.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5FEA5B-BF8F-4EE5-B8C3-44D8A0D7331C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A68CC80-4337-4dbc-BD27-FBFB1053820B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6aa17c06-0c75-4006-81a9-57927e77ae87}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ACB028E-48C0-4A44-964C-E14567C578BA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sppwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AE29350-321B-42be-BBE5-12FB5270C0DE}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AFCCE9E-85F0-475C-944E-9357B84A4975}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AFE625A-6ED7-4475-BD04-47170B77D584}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b19c2a9-50ba-4275-b99b-13dcf69b9f19}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\NfcRadioMedia.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B2D6BA0-9F3E-4f27-920B-313CC426A39E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\OpcServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b33163c-76a5-4b6c-bf21-45de9cd503a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shwebsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B34D24A-213B-4929-A8A1-F0A94EBDC8BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MaintenanceUI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6b3598cc-db4d-4992-95b9-5d7d327c0dc7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B462062-7CBF-400D-9FDB-813DD10F2778}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B56A227-7150-4A1F-A114-C959EB8F8C24}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgmts.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B6F9D2D-6D49-4026-83A6-86DFC1C3C6F0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B8195EE-950E-4F71-86F3-ADD77B191420}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B831E4F-A50D-45FC-842F-16CE27595359}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BA8349F-FDF4-4246-A724-32C943AED24F}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\SebBackgroundManagerPolicy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09692-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0969D-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0969F-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096A0-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassvcs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B1-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iaspolcy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B3-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iaspolcy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B7-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096B8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096BC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iashlpr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096C6-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasads.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096C8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasads.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096D5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DA-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DB-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DD-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\System32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DE-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096DF-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E0-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E1-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC096E5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09894-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09896-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09897-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09898-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC09899-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989A-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989B-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989C-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989D-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989E-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC0989F-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasrad.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A4-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A5-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A6-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A7-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A8-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098A9-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098AC-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC098AD-0CE6-11D1-BAAE-00C04FC2E20D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BC752F7-9721-49F8-873B-9FECB6215DE3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BD6AECA-AFB0-45B7-BAC4-F292EC0F3F41}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BF0A714-3C18-430b-8B5D-83B1C234D3DB}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6BFCACDC-A6A6-4343-9CF6-83A83727367B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6c19be35-7500-11d1-ad94-00c04fd8fdff}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\esscli.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C337B26-3E38-4F98-813B-FBA18BAB64F5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\Windows.Data.Pdf.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C3EE638-B588-4D7D-B30A-E7E36759305D}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C683A5C-32B8-47cd-AC28-4B292414D032}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C752774-29FB-4e50-8BB1-97098425A77C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceMetadataRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-101#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-100#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\main.cpl,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6C8EEC18-8D75-41B2-A177-8831D59D2D50}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6c955eca-04ce-4f1e-84fe-d8a526ce3137}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CED0DAA-4CDE-49C9-BA3A-AE163DC3D7AF} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CED0DAA-4CDE-49C9-BA3A-AE163DC3D7AF}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D1FBE59-A654-4A0E-8534-4505008DC528}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CoreShellExtFramework.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D3951EB-0B07-4fb8-B703-7C5CEE0DB578} LocalizedString REG_EXPAND_SZ @%SystemRoot%\\system32\\srchadmin.dll,-618 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D3951EB-0B07-4fb8-B703-7C5CEE0DB578}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D4A3650-628D-11D2-AE0F-006097B01411}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D5313C0-8C62-11D1-B2CD-006097DF8C11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D68D1DE-D432-4B0F-923A-091183A9BDA7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D6B3CD8-1278-11D1-9BD4-00C04FB683FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certenc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d6d5c8a-b008-4c62-8f4c-8c11a6a88f25}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D7A4B0E-66D5-4AC3-A7ED-0189E8CF5E77}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipiprt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d88dda9-359a-46d7-93d5-f1ea8995ab61}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D8BB3D3-9D87-4a91-AB56-4F30CFFEFE9F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6d8ff8e8-730d-11d4-bf42-00b0d0118b56}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnpcont.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D93C83D-31C1-490E-B5F9-068A80E3D7CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DeviceDriverRetrievalClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D99EF93-C3AB-4539-8F2D-BB1BEF21D415}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DA736C9-DCDE-4651-82A8-56E4EF1D8DD7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DAF9757-2E37-11D2-AEC9-00C04FB68820}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\mofd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6db29a9b-10d0-4b93-b86a-188fc998eff8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6db7cd52-e3b7-4ecc-bb1f-388aeef6bb50}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnapps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DC3804B-7212-458D-ADB0-9A07E2AE1FA2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DD062C7-B6E6-4702-98B0-6E6AB46C877D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22924 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-22985 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-166 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Options_RunDLL 0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e10d302-789d-4237-9037-6a675bdf6511}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e18f9c6-a3eb-495a-89b7-956482e19f7a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSATAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e33091c-d2f8-4740-b55e-2e11d1477a2c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shimgvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E3D2E94-E6D8-4afd-AFDE-ABD26CA88BF5} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\faultrep.dll,-5000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E582707-CCAF-4333-A9B9-3B4F75C362E0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SyncInfrastructure.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E5D1F2A-AF9A-419A-9CAF-C5A5C32C3CF8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6e682784-1eca-4cf2-988d-96b6e89e9a4d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E78DAD9-E187-4D6E-BA63-760256D6F405}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPSESS.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E7E2EF2-F881-472A-8E32-17CA95710402}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MDMAppProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EBFDF36-23A6-4F02-8800-CAB1CFEE43ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ReportingCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EC153C1-371E-47E1-A896-2F7F80EB7842}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EDD6D74-C007-4E75-B76A-E5740995E24C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmlua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6EF07F29-F9B8-4DA4-B59E-13DEA060AD60}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cmstplua.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6f13dd2e-ebee-4dd5-a72e-850b2087f5dd}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PhotoMetadataHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6f45dc1e-5384-457a-bc13-2cd81b0d28ed}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\credprovslegacy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6F7C8E8F-DC69-4e3f-BC05-439962A05FD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC1-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC3-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC4-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC5-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC6-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1201 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACC8-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-5 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD1-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD3-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD4-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7007ACD5-3202-11D1-AAD2-00805FC1270E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7013943A-E2EC-11D2-A086-00C04F8EF9B5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7016F8FA-CCDA-11D2-B35C-00105A1F8177}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{703574D6-AA1B-4FBF-A938-9A59C89343FA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pcsvDevice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7037C8FC-97F7-4AE5-BF2D-5D2660C97878}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\VoiceActivationManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70438d09-456a-4a6f-86fe-1c1a3afc699e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{706A79C0-1AC4-4E25-B311-93B643C1E499}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinMsoIrmProtector.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC01-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC05-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC07-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC13-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC31-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC32-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC33-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC61-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC62-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC71-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC75-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071EC77-663B-4BC1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA3-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA7-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA8-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECA9-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECAF-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB3-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB4-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB6-663B-4BC1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB7-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECB8-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECBF-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECE0-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECE5-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECF1-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7071ECFA-663B-4bc1-A1FA-B97F3B917C55}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\connect.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70804ECC-7272-4dc8-AFFC-97CD66AAA282}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7086AD76-44BD-11D0-81ED-00A0C90FC491}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdlgs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70A92FA3-7FD8-4808-9A05-6B2FD19AA5B3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70BF9CA8-182C-4BE8-8BE8-1A9217A5D1B5}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70cba7d2-50a5-4383-8aa5-b378c01c7364}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{711001CD-CC1D-4470-9B7E-1EF73849C79E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MitigationConfiguration.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{713aacc8-3b71-435c-a3a1-be4e53621ab1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71455ADC-0A77-405F-BF67-EA663D276653}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthMtpContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7153AC3A-D502-4A96-83AC-32C80FA6844A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{715D9C59-4442-11D2-9605-00C04F8EE628}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{717ef4fe-ac8d-11d0-b945-00c04fd8d5b0}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dsprop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7197647A-7D2B-42E3-B6E2-9BAABBDC8B67}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\EnterpriseDesktopAppMgmtCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{719ff33d-43af-4d4a-a89a-1599e6d88a37}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71A5EC7F-F325-4376-9D94-622C372E256F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\srumapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71D99464-3B6B-475C-B241-E15883207529} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-6111 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71D99464-3B6B-475C-B241-E15883207529}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71E32BAA-73EE-40a1-933C-F166F0192B72}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71f3a4a2-dc3f-4ad1-a1ad-81e2109d4414}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Win32_DeviceGuard.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71f96385-ddd6-48d3-a0c1-ae06e8b055fb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96460-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96461-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96462-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71F96463-78F3-11d0-A18C-00A0C9118956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ksxbar.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7210D183-F81E-4CEA-A2B9-E73C4ECB067A}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{722b3793-5367-4446-b6bb-db89b05c1f24}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {722b3793-5367-4446-b6bb-db89b05c1f24} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72422AA4-3536-41FA-965E-D5D9DD130297}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-103#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\main.cpl,-102#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\main.cpl,-200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725BE8F7-668E-4C7B-8F90-46BDB0936430}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\main.cpl,@1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{725F645B-EAED-4fc5-B1C5-D9AD0ACCBA5E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\comdlg32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{727af81a-cacf-4e37-9df7-a22ed974f298}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72967901-68EC-11D0-B729-00AA0062CBB7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72967903-68EC-11D0-B729-00AA0062CBB7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\stdprov.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72970BEB-81F8-46D4-B220-D743F4E49C95}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\vsswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\ntshrui.dll,-108 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\ntshrui.dll,-116 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72A7994A-3092-4054-B6BE-08FF81AEEFFC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72b36e70-8700-42d6-a7f7-c9ab3323ee51}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72B624DF-AE11-4948-A65C-351EB0829419}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72c57034-02c4-4e9f-bf9c-ca711031757e}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wuapi.dll,-63517 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72d3edc2-a4c4-11d0-8533-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72D633FF-401E-4AB4-BF80-143E4E907407}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72eb61e0-8672-4303-9175-f2e4c68b2e7c}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73257e95-0378-49d6-a954-44aabc841eab}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{734AC5AE-68E1-4FB5-B8DA-1D92F7FC6661}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPICMP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73843B93-848F-453B-953D-2E5B911429DC}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73AD6842-ACE0-45E8-A4DD-8795881A2C2A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73baee40-73e1-4d79-b95d-17b46be9ea08}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\exsmime.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73bf00aa-f928-4a23-b598-cd8afb33d717}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\webplatstorageserver.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C037E7-E5D9-4954-876A-6DA81D6E5768}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73E709EA-5D93-4B2E-BBB0-99B7938DA9E4}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvse.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73EB8142-4A74-49FD-A0FC-05FAEED4CD51}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuditNativeSnapIn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73FB9979-623F-41A6-BF1C-BA817C519C4F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{740e40d8-5d9f-46be-98dd-39915e3c32ef}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-5#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-4#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\devmgr.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74246bfc-4c96-11d0-abef-0020af6b0b7a}\Shell\RunAs\Command (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmc.exe %SystemRoot%\system32\devmgmt.msc HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{743B5D60-628D-11D2-AE0F-006097B01411}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{743F1DC6-5ABA-429F-8BDF-C54D03253DC2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cryptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7444C719-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\cryptext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7447A267-0015-42C8-A8F1-FB3B94C68361}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74628299-57EC-4F12-BA1C-08B477BF447A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7469AE5E-1CA1-4181-970C-BDFD8EAA2C4F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74761821-E040-423d-9399-35BBA3ECFFF5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\daconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF61-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF65-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7478EF69-8C46-11d1-8D99-00A0C913CAD4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7487cd30-f71a-11d0-9ea7-00805f714772}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{74b077e8-32de-40ab-be4e-65609f575459}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75048700-EF1F-11D0-9888-006097DEACF9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{750fdf10-2a26-11d1-a3ea-080036587f03}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7513af53-9c75-4ad4-b47e-8d855099e023}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7519A68F-E6F1-422E-B741-F9B960CBAA97}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\FlightSettings.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75207391-23F2-4396-85F0-8FDB879ED0ED}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\servicing\CbsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\firewallcontrolpanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\firewallcontrolpanel.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{752438CB-E941-433F-BCB4-8B7D2329F0C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\firewallcontrolpanel.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7542E960-79C7-11D1-88F9-0080C7D771BF}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\es.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7548A939-2776-46CF-8F62-1D1F488DEDF0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75587F04-6EFF-443e-BED5-637117299643}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\daconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{756c119d-9124-4693-80d8-2c1e49afab1f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\rastlsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75718C9A-F029-11D1-A1AC-00C04FB6C223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75847177-f077-4171-bd2c-a6bb2164fbd0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75CA41C9-9F1D-41BC-9285-65595759E52B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75dff2b7-6936-4c06-a8bb-676a7b00b24b}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7669CAD6-BDEC-11D1-A6A0-00C04FB9988E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76765b11-3f95-4af2-ac9d-ea55d8994f1a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7693E886-51C9-4070-8419-9F70738EC8FA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mswebp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76A64158-CB41-11D1-8B02-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76be8257-c4c0-4d37-90c0-a23372254d27} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\SearchFolder.dll,-38271 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76be8257-c4c0-4d37-90c0-a23372254d27}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{770e8e77-4916-441c-a9a7-b342d0eebc71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7724F5B4-9A4A-4a93-AD09-B06F7AB31035}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DAMM.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7757BA9B-7986-4866-B53F-A31E89FCBA15}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77597368-7B15-11D0-A0C2-080036AF3F03}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\printui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7763B7C0-A5FD-4AA9-BD1B-58B17137236B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777B6BBD-2FF2-11D3-88FE-00C04F8EF9B5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA815-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA816-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA81A-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA851-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwtpw32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA853-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwtpdui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA87C-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8D2-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E3-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E5-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E7-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8E9-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F5-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8F9-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\xwizards.dll,-3123 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{777BA8FB-2498-4875-933A-3067DE883070}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwreg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77A1C827-FCD2-4689-8915-9D613CC5FA3E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77F419AA-771A-45ff-AC66-7567FA3243D3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{780102B0-C43B-4876-BC7B-5E9BA5C88794}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78065982-b44b-41c6-a9a3-f2fd11746223}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78103FB7-AED7-4066-8BCD-30BB27B02331}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{782FC20A-81CF-43DE-A625-072155BCD30C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78317482-5b49-4093-9c34-2758fc63bef0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7849596a-48ea-486e-8937-a2a3009f31a9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{788B686B-EA20-41CD-A018-1BFD506194B2}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78A683B3-A5CE-484D-9559-221D1CB45EC5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CleanPCCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78DE489B-7931-4f14-83B4-C56D38AC9FFA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78fe669a-186e-4108-96e9-77b586c1332f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\query.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7924BBA8-1913-4B0E-8E6F-6F45CE499731}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wbem\nlmcim.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7946ede1-839d-49be-9c1d-27c44529e093}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7970614A-BD82-439E-A828-CC96F8E91428}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{797A9BB1-9E49-4e63-AFE1-1B45B9DC8162}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\upnp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79834058-0A20-44dc-AD9B-CE07DC6E379C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7988B571-EC89-11cf-9C00-00AA00A14F56}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dskquota.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7998DC37-D3FE-487C-A60A-7701FCC70CC6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\repdrvfs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79C43ADB-A429-469F-AA39-2F2B74B75937}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SensorsApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79CEEEBE-BDE0-4C05-9D92-155F78BB7D2B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\activationclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79DBA461-677B-448A-8A5E-3006DABAF6F9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79DEA627-A08A-43AC-8EF5-6900B9299126}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100}\Elevation IconReference REG_EXPAND_SZ @%SystemRoot%\system32\imageres.dll,-178 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A076CE1-4B31-452a-A4F1-0304C8738100}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A0F6AB7-ED84-46B6-B47E-02AA159A152B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7a54bbed-bb9b-425a-8bd7-1a5410923dcf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A56C4CB-D678-4188-85A8-BA2EF68FA10D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A63D67D-014E-4f5f-AE9D-CC0C1FE16DAC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A80E4A8-8005-11D2-BCF8-00C04F72C717}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7a872d34-bc6b-4f83-b199-22e9c0a91ddc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\credprovhost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7A9D77BD-5403-11d2-8785-2E0420524153}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netplwiz.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7aa7790d-75d7-484b-98a1-3913d022091d} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\shell32.dll,-28702 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7aa7790d-75d7-484b-98a1-3913d022091d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F6-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F7-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AA809F8-C072-11DF-AC23-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhengine.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AAE5B4F-488C-419b-95E2-923F2AA70FFD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7abbbcca-e01b-4560-8228-92e1eedbc908}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AFA253E-F823-42f6-A5D9-714BDE467412}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7afb974e-3842-4106-a702-82a13e088f46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B014A0C-A42A-4268-BFE0-AFCA9745CD53}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B0C11A0-2FAF-40d4-9FE5-28FA27C85442}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B134486-8B58-4802-A6AE-1A5E708DBCC6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B19A919-A9D6-49E5-BD45-02C34E4E4CD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B31547E-EF7E-479b-9494-2216DC179E61}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b40792d-05ff-44c4-9058-f440c71f17d4}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mintdh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b4a83b6-f704-4b77-8e3d-c6087e3a21d2}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B5A12E8-0C60-4939-A046-11CF879B19FB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5} InfoTip REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-160#immutable1 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\appwiz.cpl,-159#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\imageres.dll,-87 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b81be6a-ce2b-4676-a29e-eb907a5126c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appwiz.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B82D688-3B9E-4090-8ECD-FC84E454C923}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msvproc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7B90DAE3-4AD0-4F0D-BE80-A26B296C3156}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7b9e38b0-a97c-11d0-8534-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BA4C740-9E81-11CF-99D3-00AA004AE837}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7bce3cfb-954c-438f-974c-73a8e0593f1a}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\provsvc.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\imageres.dll,-1013 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7be73787-ce71-4b33-b4c8-00d32b54bea8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\provsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BF2A436-2A30-4797-90EE-0F66B8426D75}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C127AC8-EC8D-40f2-91D0-B791CFC2397B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C28841A-AB97-498e-98C4-F6F143366FBC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C3269CC-95B0-41C7-BCD7-F96640883669}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\configmanager2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C48D08B-0DA5-4BA4-9C6E-4BB65DEB2005}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C50E1E9-DB15-4410-89C5-D27F4B727368}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CredProvHelper.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C606A3F-8AA8-4E36-92D6-2B6AFEC0B732}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\pmcsnap.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c61d0a6-af7e-483a-b705-d2c5c2264656}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c67eb93-8eff-4e48-889f-45ba299bc46f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c83c056-1d0d-4c8e-a6b0-89e79c213559}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\oobe\SetupCleanupTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wbemsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7cacbd7b-0d99-468f-ac33-22e495c0afe5}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7cd3c903-d2e9-4a4d-8af3-3025445b24bf}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7D3195FF-A16A-43c3-9E50-E8A0975B234C}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\BthpanContextHandler.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB7A939-E5C8-4eaa-B3E0-43CE04CAFFBE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7db875bd-1b88-4c5f-9e4c-ed23eaff24e1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.appcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DE95A91-6443-4749-AFC4-AC4EEDCD4421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7df2cfcd-6c09-415a-ae9d-5263f4964cbb}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DF8EF76-D449-485f-B4EB-58DC96B31EDB} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\pnidui.dll,-605 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DF8EF76-D449-485f-B4EB-58DC96B31EDB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgprint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E08E268-CD23-4E97-B433-AB31D5BFB6AE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E3FCEA1-31B4-11D2-AE1F-0080C7337EA1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E45546F-6D52-4D10-B702-9C2E67232E62}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E4A23E2-B969-4761-BE35-1A8CED58E323}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\XpsServices.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7e57f418-1f71-4411-9e09-45884f4f4714}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E66DBEF-2474-4E82-919B-9A855F4C2FE8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wscproxystub.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7e99c0a3-f935-11d2-ba96-00c04fb6d0d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EAD5C10-8B3F-11E6-AE22-56B6B6499611}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\bnmanager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EB5FBE4-2100-49E6-8593-17E130122F91}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ECEAD6D-6452-4DED-B567-7BB9947D7669}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7ED25D63-48E5-4BE3-8539-3040B0B8991C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7EFA68C6-086B-43e1-A2D2-55A113531240}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F00FA1E-9820-47B1-9C4F-8701F1432177}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppxPackaging.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F12E753-FC71-43D7-A51D-92F35977ABB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F1899DA-62A6-11D0-A2C6-00C04FD909DD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F43B400-1A0E-4D57-BBC9-6B0C65F7A889}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\catsrvps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F598975-37E0-4A67-A992-116680F0CEDA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F72CC7A-74A0-45B4-909C-14FB8186DD7E}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmipdfs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7f8e7858-c362-4c0a-b868-4cdd929da715}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\authui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FB1D98A-F895-4761-8DC2-774969C84D10}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\WMIPJOBJ.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7febaf7c-18cf-11d2-993f-00a0c91f3880}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80009818-f38f-4af1-87b5-eadab9433e58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsecedit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{807e5a10-4856-4f9a-8e3c-a1f7e75648b3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8086ebd4-43e3-4b19-beb3-f0ea4ecf319c}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdiagnhost.exe ServerExecutable REG_EXPAND_SZ %SystemRoot%\System32\sdiagnhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8099904b-0b91-4906-a89d-11de2bd8f737}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{809fee14-1687-41d3-b333-5c2572c743c5}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DdcComImplementationsDesktop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80c68d96-366b-11dc-9eaa-00161718cf63}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80CB8C11-0E10-45F4-A1BA-EAD3838D7034}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsvd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10102 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\tabletpc.cpl,-10100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\tabletpc.cpl,-10200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F3F1D5-FECA-45F3-BC32-752C152E456E}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\tabletpc.cpl @1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80F94176-FCCC-11D2-B991-00C04F8ECD78}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mmcndmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81007291-f070-4c4f-b978-ad1bec84babc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{811F592B-CDE7-4ca4-A6D4-7BB3F60AD8FB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81218F10-A8AA-44C4-9436-33A42C3852E9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{812F944A-C5C8-4CD9-B0A6-B3DA802F228D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8135397C-5C6C-4f6b-8E93-30685615F4EA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{814B9800-1C88-11D1-BAD9-00609744111A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vbisurf.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{814B9801-1C88-11D1-BAD9-00609744111A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vbisurf.ax HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{815509B5-2940-4287-83DD-13EA06E181DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8168e74a-b39f-46d8-adcd-7bed477b80a3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MemoryDiagnostic.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81796171-DF5F-4F1B-A80C-BE4715D3C6BB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\spsreng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{817F98C4-C9D9-4B8F-B8D0-413C8E5DBBB7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{819469D2-D0CF-11d1-8E0B-00C04FC2E0C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\clbcatq.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{819d1334-9d74-4254-9ac8-dc745ebc5386}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81b43e73-e814-4dcd-a7c6-e22e7fe6a029}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{820825FD-1358-4705-8FEB-56B5CEE8BFD5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{823B8267-735C-477E-8151-0FA9ADC8AB3A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82569ac2-3564-4f80-b3c5-cfd842e40d2d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\CspProxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8278F931-2A3E-11d2-838F-00C04FD918D0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{827b7a93-2c48-433e-b247-8e3be20aab4a}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82BD0E67-9FEA-4748-8672-D5EFE5B779B0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wincredui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82c588e7-e54b-408c-9f8c-6af9adf6f1e9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82d792e9-8f8c-4f4a-9dbf-06253e4562a8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83267d9b-a70d-469d-bab0-c4e3181209d1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\srmscan.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8336e323-2e6a-4a04-937c-548f681839b3}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{833A69FB-5E17-4893-85A5-1EF469217372}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WlanRadioManager.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83472593-4fe6-4f44-a14c-fc8d4b4ff3f5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{836CD085-B3D3-4b5c-BBCB-224F35EB0CCD}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpnprv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8373ce97-72b7-4fb2-b5e8-b38aa083d734}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WinSyncProviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{838A77A6-14D4-439C-925F-30EE58005026}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83B52078-E93E-425B-926F-DE6169875E41}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83bb272f-7d5e-4b6e-9250-889893f0dac7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83BC5EC0-6F2A-11d0-A1C4-00AA00C16E65}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83e05bd5-aec1-4e58-ae50-e819c7296f67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iasdatastore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83F18638-2238-4B33-9FF8-24E759ADDC66}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8408B448-06CC-47A0-B482-BDAB666AF557}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DeviceSetupStatusProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{840A0DD9-DC22-4f92-ABCE-894E6D8DCF47}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{842D84C9-C347-11D1-8F64-00C04FB611C7}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtctm.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84302F97-7F7B-4040-B190-72AC9D18E420}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{846225EA-B241-42A7-9D46-A694ECD5A781}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84840C72-9913-4D9F-BEE4-447A8A875B82}\InprocServer32 (Default) REG_EXPAND_SZ %SYSTEMROOT%\System32\wbem\appbackgroundtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{849F5497-5C61-4023-8E10-A28F1A8C6A70} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{849F5497-5C61-4023-8E10-A28F1A8C6A70}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84a3a6bf-f1d8-496e-9f05-d3de70973152}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\WWanHC.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84CCE1D2-97AD-4448-AF0F-A79164073A60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\themecpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DE202D-5D95-4764-9014-A46F994CE856}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DE202E-5D95-4764-9014-A46F994CE856}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AdmTmpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84e04a55-2d42-4909-86e3-62fd11483e8b}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\setupcln.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8509bb76-ffa3-4827-ba5e-2e786010f42f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wiaaut.dll,-3000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{850D1D11-70F3-4BE5-9A11-77AA6B2BB201}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wiaaut.dll, 102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{854CB94F-2279-4F7F-AC62-31E22E4D8899}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855fec53-d2e4-4999-9e87-3414e9cf0ff4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8570b44e-d109-42d3-be32-0f8d446669c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8580ca99-925D-4537-959B-B7C9EA45FC01}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\desktopshellext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{858DACA2-78B4-412F-9A4E-315BBB4E1F21}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{859AC360-A8F0-4d82-BBC7-7E28529FCC46}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85AFC315-CAC7-4475-875B-D7161BA14874}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85B3D708-4313-43F4-959B-829654791E8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PackageStateRoaming.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85cfccaf-2d14-42b6-80b6-f40f65d016e7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85D88658-CFDB-4F51-AD06-4DAC60CB5AFB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85e94d25-0712-47ed-8cde-b0971177c6a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8601319a-d7cf-40f3-9025-7f77125453c6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sxsstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{862321c3-70b2-4ee2-8231-87ec05819d98}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\netcorehc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8062 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\prnfldr.dll,-8036 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\imageres.dll,-26 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863aa9fd-42df-457b-8e4d-0de1b8015c60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\prnfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{863FA3AC-9D97-4560-9587-7FA58727608B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\filemgmt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86422020-42A0-1069-A2E5-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{864A1288-354C-4D19-9D68-C2742BB14997}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{865ab07b-1c8e-48c0-b9a7-fa6c5ff48f7b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86bec222-30f2-47e0-9f25-60d11cd75c28}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86c14003-4d6b-4ef3-a7b4-0506663b2e68}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86C86720-42A0-1069-A2E8-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\usercpl.dll,-71 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\usercpl.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86EB3FD8-E142-4f3d-B3D3-5D8F41097D58}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86F80216-5DD6-4F43-953B-35EF40A35AEE} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\wlanui.dll,-17301 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86F80216-5DD6-4F43-953B-35EF40A35AEE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86FFEF81-E868-46F8-ACC2-290C2D8C3659}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\DuCsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{870AF99C-171D-4f9e-AF0D-E63DF40C2BC9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\ieframe.dll,-5723 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{872f8dc8-dde4-43bd-ac7a-e3d9fe86ceac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SystemResetPlatform\SystemResetSSO.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87630419-6216-4ff8-a1f0-143562d16d5c} InfoTip REG_EXPAND_SZ @%systemroot%\system32\wwanpref.dll,-2002 LocalizedString REG_EXPAND_SZ @%systemroot%\system32\wwanpref.dll,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87630419-6216-4ff8-a1f0-143562d16d5c}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wwanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877A0BB7-A313-4491-87B5-2E6D0594F520}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2} InfoTip REG_EXPAND_SZ @%systemroot%\system32\sdshext.dll,-102 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{877ca5ac-cb41-4842-9c69-9136e42d47e2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\sdshext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{879795A1-A911-4FEF-984F-1A1CA4E14637}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{879fb53b-cba3-4fc8-b233-d9a93afa7fbc}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\hgcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87AB8051-37BD-4e70-83C0-1E4F9AE1D37D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87BB326B-E4A0-4de1-94F0-B9F41D0C6059}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\eapp3hst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87C8BA99-B13E-4BAE-87EE-E14A13172B26}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PrintWSDAHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87CB4E0D-2E2F-4235-BC0A-7C62308011F6}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\defragproxy.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\srchadmin.dll,-602#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\srchadmin.dll,-601#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\srchadmin.dll,-201 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D66A43-7B11-4A28-9811-C86EE395ACF7}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,Control_RunDLL %SystemRoot%\System32\srchadmin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87FC0268-9A55-4360-95AA-004A1D9DE26C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dsdmo.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{880ac964-2e34-4425-8cf2-86ada2c3a019}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{883373C3-BF89-11D1-BE35-080036B11A03}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{883FF1FC-09E1-48e5-8E54-E2469ACB0CFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\srcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8841d728-1a76-4682-bb6f-a9ea53b4b3ba}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\keymgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2000-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2001-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2002-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2003-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2007-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2008-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2009-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e200f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2010-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2011-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2012-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2013-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2014-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2015-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2016-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2017-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2018-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2019-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e201f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2020-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2021-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2022-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2023-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2024-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2025-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2026-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2027-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2028-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e202f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2030-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2031-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2032-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2033-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2034-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2036-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2037-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2038-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2039-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203a-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203b-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203d-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e203f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2042-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2043-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2044-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2045-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2046-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2049-217d-11da-b2a4-000e7bbb2b09}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnrollCtrl.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e204c-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2050-217d-11da-b2a4-000e7bbb2b09} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\CertEnroll.dll,-490 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2050-217d-11da-b2a4-000e7bbb2b09}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnrollCtrl.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2051-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e205e-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e205f-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2060-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2061-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{884e2062-217d-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8856918E-74C7-431C-B63D-3A5FDCC6AC08}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MsDtcWmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8874E3B6-1898-4F93-84A1-8055D295617B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88753B26-5B24-49bd-B2E7-0C445C78C982}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msvproc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88866959-07B0-4ED8-8EF5-54BC7443D28C} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88866959-07B0-4ED8-8EF5-54BC7443D28C}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062} FriendlyTypeName REG_EXPAND_SZ @%SystemRoot%\system32\zipfldr.dll,-10226 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\zipfldr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{890CB943-D715-401B-98B1-CF82DCF36D7C}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\vdswmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8929fd8a-3967-4896-a02d-f126195af6f7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{896664F7-12E1-490f-8782-C0835AFD98FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{896C2B1D-3586-4FA5-B419-41F4A6D38CF1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SyncInfrastructure.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8973b4ef-7da5-4031-a333-f65609a4dcf4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89917B7C-A1A6-11DF-8BF6-18A90531A85A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhtask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89d1d0c2-a3cf-490c-abe3-b86cde34b047}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\ReAgentTask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819} (Default) REG_EXPAND_SZ @%systemroot%\system32\mssvp.dll,-110 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll,-504 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89D83576-6BD1-4c86-9454-BEB04E94C819}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89dc1cf7-97b5-4389-a6af-c08fb4d5a408}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MitigationClient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89EA5B5A-D01C-4560-A874-9FC92AFB0EFA}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\NaturalLanguage6.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A03E749-672E-446E-BF1F-2C11D233B6FF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A0A83A7-7A6D-48D6-8F3D-9029D8A76E06}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A1A8BB1-242F-431A-9F5B-254BA754631C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A22069C-1EF7-45D2-A409-219540D00A76}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A23E65E-31C2-11d0-891C-00A024AB2DBB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A23E65E-31C2-11d0-891C-00A024AB2DBB}\StartFindEntries\{B577F070-7EE2-11D0-913F-00AA00C16E65} Icon REG_EXPAND_SZ %SystemRoot%\system32\dsquery.dll,2 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\dsquery.dll,-173 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A3E2E1E-A40B-4650-9FB4-30072A68E661}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A44FFB7-8140-432F-BEC5-1B5FF725BAC8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A667154-F9CB-11D2-AD8A-0060B0575ABC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dswave.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a7cae0e-5951-49cb-bf20-ab3fa1e44b01} DisplayName REG_EXPAND_SZ @%SystemRoot%\system32\fontext.dll,-199 Icon REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll,10 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8a7cae0e-5951-49cb-bf20-ab3fa1e44b01}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A89CB2C-1ED0-4709-A39C-FC34115DD660}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A99553A-7971-4445-93B5-AAA43D1433C5}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A9B1CDD-FCD7-419c-8B44-42FD17DB1887}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\UIAnimation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ac3587a-4ae7-42d8-99e0-0a6013eef90f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ADD018C-5C5F-43C5-BE1E-07BAE85593B7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ADE5386-8E9B-4F4C-ACF2-F0008706B238}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8aeff2c9-c97f-47b6-b27c-bd5969fe94d0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B19C1CD-C80C-4AEC-AAE2-4E39FEDD24D0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\MDMSettingsProv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b20cd60-0f29-11cf-abc4-02608c9e7553}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsnt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8b455e45-7cc8-4253-af5b-b2cd3313e9cc}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B918B82-7985-4C24-89DF-C33AD2BBFBCD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BE38B01-5124-478D-BF64-B487D2FC79C0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\peopleband.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8be9f5ea-e746-4e47-ad57-3fb191ca1eed}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BEBCE8B-1AF0-4323-8B4D-36994567CAE1}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\wmiprvsd.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8bf9a910-a8ff-457f-999f-a5ca10b4a885}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8bfc4ca2-441f-4a4f-9891-4e6a6d5d2745}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C0A1AC2-C6B3-447D-B971-35204B263972}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wpncore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C1645B0-9864-465E-BE75-990B030E4B11}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c2031f1-b169-4e7c-9cb0-56f18d7b0c01}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\iasrecst.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C334A55-DDB9-491c-817E-35A6B85D2ECB}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\iassam.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c4fb173-81ae-4399-9208-591a574a893f}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c4fb175-81ae-4399-9208-591a574a893f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wwanconn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C7461EF-2B13-11d2-BE35-3078302C2030}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c7eaf13-fbd6-4ed8-ac79-fb12fcd71326}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\sdengin2.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C89071F-452E-4E95-9682-9D1024627172}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CF89BCB-394C-49b2-AE28-A59DD4ED7F68}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d14113b-5715-4714-8a20-69fc343626de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D1C559D-84F0-4BB3-A7D5-56A7435A9BA6}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d1e5d4b-a99c-4408-b0f0-ccab9e5835a1}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D750ED5-F41E-4DD0-BF17-B1A53741BB5B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D759BEE-4828-47ad-9B19-F873D5E0F945}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobewirelessplugin.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d80504a-0826-40c5-97e1-ebc68f953792}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D8B8E30-C451-421B-8553-D2976AFA648C}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mobsync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D9945C3-A621-4F52-8641-6D8B755F42E2}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioses.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DA6DB1C-8114-40c6-9D97-D2E7E9757D67}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DB0224B-3D65-4F6F-8E12-BEB4B78B8974}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfnetsrc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DBEF13F-1948-4AA8-8CF0-048EEBED95D8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DDA2943-4787-4B48-9336-CAE6746DF276}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DE39096-D24E-4DF3-B24B-1B7F770BF799}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8DE9C74C-605A-4acd-BEE3-2B222AA2D23D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\pwcreator.exe,-150 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\pwcreator.exe,-151 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe,-2001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E0C279D-0BD1-43C3-9EBD-31C3DC5B8A77}\Shell\Open\Command (Default) REG_EXPAND_SZ %SystemRoot%\System32\pwcreator.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E67B5C5-BAD3-4263-9F80-F769D50884F7} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-12001 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E67B5C5-BAD3-4263-9F80-F769D50884F7}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\SecurityHealthAgent.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e827c11-33e7-4bc1-b242-8cd9a1c2b304}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e85d0ce-deaf-4ea1-9410-fd1a2105ceb5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E871B70-0F3D-4605-8919-89A7ACBA199C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e87e7b8-896b-4e67-bfa2-45c67d60ac3a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\netcenter.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\netcenter.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E908FC9-BECC-40f6-915B-F4CA0E70D03D}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmdskmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8ED392B6-23C2-4C3C-9126-D12D6BE621FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EE97210-FD1F-4b19-91DA-67914005F020}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F22970F-2910-4baf-9B34-396F18318C17}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8f3080a6-af99-4f2e-a806-f3d5702a0444}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F70DED9-9E4E-4CD1-8547-C83666D055E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F7D49DF-F271-4913-8A85-F73ACCE31138}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F914656-9D0A-4EB2-9019-0BF96D8A9EE6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC0B734-A0E1-11D1-A7D3-0000F87571E3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\GPEdit.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD7E19C-3BF7-489B-A72C-846AB3678C96}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA}\DefaultIcon (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll,0 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FD8B88D-30E1-4F25-AC2B-553D3D65F0EA}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\dxp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FE3AA4C-4FFF-11E0-9EAE-3586DFD72085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FF007D1-C3E3-44D5-86AF-2ECB5F663D7C}\InProcHandler32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFE37E7-DDD3-434A-9DEB-1202D1BE31F7}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\LocationApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90087284-d6d6-11d0-8353-00a0c90640bf} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,-981 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90087284-d6d6-11d0-8353-00a0c90640bf}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{900be39d-6be8-461a-bc4d-b0fa71f5ecb1}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wdi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{900c0763-5cad-4a34-bc1f-40cd513679d5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\hcproviders.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90511715-D0AD-4DAA-A18B-254BD3AE1CF2}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\fhsrchapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9053699F-A341-429D-9E90-EE437CF80C73}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{905b55a8-77f0-4d28-80dd-e46b1412343f}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90903716-2F42-11D3-9C26-00C04F8EF87C}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90954C68-4D60-4023-A1F8-C6AF6F62E1C8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netcenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90AA3A4E-1CBA-4233-B8BB-535773D48449}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90AE59CE-C67A-492B-A4DE-78A6EA95AF68}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wpnuserservice.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B584D3-72AA-400F-9767-CAD866A5A2D8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ddp_ps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90b9bce2-b6db-4fd3-8451-35917ea1081b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90BA30DD-785C-4186-9F44-B7D2EA994EA5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90BE9587-37b7-477C-81A7-BA7C5C40FF81}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90ED9FAA-A6E5-4671-8E50-1C060F8B9C47}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\servicing\wrpintapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90f8c90b-04e0-4e92-a186-e6e9c125d664}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91145a83-a6c3-4181-89ff-8365f096f90d}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9127081a-04b5-4044-b4c5-c7a9718e8795}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{913a6daa-57ee-4551-9ada-64d329d306a5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{914feed8-267a-4baa-b8aa-21e233792679}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9185F743-1143-4C28-86B5-BFF14F20E5C8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91ECFDB4-2606-43E4-8F86-E25B0CB01F1E}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\sppcomapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39027-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39028-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f39029-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91f3902a-217f-11da-b2a4-000e7bbb2b09}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\CertEnroll.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\recovery.dll,-101 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F}\Elevation IconReference REG_EXPAND_SZ @%Systemroot%\System32\recovery.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9200689A-F979-4eea-8830-0E1D6B74821F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shpafact.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92038079-b9ef-428f-87f0-0463fcb1272a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\Windows.Storage.Search.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9207d8c7-e7c8-412e-87f8-2e61171bd291}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9209B7D1-6DA5-43E4-BCD1-F2BE497635E7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpendp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92192FD8-C1CB-434B-A8E8-B7F3AC424EE4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobedui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92337A8C-E11D-11D0-BE48-00C04FC30DF6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\oleprn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{924ccc1b-6562-4c85-8657-d177925222b6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9264B7DC-A82F-4AFD-89C8-4F399DA7B028}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926749fa-2615-4987-8845-c33e65f2b957}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\UIRibbon.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926b23ab-fd60-43f1-8f63-b24cabdf5316}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{926f41f7-003e-4382-9e84-9e953be10562}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9271B890-7BBF-48DB-ACB3-F973DC34156D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasdlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927907E5-A066-4b07-BD4F-F53C7B748124}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\umpowmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927971f5-0939-11d1-8be1-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\activeds.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{927ea2af-1c54-43d5-825e-0074ce028eee}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\energytask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9280E842-F931-4D24-B074-739FB4DA43F4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92A8CCF5-2725-4E95-9264-74FAB86FBBCA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ab5af7-a374-417e-b2e2-9b317353a322}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\stclient.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92b66080-5e2d-449e-90c4-c41f268e5514}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfcore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92BC73D8-9313-42CC-8C1B-FCF94ED2C7B4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\enterprisecsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92CC85F4-ACA4-4D72-94C8-49D1CAD0985F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92D2CC58-4386-45a3-B98C-7E0CE64A4117}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9301E380-1F22-11D3-8226-D2FA76255D47}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmloader.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9311A763-D284-4CE5-B2AA-6A99D9305D60}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9324DA94-50EC-4A14-A770-E90CA03E7C8F}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll,7 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9324DA94-50EC-4A14-A770-E90CA03E7C8F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\themeui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\FontExt.dll,-8007 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93412589-74D4-4E4E-AD0E-E0CB621440FD}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\system32\fontext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9343812e-1c37-4a49-a12e-4b2d810d956b}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\searchfolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9343812e-1c37-4a49-a12e-4b2d810d956b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934A7048-1E4A-4D6E-9A9A-CB739F519B07}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\xwizards.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934A9523-A3CA-4BC5-ADA0-D6D95D979421}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\dpnet.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{934D4698-6A59-48f8-9F29-9FB30670320E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{935249A5-B5E8-43F6-A991-61435E5954B3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{937847E7-C78A-4834-9CE8-5F3EC99BD604}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuthExt.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9381AF33-66A3-4D5A-8AF2-9515B1DC19A5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rasgcw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{939D20AC-8036-406F-BD5C-BF672896BD71}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93a56381-e0cd-485a-b60e-67819e12f81b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93AAD2A0-036A-4B11-A078-DA8776B38139}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.applicationmodel.datatransfer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93AC9CB8-27D5-4482-BFDF-68F21C7454A3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mscandui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93C063B0-68CB-4DE7-B032-8F56C1D2E99D}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MMDevApi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93CB110F-9189-4349-BD9F-392D9A4D0096}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\accessibilitycpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93cf36dd-dc00-499c-8477-7cbe51501a15}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{93F7AA8E-CF82-4CB7-9251-48BC637A43B8}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\certmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{942A8E4F-A261-11D1-A760-00C04FB9603F}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\appmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94357B53-CA29-4b78-83AE-E8FE7409134F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9440861a-25ca-4bc2-833e-866a6191d110}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9440F424-33D8-4114-BC6E-033867239A09}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9456A480-E88B-43EA-9E73-0B2D9B71B1CA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94596c7e-3744-41ce-893e-bbf09122f76a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SmartcardCredentialProvider.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{947812B3-2AE1-4644-BA86-9E90DED7EC91}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{948B45F7-EFB8-46fb-8704-B340D847227A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{948CFD8C-1888-4E52-8703-99610347EBB6}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\audioeng.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94a909a5-6f52-11d1-8c18-00c04fd8d503}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\adsmsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94AB5C27-C954-4218-B0A1-29640412EFBE}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94abaf2a-892a-11d1-bbc4-00a0c90640bf} LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\devmgr.dll,- 1356 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94abaf2a-892a-11d1-bbc4-00a0c90640bf}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\devmgr.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94B23D4D-1040-4C4B-9081-85D8D6FA36C4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94d86820-3128-41cd-be63-5e7bbd96a958}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\ttlscfg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94E7F5BD-FC4F-446C-93D2-3942E8FE34C9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSync.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94FBC195-CB86-4142-9A6A-8E9CCF0D4F4D}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\oobe\msoobeplugins.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{956FADED-2450-4ABB-9F8C-4629FAFEBB92}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\listsvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{958A1709-3B44-11D1-AD74-00C04FC2ADC0}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\txflog.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95B4ABA8-6D5B-4F99-9A9D-4A5EF4C75AFD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95CE8412-7027-11D1-B879-006008059382}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95F39BD0-A301-49BF-B80C-017F5616B26A}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A71-9DBC-11DA-9E3F-0011114AE311}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\msrdc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{964A239F-6039-4A44-BB9B-EC0FEAFE28FC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ShareHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96749373-3391-11D2-9EE3-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96749377-3391-11D2-9EE3-00C04F797396}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9678f47f-2435-475c-b24a-4606f8161c16}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{968AD211-D1B1-444B-9F59-51701D1128D3}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\remoteaudioendpoint.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96b42929-01f1-468c-b521-6294ab438f4a}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\windows.ui.creddialogcontroller.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96B9DAE3-CF15-45e9-9719-57285348225E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96C8AD95-C199-44DE-B34E-AC33C442DF39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Pimstore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mstscax.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9743B50B-3190-4061-8DA3-BE13AA02181E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wlanpref.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{974C63D2-6846-4F6B-BF27-BF71ADB1E608}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\PrintPlatformConfig.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{975797FC-4E2A-11D0-B702-00C04FD8DBF7}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\els.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{978b010d-d731-48af-b6a9-afe5dfe2fac9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppLockerCsp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97CBCB09-9D73-4D90-9311-A78626569953}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SpatialStore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97e467b4-98c6-4f19-9588-161b7773d6f6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98068995-54d2-4136-9bc9-6dbcb0a4683f}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\WinrsHost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{981D9411-909E-42A7-8F5D-A747FF052EDB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecs.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9821D278-84E2-4D6A-8712-2C6E23D43C7B}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\EnterpriseModernAppMgmtCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{987D8DFA-3E2C-4929-9C51-61AC8E00CBC3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98859A6C-02F2-43FC-ADB0-CE6D10F1A1AA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\fhcpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9885AEF2-BD9F-41E0-B15E-B3141395E803}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mapstoasttask.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{989D1DC0-B162-11D1-B6EC-D27DDCF9A923}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\msxml3.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98A1B01E-E363-46e9-A68F-C6078DAABB8C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\dmcsps.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98A238A9-D8A2-4E57-84AF-6CF88FF719DA}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingSyncCore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98BB952B-B23E-4737-8ABD-B553E7484B38}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\DeviceEnroller.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98F275B4-4FFF-11E0-89E2-7B86DFD72085}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll,-323 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98F275B4-4FFF-11E0-89E2-7B86DFD72085}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SearchFolder.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{990a9f8f-301f-45f7-8d0e-68c5952dba43}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{990F07C7-78DC-4BD2-B145-5F791410BDDE}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\TelephonyInteractiveUser.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48} InfoTip REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1201 LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\netshell.dll,-1200 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\netshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{995C996E-D918-4a8c-A302-45719A6F4EA7}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99793286-77CC-4B57-96DB-3B354F6F9FB5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\directmanipulation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99847C33-B1B4-11D1-8F10-00C04FC2C17B}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\comuid.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99969a8f-27e6-4adf-ab9f-b5b5e90d4733}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99acf7f6-ef55-4ef9-8e27-3b784a6b4639}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99c0179c-c20c-488c-a510-bd779b9376ae}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\bcdsrv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99CDC6E0-DA00-4dfa-8EB8-831D774F8891}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shacct.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99cdfdaf-3573-4d97-bc06-d7c36627edef}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\WwanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99D353BC-C813-41ec-8F28-EAE61E702E57}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ntshrui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99d6470e-d780-4fce-99d2-40324846c10b}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99EB9580-04EC-4B4C-99F5-52B616D444D9}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Engines\SR\srloc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a010fcc-488b-4836-94fd-c489f8e1ed7d}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\ndishc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a02e012-6303-4e1e-b9a1-630f802592c5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a07804e-7050-41d5-a244-badc038df532}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A17DFD1-34FA-4D61-B9BB-3A1097E7FADF}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\tscfgwmi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A4B942C-C16D-44D2-BDAA-1BD772A4050B}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A653086-174F-11D2-B5F9-00104B703EFD}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wbem\fastprox.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A7C3FC6-8C9E-40A8-8CD9-0F3715483825}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\lpksetupproxyserv.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a97f12a-6b73-4dc4-b3c1-e9244c03adac}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9a97f12a-6b73-4dc4-b3c1-e9244c03adac}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9a97f12a-6b73-4dc4-b3c1-e9244c03adac} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9aa46009-3ce0-458a-a354-715610a075e6}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe %SystemRoot%\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ab3b1c9-3225-4bb4-93b6-bfb3c0d93743}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ac9fbe1-e0a2-4ad6-b4ee-e212013ea917}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windows.storage.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9acf41ed-d457-4cc1-941b-ab02c26e4686}\LocalServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe ServerExecutable REG_EXPAND_SZ %systemroot%\system32\wsmprovhost.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AED384E-CE8B-11D1-8B05-00600806D9B6}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\wbem\wbemdisp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9b359d1b-ad5c-412f-a654-a431424359de}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\cscobj.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B39403C-8B6D-430D-AE71-9EE1DC6E74C5}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\SettingMonitor.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9b4e5207-9539-4258-b4a0-4e70e9e565ec}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usercpl.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B67E7B7-12BA-4B81-9874-E96D8C7C07F8}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\mfsrcsnk.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B78F0E6-3E05-4A5B-B2E8-E743A8956B65}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\rdpsharercom.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05971-F6A8-11CF-A442-00A0C90A8F39}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05971-F6A8-11CF-A442-00A0C90A8F39}\ToolboxBitmap32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll, 260 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BA05972-F6A8-11CF-A442-00A0C90A8F39}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BC773B8-9B6C-400F-8AF0-0DFDD1C43229}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BCE6E2B-116B-420F-928B-5356D1629979}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\recovery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BF8D948-5C56-450e-BAF8-D6144C6E81CB}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\StructuredQuery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C07355E-C50A-45D2-B4A3-0A8235F8047F}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\explorerframe.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c15e692-86da-4ab8-8b5e-6ac79deb6f20}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.pcshell.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C33C4AB-BC91-4A79-BF47-7C90CEBC3AA3}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twinui.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C38ED61-D565-4728-AEEE-C80952F0ECDE}\LocalServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\vdsldr.exe HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C49FB9B-4E8C-43AE-BACF-76404B422264}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\DscTimer.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C4D3346-650D-472d-A867-6F595B39D973}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\AuditPolicyGPInterop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\autoplay.dll,-2#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\autoplay.dll,-1#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll,-1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\shdocvw.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C60DE1E-E5FC-40f4-A487-460851A8D915}\Instance\InitPropertyBag ResourceDLL REG_EXPAND_SZ %SystemRoot%\System32\autoplay.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C62D90D-9C14-400a-942A-404ABA5E1F38}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\coredpus.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C695035-48D2-4229-8B73-4C70E756E519}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\usosvc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} InfoTip REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-3001#immutable1 LocalizedString REG_EXPAND_SZ @%SystemRoot%\System32\SyncCenter.dll,-3000#immutable1 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll,-1000 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\SyncCenter.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cb233a5-a4a5-46b9-ab13-db07ce949410}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\raschapext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CB5172B-D600-46BA-AB77-77BB7E3A00D9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\windowscodecsext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CC1CC97-48C6-43DB-8265-4BD9C8E192DD}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\AppointmentActivation.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cca66bb-9c78-4e59-a76f-a5e9990b8aa0}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CDAEA40-A7D3-4cc5-AED0-B5E35AD0F169}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech\Common\sapi.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cfc2df3-6ba3-46ef-a836-e519e81f0ec4}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\propsys.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cfc6d75-e648-47a8-9ea0-fb0907558952}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\msdtcuiu.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D27B916-4F17-4EE8-A71C-D84222993D64}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\CellularAPI.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D3C0751-A13F-46a6-B833-B46A43C30FE8}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\mssvp.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D5F55E3-B423-492F-AC3B-B7F6CBC563B9}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\eUICCsCSP.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D71A98F-1E45-42EC-AF3D-FA13BEFB955C}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\WLanConn.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D7F0E95-8848-47B3-8D0E-E6C0E396E640}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D99BE80-B271-4524-BA35-30414FE18F0E}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\PrintWSDAHost.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DA3DFB6-DB99-4A52-B52B-058E0C6B7956}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Engines\SR\spsreng_onecore.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DAA54E8-CD95-4107-8E7F-BA3F24732D95}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\MSWB7.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DAC2C1E-7C5C-40eb-833B-323E85A1CE84}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wscinterop.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783} LocalizedString REG_EXPAND_SZ @%SystemRoot%\system32\twext.dll,-1024 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783}\DefaultIcon (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll,-100 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\twext.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DBD2C50-62AD-11d0-B806-00C04FD706EC}\InProcServer32 (Default) REG_EXPAND_SZ %SystemRoot%\system32\shell32.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DC486E3-B0E8-4230-81C4-A84D019E2B98}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\Speech_OneCore\Common\sapi_extensions.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9DD35758-AAF5-4894-ADAA-77A492F54E0A}\InprocServer32 (Default) REG_EXPAND_SZ %SystemRoot%\System32\wlandlg.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8} LocalizedString REG_EXPAND_SZ @%systemroot%\system32\timedate.cpl,-51 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}\Elevation IconReference REG_EXPAND_SZ @%systemroot%\system32\timedate.cpl,-50 HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}\InProcServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\timedate.cpl HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B69-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B6C-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B6E-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B70-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B74-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B76-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssph.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B7F-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\mssrch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8A-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8B-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8D-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B8E-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAND_SZ %systemroot%\system32\tquery.dll HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E175B90-F52A-11D8-B9A5-505054503030}\InprocServer32 (Default) REG_EXPAN