Analysis

Category Package Started Completed Duration Options Log
URL ie 2019-12-03 00:48:22 2019-12-03 00:52:05 223 seconds Show Options Show Log
route = internet
procdump = 1
2019-12-03 00:48:23,000 [root] INFO: Date set to: 12-03-19, time set to: 00:48:23, timeout set to: 200
2019-12-03 00:48:23,030 [root] DEBUG: Starting analyzer from: C:\wbhxhd
2019-12-03 00:48:23,030 [root] DEBUG: Storing results at: C:\qNuOuZW
2019-12-03 00:48:23,030 [root] DEBUG: Pipe server name: \\.\PIPE\JrIHXuyCd
2019-12-03 00:48:23,030 [root] DEBUG: No analysis package specified, trying to detect it automagically.
2019-12-03 00:48:23,030 [root] INFO: Automatically selected analysis package "ie"
2019-12-03 00:48:23,858 [root] DEBUG: Started auxiliary module Browser
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Curtain
2019-12-03 00:48:23,872 [modules.auxiliary.digisig] DEBUG: Skipping authenticode validation, analysis is not a file.
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module DigiSig
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Disguise
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Human
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Screenshots
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Sysmon
2019-12-03 00:48:23,872 [root] DEBUG: Started auxiliary module Usage
2019-12-03 00:48:23,872 [root] INFO: Analyzer: Package modules.packages.ie does not specify a DLL option
2019-12-03 00:48:23,872 [root] INFO: Analyzer: Package modules.packages.ie does not specify a DLL_64 option
2019-12-03 00:48:24,013 [lib.api.process] INFO: Successfully executed process from path "C:\Program Files (x86)\Internet Explorer\iexplore.exe" with arguments ""cnn.com"" with pid 3008
2019-12-03 00:48:24,013 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2019-12-03 00:48:24,013 [lib.api.process] INFO: 32-bit DLL to inject is C:\wbhxhd\dll\XsuUBz.dll, loader C:\wbhxhd\bin\ZJfIodb.exe
2019-12-03 00:48:24,404 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\JrIHXuyCd.
2019-12-03 00:48:24,404 [root] DEBUG: Loader: Injecting process 3008 (thread 1220) with C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:24,404 [root] DEBUG: Process image base: 0x01390000
2019-12-03 00:48:24,404 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:24,404 [root] DEBUG: InjectDllViaIAT: Found a free region from 0x01436000 - 0x77380000
2019-12-03 00:48:24,404 [root] DEBUG: InjectDllViaIAT: Allocated 0x214 bytes for new import table at 0x01440000.
2019-12-03 00:48:24,418 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2019-12-03 00:48:24,418 [root] DEBUG: Successfully injected DLL C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:24,418 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 3008
2019-12-03 00:48:26,431 [lib.api.process] INFO: Successfully resumed process with pid 3008
2019-12-03 00:48:26,431 [root] INFO: Added new process to list with pid: 3008
2019-12-03 00:48:26,650 [root] DEBUG: Terminate processes on terminate_event enabled.
2019-12-03 00:48:26,650 [root] DEBUG: Process dumps enabled.
2019-12-03 00:48:26,727 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:26,727 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:26,727 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:26,727 [root] DEBUG: RestoreHeaders: Restored original import table.
2019-12-03 00:48:26,727 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:26,727 [root] DEBUG: CAPE initialised: 32-bit base package loaded in process 3008 at 0x747a0000, image base 0x1390000, stack from 0x1a2000-0x1b0000
2019-12-03 00:48:26,727 [root] DEBUG: Commandline: C:\Users\user\AppData\Local\Temp\"C:\Program Files (x86)\Internet Explorer\iexplore.exe" "cnn.com".
2019-12-03 00:48:26,727 [root] INFO: Monitor successfully loaded in process with pid 3008.
2019-12-03 00:48:26,759 [root] DEBUG: DLL unloaded from 0x76940000.
2019-12-03 00:48:26,789 [root] DEBUG: DLL loaded at 0x731E0000: C:\Windows\system32\IEFRAME (0xa80000 bytes).
2019-12-03 00:48:26,822 [root] DEBUG: DLL loaded at 0x74B60000: C:\Windows\system32\OLEACC (0x3c000 bytes).
2019-12-03 00:48:26,836 [root] DEBUG: DLL loaded at 0x74600000: C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32 (0x19e000 bytes).
2019-12-03 00:48:26,868 [root] DEBUG: DLL loaded at 0x74B50000: C:\Windows\system32\profapi (0xb000 bytes).
2019-12-03 00:48:26,884 [root] DEBUG: DLL loaded at 0x752D0000: C:\Windows\syswow64\ws2_32 (0x35000 bytes).
2019-12-03 00:48:26,884 [root] DEBUG: DLL loaded at 0x75850000: C:\Windows\syswow64\NSI (0x6000 bytes).
2019-12-03 00:48:26,884 [root] DEBUG: DLL loaded at 0x74DB0000: C:\Windows\system32\dnsapi (0x44000 bytes).
2019-12-03 00:48:26,884 [root] DEBUG: DLL loaded at 0x74B30000: C:\Windows\system32\iphlpapi (0x1c000 bytes).
2019-12-03 00:48:26,884 [root] DEBUG: DLL loaded at 0x74B20000: C:\Windows\system32\WINNSI (0x7000 bytes).
2019-12-03 00:48:26,900 [root] DEBUG: DLL loaded at 0x75670000: C:\Windows\syswow64\CLBCatQ (0x83000 bytes).
2019-12-03 00:48:26,914 [root] DEBUG: DLL loaded at 0x745A0000: C:\Windows\System32\netprofm (0x5a000 bytes).
2019-12-03 00:48:26,914 [root] DEBUG: DLL loaded at 0x74E30000: C:\Windows\System32\nlaapi (0x10000 bytes).
2019-12-03 00:48:26,930 [root] DEBUG: DLL loaded at 0x74F80000: C:\Windows\system32\CRYPTSP (0x16000 bytes).
2019-12-03 00:48:26,946 [root] DEBUG: DLL loaded at 0x74F40000: C:\Windows\system32\rsaenh (0x3b000 bytes).
2019-12-03 00:48:26,946 [root] DEBUG: DLL loaded at 0x74B10000: C:\Windows\system32\RpcRtRemote (0xe000 bytes).
2019-12-03 00:48:26,946 [root] DEBUG: DLL unloaded from 0x745A0000.
2019-12-03 00:48:26,946 [root] DEBUG: DLL loaded at 0x768C0000: C:\Windows\syswow64\comdlg32 (0x7b000 bytes).
2019-12-03 00:48:27,009 [root] DEBUG: DLL loaded at 0x745C0000: C:\Program Files (x86)\Internet Explorer\sqmapi (0x33000 bytes).
2019-12-03 00:48:27,023 [root] DEBUG: DLL unloaded from 0x75760000.
2019-12-03 00:48:27,023 [root] DEBUG: DLL unloaded from 0x77050000.
2019-12-03 00:48:27,023 [root] DEBUG: DLL unloaded from 0x745C0000.
2019-12-03 00:48:27,023 [root] DEBUG: DLL loaded at 0x74BB0000: C:\Windows\system32\ntmarta (0x21000 bytes).
2019-12-03 00:48:27,023 [root] DEBUG: DLL loaded at 0x75860000: C:\Windows\syswow64\WLDAP32 (0x45000 bytes).
2019-12-03 00:48:27,023 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:27,039 [root] DEBUG: DLL loaded at 0x74B00000: C:\Windows\system32\VERSION (0x9000 bytes).
2019-12-03 00:48:27,134 [root] DEBUG: DLL loaded at 0x74CB0000: C:\Windows\system32\apphelp (0x4c000 bytes).
2019-12-03 00:48:27,148 [root] DEBUG: DLL unloaded from 0x75530000.
2019-12-03 00:48:27,164 [root] INFO: Announced 32-bit process name: iexplore.exe pid: 1572
2019-12-03 00:48:27,164 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2019-12-03 00:48:27,164 [lib.api.process] INFO: 32-bit DLL to inject is C:\wbhxhd\dll\XsuUBz.dll, loader C:\wbhxhd\bin\ZJfIodb.exe
2019-12-03 00:48:27,164 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\JrIHXuyCd.
2019-12-03 00:48:27,164 [root] DEBUG: Loader: Injecting process 1572 (thread 1060) with C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,164 [root] DEBUG: Process image base: 0x01390000
2019-12-03 00:48:27,164 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,164 [root] DEBUG: InjectDllViaIAT: Found a free region from 0x01436000 - 0x77380000
2019-12-03 00:48:27,164 [root] DEBUG: InjectDllViaIAT: Allocated 0x214 bytes for new import table at 0x01440000.
2019-12-03 00:48:27,164 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2019-12-03 00:48:27,164 [root] DEBUG: Successfully injected DLL C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,164 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1572
2019-12-03 00:48:27,164 [root] DEBUG: DLL unloaded from 0x01390000.
2019-12-03 00:48:27,164 [root] INFO: Announced 32-bit process name: iexplore.exe pid: 1572
2019-12-03 00:48:27,164 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2019-12-03 00:48:27,164 [lib.api.process] INFO: 32-bit DLL to inject is C:\wbhxhd\dll\XsuUBz.dll, loader C:\wbhxhd\bin\ZJfIodb.exe
2019-12-03 00:48:27,180 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\JrIHXuyCd.
2019-12-03 00:48:27,180 [root] DEBUG: Loader: Injecting process 1572 (thread 1060) with C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,180 [root] DEBUG: Process image base: 0x01390000
2019-12-03 00:48:27,180 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,180 [root] DEBUG: InjectDllViaIAT: This image has already been patched.
2019-12-03 00:48:27,180 [root] DEBUG: Successfully injected DLL C:\wbhxhd\dll\XsuUBz.dll.
2019-12-03 00:48:27,180 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1572
2019-12-03 00:48:27,180 [root] DEBUG: DLL loaded at 0x745A0000: C:\Windows\system32\RASAPI32 (0x52000 bytes).
2019-12-03 00:48:27,180 [root] DEBUG: DLL loaded at 0x74580000: C:\Windows\system32\rasman (0x15000 bytes).
2019-12-03 00:48:27,180 [root] DEBUG: DLL unloaded from 0x745A0000.
2019-12-03 00:48:27,180 [root] DEBUG: Terminate processes on terminate_event enabled.
2019-12-03 00:48:27,180 [root] DEBUG: Process dumps enabled.
2019-12-03 00:48:27,180 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:27,180 [root] DEBUG: RestoreHeaders: Restored original import table.
2019-12-03 00:48:27,180 [root] DEBUG: CAPE initialised: 32-bit base package loaded in process 1572 at 0x747a0000, image base 0x1390000, stack from 0x1c2000-0x1d0000
2019-12-03 00:48:27,196 [root] DEBUG: Commandline: C:\Users\user\Desktop\"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3008 CREDAT:79873.
2019-12-03 00:48:27,196 [root] INFO: Added new process to list with pid: 1572
2019-12-03 00:48:27,196 [root] INFO: Monitor successfully loaded in process with pid 1572.
2019-12-03 00:48:27,196 [root] DEBUG: DLL unloaded from 0x76940000.
2019-12-03 00:48:27,196 [root] DEBUG: DLL loaded at 0x731E0000: C:\Windows\system32\IEFRAME (0xa80000 bytes).
2019-12-03 00:48:27,196 [root] DEBUG: DLL loaded at 0x74B60000: C:\Windows\system32\OLEACC (0x3c000 bytes).
2019-12-03 00:48:27,196 [root] DEBUG: DLL loaded at 0x74600000: C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32 (0x19e000 bytes).
2019-12-03 00:48:27,196 [root] DEBUG: DLL loaded at 0x768C0000: C:\Windows\syswow64\comdlg32 (0x7b000 bytes).
2019-12-03 00:48:27,196 [root] DEBUG: DLL loaded at 0x74AF0000: C:\Windows\system32\rtutils (0xd000 bytes).
2019-12-03 00:48:27,196 [root] DEBUG: DLL unloaded from 0x74AF0000.
2019-12-03 00:48:27,196 [root] DEBUG: DLL unloaded from 0x74580000.
2019-12-03 00:48:27,226 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74530000: C:\Windows\system32\sensapi (0x6000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74E30000: C:\Windows\system32\NLAapi (0x10000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74E20000: C:\Windows\system32\napinsp (0x10000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74540000: C:\Program Files (x86)\Internet Explorer\IEShims (0x35000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74E00000: C:\Windows\system32\pnrpnsp (0x12000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74F00000: C:\Windows\System32\mswsock (0x3c000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74DA0000: C:\Windows\System32\winrnr (0x8000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74EF0000: C:\Windows\System32\wshtcpip (0x5000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74520000: C:\Windows\System32\wship6 (0x6000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74B10000: C:\Windows\system32\RpcRtRemote (0xe000 bytes).
2019-12-03 00:48:27,226 [root] DEBUG: DLL loaded at 0x74510000: C:\Windows\system32\rasadhlp (0x6000 bytes).
2019-12-03 00:48:27,243 [root] DEBUG: DLL loaded at 0x74490000: C:\Program Files (x86)\Internet Explorer\sqmapi (0x33000 bytes).
2019-12-03 00:48:27,243 [root] DEBUG: DLL unloaded from 0x75760000.
2019-12-03 00:48:27,243 [root] DEBUG: DLL unloaded from 0x77050000.
2019-12-03 00:48:27,243 [root] DEBUG: DLL unloaded from 0x74490000.
2019-12-03 00:48:27,257 [root] DEBUG: DLL loaded at 0x744D0000: C:\Windows\System32\fwpuclnt (0x38000 bytes).
2019-12-03 00:48:27,273 [root] INFO: Announced 64-bit process name: explorer.exe pid: 1708
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x74470000: C:\Windows\System32\netprofm (0x5a000 bytes).
2019-12-03 00:48:27,273 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2019-12-03 00:48:27,273 [lib.api.process] INFO: 64-bit DLL to inject is C:\wbhxhd\dll\sDlvLZHm.dll, loader C:\wbhxhd\bin\nXECuprd.exe
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x758B0000: C:\Windows\syswow64\SETUPAPI (0x19d000 bytes).
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x76A40000: C:\Windows\syswow64\CFGMGR32 (0x27000 bytes).
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x74450000: C:\Windows\system32\DHCPCSVC (0x12000 bytes).
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x76770000: C:\Windows\syswow64\DEVOBJ (0x12000 bytes).
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x74440000: C:\Windows\system32\dhcpcsvc6 (0xd000 bytes).
2019-12-03 00:48:27,273 [root] DEBUG: DLL loaded at 0x75670000: C:\Windows\syswow64\CLBCatQ (0x83000 bytes).
2019-12-03 00:48:27,289 [root] DEBUG: DLL unloaded from 0x74B30000.
2019-12-03 00:48:27,289 [root] DEBUG: DLL loaded at 0x74340000: C:\Windows\system32\propsys (0xf5000 bytes).
2019-12-03 00:48:27,289 [root] DEBUG: DLL unloaded from 0x74450000.
2019-12-03 00:48:27,289 [root] DEBUG: DLL unloaded from 0x75B20000.
2019-12-03 00:48:27,289 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\JrIHXuyCd.
2019-12-03 00:48:27,289 [root] DEBUG: Loader: Injecting process 1708 (thread 0) with C:\wbhxhd\dll\sDlvLZHm.dll.
2019-12-03 00:48:27,289 [root] DEBUG: InjectDll: No thread ID supplied. Initial thread ID 1712, handle 0x84
2019-12-03 00:48:27,289 [root] DEBUG: Process image base: 0x00000000FFA80000
2019-12-03 00:48:27,289 [root] DEBUG: InjectDllViaIAT: Not a new process, aborting IAT patch
2019-12-03 00:48:27,289 [root] DEBUG: InjectDll: IAT patching failed, falling back to thread injection.
2019-12-03 00:48:27,289 [root] DEBUG: DLL loaded at 0x74BB0000: C:\Windows\system32\ntmarta (0x21000 bytes).
2019-12-03 00:48:27,305 [root] DEBUG: DLL loaded at 0x75860000: C:\Windows\syswow64\WLDAP32 (0x45000 bytes).
2019-12-03 00:48:27,305 [root] DEBUG: Terminate processes on terminate_event enabled.
2019-12-03 00:48:27,305 [root] DEBUG: Process dumps enabled.
2019-12-03 00:48:27,305 [root] INFO: Disabling sleep skipping.
2019-12-03 00:48:27,335 [root] DEBUG: DLL loaded at 0x74B50000: C:\Windows\system32\profapi (0xb000 bytes).
2019-12-03 00:48:27,335 [root] WARNING: Unable to place hook on LockResource
2019-12-03 00:48:27,335 [root] WARNING: Unable to hook LockResource
2019-12-03 00:48:27,382 [root] DEBUG: CAPE initialised: 64-bit base package loaded in process 1708 at 0x0000000074260000, image base 0x00000000FFA80000, stack from 0x0000000006CB2000-0x0000000006CC0000
2019-12-03 00:48:27,382 [root] DEBUG: Commandline: C:\Windows\explorer.exe.
2019-12-03 00:48:27,382 [root] INFO: Added new process to list with pid: 1708
2019-12-03 00:48:27,382 [root] INFO: Monitor successfully loaded in process with pid 1708.
2019-12-03 00:48:27,382 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2019-12-03 00:48:27,398 [root] DEBUG: InjectDll: Successfully injected DLL via thread.
2019-12-03 00:48:27,398 [root] DEBUG: Successfully injected DLL C:\wbhxhd\dll\sDlvLZHm.dll.
2019-12-03 00:48:27,430 [root] DEBUG: DLL loaded at 0x74230000: C:\Windows\system32\IEUI (0x2d000 bytes).
2019-12-03 00:48:27,430 [root] DEBUG: DLL loaded at 0x74220000: C:\Windows\system32\MSIMG32 (0x5000 bytes).
2019-12-03 00:48:27,476 [root] DEBUG: DLL loaded at 0x741F0000: C:\Program Files (x86)\Internet Explorer\ieproxy (0x2b000 bytes).
2019-12-03 00:48:27,492 [root] DEBUG: DLL loaded at 0x74340000: C:\Windows\system32\propsys (0xf5000 bytes).
2019-12-03 00:48:27,492 [root] DEBUG: DLL unloaded from 0x74340000.
2019-12-03 00:48:27,523 [root] DEBUG: DLL loaded at 0x741E0000: C:\Windows\system32\mssprxy (0xc000 bytes).
2019-12-03 00:48:27,539 [root] DEBUG: DLL loaded at 0x74160000: C:\Windows\system32\UxTheme (0x80000 bytes).
2019-12-03 00:48:27,664 [root] DEBUG: DLL loaded at 0x758B0000: C:\Windows\syswow64\SETUPAPI (0x19d000 bytes).
2019-12-03 00:48:27,664 [root] DEBUG: DLL loaded at 0x76A40000: C:\Windows\syswow64\CFGMGR32 (0x27000 bytes).
2019-12-03 00:48:27,664 [root] DEBUG: DLL loaded at 0x76770000: C:\Windows\syswow64\DEVOBJ (0x12000 bytes).
2019-12-03 00:48:27,680 [root] DEBUG: DLL unloaded from 0x75B20000.
2019-12-03 00:48:27,694 [root] DEBUG: DLL loaded at 0x74130000: C:\Windows\system32\xmllite (0x2f000 bytes).
2019-12-03 00:48:27,789 [root] DEBUG: DLL loaded at 0x73FC0000: C:\Windows\system32\explorerframe (0x16f000 bytes).
2019-12-03 00:48:27,851 [root] DEBUG: DLL loaded at 0x73F90000: C:\Windows\system32\DUser (0x2f000 bytes).
2019-12-03 00:48:27,881 [root] DEBUG: DLL loaded at 0x73ED0000: C:\Windows\system32\DUI70 (0xb2000 bytes).
2019-12-03 00:48:27,992 [root] DEBUG: DLL loaded at 0x752D0000: C:\Windows\syswow64\ws2_32 (0x35000 bytes).
2019-12-03 00:48:27,992 [root] DEBUG: DLL loaded at 0x75850000: C:\Windows\syswow64\NSI (0x6000 bytes).
2019-12-03 00:48:28,006 [root] DEBUG: DLL loaded at 0x74DB0000: C:\Windows\system32\dnsapi (0x44000 bytes).
2019-12-03 00:48:28,006 [root] DEBUG: DLL loaded at 0x74B30000: C:\Windows\system32\iphlpapi (0x1c000 bytes).
2019-12-03 00:48:28,006 [root] DEBUG: DLL loaded at 0x74B20000: C:\Windows\system32\WINNSI (0x7000 bytes).
2019-12-03 00:48:28,006 [root] DEBUG: DLL loaded at 0x74F80000: C:\Windows\system32\CRYPTSP (0x16000 bytes).
2019-12-03 00:48:28,006 [root] DEBUG: DLL loaded at 0x74F40000: C:\Windows\system32\rsaenh (0x3b000 bytes).
2019-12-03 00:48:28,023 [root] DEBUG: DLL loaded at 0x741F0000: C:\Program Files (x86)\Internet Explorer\ieproxy (0x2b000 bytes).
2019-12-03 00:48:28,038 [root] DEBUG: DLL loaded at 0x73E30000: C:\Windows\system32\msfeeds (0x96000 bytes).
2019-12-03 00:48:28,085 [root] DEBUG: DLL loaded at 0x74CB0000: C:\Windows\system32\apphelp (0x4c000 bytes).
2019-12-03 00:48:28,085 [root] DEBUG: DLL loaded at 0x74B00000: C:\Windows\system32\VERSION (0x9000 bytes).
2019-12-03 00:48:28,085 [root] DEBUG: DLL unloaded from 0x75530000.
2019-12-03 00:48:28,115 [root] DEBUG: DLL loaded at 0x73E00000: C:\Windows\system32\MLANG (0x2e000 bytes).
2019-12-03 00:48:28,115 [root] DEBUG: DLL loaded at 0x75520000: C:\Windows\syswow64\Normaliz (0x3000 bytes).
2019-12-03 00:48:28,115 [root] DEBUG: DLL loaded at 0x745A0000: C:\Windows\system32\RASAPI32 (0x52000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x74580000: C:\Windows\system32\rasman (0x15000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL unloaded from 0x745A0000.
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x74AF0000: C:\Windows\system32\rtutils (0xd000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL unloaded from 0x74580000.
2019-12-03 00:48:28,131 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x74530000: C:\Windows\system32\sensapi (0x6000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL unloaded from 0x74580000.
2019-12-03 00:48:28,131 [root] DEBUG: DLL unloaded from 0x77050000.
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x74F00000: C:\Windows\system32\mswsock (0x3c000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x74EF0000: C:\Windows\System32\wshtcpip (0x5000 bytes).
2019-12-03 00:48:28,131 [root] DEBUG: DLL loaded at 0x75520000: C:\Windows\syswow64\Normaliz (0x3000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74E30000: C:\Windows\system32\NLAapi (0x10000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74E20000: C:\Windows\system32\napinsp (0x10000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74E00000: C:\Windows\system32\pnrpnsp (0x12000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74DA0000: C:\Windows\System32\winrnr (0x8000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74520000: C:\Windows\System32\wship6 (0x6000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74510000: C:\Windows\system32\rasadhlp (0x6000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x744D0000: C:\Windows\System32\fwpuclnt (0x38000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x73E00000: C:\Windows\system32\MLANG (0x2e000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74470000: C:\Windows\System32\netprofm (0x5a000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74450000: C:\Windows\system32\DHCPCSVC (0x12000 bytes).
2019-12-03 00:48:28,148 [root] DEBUG: DLL loaded at 0x74440000: C:\Windows\system32\dhcpcsvc6 (0xd000 bytes).
2019-12-03 00:48:28,163 [root] DEBUG: DLL unloaded from 0x74B30000.
2019-12-03 00:48:28,163 [root] DEBUG: DLL unloaded from 0x74450000.
2019-12-03 00:48:28,163 [root] DEBUG: DLL loaded at 0x74160000: C:\Windows\system32\UxTheme (0x80000 bytes).
2019-12-03 00:48:28,194 [root] DEBUG: DLL loaded at 0x73DE0000: C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim (0x11000 bytes).
2019-12-03 00:48:28,194 [root] DEBUG: DLL loaded at 0x73D40000: C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\MSVCR80 (0x9b000 bytes).
2019-12-03 00:48:28,226 [root] DEBUG: DLL loaded at 0x73150000: C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\MSVCP80 (0x87000 bytes).
2019-12-03 00:48:28,256 [root] DEBUG: DLL loaded at 0x73D30000: C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper (0x10000 bytes).
2019-12-03 00:48:28,490 [root] DEBUG: DLL loaded at 0x73010000: C:\PROGRA~2\MICROS~1\Office14\URLREDIR (0x91000 bytes).
2019-12-03 00:48:28,506 [root] DEBUG: DLL loaded at 0x73140000: C:\Windows\system32\Secur32 (0x8000 bytes).
2019-12-03 00:48:28,506 [root] DEBUG: DLL loaded at 0x74E40000: C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\MSVCR90 (0xa3000 bytes).
2019-12-03 00:48:28,522 [root] DEBUG: DLL loaded at 0x73120000: C:\PROGRA~2\MICROS~1\Office14\MSOHEV (0x14000 bytes).
2019-12-03 00:48:28,552 [root] DEBUG: DLL loaded at 0x73110000: C:\Program Files (x86)\Java\jre7\bin\jp2ssv (0xf000 bytes).
2019-12-03 00:48:28,584 [root] DEBUG: DLL loaded at 0x72F50000: C:\Program Files (x86)\Java\jre7\bin\MSVCR100 (0xbe000 bytes).
2019-12-03 00:48:28,599 [root] DEBUG: set_caller_info: Adding region at 0x04440000 to caller regions list (ntdll::LdrLoadDll).
2019-12-03 00:48:28,615 [root] DEBUG: set_caller_info: Adding region at 0x00950000 to caller regions list (advapi32::RegOpenKeyExA).
2019-12-03 00:48:28,615 [root] DEBUG: DLL loaded at 0x730B0000: C:\Windows\system32\SXS (0x5f000 bytes).
2019-12-03 00:48:28,756 [root] DEBUG: DLL loaded at 0x72F30000: C:\Windows\system32\DWMAPI (0x13000 bytes).
2019-12-03 00:48:28,756 [root] DEBUG: DLL loaded at 0x730B0000: C:\Windows\system32\SXS (0x5f000 bytes).
2019-12-03 00:48:28,756 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:28,802 [root] DEBUG: DLL unloaded from 0x77050000.
2019-12-03 00:48:29,566 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:30,003 [root] WARNING: File at path "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\favicon[1].ico" does not exist, skip.
2019-12-03 00:48:30,440 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:30,736 [root] DEBUG: DLL unloaded from 0x75530000.
2019-12-03 00:48:31,236 [root] DEBUG: DLL loaded at 0x72F10000: C:\Windows\system32\USERENV (0x17000 bytes).
2019-12-03 00:48:31,236 [root] DEBUG: DLL loaded at 0x76DD0000: C:\Windows\syswow64\wintrust (0x2d000 bytes).
2019-12-03 00:48:31,267 [root] DEBUG: DLL loaded at 0x72ED0000: C:\Windows\system32\schannel (0x3a000 bytes).
2019-12-03 00:48:31,329 [root] DEBUG: DLL loaded at 0x72EC0000: C:\Windows\system32\credssp (0x8000 bytes).
2019-12-03 00:48:31,329 [root] DEBUG: DLL unloaded from 0x74F80000.
2019-12-03 00:48:31,611 [root] DEBUG: DLL loaded at 0x72E80000: C:\Windows\system32\ncrypt (0x38000 bytes).
2019-12-03 00:48:31,611 [root] DEBUG: DLL loaded at 0x72E60000: C:\Windows\system32\bcrypt (0x17000 bytes).
2019-12-03 00:48:31,611 [root] DEBUG: DLL loaded at 0x72E20000: C:\Windows\SysWOW64\bcryptprimitives (0x3d000 bytes).
2019-12-03 00:48:31,611 [root] DEBUG: DLL loaded at 0x72E00000: C:\Windows\system32\GPAPI (0x16000 bytes).
2019-12-03 00:48:31,625 [root] DEBUG: DLL loaded at 0x72DE0000: C:\Windows\system32\cryptnet (0x1c000 bytes).
2019-12-03 00:48:31,688 [root] DEBUG: DLL loaded at 0x72DC0000: C:\Windows\system32\Cabinet (0x15000 bytes).
2019-12-03 00:48:31,703 [root] DEBUG: DLL loaded at 0x72DB0000: C:\Windows\system32\DEVRTL (0xe000 bytes).
2019-12-03 00:48:31,703 [root] DEBUG: DLL unloaded from 0x758B0000.
2019-12-03 00:48:31,736 [root] DEBUG: DLL loaded at 0x72D50000: C:\Windows\system32\WINHTTP (0x58000 bytes).
2019-12-03 00:48:31,736 [root] DEBUG: DLL loaded at 0x72D00000: C:\Windows\system32\webio (0x4f000 bytes).
2019-12-03 00:48:31,736 [root] DEBUG: DLL unloaded from 0x77050000.
2019-12-03 00:48:31,736 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:31,736 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:31,750 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:31,750 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:32,187 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:32,203 [root] DEBUG: DLL unloaded from 0x758B0000.
2019-12-03 00:48:32,312 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:32,312 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:32,312 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:32,328 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:32,608 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:33,358 [root] DEBUG: DLL loaded at 0x72740000: C:\Windows\SysWOW64\mshtml (0x5b7000 bytes).
2019-12-03 00:48:33,388 [root] DEBUG: DLL loaded at 0x72710000: C:\Windows\SysWOW64\msls31 (0x2a000 bytes).
2019-12-03 00:48:33,436 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:33,436 [root] DEBUG: DLL loaded at 0x726E0000: C:\Windows\SysWOW64\iepeers (0x30000 bytes).
2019-12-03 00:48:33,451 [root] DEBUG: DLL loaded at 0x72680000: C:\Windows\SysWOW64\WINSPOOL.DRV (0x51000 bytes).
2019-12-03 00:48:33,497 [root] DEBUG: DLL loaded at 0x72670000: C:\Windows\system32\msimtf (0xb000 bytes).
2019-12-03 00:48:33,561 [root] DEBUG: DLL loaded at 0x725B0000: C:\Windows\SysWOW64\jscript (0xb2000 bytes).
2019-12-03 00:48:33,561 [root] DEBUG: set_caller_info: Adding region at 0x725B0000 to caller regions list (ntdll::LdrLoadDll).
2019-12-03 00:48:33,592 [root] DEBUG: DLL loaded at 0x72590000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:33,592 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:34,013 [root] WARNING: File at path "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\edition_cnn_com[1].txt" does not exist, skip.
2019-12-03 00:48:34,855 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:35,260 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,260 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,260 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,276 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,276 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,276 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,276 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,323 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,323 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,323 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,338 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,494 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:35,494 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,494 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,494 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,510 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,619 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:35,619 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,619 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,619 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,635 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,667 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:35,667 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,681 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,681 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:35,681 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:35,697 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:35,744 [root] DEBUG: DLL loaded at 0x72550000: C:\Windows\system32\WINMM (0x32000 bytes).
2019-12-03 00:48:35,759 [root] DEBUG: set_caller_info: Adding region at 0x72550000 to caller regions list (ntdll::memcpy).
2019-12-03 00:48:35,806 [root] DEBUG: DLL loaded at 0x72510000: C:\Windows\system32\MMDevAPI (0x39000 bytes).
2019-12-03 00:48:35,869 [root] DEBUG: DLL loaded at 0x724E0000: C:\Windows\system32\wdmaud.drv (0x30000 bytes).
2019-12-03 00:48:35,884 [root] DEBUG: DLL loaded at 0x724D0000: C:\Windows\system32\ksuser (0x4000 bytes).
2019-12-03 00:48:35,884 [root] DEBUG: DLL loaded at 0x724C0000: C:\Windows\system32\AVRT (0x7000 bytes).
2019-12-03 00:48:35,884 [root] DEBUG: DLL unloaded from 0x724E0000.
2019-12-03 00:48:35,884 [root] DEBUG: set_caller_info: Adding region at 0x724E0000 to caller regions list (msvcrt::memcpy).
2019-12-03 00:48:35,901 [root] DEBUG: set_caller_info: Adding region at 0x72510000 to caller regions list (ntdll::LdrLoadDll).
2019-12-03 00:48:35,963 [root] DEBUG: DLL loaded at 0x72480000: C:\Windows\system32\AUDIOSES (0x36000 bytes).
2019-12-03 00:48:35,963 [root] DEBUG: set_caller_info: Adding region at 0x72480000 to caller regions list (ntdll::NtQueryPerformanceCounter).
2019-12-03 00:48:35,993 [root] DEBUG: DLL loaded at 0x72470000: C:\Windows\system32\msacm32.drv (0x8000 bytes).
2019-12-03 00:48:36,009 [root] DEBUG: DLL loaded at 0x72450000: C:\Windows\system32\MSACM32 (0x14000 bytes).
2019-12-03 00:48:36,009 [root] DEBUG: set_caller_info: Adding region at 0x72470000 to caller regions list (ntdll::NtWaitForSingleObject).
2019-12-03 00:48:36,009 [root] DEBUG: DLL unloaded from 0x72470000.
2019-12-03 00:48:36,009 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:36,026 [root] DEBUG: DLL loaded at 0x72440000: C:\Windows\system32\midimap (0x7000 bytes).
2019-12-03 00:48:36,026 [root] DEBUG: set_caller_info: Adding region at 0x72440000 to caller regions list (ntdll::NtWaitForSingleObject).
2019-12-03 00:48:36,026 [root] DEBUG: DLL unloaded from 0x72440000.
2019-12-03 00:48:36,026 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,026 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,040 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,040 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,040 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,040 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,040 [root] DEBUG: set_caller_info: Adding region at 0x724C0000 to caller regions list (ntdll::NtClose).
2019-12-03 00:48:36,040 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,056 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:36,104 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:36,104 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,114 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,124 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,124 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,124 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,124 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,134 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,147 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,151 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,153 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,154 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,154 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:36,157 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:36,186 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:36,206 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:36,388 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:36,591 [root] DEBUG: DLL unloaded from 0x75530000.
2019-12-03 00:48:36,638 [root] DEBUG: DLL unloaded from 0x75B20000.
2019-12-03 00:48:36,684 [root] DEBUG: set_caller_info: Adding region at 0x000007FEF60E0000 to caller regions list (shell32::SHGetFolderPathW).
2019-12-03 00:48:36,746 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:36,746 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:36,746 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:36,996 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:37,028 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,042 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,042 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,042 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,619 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:37,676 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:37,686 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,686 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,696 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,696 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,716 [root] DEBUG: DLL loaded at 0x72300000: C:\Windows\System32\msxml3 (0x133000 bytes).
2019-12-03 00:48:37,835 [root] DEBUG: DLL unloaded from 0x72590000.
2019-12-03 00:48:37,865 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:37,881 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:37,881 [root] DEBUG: DLL loaded at 0x722E0000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:37,913 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,913 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,928 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,928 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,960 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:37,960 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,960 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:37,960 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:37,960 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:38,038 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:38,038 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:38,131 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:38,131 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:38,131 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:38,131 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:38,131 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:38,147 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:38,147 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:38,147 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:38,147 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:38,224 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:38,522 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:38,709 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:38,802 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:38,865 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:38,880 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:40,551 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:40,924 [root] DEBUG: DLL unloaded from 0x722E0000.
2019-12-03 00:48:40,954 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:40,970 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:41,032 [root] DEBUG: DLL loaded at 0x72590000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:41,703 [root] INFO: Announced 32-bit process name:  pid: 1
2019-12-03 00:48:41,703 [lib.api.process] WARNING: The process with pid 1 is not alive, injection aborted
2019-12-03 00:48:41,703 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:41,782 [root] DEBUG: DLL unloaded from 0x000007FEFBC70000.
2019-12-03 00:48:43,529 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:43,891 [root] DEBUG: DLL unloaded from 0x72590000.
2019-12-03 00:48:43,907 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:43,923 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:43,986 [root] DEBUG: DLL loaded at 0x722E0000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:46,437 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:46,693 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:46,693 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:46,693 [root] DEBUG: DLL unloaded from 0x77560000.
2019-12-03 00:48:46,707 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:48:47,348 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:48:47,473 [root] DEBUG: DLL unloaded from 0x722E0000.
2019-12-03 00:48:47,487 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:47,503 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:47,565 [root] DEBUG: DLL loaded at 0x72590000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:49,548 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:50,051 [root] DEBUG: DLL unloaded from 0x72590000.
2019-12-03 00:48:50,082 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:50,082 [root] DEBUG: DLL loaded at 0x722E0000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:50,082 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:52,858 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:53,236 [root] DEBUG: DLL unloaded from 0x722E0000.
2019-12-03 00:48:53,267 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:53,267 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:53,345 [root] DEBUG: DLL loaded at 0x72590000: C:\Windows\system32\T2EMBED (0x1e000 bytes).
2019-12-03 00:48:55,997 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:56,053 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:56,053 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:57,469 [root] DEBUG: DLL unloaded from 0x72510000.
2019-12-03 00:48:57,496 [root] DEBUG: DLL unloaded from 0x76A70000.
2019-12-03 00:48:57,598 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:57,598 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:48:57,628 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:57,676 [root] DEBUG: DLL unloaded from 0x72590000.
2019-12-03 00:48:57,707 [root] DEBUG: DLL unloaded from 0x731E0000.
2019-12-03 00:48:57,769 [root] DEBUG: DLL loaded at 0x725A0000: C:\Windows\system32\ImgUtil (0xb000 bytes).
2019-12-03 00:48:57,769 [root] DEBUG: set_caller_info: Adding region at 0x725A0000 to caller regions list (ole32::CoCreateInstance).
2019-12-03 00:48:57,785 [root] DEBUG: DLL loaded at 0x72590000: C:\Windows\SysWOW64\pngfilt (0xe000 bytes).
2019-12-03 00:48:57,846 [root] DEBUG: DLL loaded at 0x74220000: C:\Windows\system32\msimg32 (0x5000 bytes).
2019-12-03 00:48:57,846 [root] DEBUG: set_caller_info: Adding region at 0x74220000 to caller regions list (kernel32::GetSystemTimeAsFileTime).
2019-12-03 00:48:57,846 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:49:06,614 [root] DEBUG: set_caller_info: Adding region at 0x000007FEF2C10000 to caller regions list (ntdll::NtDuplicateObject).
2019-12-03 00:49:06,630 [root] DEBUG: set_caller_info: Adding region at 0x000007FEF86E0000 to caller regions list (ntdll::NtDuplicateObject).
2019-12-03 00:49:06,630 [root] DEBUG: DLL unloaded from 0x000007FEF59C0000.
2019-12-03 00:49:06,630 [root] DEBUG: DLL unloaded from 0x000007FEFA5F0000.
2019-12-03 00:49:06,630 [root] DEBUG: set_caller_info: Adding region at 0x000007FEFA5F0000 to caller regions list (ntdll::NtClose).
2019-12-03 00:49:06,645 [root] DEBUG: DLL unloaded from 0x000007FEFBAB0000.
2019-12-03 00:49:06,645 [root] DEBUG: DLL unloaded from 0x000007FEF9740000.
2019-12-03 00:49:06,645 [root] DEBUG: set_caller_info: Adding region at 0x000007FEF9740000 to caller regions list (ntdll::NtFreeVirtualMemory).
2019-12-03 00:49:06,645 [root] DEBUG: DLL unloaded from 0x000007FEF9C60000.
2019-12-03 00:49:06,661 [root] DEBUG: set_caller_info: Adding region at 0x000007FEF9C60000 to caller regions list (ntdll::LdrGetProcedureAddress).
2019-12-03 00:49:06,661 [root] DEBUG: DLL unloaded from 0x000007FEF96B0000.
2019-12-03 00:49:06,661 [root] DEBUG: DLL unloaded from 0x000007FEFA1D0000.
2019-12-03 00:49:06,661 [root] DEBUG: set_caller_info: Adding region at 0x000007FEFA1D0000 to caller regions list (ntdll::NtClose).
2019-12-03 00:49:06,661 [root] DEBUG: set_caller_info: Adding region at 0x000007FEFA100000 to caller regions list (ntdll::LdrGetProcedureAddress).
2019-12-03 00:49:07,753 [root] DEBUG: DLL unloaded from 0x72740000.
2019-12-03 00:49:09,016 [root] DEBUG: DLL unloaded from 0x000007FEFDF10000.
2019-12-03 00:49:17,644 [root] DEBUG: DLL unloaded from 0x72DE0000.
2019-12-03 00:49:17,644 [root] DEBUG: DLL unloaded from 0x76790000.
2019-12-03 00:49:18,079 [root] DEBUG: DLL unloaded from 0x76A70000.
2019-12-03 00:49:30,029 [root] DEBUG: DLL unloaded from 0x75370000.
2019-12-03 00:49:32,197 [root] DEBUG: DLL unloaded from 0x72D50000.
2019-12-03 00:50:56,984 [root] DEBUG: DLL unloaded from 0x76A70000.
2019-12-03 00:51:47,092 [root] INFO: Analysis timeout hit (200 seconds), terminating analysis.
2019-12-03 00:51:47,092 [root] INFO: Created shutdown mutex.
2019-12-03 00:51:48,105 [lib.api.process] INFO: Terminate event set for process 3008
2019-12-03 00:51:48,105 [root] DEBUG: Terminate Event: Attempting to dump process 3008
2019-12-03 00:51:48,105 [root] DEBUG: DumpInterestingRegions: Dumping Imagebase at 0x01390000.
2019-12-03 00:51:48,105 [root] DEBUG: DumpImageInCurrentProcess: Attempting to dump virtual PE image.
2019-12-03 00:51:48,105 [root] DEBUG: DumpProcess: Instantiating PeParser with address: 0x01390000.
2019-12-03 00:51:48,105 [root] DEBUG: DumpProcess: Module entry point VA is 0x00001C9A.
2019-12-03 00:51:48,153 [root] INFO: Added new CAPE file to list with path: C:\qNuOuZW\CAPE\3008_1651046154851032122019
2019-12-03 00:51:48,153 [root] DEBUG: DumpProcess: Module image dump success - dump size 0xa1e00.
2019-12-03 00:51:48,153 [root] WARNING: Unable to access file at path "C:\Users\user\AppData\Local\Temp\~DFE7B7FA21A8E69709.TMP": [Errno 13] Permission denied: u'C:\\Users\\user\\AppData\\Local\\Temp\\~DFE7B7FA21A8E69709.TMP'
2019-12-03 00:51:48,153 [root] WARNING: Unable to access file at path "C:\Users\user\AppData\Local\Temp\~DFC8BAEA73F0BF0244.TMP": [Errno 13] Permission denied: u'C:\\Users\\user\\AppData\\Local\\Temp\\~DFC8BAEA73F0BF0244.TMP'
2019-12-03 00:51:48,167 [lib.api.process] INFO: Termination confirmed for process 3008
2019-12-03 00:51:48,167 [root] DEBUG: Terminate Event: CAPE shutdown complete for process 3008
2019-12-03 00:51:48,167 [root] INFO: Terminate event set for process 3008.
2019-12-03 00:51:48,167 [root] INFO: Terminating process 3008 before shutdown.
2019-12-03 00:51:48,167 [root] INFO: Waiting for process 3008 to exit.
2019-12-03 00:51:49,181 [root] INFO: Terminating process 1572 before shutdown.
2019-12-03 00:51:49,181 [lib.api.process] INFO: Terminate event set for process 1708
2019-12-03 00:51:49,197 [root] DEBUG: Terminate Event: Attempting to dump process 1708
2019-12-03 00:51:49,197 [root] DEBUG: DumpInterestingRegions: Dumping Imagebase at 0x00000000FFA80000.
2019-12-03 00:51:49,197 [root] DEBUG: DumpImageInCurrentProcess: Attempting to dump virtual PE image.
2019-12-03 00:51:49,213 [root] DEBUG: DumpProcess: Instantiating PeParser with address: 0x00000000FFA80000.
2019-12-03 00:51:49,213 [root] DEBUG: DumpProcess: Module entry point VA is 0x000000000002B790.
2019-12-03 00:51:49,290 [root] INFO: Added new CAPE file to list with path: C:\qNuOuZW\CAPE\1708_18522066764951032122019
2019-12-03 00:51:49,290 [root] DEBUG: DumpProcess: Module image dump success - dump size 0x2bac00.
2019-12-03 00:51:49,290 [lib.api.process] INFO: Termination confirmed for process 1708
2019-12-03 00:51:49,290 [root] INFO: Terminate event set for process 1708.
2019-12-03 00:51:49,290 [root] INFO: Terminating process 1708 before shutdown.
2019-12-03 00:51:49,290 [root] INFO: Waiting for process 1708 to exit.
2019-12-03 00:51:49,338 [root] DEBUG: Terminate Event: CAPE shutdown complete for process 1708
2019-12-03 00:51:50,298 [root] INFO: Shutting down package.
2019-12-03 00:51:50,298 [root] INFO: Stopping auxiliary modules.
2019-12-03 00:51:50,298 [root] INFO: Finishing auxiliary modules.
2019-12-03 00:51:50,298 [root] INFO: Shutting down pipe server and dumping dropped files.
2019-12-03 00:51:50,298 [root] WARNING: File at path "C:\qNuOuZW\debugger" does not exist, skip.
2019-12-03 00:51:50,298 [root] WARNING: Monitor injection attempted but failed for process 1.
2019-12-03 00:51:50,298 [root] INFO: Analysis completed.

MalScore

9.6

Malicious

Machine

Name Label Manager Started On Shutdown On
target-02 target-02 ESX 2019-12-03 00:48:22 2019-12-03 00:52:03

URL Details

URL
cnn.com

Signatures

Behavioural detection: Executable code extraction
SetUnhandledExceptionFilter detected (possible anti-debug)
Guard pages use detected - possible anti-debugging.
Attempts to connect to a dead IP:Port (27 unique times)
IP: 151.101.2.2:443 (United States)
IP: 204.79.197.200:80 (United States)
IP: 143.204.194.144:80 (United States)
IP: 188.43.75.80:80 (Russian Federation)
IP: 143.204.194.44:80 (United States)
IP: 151.101.65.67:80 (United States)
IP: 151.101.129.67:443 (United States)
IP: 143.204.194.20:80 (United States)
IP: 143.204.192.72:443 (United States)
IP: 93.184.220.29:80 (Europe)
IP: 188.43.75.96:80 (Russian Federation)
IP: 35.244.144.168:443 (United States)
IP: 99.86.255.230:80 (United States)
IP: 151.139.128.14:80 (United States)
IP: 143.204.194.36:80 (United States)
IP: 93.184.221.240:80 (Europe)
IP: 178.18.232.48:443 (Russian Federation)
IP: 151.101.2.133:80 (United States)
IP: 151.101.1.67:443 (United States)
IP: 64.202.112.31:443 (United States)
IP: 104.18.20.226:80 (United States)
IP: 99.86.255.207:80 (United States)
IP: 151.101.1.67:80 (United States)
IP: 13.227.171.194:443 (United States)
IP: 151.101.193.67:443 (United States)
IP: 95.100.189.236:443 (Europe)
IP: 192.35.177.64:80 (United States)
Dynamic (imported) function loading detected
DynamicLoader: iphlpapi.DLL/GetAdaptersAddresses
DynamicLoader: DHCPCSVC.DLL/DhcpRequestParams
DynamicLoader: comctl32.dll/LoadIconWithScaleDown
DynamicLoader: IEUI.dll/InitGadgets
DynamicLoader: ieproxy.dll/DllGetClassObject
DynamicLoader: ieproxy.dll/DllCanUnloadNow
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: ole32.dll/CoGetPSClsid
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: ole32.dll/DcomChannelSetHResult
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: propsys.dll/PSGetPropertyKeyFromName
DynamicLoader: UxTheme.dll/OpenThemeData
DynamicLoader: USER32.dll/MsgWaitForMultipleObjectsEx
DynamicLoader: comctl32.dll/
DynamicLoader: UxTheme.dll/IsAppThemed
DynamicLoader: comctl32.dll/ImageList_LoadImageW
DynamicLoader: comctl32.dll/ImageList_GetIconSize
DynamicLoader: UxTheme.dll/IsCompositionActive
DynamicLoader: UxTheme.dll/SetWindowTheme
DynamicLoader: UxTheme.dll/OpenThemeData
DynamicLoader: comctl32.dll/ImageList_Create
DynamicLoader: comctl32.dll/ImageList_ReplaceIcon
DynamicLoader: OLEAUT32.dll/
DynamicLoader: comctl32.dll/ImageList_AddMasked
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: IMM32.DLL/ImmIsIME
DynamicLoader: urlmon.dll/CoInternetCreateSecurityManager
DynamicLoader: MSCTF.dll/SetInputScopes2
DynamicLoader: UxTheme.dll/EnableThemeDialogTexture
DynamicLoader: urlmon.dll/
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ole32.dll/CreateBindCtx
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: UxTheme.dll/IsThemeActive
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_Size_ExW
DynamicLoader: ADVAPI32.dll/RegEnumKeyW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_ExW
DynamicLoader: ADVAPI32.dll/InitializeSecurityDescriptor
DynamicLoader: ADVAPI32.dll/SetEntriesInAclW
DynamicLoader: ADVAPI32.dll/SetSecurityDescriptorDacl
DynamicLoader: comctl32.dll/
DynamicLoader: ADVAPI32.dll/IsTextUnicode
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: IEUI.dll/CreateGadget
DynamicLoader: SHELL32.dll/
DynamicLoader: IEUI.dll/SetGadgetMessageFilter
DynamicLoader: IEUI.dll/SetGadgetStyle
DynamicLoader: IEUI.dll/SetGadgetRootInfo
DynamicLoader: xmllite.dll/CreateXmlReader
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: xmllite.dll/CreateXmlReaderInputWithEncodingName
DynamicLoader: propsys.dll/PSCreateMemoryPropertyStore
DynamicLoader: propsys.dll/PSPropertyBag_WriteStr
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/PropVariantClear
DynamicLoader: OLEAUT32.dll/
DynamicLoader: propsys.dll/PSPropertyBag_WriteGUID
DynamicLoader: propsys.dll/PSPropertyBag_ReadGUID
DynamicLoader: IEUI.dll/FindStdColor
DynamicLoader: IEUI.dll/InvalidateGadget
DynamicLoader: IEUI.dll/SetGadgetParent
DynamicLoader: ole32.dll/CoRevokeInitializeSpy
DynamicLoader: comctl32.dll/
DynamicLoader: IEUI.dll/GetGadgetTicket
DynamicLoader: IEUI.dll/SetGadgetRect
DynamicLoader: urlmon.dll/
DynamicLoader: urlmon.dll/
DynamicLoader: kernel32.dll/GetThreadUILanguage
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: ole32.dll/CoRegisterInitializeSpy
DynamicLoader: ole32.dll/CoRevokeInitializeSpy
DynamicLoader: SHELL32.dll/SHGetInstanceExplorer
DynamicLoader: WININET.dll/InternetSetOptionW
DynamicLoader: USER32.dll/PostMessageW
DynamicLoader: USER32.dll/PeekMessageW
DynamicLoader: USER32.dll/TranslateMessage
DynamicLoader: USER32.dll/DispatchMessageW
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: RPCRT4.dll/RpcBindingToStringBindingW
DynamicLoader: RPCRT4.dll/RpcStringBindingParseW
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/I_RpcBindingInqLocalClientPID
DynamicLoader: RPCRT4.dll/RpcServerInqCallAttributesW
DynamicLoader: RPCRT4.dll/RpcImpersonateClient
DynamicLoader: RPCRT4.dll/RpcRevertToSelf
DynamicLoader: RPCRT4.dll/NdrServerCall2
DynamicLoader: RPCRT4.dll/RpcBindingInqObject
DynamicLoader: IEUI.dll/PeekMessageExW
DynamicLoader: ole32.dll/CoInitialize
DynamicLoader: ole32.dll/RegisterDragDrop
DynamicLoader: msfeeds.dll/MsfeedsCreateInstance
DynamicLoader: SHELL32.dll/SHGetSpecialFolderPathW
DynamicLoader: SHELL32.dll/
DynamicLoader: SHELL32.dll/SHGetFolderPathW
DynamicLoader: SHELL32.dll/SHCreateDirectoryExW
DynamicLoader: WININET.dll/FindFirstUrlCacheContainerW
DynamicLoader: WININET.dll/FindNextUrlCacheContainerW
DynamicLoader: WININET.dll/FindCloseUrlCache
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: MSIMG32.dll/GradientFill
DynamicLoader: GDI32.dll/GetTextExtentExPointWPri
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcBindingSetAuthInfoExW
DynamicLoader: RPCRT4.dll/NdrClientCall2
DynamicLoader: USER32.dll/GetWindowLongW
DynamicLoader: USER32.dll/IsWindow
DynamicLoader: USER32.dll/SendMessageW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: IEUI.dll/WaitMessageEx
DynamicLoader: OLEAUT32.dll/DllGetClassObject
DynamicLoader: OLEAUT32.dll/DllCanUnloadNow
DynamicLoader: SXS.DLL/SxsOleAut32MapIIDToProxyStubCLSID
DynamicLoader: ADVAPI32.dll/RegQueryValueW
DynamicLoader: SXS.DLL/SxsOleAut32MapIIDToTLBPath
DynamicLoader: ADVAPI32.dll/RegEnumKeyW
DynamicLoader: ADVAPI32.dll/RegEnumKeyW
DynamicLoader: ADVAPI32.dll/RegOpenKeyW
DynamicLoader: ADVAPI32.dll/RegEnumKeyW
DynamicLoader: SXS.DLL/SxsOleAut32MapConfiguredClsidToReferenceClsid
DynamicLoader: SXS.DLL/SxsOleAut32RedirectTypeLibrary
DynamicLoader: propsys.dll/PSStringFromPropertyKey
DynamicLoader: propsys.dll/PSGetPropertyDescription
DynamicLoader: ole32.dll/PropVariantClear
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: propsys.dll/PropVariantToString
DynamicLoader: propsys.dll/InitPropVariantFromStringAsVector
DynamicLoader: propsys.dll/PSCoerceToCanonicalValue
DynamicLoader: USP10.dll/ScriptIsComplex
DynamicLoader: urlmon.dll/
DynamicLoader: SHELL32.dll/SHGetKnownFolderPath
DynamicLoader: urlmon.dll/
DynamicLoader: urlmon.dll/URLDownloadToFileW
DynamicLoader: urlmon.dll/CoInternetCreateSecurityManager
DynamicLoader: urlmon.dll/CoInternetCreateZoneManager
DynamicLoader: urlmon.dll/CoInternetIsFeatureEnabledForUrl
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: MSIMG32.dll/AlphaBlend
DynamicLoader: urlmon.dll/CoInternetQueryInfo
DynamicLoader: comctl32.dll/ImageList_GetImageCount
DynamicLoader: comctl32.dll/HIMAGELIST_QueryInterface
DynamicLoader: urlmon.dll/CreateUri
DynamicLoader: OLEAUT32.dll/
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoW
DynamicLoader: ole32.dll/PropVariantClear
DynamicLoader: RPCRT4.dll/UuidCreateSequential
DynamicLoader: ole32.dll/StgOpenStorageEx
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: USER32.dll/CharLowerW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptCreateHash
DynamicLoader: CRYPTSP.dll/CryptHashData
DynamicLoader: CRYPTSP.dll/CryptGetHashParam
DynamicLoader: CRYPTSP.dll/CryptDestroyHash
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: CRYPT32.dll/CryptUnprotectData
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/NdrClientCall2
DynamicLoader: CRYPTBASE.dll/SystemFunction041
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ADVAPI32.dll/EventWrite
DynamicLoader: ADVAPI32.dll/EventRegister
DynamicLoader: ADVAPI32.dll/EventUnregister
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/SetProcessDEPPolicy
DynamicLoader: USER32.dll/SetProcessDPIAware
DynamicLoader: SHELL32.dll/SetCurrentProcessExplicitAppUserModelID
DynamicLoader: USER32.dll/GetShellWindow
DynamicLoader: USER32.dll/GetWindowThreadProcessId
DynamicLoader: kernel32.dll/SortGetHandle
DynamicLoader: kernel32.dll/SortCloseHandle
DynamicLoader: IEFRAME.dll/
DynamicLoader: kernel32.dll/WerSetFlags
DynamicLoader: comctl32.dll/PropertySheetW
DynamicLoader: comctl32.dll/PropertySheetA
DynamicLoader: comdlg32.dll/PageSetupDlgW
DynamicLoader: comdlg32.dll/PrintDlgW
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: IEShims.dll/IEShims_Initialize
DynamicLoader: kernel32.dll/VirtualProtect
DynamicLoader: USER32.dll/SetWindowsHookExW
DynamicLoader: USER32.dll/FindWindowExA
DynamicLoader: kernel32.dll/WaitForSingleObject
DynamicLoader: USER32.dll/GetWindowThreadProcessId
DynamicLoader: kernel32.dll/CreateProcessW
DynamicLoader: kernel32.dll/CreateProcessA
DynamicLoader: ADVAPI32.dll/RegQueryValueA
DynamicLoader: ntdll.dll/LdrRegisterDllNotification
DynamicLoader: ole32.dll/CoGetApartmentType
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: comctl32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoGetMalloc
DynamicLoader: CRYPTBASE.dll/SystemFunction036
DynamicLoader: kernel32.dll/WerRegisterMemoryBlock
DynamicLoader: kernel32.dll/WerUnregisterMemoryBlock
DynamicLoader: USER32.dll/RegisterWindowMessageW
DynamicLoader: RPCRT4.dll/RpcServerUseProtseqW
DynamicLoader: RPCRT4.dll/RpcServerRegisterIfEx
DynamicLoader: RpcRtRemote.dll/I_RpcExtInitializeExtensionPoint
DynamicLoader: RPCRT4.dll/RpcServerInqBindings
DynamicLoader: RPCRT4.dll/RpcEpRegisterW
DynamicLoader: RPCRT4.dll/RpcServerListen
DynamicLoader: SHELL32.dll/SHGetInstanceExplorer
DynamicLoader: USER32.dll/RegisterClassExW
DynamicLoader: USER32.dll/CreateWindowExW
DynamicLoader: USER32.dll/DefWindowProcW
DynamicLoader: USER32.dll/SetWindowLongW
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: USER32.dll/MsgWaitForMultipleObjectsEx
DynamicLoader: urlmon.dll/
DynamicLoader: SHELL32.dll/SHGetFolderPathW
DynamicLoader: ADVAPI32.dll/TraceMessage
DynamicLoader: ADVAPI32.dll/TraceMessageVa
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: sqmapi.dll/SqmGetSession
DynamicLoader: sqmapi.dll/SqmEndSession
DynamicLoader: sqmapi.dll/SqmStartSession
DynamicLoader: sqmapi.dll/SqmStartUpload
DynamicLoader: sqmapi.dll/SqmWaitForUploadComplete
DynamicLoader: sqmapi.dll/SqmSet
DynamicLoader: sqmapi.dll/SqmSetBool
DynamicLoader: sqmapi.dll/SqmSetBits
DynamicLoader: sqmapi.dll/SqmSetString
DynamicLoader: sqmapi.dll/SqmIncrement
DynamicLoader: sqmapi.dll/SqmSetIfMax
DynamicLoader: sqmapi.dll/SqmSetIfMin
DynamicLoader: sqmapi.dll/SqmAddToAverage
DynamicLoader: sqmapi.dll/SqmAddToStreamDWord
DynamicLoader: sqmapi.dll/SqmAddToStreamString
DynamicLoader: sqmapi.dll/SqmSetAppId
DynamicLoader: sqmapi.dll/SqmSetAppVersion
DynamicLoader: sqmapi.dll/SqmSetMachineId
DynamicLoader: sqmapi.dll/SqmSetUserId
DynamicLoader: sqmapi.dll/SqmCreateNewId
DynamicLoader: sqmapi.dll/SqmReadSharedMachineId
DynamicLoader: sqmapi.dll/SqmReadSharedUserId
DynamicLoader: sqmapi.dll/SqmWriteSharedMachineId
DynamicLoader: sqmapi.dll/SqmWriteSharedUserId
DynamicLoader: sqmapi.dll/SqmIsWindowsOptedIn
DynamicLoader: ADVAPI32.dll/OpenThreadToken
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ole32.dll/CreateBindCtx
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoRegisterInitializeSpy
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_Size_ExW
DynamicLoader: ADVAPI32.dll/RegEnumKeyW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_ExW
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: ADVAPI32.dll/InitializeSecurityDescriptor
DynamicLoader: ADVAPI32.dll/SetEntriesInAclW
DynamicLoader: ntmarta.dll/GetMartaExtensionInterface
DynamicLoader: ADVAPI32.dll/SetSecurityDescriptorDacl
DynamicLoader: ADVAPI32.dll/IsTextUnicode
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/
DynamicLoader: SHELL32.dll/
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: sechost.dll/ConvertSidToStringSidW
DynamicLoader: profapi.dll/
DynamicLoader: propsys.dll/PSCreateMemoryPropertyStore
DynamicLoader: propsys.dll/PSPropertyBag_WriteStr
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/PropVariantClear
DynamicLoader: OLEAUT32.dll/
DynamicLoader: propsys.dll/PSPropertyBag_WriteGUID
DynamicLoader: propsys.dll/PSPropertyBag_ReadGUID
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcBindingSetAuthInfoExW
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/NdrClientCall2
DynamicLoader: USER32.dll/PostMessageW
DynamicLoader: USER32.dll/PeekMessageW
DynamicLoader: USER32.dll/TranslateMessage
DynamicLoader: USER32.dll/DispatchMessageW
DynamicLoader: USER32.dll/GetWindowLongW
DynamicLoader: WININET.dll/InternetSetOptionW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: sechost.dll/LookupAccountNameLocalW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ADVAPI32.dll/LookupAccountSidW
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptGenRandom
DynamicLoader: ole32.dll/NdrOleInitializeExtension
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: ole32.dll/CoGetPSClsid
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: ole32.dll/DcomChannelSetHResult
DynamicLoader: ieproxy.dll/DllGetClassObject
DynamicLoader: ieproxy.dll/DllCanUnloadNow
DynamicLoader: SHELL32.dll/SHChangeNotifyRegisterThread
DynamicLoader: comctl32.dll/
DynamicLoader: IEShims.dll/IEShims_SetRedirectRegistryForThread
DynamicLoader: RPCRT4.dll/RpcBindingToStringBindingW
DynamicLoader: RPCRT4.dll/RpcStringBindingParseW
DynamicLoader: RPCRT4.dll/I_RpcBindingInqLocalClientPID
DynamicLoader: RPCRT4.dll/RpcServerInqCallAttributesW
DynamicLoader: RPCRT4.dll/RpcImpersonateClient
DynamicLoader: RPCRT4.dll/RpcRevertToSelf
DynamicLoader: RPCRT4.dll/NdrServerCall2
DynamicLoader: RPCRT4.dll/RpcBindingInqObject
DynamicLoader: apphelp.dll/ApphelpCheckShellObject
DynamicLoader: urlmon.dll/CreateUri
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: ADVAPI32.dll/AddMandatoryAce
DynamicLoader: VERSION.dll/GetFileVersionInfoSizeW
DynamicLoader: VERSION.dll/GetFileVersionInfoW
DynamicLoader: VERSION.dll/VerQueryValueW
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoW
DynamicLoader: urlmon.dll/CreateURLMonikerEx
DynamicLoader: urlmon.dll/CreateAsyncBindCtxEx
DynamicLoader: urlmon.dll/RegisterBindStatusCallback
DynamicLoader: urlmon.dll/UrlMkGetSessionOption
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: RASAPI32.dll/RasConnectionNotificationW
DynamicLoader: sechost.dll/NotifyServiceStatusChangeA
DynamicLoader: NLAapi.dll/NSPStartup
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: RPCRT4.dll/NdrClientCall2
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: MLANG.dll/
DynamicLoader: urlmon.dll/CoInternetCreateSecurityManager
DynamicLoader: urlmon.dll/
DynamicLoader: iphlpapi.DLL/GetAdaptersAddresses
DynamicLoader: DHCPCSVC.DLL/DhcpRequestParams
DynamicLoader: urlmon.dll/
DynamicLoader: comctl32.dll/ImageList_Destroy
DynamicLoader: comctl32.dll/ImageList_LoadImageW
DynamicLoader: comctl32.dll/ImageList_Add
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoExW
DynamicLoader: MLANG.dll/
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoExA
DynamicLoader: UxTheme.dll/OpenThemeData
DynamicLoader: comctl32.dll/
DynamicLoader: UxTheme.dll/IsAppThemed
DynamicLoader: WININET.dll/InternetQueryOptionA
DynamicLoader: GDI32.dll/GetLayout
DynamicLoader: GDI32.dll/GdiRealizationInfo
DynamicLoader: GDI32.dll/FontIsLinked
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryInfoKeyW
DynamicLoader: GDI32.dll/GetTextFaceAliasW
DynamicLoader: ADVAPI32.dll/RegEnumValueW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: GDI32.dll/GetFontAssocStatus
DynamicLoader: ADVAPI32.dll/RegQueryValueExA
DynamicLoader: ADVAPI32.dll/RegEnumKeyExW
DynamicLoader: GDI32.dll/GetTextFaceAliasW
DynamicLoader: ole32.dll/CoInitialize
DynamicLoader: ole32.dll/RegisterDragDrop
DynamicLoader: UxTheme.dll/SetWindowTheme
DynamicLoader: UxTheme.dll/IsThemeActive
DynamicLoader: UxTheme.dll/OpenThemeData
DynamicLoader: GDI32.dll/GetTextExtentExPointWPri
DynamicLoader: urlmon.dll/
DynamicLoader: apphelp.dll/ApphelpCheckShellObject
DynamicLoader: kernel32.dll/FindActCtxSectionStringW
DynamicLoader: kernel32.dll/GetSystemWindowsDirectoryW
DynamicLoader: AcroIEHelper.dll/StubInit
DynamicLoader: AcroIEHelper.dll/StubSetSite
DynamicLoader: AcroIEHelper.dll/StubOnQuit
DynamicLoader: ADVAPI32.dll/RegOpenKeyExA
DynamicLoader: ADVAPI32.dll/RegEnumKeyA
DynamicLoader: ADVAPI32.dll/RegQueryValueExA
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ADVAPI32.dll/RegEnumKeyExA
DynamicLoader: ADVAPI32.dll/RegEnumKeyExA
DynamicLoader: SHLWAPI.dll/PathFileExistsA
DynamicLoader: SHLWAPI.dll/PathFileExistsA
DynamicLoader: SHLWAPI.dll/PathFileExistsA
DynamicLoader: ADVAPI32.dll/RegEnumKeyExA
DynamicLoader: ADVAPI32.dll/RegQueryValueA
DynamicLoader: SXS.DLL/SxsOleAut32RedirectTypeLibrary
DynamicLoader: ADVAPI32.dll/RegOpenKeyW
DynamicLoader: ADVAPI32.dll/RegQueryValueW
DynamicLoader: SXS.DLL/SxsOleAut32MapConfiguredClsidToReferenceClsid
DynamicLoader: comctl32.dll/ImageList_Create
DynamicLoader: comctl32.dll/
DynamicLoader: comctl32.dll/ImageList_AddMasked
DynamicLoader: comctl32.dll/LoadIconWithScaleDown
DynamicLoader: comctl32.dll/ImageList_ReplaceIcon
DynamicLoader: urlmon.dll/RevokeBindStatusCallback
DynamicLoader: urlmon.dll/CreateFormatEnumerator
DynamicLoader: OLEAUT32.dll/DllGetClassObject
DynamicLoader: OLEAUT32.dll/DllCanUnloadNow
DynamicLoader: urlmon.dll/CreateIUriBuilder
DynamicLoader: urlmon.dll/IntlPercentEncodeNormalize
DynamicLoader: OLEAUT32.dll/
DynamicLoader: USER32.dll/ChangeWindowMessageFilter
DynamicLoader: DWMAPI.DLL/DwmSetWindowAttribute
DynamicLoader: OLEAUT32.dll/
DynamicLoader: USER32.dll/IsWindow
DynamicLoader: USER32.dll/SendMessageW
DynamicLoader: UxTheme.dll/BufferedPaintInit
DynamicLoader: UxTheme.dll/BufferedPaintRenderAnimation
DynamicLoader: UxTheme.dll/BeginBufferedAnimation
DynamicLoader: UxTheme.dll/DrawThemeParentBackground
DynamicLoader: UxTheme.dll/EndBufferedAnimation
DynamicLoader: GDI32.dll/GdiIsMetaPrintDC
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: ole32.dll/CoRegisterInitializeSpy
DynamicLoader: ole32.dll/CoRevokeInitializeSpy
DynamicLoader: IMM32.DLL/ImmGetContext
DynamicLoader: urlmon.dll/CoInternetCreateSecurityManager
DynamicLoader: urlmon.dll/CoInternetCreateZoneManager
DynamicLoader: urlmon.dll/CoInternetIsFeatureEnabledForUrl
DynamicLoader: VERSION.dll/GetFileVersionInfoSizeW
DynamicLoader: VERSION.dll/GetFileVersionInfoW
DynamicLoader: VERSION.dll/VerQueryValueW
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoA
DynamicLoader: urlmon.dll/CoInternetQueryInfo
DynamicLoader: WININET.dll/CommitUrlCacheEntryA
DynamicLoader: urlmon.dll/
DynamicLoader: CRYPT32.dll/CertOpenStore
DynamicLoader: USERENV.dll/GetUserProfileDirectoryW
DynamicLoader: sechost.dll/ConvertSidToStringSidW
DynamicLoader: wintrust.dll/WinVerifyTrust
DynamicLoader: wintrust.dll/WTHelperProvDataFromStateData
DynamicLoader: wintrust.dll/WTHelperGetProvSignerFromChain
DynamicLoader: schannel.DLL/InitSecurityInterfaceA
DynamicLoader: CRYPT32.dll/CertSelectCertificateChains
DynamicLoader: CRYPT32.dll/CertFreeCertificateChainList
DynamicLoader: CRYPTSP.dll/SystemFunction035
DynamicLoader: schannel.DLL/SpUserModeInitialize
DynamicLoader: ADVAPI32.dll/RegCreateKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: CRYPT32.dll/CertDuplicateStore
DynamicLoader: CRYPT32.dll/CertControlStore
DynamicLoader: CRYPT32.dll/CertCloseStore
DynamicLoader: Secur32.dll/FreeContextBuffer
DynamicLoader: ncrypt.dll/SslOpenProvider
DynamicLoader: ncrypt.dll/GetSChannelInterface
DynamicLoader: bcryptprimitives.dll/GetHashInterface
DynamicLoader: bcryptprimitives.dll/GetHashInterface
DynamicLoader: bcryptprimitives.dll/GetHashInterface
DynamicLoader: bcryptprimitives.dll/GetHashInterface
DynamicLoader: ncrypt.dll/SslIncrementProviderReferenceCount
DynamicLoader: ncrypt.dll/SslImportKey
DynamicLoader: bcryptprimitives.dll/GetCipherInterface
DynamicLoader: ncrypt.dll/SslLookupCipherSuiteInfo
DynamicLoader: CRYPT32.dll/CertDuplicateCertificateContext
DynamicLoader: wintrust.dll/HTTPSCertificateTrust
DynamicLoader: wintrust.dll/HTTPSFinalProv
DynamicLoader: wintrust.dll/SoftpubInitialize
DynamicLoader: wintrust.dll/SoftpubLoadMessage
DynamicLoader: wintrust.dll/SoftpubLoadSignature
DynamicLoader: wintrust.dll/SoftpubCheckCert
DynamicLoader: wintrust.dll/SoftpubCleanup
DynamicLoader: CRYPTSP.dll/CryptAcquireContextA
DynamicLoader: WINHTTP.dll/WinHttpOpen
DynamicLoader: WINHTTP.dll/WinHttpSetTimeouts
DynamicLoader: WINHTTP.dll/WinHttpSetOption
DynamicLoader: WINHTTP.dll/WinHttpCrackUrl
DynamicLoader: SHLWAPI.dll/StrCmpNW
DynamicLoader: WINHTTP.dll/WinHttpConnect
DynamicLoader: WINHTTP.dll/WinHttpOpenRequest
DynamicLoader: WINHTTP.dll/WinHttpGetDefaultProxyConfiguration
DynamicLoader: WINHTTP.dll/WinHttpGetIEProxyConfigForCurrentUser
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: NSI.dll/NsiAllocateAndGetTable
DynamicLoader: CFGMGR32.dll/CM_Open_Class_Key_ExW
DynamicLoader: iphlpapi.DLL/ConvertInterfaceGuidToLuid
DynamicLoader: iphlpapi.DLL/GetIfEntry2
DynamicLoader: iphlpapi.DLL/GetIpForwardTable2
DynamicLoader: iphlpapi.DLL/GetIpNetEntry2
DynamicLoader: iphlpapi.DLL/FreeMibTable
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: NSI.dll/NsiFreeTable
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: WINHTTP.dll/WinHttpGetProxyForUrl
DynamicLoader: WINHTTP.dll/WinHttpTimeFromSystemTime
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: WINHTTP.dll/WinHttpSendRequest
DynamicLoader: ws2_32.DLL/GetAddrInfoW
DynamicLoader: ws2_32.DLL/WSASocketW
DynamicLoader: ws2_32.DLL/
DynamicLoader: ws2_32.DLL/
DynamicLoader: ws2_32.DLL/
DynamicLoader: ws2_32.DLL/WSAIoctl
DynamicLoader: ws2_32.DLL/FreeAddrInfoW
DynamicLoader: ws2_32.DLL/
DynamicLoader: ws2_32.DLL/
DynamicLoader: ws2_32.DLL/WSARecv
DynamicLoader: ws2_32.DLL/WSASend
DynamicLoader: WINHTTP.dll/WinHttpReceiveResponse
DynamicLoader: WINHTTP.dll/WinHttpQueryHeaders
DynamicLoader: SHLWAPI.dll/StrStrIW
DynamicLoader: WINHTTP.dll/WinHttpQueryDataAvailable
DynamicLoader: WINHTTP.dll/WinHttpReadData
DynamicLoader: WINHTTP.dll/WinHttpCloseHandle
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: CRYPT32.dll/CertDuplicateCertificateChain
DynamicLoader: CRYPT32.dll/CertGetCertificateContextProperty
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: CRYPT32.dll/CertFreeCertificateChain
DynamicLoader: CRYPT32.dll/CertFreeCertificateContext
DynamicLoader: ncrypt.dll/SslEncryptPacket
DynamicLoader: ncrypt.dll/SslDecryptPacket
DynamicLoader: ncrypt.dll/SslDecrementProviderReferenceCount
DynamicLoader: ncrypt.dll/SslFreeObject
DynamicLoader: kernel32.dll/InitializeSRWLock
DynamicLoader: kernel32.dll/AcquireSRWLockExclusive
DynamicLoader: kernel32.dll/AcquireSRWLockShared
DynamicLoader: kernel32.dll/ReleaseSRWLockExclusive
DynamicLoader: kernel32.dll/ReleaseSRWLockShared
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: IEFRAME.dll/
DynamicLoader: urlmon.dll/RegisterFormatEnumerator
DynamicLoader: urlmon.dll/CoInternetCreateZoneManager
DynamicLoader: urlmon.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/VariantClear
DynamicLoader: OLEAUT32.dll/
DynamicLoader: urlmon.dll/CoInternetIsFeatureEnabled
DynamicLoader: WININET.dll/InternetGetSecurityInfoByURLW
DynamicLoader: CRYPT32.dll/CertGetCertificateContextProperty
DynamicLoader: CRYPT32.dll/CryptDecodeObject
DynamicLoader: CRYPT32.dll/CryptDecodeObject
DynamicLoader: CRYPT32.dll/CertGetNameStringW
DynamicLoader: CRYPT32.dll/CertFreeCertificateChain
DynamicLoader: urlmon.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/BSTR_UserSize
DynamicLoader: OLEAUT32.dll/BSTR_UserMarshal
DynamicLoader: OLEAUT32.dll/BSTR_UserUnmarshal
DynamicLoader: OLEAUT32.dll/BSTR_UserFree
DynamicLoader: OLEAUT32.dll/VARIANT_UserSize
DynamicLoader: OLEAUT32.dll/VARIANT_UserMarshal
DynamicLoader: OLEAUT32.dll/VARIANT_UserUnmarshal
DynamicLoader: OLEAUT32.dll/VARIANT_UserFree
DynamicLoader: OLEAUT32.dll/LPSAFEARRAY_UserSize
DynamicLoader: OLEAUT32.dll/LPSAFEARRAY_UserMarshal
DynamicLoader: OLEAUT32.dll/LPSAFEARRAY_UserUnmarshal
DynamicLoader: OLEAUT32.dll/LPSAFEARRAY_UserFree
DynamicLoader: ADVAPI32.dll/RegQueryValueExA
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ole32.dll/CoGetObjectContext
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: urlmon.dll/
DynamicLoader: SHELL32.dll/SHGetFolderPathW
DynamicLoader: SHELL32.dll/
DynamicLoader: WININET.dll/CreateUrlCacheContainerW
DynamicLoader: WININET.dll/GetUrlCacheEntryInfoA
DynamicLoader: UxTheme.dll/IsAppThemed
DynamicLoader: WINHTTP.dll/WinHttpSetStatusCallback
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: UxTheme.dll/EnableThemeDialogTexture
DynamicLoader: WINMM.dll/PlaySoundW
DynamicLoader: ole32.dll/CoInitialize
DynamicLoader: sechost.dll/OpenSCManagerW
DynamicLoader: sechost.dll/OpenServiceW
DynamicLoader: sechost.dll/QueryServiceStatus
DynamicLoader: sechost.dll/CloseServiceHandle
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: MMDevAPI.DLL/
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/modMessage
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/midMessage
DynamicLoader: RPCRT4.dll/NdrClientCall2
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/wodMessage
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: ole32.dll/CoCreateFreeThreadedMarshaler
DynamicLoader: SETUPAPI.dll/SetupDiCreateDeviceInfoList
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/auxMessage
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/mxdMessage
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: SHLWAPI.dll/
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/PropVariantClear
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: SETUPAPI.dll/SetupDiOpenDeviceInfoW
DynamicLoader: SETUPAPI.dll/SetupDiGetDeviceInstanceIdW
DynamicLoader: SETUPAPI.dll/SetupDiGetDevicePropertyW
DynamicLoader: SHLWAPI.dll/SHStrDupW
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/widMessage
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/auxMessage
DynamicLoader: wdmaud.drv/DriverProc
DynamicLoader: wdmaud.drv/mxdMessage
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/wodMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/widMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/wodMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/widMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/wodMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/widMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/wodMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/widMessage
DynamicLoader: msacm32.drv/wodMessage
DynamicLoader: msacm32.drv/DriverProc
DynamicLoader: msacm32.drv/widMessage
DynamicLoader: midimap.dll/DriverProc
DynamicLoader: midimap.dll/DriverProc
DynamicLoader: midimap.dll/modMessage
DynamicLoader: midimap.dll/DriverProc
DynamicLoader: midimap.dll/midMessage
DynamicLoader: midimap.dll/modMessage
DynamicLoader: midimap.dll/DriverProc
DynamicLoader: midimap.dll/midMessage
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: CFGMGR32.dll/CMP_RegisterNotification
DynamicLoader: CFGMGR32.dll/CM_MapCrToWin32Err
DynamicLoader: SETUPAPI.dll/SetupDiGetClassDevsExW
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInfo
DynamicLoader: SETUPAPI.dll/CM_Get_DevNode_Status
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiGetDeviceInterfaceDetailW
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInfo
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: CFGMGR32.dll/CMP_UnregisterNotification
DynamicLoader: WININET.dll/CommitUrlCacheEntryA
DynamicLoader: WININET.dll/InternetUnlockRequestFile
DynamicLoader: propsys.dll/
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegGetValueW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: propsys.dll/InitPropVariantFromStringAsVector
DynamicLoader: propsys.dll/PSCoerceToCanonicalValue
DynamicLoader: propsys.dll/PropVariantToStringAlloc
DynamicLoader: WININET.dll/FindFirstUrlCacheContainerA
DynamicLoader: WININET.dll/FindNextUrlCacheContainerA
DynamicLoader: WININET.dll/FindCloseUrlCache
DynamicLoader: WININET.dll/CreateUrlCacheContainerA
DynamicLoader: WININET.dll/CommitUrlCacheEntryW
DynamicLoader: WININET.dll/InternetGetConnectedState
DynamicLoader: urlmon.dll/
DynamicLoader: urlmon.dll/URLDownloadToCacheFileW
DynamicLoader: urlmon.dll/
DynamicLoader: DWMAPI.DLL/DwmInvalidateIconicBitmaps
DynamicLoader: WININET.dll/SetUrlCacheEntryGroupW
DynamicLoader: urlmon.dll/
DynamicLoader: urlmon.dll/
DynamicLoader: urlmon.dll/
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: WININET.dll/InternetGetCookieExW
DynamicLoader: WININET.dll/InternetCrackUrlW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: WININET.dll/InternetConfirmZoneCrossingW
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: IEFRAME.dll/
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: OLEAUT32.dll/
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: ADVAPI32.dll/RegDeleteTreeA
DynamicLoader: ADVAPI32.dll/RegDeleteTreeW
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: T2EMBED.DLL/TTLoadEmbeddedFont
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: AUDIOSES.DLL/DllGetClassObject
DynamicLoader: MMDevAPI.DLL/DllGetClassObject
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: WININET.dll/CreateUrlCacheEntryA
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ImgUtil.dll/DecodeImage
DynamicLoader: msimg32.dll/AlphaBlend
DynamicLoader: ws2_32.DLL/
DynamicLoader: comctl32.dll/
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
Performs HTTP requests potentially not found in PCAP.
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: edition.cnn.com:443//.a/bundles/header.a926a8128830c177dc98.bundle.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-header-second-react.min.js
url: edition.cnn.com:443//optimizelyjs/128727546.js
url: edition.cnn.com:443//.a/2.175.2/js/cnn-footer-lib-react.min.js
url: edition.cnn.com:443//.a/2.175.2/js/gigya-sharebar.min.js
url: edition.cnn.com:443//2.175.2/static/unsupp.html
url: amplifypixel.outbrain.com:0//pixel?mid=006eb1f8dded486e0974a6b4a7b9805f5f&dl=https%3A%2F%2Fedition.cnn.com%2F&bust=0012061673745241252
url: amplifypixel.outbrain.com:0//pixel?mid=006eb1f8dded486e0974a6b4a7b9805f5f&dl=https%3A%2F%2Fedition.cnn.com%2F2.175.2%2Fstatic%2Funsupp.html&bust=0008131695673141536
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: native.sharethrough.com:0//assets/sfp.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: static.chartbeat.com:0//js/chartbeat_mab.js
url: tr.outbrain.com:0//pixel?marketerId=006eb1f8dded486e0974a6b4a7b9805f5f&obApiVersion=1.0&obtpVersion=1.1.7&name=PAGE_VIEW&dl=https%3A%2F%2Fedition.cnn.com%2F&optOut=false&bust=05476645602322891
url: tr.outbrain.com:0//pixel?marketerId=006eb1f8dded486e0974a6b4a7b9805f5f&obApiVersion=1.0&obtpVersion=1.1.7&name=PAGE_VIEW&dl=https%3A%2F%2Fedition.cnn.com%2F2.175.2%2Fstatic%2Funsupp.html&optOut=false&bust=030094410363571733
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedlight.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedlight.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedmedium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnsans-condensedbold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-condensedbold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-black.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-thinit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-thinit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-lightit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-lightit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-italic.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-italic.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-mediumit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-mediumit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-boldit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-boldit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-heavyit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-heavyit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnclock-blackit.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnclock-blackit.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/din-condensed.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/din-condensed.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnstyle-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnstyle-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnnbiz-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnbiz-heavy.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-thin.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-light.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-regular.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-regular.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-medium.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-semibold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-semibold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/cnn/3.9.0/cnntravel-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnntravel-bold.ttf)%20format(%22truetype%22
url: edition.i.cdn.cnn.com:443//.a/fonts/icons/2.4.10/cnn-icons.eot?
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
url: a.postrelease.com:0//serve/load.js?async=true
Encrypts a single HTTP packet
http_request: GET / HTTP/1.1 Accept: */* Accept-Language: en-gb User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband Connection: Keep-Alive Host: www.cnn.com
http_request: GET / HTTP/1.1 Accept: */* Accept-Language: en-gb User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Connection: Keep-Alive Host: edition.cnn.com Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/2.175.2/js/cnn-header-second-react.min.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /js/chartbeat_mab.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: static.chartbeat.com Connection: Keep-Alive
http_request: GET /assets/sfp.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: native.sharethrough.com Connection: Keep-Alive
http_request: GET /favicon.ie9.ico HTTP/1.1 Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /cp/obtp.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: amplify.outbrain.com Connection: Keep-Alive
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /pixel?marketerId=006eb1f8dded486e0974a6b4a7b9805f5f&obApiVersion=1.0&obtpVersion=1.1.7&name=PAGE_VIEW&dl=https%3A%2F%2Fedition.cnn.com%2F&optOut=false&bust=05476645602322891 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/ Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: tr.outbrain.com Connection: Keep-Alive
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /assets/sfp.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate If-Modified-Since: Wed, 27 Nov 2019 19:57:55 GMT Host: native.sharethrough.com Connection: Keep-Alive
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/2.175.2/js/cnn-header-second-react.min.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/2.175.2/js/cnn-header-second-react.min.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /optimizelyjs/128727546.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/2.175.2/js/cnn-header-second-react.min.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /2.175.2/static/unsupp.html HTTP/1.1 Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */* Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-medium.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-medium.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-thin.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-thin.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-heavy.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-heavy.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-bold.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-bold.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-black.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-black.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/fonts/cnn/3.9.0/cnnsans-light.eot)%20format(%22embedded-opentype%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff2)%20format(%22woff2%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.woff)%20format(%22woff%22),%20url(//edition.i.cdn.cnn.com/.a/fonts/cnn/3.9.0/cnnsans-light.ttf)%20format(%22truetype%22 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.i.cdn.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /.a/2.175.2/js/cnn-header-second-react.min.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: edition.cnn.com Connection: Keep-Alive Cookie: countryCode=RU; geoData=orotukan|MAG|686210|RU|EU|1100|broadband; FastAB=0=5016,1=5440,2=4145,3=7728,4=0949,5=4842,6=8249,7=4539,8=0936,9=8264; tryThing00=7599; tryThing01=3652; tryThing02=1163
http_request: GET /340/i.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: tag.bounceexchange.com Connection: Keep-Alive
http_request: GET /cp/obtp.js HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate If-Modified-Since: Wed, 27 Nov 2019 09:04:08 GMT If-None-Match: "4d2d4fd9389c5c77c32c897e944ddd21:1574845448" Host: amplify.outbrain.com Connection: Keep-Alive
http_request: GET /pixel?marketerId=006eb1f8dded486e0974a6b4a7b9805f5f&obApiVersion=1.0&obtpVersion=1.1.7&name=PAGE_VIEW&dl=https%3A%2F%2Fedition.cnn.com%2F2.175.2%2Fstatic%2Funsupp.html&optOut=false&bust=030094410363571733 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: tr.outbrain.com Connection: Keep-Alive
http_request: GET /pixel?mid=006eb1f8dded486e0974a6b4a7b9805f5f&dl=https%3A%2F%2Fedition.cnn.com%2F2.175.2%2Fstatic%2Funsupp.html&bust=0008131695673141536 HTTP/1.1 Accept: */* Referer: https://edition.cnn.com/2.175.2/static/unsupp.html Accept-Language: en-GB User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: amplifypixel.outbrain.com Connection: Keep-Alive
Sniffs keystrokes
SetWindowsHookExW: Process: explorer.exe(1708)
Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
regkeyval: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2\ProgramsCache

Screenshots


Hosts

Direct IP Country Name
N 99.86.255.230 [VT] United States
N 99.86.255.207 [VT] United States
N 95.100.189.236 [VT] Europe
N 93.184.221.240 [VT] Europe
N 93.184.220.29 [VT] Europe
Y 8.8.8.8 [VT] United States
N 64.202.112.31 [VT] United States
N 35.244.144.168 [VT] United States
N 204.79.197.200 [VT] United States
N 192.35.177.64 [VT] United States
N 188.43.75.96 [VT] Russian Federation
N 188.43.75.80 [VT] Russian Federation
N 178.18.232.48 [VT] Russian Federation
N 178.18.232.19 [VT] Russian Federation
N 151.139.128.14 [VT] United States
N 151.101.65.67 [VT] United States
N 151.101.2.2 [VT] United States
N 151.101.2.133 [VT] United States
N 151.101.193.67 [VT] United States
N 151.101.129.67 [VT] United States
N 151.101.1.67 [VT] United States
N 143.204.194.44 [VT] United States
N 143.204.194.36 [VT] United States
N 143.204.194.20 [VT] United States
N 143.204.194.144 [VT] United States
N 143.204.192.72 [VT] United States
N 13.227.171.194 [VT] United States
N 104.18.20.226 [VT] United States

DNS

Name Response Post-Analysis Lookup
www.bing.com [VT] CNAME dual-a-0001.a-msedge.net [VT]
CNAME a-0001.a-afdentry.net.trafficmanager.net [VT]
A 204.79.197.200 [VT]
A 13.107.21.200 [VT]
cnn.com [VT] A 151.101.1.67 [VT]
A 151.101.129.67 [VT]
A 151.101.65.67 [VT]
A 151.101.193.67 [VT]
www.cnn.com [VT] CNAME turner-tls.map.fastly.net [VT]
www.download.windowsupdate.com [VT] CNAME cs11.wpc.v0cdn.net [VT]
CNAME 2-01-3cf7-0009.cdx.cedexis.net [VT]
CNAME wu.ec.azureedge.net [VT]
CNAME hlb.apr-52dd2-0.edgecastdns.net [VT]
CNAME wu.wpc.apr-52dd2.edgecastdns.net [VT]
CNAME wu.azureedge.net [VT]
A 93.184.221.240 [VT]
ocsp.globalsign.com [VT] A 151.101.66.133 [VT]
A 151.101.2.133 [VT]
CNAME global.prd.cdn.globalsign.com [VT]
A 151.101.194.133 [VT]
A 151.101.130.133 [VT]
CNAME prod.globalsign.map.fastly.net [VT]
edition.cnn.com [VT]
edition.i.cdn.cnn.com [VT]
a.postrelease.com [VT] CNAME a.postrelease.com.edgesuite.net [VT]
A 178.18.232.48 [VT]
CNAME a1123.g.akamai.net [VT]
A 178.18.232.40 [VT]
native.sharethrough.com [VT] A 143.204.192.37 [VT]
A 143.204.192.21 [VT]
A 143.204.192.45 [VT]
A 143.204.192.72 [VT]
static.chartbeat.com [VT] A 13.227.171.194 [VT]
CNAME d3f7zc5bbfci5.cloudfront.net [VT]
x.ss2.us [VT] A 143.204.194.36 [VT]
A 143.204.194.50 [VT]
A 143.204.194.231 [VT]
A 143.204.194.209 [VT]
ocsp.digicert.com [VT] A 93.184.220.29 [VT]
CNAME cs9.wac.phicdn.net [VT]
ocsp.usertrust.com [VT] A 151.139.128.14 [VT]
o.ss2.us [VT] A 99.86.255.36 [VT]
A 99.86.255.152 [VT]
A 99.86.255.81 [VT]
A 99.86.255.230 [VT]
crl.usertrust.com [VT]
ocsp.rootg2.amazontrust.com [VT] A 143.204.194.136 [VT]
A 143.204.194.44 [VT]
A 143.204.194.20 [VT]
A 143.204.194.46 [VT]
crl.rootca1.amazontrust.com [VT] A 99.86.255.14 [VT]
A 99.86.255.68 [VT]
A 99.86.255.207 [VT]
A 99.86.255.156 [VT]
crl.rootg2.amazontrust.com [VT] A 143.204.194.39 [VT]
A 143.204.194.88 [VT]
A 143.204.194.144 [VT]
ocsp.rootca1.amazontrust.com [VT]
tag.bounceexchange.com [VT] CNAME tag.bouncex.net [VT]
A 35.244.144.168 [VT]
amplify.outbrain.com [VT] CNAME e10883.g.akamaiedge.net [VT]
A 95.100.189.236 [VT]
CNAME wildcard.outbrain.com.edgekey.net [VT]
apps.identrust.com [VT] A 192.35.177.64 [VT]
CNAME apps.digsigtrust.com [VT]
tr.outbrain.com [VT] A 151.101.66.2 [VT]
A 151.101.2.2 [VT]
A 151.101.194.2 [VT]
CNAME prod.outbrain.map.fastlylb.net [VT]
A 151.101.130.2 [VT]
amplifypixel.outbrain.com [VT] A 64.202.112.31 [VT]
CNAME nydc1.outbrain.org [VT]
CNAME alldcs.outbrain.org [VT]
isrg.trustid.ocsp.identrust.com [VT] A 188.43.75.96 [VT]
A 188.43.75.73 [VT]
CNAME a279.dscq.akamai.net [VT]
CNAME isrg.trustid.ocsp.identrust.com.edgesuite.net [VT]
ocsp.int-x3.letsencrypt.org [VT] CNAME a771.dscq.akamai.net [VT]
A 188.43.75.80 [VT]
CNAME ocsp.int-x3.letsencrypt.org.edgesuite.net [VT]
status.thawte.com [VT] CNAME ocsp.digicert.com [VT]
cdp.thawte.com [VT] CNAME crl3.digicert.com [VT]
ocsp2.globalsign.com [VT] A 104.18.21.226 [VT]
CNAME cdn.globalsigncdn.com.cdn.cloudflare.net [VT]
A 104.18.20.226 [VT]
crl.microsoft.com [VT] A 178.18.232.41 [VT]
CNAME crl.www.ms.akadns.net [VT]
A 178.18.232.19 [VT]
CNAME a1363.dscg.akamai.net [VT]

Summary

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{9D614B28-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Users\user\AppData\Local\Temp\~DF6D3A62A2B20D73CD.TMP
C:\Windows\SysWOW64\propsys.dll
C:\Windows\sysnative\propsys.dll
C:\Windows\System32\url.dll
C:\Users\user\Favorites\Links
C:\
C:\Users
C:\Users\user\AppData\Local\Microsoft\Windows\Caches
C:\Users\user\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
\??\MountPointManager
C:\Users\user\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x000000000000000d.db
C:\Users\desktop.ini
C:\Users\user
C:\Users\user\Favorites
C:\Users\user\Favorites\desktop.ini
C:\Users\user\Desktop\desktop.ini
C:\Users\user\Favorites\Links\desktop.ini
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
C:\Windows\SysWOW64\en-US\MSCTF.dll.mui
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9D614B29-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Users\user\AppData\Local\Temp\~DF7B77CD26CE20DCF5.TMP
C:\Users\user\Favorites\Links\Web Slice Gallery.url
C:\Users\user\AppData\Local\Microsoft\Feeds
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
C:\Windows\SysWOW64\ieframe.dll
C:\Windows\SysWOW64\stdole2.tlb
C:\Program Files (x86)\Internet Explorer\url.dll
C:\Users\user\Desktop\url.dll
C:\Users\user\AppData\LocalLow\Microsoft\Internet Explorer\Services\
C:\ProgramData\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\ProgramData\Microsoft\Network\Connections\Pbk\*.pbk
C:\Windows\System32\ras\*.pbk
C:\Users\user\AppData\Roaming\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\Users\user\AppData\Roaming\Microsoft\Network\Connections\Pbk\*.pbk
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\favicon[1].ico
C:\Users\user\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\favicon.ie9[1].ico
C:\Users\user\AppData\Local\Microsoft\Feeds Cache\
C:\Users\user\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\user\AppData\Local\Microsoft\Feeds Cache\desktop.ini
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Web Slice Gallery~.feed-ms
C:\Users\user\AppData\Local\Temp\~DFC8BAEA73F0BF0244.TMP
C:\Users\user\AppData\Local\Temp\~DFE84017BEB91F6985.TMP
C:\Users\user\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
C:\Users\user\AppData\Local\Temp\~DFE7B7FA21A8E69709.TMP
C:\Users\user\AppData\Local\Temp\~DF37D2C78A3BDA4F12.TMP
\Device\KsecDD
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Windows\SysWOW64\shell32.dll
C:\Program Files (x86)\Internet Explorer\sqmapi.dll
C:\Windows\Fonts\staticcache.dat
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll
C:\Windows
C:\Windows\winsxs
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
C:\Program Files (x86)\Internet Explorer\iexplore.exe.Local\
C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
C:\Windows\AppPatch\sysmain.sdb
C:\Program Files (x86)\Microsoft Office\Office14\
C:\Program Files (x86)
C:\Program Files (x86)\Microsoft Office
C:\Program Files (x86)\Microsoft Office\Office14
C:\Program Files (x86)\Microsoft Office\Office14\*.*
C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
C:\Program Files (x86)\Java\jre7\bin\java.exe
C:\Program Files (x86)\Java\jre7\bin\client\jvm.dll
C:\Program Files (x86)\Java\jre7\bin\server\jvm.dll
C:\Users\user\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\*
C:\Users\user\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs\*
C:\Users\user\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs\*
C:\Program Files (x86)\Internet Explorer\schannel.DLL
C:\Windows\System32\schannel.dll
C:\Windows\System32\en-US\WINHTTP.dll.mui
C:\Users\user\AppData\LocalLow
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\edition_cnn_com[1].txt
C:\Windows\WindowsShell.manifest
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\edition_cnn_com[1].htm
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Roaming\Microsoft\Windows\PrivacIE
C:\Users\user\AppData\Roaming\Microsoft\Windows\PrivacIE\
C:\Users\user\AppData\Roaming\Microsoft\Windows\PrivacIE\index.dat
C:\Users\user\AppData\Roaming\Microsoft\Windows\IETldCache\
C:\Users\user\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\46D7547AA7F9B9DA290D5C19668E04C1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Windows\Media\Windows Information Bar.wav
C:\Users\user\Desktop\wdmaud.drv
C:\Program Files (x86)\Internet Explorer\wdmaud.drv
C:\Windows\System32\wdmaud.drv
C:\Windows\System32\en-US\wdmaud.drv.mui
C:\Windows\System32\en-US\MMDevAPI.DLL.mui
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\chartbeat_mab[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\sfp[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\user\AppData
C:\Users\user\AppData\Local
C:\Users\user\AppData\Local\Microsoft
C:\Users\user\AppData\Local\Microsoft\Windows
C:\Users\user\AppData\Local\Microsoft\Windows\History
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012019120320191204\
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012019120320191204\index.dat
C:\Windows\System32\shell32.dll
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\obtp[1].js
C:\Windows\System32\tzres.dll
C:\Users\user\AppData\Local\Microsoft\Internet Explorer
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\Windows\Media\Windows Navigation Start.wav
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\pixel[1].gif
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\128727546[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\i[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\pixel[1].gif
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\dnserror[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\ErrorPageTemplate[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\ErrorPageTemplate[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\errorPageStrings[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\errorPageStrings[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\httpErrorPagesScripts[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\httpErrorPagesScripts[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\noConnect[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\noConnect[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\background_gradient[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\background_gradient[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\down[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\down[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\favcenter[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\favcenter[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\tools[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\tools[2]
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\user\Desktop
C:\Users\Public\Desktop
C:\Users\Public
C:\Users\Public\desktop.ini
C:\Users\Public\Desktop\desktop.ini
C:\Users\user\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Links
C:\Windows\sysnative\ieframe.dll
C:\Users\user\{1777F761-68AD-4D8A-87BD-30B759FA33DD}
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
C:\Program Files (x86)\desktop.ini
C:\Program Files (x86)\Internet Explorer\iexplore.exe.Manifest
C:\program files (x86)\internet explorer\iexplore.exe
C:\program files (x86)\internet explorer\en-US\iexplore.exe.mui
C:\Users\user\Searches
C:\Users\user\Searches\desktop.ini
C:\Users\user\Videos
C:\Users\user\Videos\desktop.ini
C:\Users\user\Pictures
C:\Users\user\Pictures\desktop.ini
C:\Users\user\Contacts
C:\Users\user\Contacts\desktop.ini
C:\Users\user\Music
C:\Users\user\Music\desktop.ini
C:\Users\user\Downloads
C:\Users\user\Downloads\desktop.ini
C:\Users\user\Documents
C:\Users\user\Documents\desktop.ini
C:\Users\user\Links
C:\Users\user\Links\desktop.ini
C:\Users\user\Saved Games
C:\Users\user\Saved Games\desktop.ini
C:\Windows\sysnative\Branding\Shellbrd\Shellbrd.dll
C:\Windows\Branding\ShellBrd\shellbrd.dll
C:\Windows\imageres.dll
C:\Windows\sysnative\imageres.dll
C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\
C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\slideshow.ini
C:\Users\user\Desktop\CapeOutput.bin
C:\Users\Public\Desktop\CapeOutput.bin
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu
C:\Users\user\AppData\Roaming
C:\Users\user\AppData\Roaming\Microsoft
C:\Users\user\AppData\Roaming\Microsoft\desktop.ini
C:\Users\user\AppData\Roaming\Microsoft\Windows
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
C:\ProgramData\Microsoft\Windows\Start Menu
C:\ProgramData
C:\ProgramData\Microsoft
C:\ProgramData\Microsoft\desktop.ini
C:\ProgramData\Microsoft\Windows
C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE
C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE
C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE
C:\Program Files (x86)\Microsoft Office\Office14\MSTORE.EXE
C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE
C:\Python27\pythonw.exe
C:\Python27\python.exe
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{9D614B28-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Users\user\AppData\Local\Temp\~DF6D3A62A2B20D73CD.TMP
C:\Windows\System32\url.dll
C:\
C:\Users\user\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
C:\Users\user\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x000000000000000d.db
C:\Users\desktop.ini
C:\Users
C:\Users\user
C:\Users\user\Favorites\desktop.ini
C:\Users\user\Desktop\desktop.ini
C:\Users\user\Favorites
C:\Users\user\Favorites\Links\desktop.ini
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
C:\Windows\SysWOW64\en-US\MSCTF.dll.mui
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9D614B29-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Users\user\AppData\Local\Temp\~DF7B77CD26CE20DCF5.TMP
C:\Users\user\Favorites\Links
C:\Windows\SysWOW64\ieframe.dll
C:\Windows\SysWOW64\stdole2.tlb
C:\Users\user\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\favicon.ie9[1].ico
C:\Users\user\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Web Slice Gallery~.feed-ms
C:\Users\user\AppData\Local\Temp\~DFC8BAEA73F0BF0244.TMP
C:\Users\user\AppData\Local\Temp\~DFE84017BEB91F6985.TMP
C:\Users\user\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
C:\Users\user\AppData\Local\Temp\~DFE7B7FA21A8E69709.TMP
C:\Users\user\AppData\Local\Temp\~DF37D2C78A3BDA4F12.TMP
\Device\KsecDD
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Windows\SysWOW64\shell32.dll
C:\Program Files (x86)\Internet Explorer\sqmapi.dll
C:\Windows\Fonts\staticcache.dat
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
C:\Windows\AppPatch\sysmain.sdb
C:\Program Files (x86)\Microsoft Office\Office14\
C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
C:\Windows\System32\schannel.dll
C:\Windows\System32\en-US\WINHTTP.dll.mui
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Windows\WindowsShell.manifest
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\edition_cnn_com[1].htm
C:\Users\user\AppData\Roaming\Microsoft\Windows\PrivacIE\index.dat
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\46D7547AA7F9B9DA290D5C19668E04C1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Windows\Media\Windows Information Bar.wav
C:\Windows\System32\en-US\wdmaud.drv.mui
C:\Windows\System32\en-US\MMDevAPI.DLL.mui
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\chartbeat_mab[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\sfp[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData
C:\Users\user\AppData\Local
C:\Users\user\AppData\Local\Microsoft
C:\Users\user\AppData\Local\Microsoft\Windows
C:\Users\user\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012019120320191204\index.dat
C:\Windows\System32\shell32.dll
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\obtp[1].js
C:\Windows\System32\tzres.dll
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\Windows\Media\Windows Navigation Start.wav
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\128727546[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\i[1].js
C:\Users\Public\desktop.ini
C:\Users\Public
C:\Users\Public\Desktop\desktop.ini
C:\Users\user\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Links
C:\Windows\sysnative\ieframe.dll
C:\Users\user\{1777F761-68AD-4D8A-87BD-30B759FA33DD}
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
C:\Program Files (x86)\desktop.ini
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe.Manifest
C:\program files (x86)\internet explorer\iexplore.exe
C:\program files (x86)\internet explorer\en-US\iexplore.exe.mui
C:\Users\user\Searches\desktop.ini
C:\Users\user\Videos\desktop.ini
C:\Users\user\Pictures\desktop.ini
C:\Users\user\Contacts\desktop.ini
C:\Users\user\Music\desktop.ini
C:\Users\user\Downloads\desktop.ini
C:\Users\user\Documents\desktop.ini
C:\Users\user\Links\desktop.ini
C:\Users\user\Saved Games\desktop.ini
C:\Windows\Branding\ShellBrd\shellbrd.dll
C:\Windows\sysnative\imageres.dll
C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\slideshow.ini
C:\Users\user\Desktop
C:\Users\Public\Desktop
C:\Users\user\AppData\Roaming
C:\Users\user\AppData\Roaming\Microsoft\desktop.ini
C:\Users\user\AppData\Roaming\Microsoft
C:\Users\user\AppData\Roaming\Microsoft\Windows
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
C:\ProgramData
C:\ProgramData\Microsoft\desktop.ini
C:\ProgramData\Microsoft
C:\ProgramData\Microsoft\Windows
C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{9D614B28-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Users\user\AppData\Local\Temp\~DF6D3A62A2B20D73CD.TMP
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9D614B29-1566-11EA-A15D-000C29BA3DA7}.dat
C:\Users\user\AppData\Local\Temp\~DF7B77CD26CE20DCF5.TMP
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\favicon[1].ico
C:\Users\user\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Web Slice Gallery~.feed-ms
C:\Users\user\AppData\Local\Temp\~DFC8BAEA73F0BF0244.TMP
C:\Users\user\AppData\Local\Temp\~DFE84017BEB91F6985.TMP
C:\Users\user\AppData\Local\Temp\~DFE7B7FA21A8E69709.TMP
C:\Users\user\AppData\Local\Temp\~DF37D2C78A3BDA4F12.TMP
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0DA515F703BB9B49479E8697ADB0B955_7DC3E633EDFAEFC3AA3C99552548EC2F
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\edition_cnn_com[1].txt
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Roaming\Microsoft\Windows\PrivacIE\index.dat
C:\Users\user\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\070E0202839D9D67350CD2613E78E416
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CBB16B7A61CE4E298043181730D3CE9B
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B66240B0F6C84BD4857ABA60CF5CE4A0_5043E0F5DF723415C9EECC201C838A62
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\07CEF2F654E3ED6050FFC9B6EB844250_5F5269AC0D922158A5B542020448A2D3
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\chartbeat_mab[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\sfp[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3538626A1FCCCA43C7E18F220BDD9B02
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\620BEF1064BD8E252C599957B3C91896
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BCB67D7ECB470284AF35679F339E879F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\75CA58072B9926F763A91F0CC2798706_93E4B2BA79A897B3100CCB27F2D3BF4F
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BAD725C80F9E10846F35D039A996E4A8_88B6AE015495C1ECC395D19C1DD02894
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012019120320191204\index.dat
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\favicon.ie9[1].ico
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\obtp[1].js
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E49827401028F7A0F97B5576C77A26CB_7CE95D8DCA26FE957E7BD7D76F353B08
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\pixel[1].gif
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AC7B8354A76285C0FD76A4D903C76AC
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_3493853ECB836F04B992A7EAD5C3EE1D
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC9863BDD91599535D571389CDF6C72E
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\128727546[1].js
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\146C26308966C0E3D483CDA6352C4177
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\i[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\pixel[1].gif
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\dnserror[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\ErrorPageTemplate[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\ErrorPageTemplate[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\errorPageStrings[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\errorPageStrings[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\httpErrorPagesScripts[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\httpErrorPagesScripts[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\noConnect[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\noConnect[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\background_gradient[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J6NWIC74\background_gradient[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\down[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\down[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\favcenter[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\favcenter[2]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\tools[1]
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R8OP9ZJC\tools[2]
C:\Users\user\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4W7O9ARC\cnn-header-second-react.min[1].js
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P0THEGK\cnn-header-second-react.min[1].js
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyDetectType
HKEY_LOCAL_MACHINE\Software\Microsoft\DirectUI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Recovery\AdminActive\{9D614B28-1566-11EA-A15D-000C29BA3DA7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_CURRENT_USER\Software\Classes
HKEY_CURRENT_USER\Software\Classes\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Groups
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\TabbedBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\EnabledScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feeds
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feeds
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Search
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\IE8RunOnceLastShown
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Zones
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\SecuritySafe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Placement
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Position
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FullScreen
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\IEAK
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\IEAK
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\ConfiguredScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\User Favorites Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\UpgradeTime
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Migration
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Migration\IE Installed Date
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\CommandBar
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\CommandBar
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale\Alternate Sorts
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Language Groups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000809
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseIE7AutoComplete
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONES_CHECK_ZONEMAP_POLICY_KB941001
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchControlWidth
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigrated
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedInstalled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DefaultScope
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Deleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\URL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SortIndex
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Locked
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\LinksBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\TestHandler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\LinksFolderMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\MarketingLinksMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\CascadeFolderBands
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\CascadeFolderBands
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\DefaultItemWidth
HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\NonEnum
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\NonEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_CLASSES_ROOT\Drive\shellex\FolderExtensions
HKEY_CLASSES_ROOT\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}\DriveMask
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Explorer
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\DontShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterTimerInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWebView
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterDisable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\SeparateProcess
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoNetCrawling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSimpleStartMenu
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowCompColor
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowInfoTip
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideIcons
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\MapNetDrvBtn
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\WebView
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Filter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\NoNetCrawling
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\AutoCheckSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\IconsOnly
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowTypeOverlay
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Directory\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Directory
HKEY_CLASSES_ROOT\Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\ShellEx\IconHandler
HKEY_CLASSES_ROOT\Folder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellEx\IconHandler
HKEY_CLASSES_ROOT\AllFilesystemObjects
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\ShellEx\IconHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\NeverShowExt
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders
HKEY_CURRENT_USER
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PropertyBag
HKEY_CLASSES_ROOT\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{59031A47-3F72-44A7-89C5-5595FE6B30EE}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsThreshold
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\clsid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2670000A-7350-4F3C-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2670000A-7350-4F3C-8081-5663EE0C6C49}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2670000A-7350-4F3C-8081-5663EE0C6C49}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2670000A-7350-4F3C-8081-5663EE0C6C49}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2670000A-7350-4F3C-8081-5663EE0C6C49}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2670000A-7350-4F3C-8081-5663EE0C6C49}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4F3C-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4F3C-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\Lang0409
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ButtonText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuCustomize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuStatusBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping\{2670000A-7350-4f3c-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\Default Visible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\clsid
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\Lang0409
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\ButtonText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuCustomize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuStatusBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\Default Visible
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Restrictions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\Icon
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\IEDevTools
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksExplorer
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\LinksExplorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ThumbnailBehavior
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Height
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\Compatibility\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{03B5835F-F03C-411B-9CE2-AA23E1171E36}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{07EB03D6-B001-41DF-9192-BF9B841EE71F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3697C5FA-60DD-4B56-92D4-74A569205C16}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{531FDEBF-9B4C-4A43-A2AA-960E8FCDC732}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{70FAF614-E0B1-11D3-8F5C-00C04F9CF4AC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{81D4E9C9-1D3B-41BC-9E6C-4B40BF79E35E}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{8613E14C-D0C0-4161-AC0F-1DD2563286BC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{A028AE76-01B1-46C2-99C4-ACD9858AE02F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{AE6BE008-07FB-400D-8BEB-337A64F7051F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{C1EE01F2-B3B6-4A6A-9DDD-E988C088EC82}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{DCBD6FA8-032F-11D3-B5B1-00C04FC324A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F25E9F57-2FC8-4EB3-A41A-CCE5F08541E6}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F89E9E58-BD2F-4008-9AC2-0F816C09F4EE}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{FA445657-9379-11D6-B41A-00065B83EE53}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_CURRENT_USER\Keyboard Layout\Toggle
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey
HKEY_CURRENT_USER\Software\Microsoft\CTF\DirectSwitchHotkeys
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\KnownClasses
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Width
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Height
HKEY_CURRENT_USER\Software\Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History\DaysToKeep
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameTabWindow
HKEY_CURRENT_USER\Software\Classes\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\AllowFileCLSIDJunctions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
\xe5\x88\x88\xc3\xabEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\ErrorState
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\App Paths\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\DontUseDesktopChangeRouter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Marlett
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\SecurityService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_CURRENT_USER\Software\Classes\Interface\{00020400-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{00020420-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020420-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{00020424-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00020424-0000-0000-C000-000000000046}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\Version
HKEY_CURRENT_USER\Software\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32\(Default)
HKEY_CURRENT_USER\Software\Classes\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\UDTAlignmentPolicy
HKEY_CURRENT_USER\Software\Classes\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Use FormSuggest
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001\ProfileImagePath
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
\xe5\x88\x88\xc3\xabEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadLastNetwork
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_CLASSES_ROOT\MIME\Database\Content Type\image/x-icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-icon\Extension
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsLastUsed
HKEY_CURRENT_USER\Software\Classes\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheRepair
\xe8\x89\xa0\xc3\xbc\x0c\x00\xed\x83\x80\xef\x83\xa0\xeb\x83\x95\xe4\xac\xabR\xe8\xb8\x80\xc2\x8e\x00\xe8\xa7\xa8\xec\x8e\xa0\xe0\xb2\xbc\xee\xb4\x80\xe8\x82\x83\xe8\x8f\xaf\xee\xae\xa0\xe9\x96\x83\xea\xb3\xa4\xe5\x8a\xab\xeb\xa3\xa8\xec\x8a\x80\xc2\x8e\xea\x9f\xa8\xee\xb2\xa8\xea\x82\x8e\xeb\x8b\xa0\xee\xba\xbc\xe8\x82\xb4\xe8\x8b\xa8\xee\xa2\x83\xea\xbe\x8f\xea\xbb\xae\xee\xa6\xa0\xe8\x8e\x96\xeb\x8f\xaa\xee\x96\xa4\xea\xae\x8a\xea\x8f\xab\xee\xb2\xa8\xe8\x82\x8a\xe8\xbb\x82\xe9\xbf\xaa\xee\xba\xa8\xea\xa2\xb2\xe8\x8b\xaa\xee\xae\x8e\xea\x82\x8b\xeb\xab\xae
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheOptions
HKEY_CLASSES_ROOT\.url
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\(Default)
HKEY_CLASSES_ROOT\.url\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url
HKEY_CLASSES_ROOT\InternetShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\ShellEx\IconHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\ShellEx\IconHandler\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\DocObject
HKEY_CLASSES_ROOT\SystemFileAssociations\.url
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\PerceivedType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\Content Type
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\CLSID\(Default)
HKEY_CLASSES_ROOT\CLSID\{FBF23B40-E3F0-101B-8488-00AA003E56F8}\Implemented Categories\{00021490-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\NeverShowExt
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\1
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Feeds
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Feeds
HKEY_CURRENT_USER\Software\Microsoft\Feeds
HKEY_CURRENT_USER\Software\Microsoft\Feeds\SyncStatus
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DownloadRetries
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DownloadUpdates
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
HKEY_CURRENT_USER\Software\Classes\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Control Panel\Desktop
HKEY_CURRENT_USER\Control Panel\Desktop\SmoothScroll
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\EnableBalloonTips
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ListviewAlphaSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ListviewShadow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\TurnOffSPIAnimations
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLEAUT
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\crypt32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\crypt32\DebugHeapFlags
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableImprovedZoneCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
DisableUserModeCallbackFilter
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DEPOff
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLESAFESEARCHPATH_KB963027
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ENABLESAFESEARCHPATH_KB963027
HKEY_LOCAL_MACHINE\Software\Policies
HKEY_CURRENT_USER\Software\Policies
HKEY_CURRENT_USER\Software
HKEY_LOCAL_MACHINE\Software
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ProtectedModeOffForAllZones
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabProcGrowth
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\LuaOffLoRIEOn
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SessionMerging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SessionMerging
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AdminTabProcs
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\AdminTabProcs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CompatibilityFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\DetourDialogs
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\New Windows
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\AcRedir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesMyComputer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPropertiesRecycleBin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoInternetIcon
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Applications\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoCommonGroups
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BFE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabShutdownDelay
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\TabShutdownDelay
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SQM
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SQM\ServerFreezeOnUpload
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SQM
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\CEIPEnable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1777F761-68AD-4D8A-87BD-30B759FA33DD}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Favorites
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA\AccessProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PropertyBag
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Desktop
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PropertyBag
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag
HKEY_CURRENT_USER\Software\Classes\AppID\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledProcesses\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\74DD1FC8
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledSessions\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\EnablePreBinding
HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InProcServer32\LoadWithoutCOM
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SafeBoot\Option
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\AppCompatibility
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\AppCompat
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{871c5380-42a0-1069-a2ea-08002b30309d}\InProcServer32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{871C5380-42A0-1069-A2EA-08002B30309D} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{871C5380-42A0-1069-A2EA-08002B30309D}
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh
HKEY_LOCAL_MACHINE\Software\Microsoft\Feeds
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Feeds\UrlCacheVersion
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_FAILED_CONNECT_CONTENT_KB942615
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SHOW_FAILED_CONNECT_CONTENT_KB942615
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_HANDLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_HANDLING\iexplore.exe
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\http\
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\*\
HKEY_LOCAL_MACHINE\Software\Microsoft\Ole
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\MaximumAllowedAllocationSize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Compat_Logging
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\Feature_Enable_Compat_Logging
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Compatible
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\UA Tokens
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
\xed\x9e\xa0\xc2\x96EY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Pre Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Pre Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Pre Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform
\xef\x9e\xa0\xc2\x96EY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
\xde\xa0\xc2\x97EY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER\*
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\UrlMon Settings
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IGNORE_POLICIES_ZONEMAP_IF_ESC_ENABLED_KB918915
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_UNC_SAVEDFILECHECK\*
HKEY_LOCAL_MACHINE\System\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\IntranetName
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\UNCAsIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\4
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableUTF8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AcceptLanguage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\AllSitesCompatibilityMode
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\BrowserEmulation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\IntranetCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\MSCompatibilityMode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\ClearableListData
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\UnattendLoaded
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFileMenu
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\StatusBarWeb
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\StatusBarWeb
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable Browser Extensions
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoBandCustomize
HKEY_CURRENT_USER\Software\AppDataLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\DontShowMeThisDialogAgain
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IntelliForms
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PageSetup
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\LowDAMap
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\LowRegistry
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\BrowserEmulation\LowMic
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\LowMic
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Layout
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBarLayout
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\AlwaysShowMenus
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\AlwaysShowMenus
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontLink\SystemLink
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\DataFilePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane11
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane12
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane13
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane15
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane16
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Segoe UI
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDON_MANAGEMENT\*
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ext
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Ext
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{18df081c-e8ad-4283-a596-fa578c2ebdc3}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\AcroIEHelperShim.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\Time
HKEY_CLASSES_ROOT\CLSID\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide\AssemblyStorageRoots
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}\iexplore\LoadTime
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{b4f3a835-0e21-4959-ba22-42b3008e02ff}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\URLREDIR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\Time
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\iexplore\LoadTime
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}\Flags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{dbc80044-a445-435b-bc74-9c25c1c588a9}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\jp2ssv.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{DBC80044-A445-435B-BC74-9C25C1C588A9}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Type
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Count
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\Time
HKEY_LOCAL_MACHINE\SOFTWARE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\10.0.0
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Plug-in\10.0.0\UseNewJavaPlugin
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Runtime Environment
HKEY_LOCAL_MACHINE\SOFTWARE\JavaSoft\Java Runtime Environment\1.7.0
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\JavaSoft\Java Runtime Environment\1.7.0\JavaHome
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}\InprocServer32
\xd6\x90\xc2\x96EY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}\InprocServer32
\xd6\x90\xc2\x96EY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}\InprocServer32
\xd6\x90\xc2\x96EY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32
\xd6\x90\xc2\x96EY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}\InprocServer32
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}\InprocServer32
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}\InprocServer32
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\InprocServer32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9}\iexplore\LoadTime
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Suggested Sites\Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Suggested Sites
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5F226421-415D-408D-9A09-0DCD94E25B48}\1.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OpenDirectlyInApp
HKEY_CURRENT_USER\Software\Policies\Microsoft\Security
HKEY_CURRENT_USER\Software\Microsoft\Security
HKEY_CLASSES_ROOT\CLSID
HKEY_CURRENT_USER\Software\Classes\Wow6432Node\CLSID\{7b8a2d94-0ac9-11d1-896c-00c04fb6bfc4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7B8A2D94-0AC9-11D1-896C-00C04FB6BFC4}\InsecureQI
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\Common
HKEY_CURRENT_USER\Software\Microsoft\Office\Common\AllowConsecutiveSlashesInUrlPathComponent
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\Server Cache
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\OptimisticBHO
HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\Internet\Server Cache\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IEDDE_REGISTER_PROTOCOL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IEDDE_REGISTER_PROTOCOL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_READ_ZONE_STRINGS_FROM_REGISTRY
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_READ_ZONE_STRINGS_FROM_REGISTRY
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones\0\Flags
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\CurrentLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\CurrentLevel
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\CurrentLevel
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\MinLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\RecommendedLevel
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\CurrentLevel
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\MediaTypeClass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Ratings
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ratings\Key
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\No3DBorder
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UrlEncoding
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\TabbedBrowsing
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\TravelLog
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\TravelLog
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\MenuUserExpanded
\xe4\xa4\x90\xe6\x8c\x80
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\cnn.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\{AEBA21FA-782A-4A90-978D-B72164C80120}
\xd6\x90\xc2\x96EY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\PrivacyAdvanced
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONE_ELEVATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ZONE_ELEVATION\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2101
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\crypt32\DiagLevel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\crypt32\DiagMatchAnyMask
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1\CertDllOpenStoreProv
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\my\PhysicalStores
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\my
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\Certificates
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\CRLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\CTLs
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LsaExtensionConfig\SspiCli
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureDll
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureRoutine
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureRoutine
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SecurityProviders
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\SspiCache
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Name
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Comment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\RpcId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\TokenSize
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders\SaslProfiles
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders\Schannel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextLockCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextListCount
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\State
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\Safety Warning Level
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\WinHttpSettings
\xd6\x90\xc2\x96EY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\WinHttpSettings
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-0c-29-dc-04-c0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\ChainEngine\Config
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableInetUnknownAuth
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/html; charset=utf-8
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/html
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/html\Extension
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\text/html; charset=utf-8
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html; charset=utf-8
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\text/html
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_SNIFFING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MIME_SNIFFING\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2100
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IsTextPlainHonored
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_FEEDS\*
HKEY_CLASSES_ROOT\.txt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.txt\Content Type
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SAFE_BINDTOOBJECT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SAFE_BINDTOOBJECT\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInset
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollDelay
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragScrollInterval
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MANAGE_SCRIPT_CIRCULAR_REFS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MANAGE_SCRIPT_CIRCULAR_REFS
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD\*
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Security\Floppy Access
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\Adv AddrBar Spoof Detection
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Security\Adv AddrBar Spoof Detection
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\about\
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Handler\about
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\about
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2106
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomDisabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Zoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnStartup
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetTextSizeOnZoom
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ResetZoomOnStartup2
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Zoom\ZoomFactor
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter\EnabledV8
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\PhishingFilter
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter\EnabledV8
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IPERSISTMONIKER_LOAD_REDIRECTED_URL_KB976425
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IPERSISTMONIKER_LOAD_REDIRECTED_URL_KB976425
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SmartDithering
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SmartDithering
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\RtfConverterFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseClearType
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Page_Transitions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Page_Transitions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use_DlgBox_Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Anchor Underline
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CSS_Compat
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Expand Alt Text
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Images
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Display Inline Videos
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Display Inline Videos
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Background_Sounds
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Play_Animations
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Print_Background
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use Stylesheets
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SmoothScroll
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\SmoothScroll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XMLHTTP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Show image placeholders
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Show image placeholders
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Disable Script Debugger
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DisableScriptDebuggerIE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Move System Caret
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Force Offscreen Composition
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Enable AutoImageResize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Enable AutoImageResize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseThemes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseHR
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Q300829
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Cleanup HTCs
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\XDomainRequest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\XDomainRequest
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\DOMStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DOMStorage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Default_CodePage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\Default_IEFontSizePrivate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\International\Scripts
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Visited
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Anchor Color Hover
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Settings
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Colors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Size
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Always Use My Font Face
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Disable Visited Hyperlinks
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\Use Anchor Hover Color
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\MiscFlags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Styles
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Allow Programmatic Cut_Copy_Paste
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PageSetup\Print_Background
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\Contexts
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\Flags
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\Contexts
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Nls\CodePage
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CodePage\950
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFontSizePrivate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEPropFontName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\International\Scripts\3\IEFixedFontName
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Version Vector
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\VML
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\IE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Version Vector\WindowsEdition
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2700
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_XSSFILTER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_XSSFILTER\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CODEPAGE_INHERIT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_CODEPAGE_INHERIT
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\NoProtectedModeBanner
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4\2500
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2301
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\DxTrans
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\DxTrans
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BEHAVIORS\iexplore.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\2000
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Default Behaviors
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Default Behaviors\discovery
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BINARY_CALLER_SERVICE_PROVIDER
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BINARY_CALLER_SERVICE_PROVIDER
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CoInternetCombineIUriCacheSize
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CoInternetCombineIUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CoInternetCombineIUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\CoInternetCombineIUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1400
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SSLUX\*
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnIntranet
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\
HKEY_CURRENT_USER\Software\Classes\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}\SynchronousInterface
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9D973E3B-F610-4F03-83D3-AED90C3237AC}\SynchronousInterface\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_STATUS_BAR_THROTTLING
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_STATUS_BAR_THROTTLING
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IEDDE_REGISTER_URLECHO
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_IEDDE_REGISTER_URLECHO
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1201
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESPECT_OBJECTSAFETY_POLICY_KB905547
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESPECT_OBJECTSAFETY_POLICY_KB905547
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\ActiveX Compatibility
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\ActiveX Compatibility\{F414C260-6AC0-11CF-B6D1-00AA00BBBB58}
HKEY_LOCAL_MACHINE\Software\Microsoft\COM3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1604
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN\*
HKEY_CLASSES_ROOT\PROTOCOLS\Name-Space Handler\https\
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecurityIdIUriCacheSize
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecurityIdIUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SecurityIdIUriCacheSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\SecurityIdIUriCacheSize
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_Cross_Domain_Redirect_Mitigation
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_Cross_Domain_Redirect_Mitigation
HKEY_CLASSES_ROOT\MIME\Database\Content Type\application/javascript; charset=UTF-8
HKEY_CLASSES_ROOT\MIME\Database\Content Type\application/javascript
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CUSTOM_IMAGE_MIME_TYPES_KB910561
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_CUSTOM_IMAGE_MIME_TYPES_KB910561
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT\*
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\XMLNamespace
HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\XMLNamespace
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\XMLNamespace
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\XMLNamespace
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\160A
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SECURITYBAND
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SECURITYBAND\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SECURITYBAND\*
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\SecurityBand\.current
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\SecurityBand\.current\(Default)
HKEY_CURRENT_USER\AppEvents\Schemes\
HKEY_CURRENT_USER\AppEvents\Schemes\(Default)
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\SecurityBand\.Current
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\SecurityBand\.current\Default Flags
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\SecurityBand\.Current\Active
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer\Main
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\DRIVERS32
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave3
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave4
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave5
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave6
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave7
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave8
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wave9
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi2
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi3
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi4
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi5
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi6
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi7
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi8
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midi9
HKEY_CURRENT_USER\System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\Winmm
HKEY_CURRENT_USER\System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\Winmm\wheel
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wdmaud.drv
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{a45c254e-df1c-4efd-8020-67d146a850e0},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{026e516e-b814-414b-83cd-856d6fef4822},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\Properties\{1da5d803-d492-4edd-8c23-e0c0ffee7f0e},0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{a45c254e-df1c-4efd-8020-67d146a850e0},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{026e516e-b814-414b-83cd-856d6fef4822},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Capture\{e6a9809d-24f6-4a0a-92d6-e2c21c85cc2e}\Properties\{1da5d803-d492-4edd-8c23-e0c0ffee7f0e},0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Multimedia\MIDIMap
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\wavemapper
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\DRIVERS32\midimapper
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{1dae6975-1479-4c78-81ea-93c3262476ea}\DeviceState
HKEY_CURRENT_USER\Software\Microsoft\Multimedia\Audio
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\crypt32\DebugFlags
HKEY_CLASSES_ROOT\MIME\Database\Content Type\application/x-javascript
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\KindMap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\KindMap\.htm
HKEY_CLASSES_ROOT\.htm
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\(Default)
HKEY_CLASSES_ROOT\.htm\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice
HKEY_CLASSES_ROOT\htmlfile
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\opennew
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\opennew\NeverDefault
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\Edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\htmlfile\shell\Edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Default HTML Editor
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Default HTML Editor\Stubs
HKEY_CLASSES_ROOT\.htm\OpenWithList
HKEY_CLASSES_ROOT\Applications\Excel.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Excel.exe\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Excel.Sheet\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Excel.Sheet
HKEY_CLASSES_ROOT\Excel.Sheet
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet\CurVer\(Default)
HKEY_CLASSES_ROOT\Excel.Sheet.12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\Open
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Excel.Sheet.12\shell\Open\NeverDefault
HKEY_CLASSES_ROOT\Applications\Microsoft Excel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Excel\shell\edit\command\(Default)
HKEY_CLASSES_ROOT\Applications\Microsoft Word
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\OpenWithList\Microsoft Word\shell\edit\command\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Shell\RegisteredApplications\UrlAssociations\Word.Document\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\Word.Document
HKEY_CLASSES_ROOT\Word.Document
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document\CurVer\(Default)
HKEY_CLASSES_ROOT\Word.Document.12
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\NoStaticDefaultVerb
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\Open
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Word.Document.12\shell\Open\NeverDefault
HKEY_CLASSES_ROOT\Applications\notepad.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\notepad.exe\shell\edit\command\(Default)
HKEY_CLASSES_ROOT\Applications\WinWord.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit\command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\Winword.exe\shell\edit\command\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\CheckDocumentForProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\CheckDocumentForProgID
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feed Discovery
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Feed Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery\Sound
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Feed Discovery\Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Feed Discovery\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Feed Discovery\
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Feeds
HKEY_CURRENT_USER\Software\Microsoft\Ftp
HKEY_CURRENT_USER\Software\Microsoft\FTP\Use Web Based FTP
HKEY_LOCAL_MACHINE\Software\Microsoft\Ftp
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Services
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Services\SelectionActivityButtonDisable
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Services
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Activities
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Activities
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Suggested Sites
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\LoadWithoutCOM
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{ff393560-c2a7-11cf-bff4-444553540000}\InProcServer32
HKEY_CLASSES_ROOT\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\ShellFolder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\{FF393560-C2A7-11CF-BFF4-444553540000} {000214E6-0000-0000-C000-000000000046} 0xFFFF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{FF393560-C2A7-11CF-BFF4-444553540000}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CachePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CachePrefix
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheLimit
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheOptions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheRepair
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\Desktop\NameSpace\NameCustomizations
HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\LocalizedString
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SCRIPTURL_MITIGATION
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_IMG
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_IMG\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BLOCK_LMZ_IMG\*
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1608
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_Isolate_Named_Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_Isolate_Named_Windows
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NAVIGATION_SOUNDS
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NAVIGATION_SOUNDS
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating\.current
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating\.Current\(Default)
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating\.Current
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating\.Current\Default Flags
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating\.Current\Active
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\BrowserEmulation
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\ErrorThresholds
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\ErrorThresholds
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\ErrorThresholds\404
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1409
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TravelLog
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\TravelLog
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchProviders\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDITIONAL_IE8_MEMORY_CLEANUP
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_ADDITIONAL_IE8_MEMORY_CLEANUP
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CrossDomain_Fix_KB867801
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_CrossDomain_Fix_KB867801
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\ActivatingDocument\.current
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\ActivatingDocument\.Current\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Default Behaviors
HKEY_CLASSES_ROOT\MIME\Database\Content Type\image/gif;
HKEY_CLASSES_ROOT\MIME\Database\Content Type\image/gif
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/gif\Extension
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter
\xe9\xb6\x90\xc2\x95EY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/javascript; charset=utf-8
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/javascript
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\LinksBar
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Services
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Activities
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/plain; charset=utf-8
HKEY_CLASSES_ROOT\MIME\Database\Content Type\text/plain
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\text/plain\Extension
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Safety\PrivacIE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Friendly http errors
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ\*
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOAD_SHDOCLC_RESOURCES
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOAD_SHDOCLC_RESOURCES
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.htm\Content Type
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE\*
HKEY_CLASSES_ROOT\.css
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.css\Content Type
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\text/css
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/css
HKEY_CLASSES_ROOT\.js
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.js\Content Type
HKEY_CLASSES_ROOT\.png
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.png\Content Type
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\image/png
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\image/png
HKEY_CLASSES_ROOT\.jpg
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.jpg\Content Type
HKEY_CURRENT_USER\SOFTWARE\Classes\PROTOCOLS\Filter\image/jpeg
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\image/jpeg
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\FileAssociation\NoStartPageAppUserModelIDs
HKEY_CLASSES_ROOT\Applications\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\UseExecutableForTaskbarGroupIcon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\iexplore.exe\TaskbarExceptionsIcons
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders\SuppressionPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\SuppressionPolicy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UsersFiles\NameSpace\DelegateFolders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\UsersFiles\NameSpace
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\UsersFiles\NameSpace\DelegateFolders
HKEY_CLASSES_ROOT\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InProcServer32\LoadWithoutCOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}
HKEY_CURRENT_USER\Software\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\Forward
HKEY_CURRENT_USER\Software\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{85CB6900-4D95-11CF-960C-0080C7F4EE85}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win64
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win64\(Default)
HKEY_CLASSES_ROOT\CLSID\{00021401-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021401-0000-0000-C000-000000000046}\EnableShareDenyNone
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MUI\StringCacheSettings\StringCacheGeneration
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\37\52C64B7E
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\37\52C64B7E\LanguageList
HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\37\52C64B7E\@"%windir%\System32\ie4uinit.exe",-732
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\System.NamespaceCLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\{28636AA6-953D-11D2-B5D6-00C04FD918D0} 6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InProcServer32\LoadWithoutCOM
HKEY_CURRENT_USER\Control Panel\Personalization\Desktop Slideshow
HKEY_CURRENT_USER\Control Panel\Personalization\Desktop Slideshow\Interval
HKEY_CURRENT_USER\Control Panel\Personalization\Desktop Slideshow\Shuffle
HKEY_CURRENT_USER\Control Panel\Personalization\Desktop Slideshow\AnimationDuration
HKEY_LOCAL_MACHINE\Control Panel\Personalization\Desktop Slideshow
HKEY_CURRENT_USER\Control Panel\Personalization\Desktop Slideshow\Flags
HKEY_CLASSES_ROOT\.bin
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\(Default)
HKEY_CLASSES_ROOT\.bin\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bin\OpenWithProgids
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bin
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\ShellEx\IconHandler
HKEY_CLASSES_ROOT\Unknown
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\ShellEx\IconHandler
HKEY_CLASSES_ROOT\SystemFileAssociations\.bin
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\PerceivedType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\Content Type
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\Clsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bin\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartPage
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartPage\FavoritesRemovedChanges
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2\FavoritesRemovedChanges
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2\FavoritesChanges
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_MinMFU
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband\FavoritesRemovedChanges
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband\FavoritesChanges
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_TrackProgs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_TrackProgs
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\SuppressionPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{35786D3C-B075-49b9-88DD-029876E11C01}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{35786D3C-B075-49b9-88DD-029876E11C01}\SuppressionPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{9113A02D-00A3-46B9-BC5F-9C04DADDD5D7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{9113A02D-00A3-46B9-BC5F-9C04DADDD5D7}\SuppressionPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{b155bdf8-02f0-451e-9a26-ae317cfd7779}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders\{b155bdf8-02f0-451e-9a26-ae317cfd7779}\SuppressionPolicy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\DelegateFolders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\MyComputer\NameSpace
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\MyComputer\NameSpace\DelegateFolders
HKEY_CLASSES_ROOT\CLSID\{ED228FDF-9EA8-4870-83B1-96B02CFE0D52}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED228FDF-9EA8-4870-83B1-96B02CFE0D52}\SortOrderIndex
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{ED228FDF-9EA8-4870-83B1-96B02CFE0D52}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2\ProgramsCache
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Features\68AB67CA7DA73301B7449A0000000010
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Features\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Features\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\68AB67CA7DA73301B7449A0000000010\ReaderProgramFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA7DA73301B7449A0000000010\Features
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA7DA73301B7449A0000000010\Features\ReaderProgramFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\721B0771CE7953B41B4784D92724CFAA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\721B0771CE7953B41B4784D92724CFAA\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC54B29B2C1A91D4E90228F71532EF25
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC54B29B2C1A91D4E90228F71532EF25\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B82ABB1D0C7664C4F8E6C16423F57234
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B82ABB1D0C7664C4F8E6C16423F57234\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEA8E823AE59AFB43997F28B83C8E84C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEA8E823AE59AFB43997F28B83C8E84C\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CC4B8FA1619E6F42A47B70FA255C113
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CC4B8FA1619E6F42A47B70FA255C113\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8E09EA1AB2886074F9576B7C0658EEF7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8E09EA1AB2886074F9576B7C0658EEF7\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4643A15E9A49F6D4BAA6BE6B54AD5A4E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4643A15E9A49F6D4BAA6BE6B54AD5A4E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49CED8721D0CF6841B27BB5ECC02FDED
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49CED8721D0CF6841B27BB5ECC02FDED\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6DDF9A6A414A3B4099754ACAF7D735C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6DDF9A6A414A3B4099754ACAF7D735C\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04B7C98CCE0F21F4E9EB7F0057A20EA0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04B7C98CCE0F21F4E9EB7F0057A20EA0\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31492ABDE5EA584CA42E924A1EDC230
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31492ABDE5EA584CA42E924A1EDC230\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A11E946102B22241B413AE2EEBAB671
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A11E946102B22241B413AE2EEBAB671\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5093AC69067959D408962E50AB061B60
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5093AC69067959D408962E50AB061B60\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F65A1E87DCF61D499D7190C1E8C8987
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F65A1E87DCF61D499D7190C1E8C8987\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1D0D1E43318B5442A80C602F00A7AD0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1D0D1E43318B5442A80C602F00A7AD0\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4BBDDEE59EF5395479E0F98DF8FE7B4E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4BBDDEE59EF5395479E0F98DF8FE7B4E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2972C139BD83DC4B839D3A8D8AB621A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2972C139BD83DC4B839D3A8D8AB621A\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E13A3793416DDF746836DABD9AD9664F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E13A3793416DDF746836DABD9AD9664F\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D37F9C8794107AE4EB7242C863E97348
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D37F9C8794107AE4EB7242C863E97348\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F1AE0C9111C4CA4186FF4C932C8AB0E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F1AE0C9111C4CA4186FF4C932C8AB0E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27E36364CE095194D8B6C937FF83917E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27E36364CE095194D8B6C937FF83917E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4210D39FE9C0D214DA66C66F9C686753
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4210D39FE9C0D214DA66C66F9C686753\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\492D11F7213901C4CB94E0E4B118E251
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\492D11F7213901C4CB94E0E4B118E251\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C35D5C50471CE644AEE4949C8871815
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C35D5C50471CE644AEE4949C8871815\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1963DDD4CC5F2CA4FB3CDBEEDA7D2D59
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1963DDD4CC5F2CA4FB3CDBEEDA7D2D59\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B8A5F9BB528C8A41BAFB0CD822BF716
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B8A5F9BB528C8A41BAFB0CD822BF716\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D0E502A00E4341458F9CDBC6F0EE22E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D0E502A00E4341458F9CDBC6F0EE22E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8094EE68166F12246B4E62D2E41E099F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8094EE68166F12246B4E62D2E41E099F\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BAEA108B4F648940BB38C607D5B66E6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BAEA108B4F648940BB38C607D5B66E6\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A1495754F40101448A735EEF06175BF2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A1495754F40101448A735EEF06175BF2\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1588992C469F2174F8431F888FBBDF73
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1588992C469F2174F8431F888FBBDF73\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D7FF3275FE30C1F47B84DE2F326E15FB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D7FF3275FE30C1F47B84DE2F326E15FB\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50998A8DA27A69B4D9116E985BAA8021
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50998A8DA27A69B4D9116E985BAA8021\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\321519DC6CD473D47B9CB9A3D015BEA9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\321519DC6CD473D47B9CB9A3D015BEA9\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B14A0F2ED9F7D9D4CAA9D27AB6BBC964
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B14A0F2ED9F7D9D4CAA9D27AB6BBC964\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\101E81DEBEAC18543939D4B1989AFB7C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\101E81DEBEAC18543939D4B1989AFB7C\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE1F717E44E961949815ACF28AC6DD0A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE1F717E44E961949815ACF28AC6DD0A\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\310F03195485741439F307764C3E7D7A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\310F03195485741439F307764C3E7D7A\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D6D0B5267ED7EE4787D23E669ABD587
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D6D0B5267ED7EE4787D23E669ABD587\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95342B279BC4E3444A1D208C5DA212F5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95342B279BC4E3444A1D208C5DA212F5\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0349FF34B4F322D419FC9E5C7C0ED151
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0349FF34B4F322D419FC9E5C7C0ED151\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A17E93B7C322E354E9C3B1590C6C34DB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A17E93B7C322E354E9C3B1590C6C34DB\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E082C2CFE94255942A14FB17BE6B3F2F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E082C2CFE94255942A14FB17BE6B3F2F\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E7170FFCD5100334F813E8CDBE124C99
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E7170FFCD5100334F813E8CDBE124C99\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4397F6D435ECA24D81D699D63B6F39D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4397F6D435ECA24D81D699D63B6F39D\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\36AF20128E89D6F4A920F2A4636AC354
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\36AF20128E89D6F4A920F2A4636AC354\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C57278595DD8FA4A88153B1180C4A27
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C57278595DD8FA4A88153B1180C4A27\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC275594575BF0943AAEA81F6079425E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC275594575BF0943AAEA81F6079425E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BFBC5C8C7FF632D43BEFE50028D06EFA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BFBC5C8C7FF632D43BEFE50028D06EFA\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03F127B04DC4DF84D8A0BD9DD8A47311
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03F127B04DC4DF84D8A0BD9DD8A47311\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77811AF0132F6A946B0E8D3F62D7AD8B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77811AF0132F6A946B0E8D3F62D7AD8B\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B575167E61A6914E9C9B25DD8368F48
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B575167E61A6914E9C9B25DD8368F48\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22F4DAC0B3D560C48B6ED1CFE16DED9D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22F4DAC0B3D560C48B6ED1CFE16DED9D\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2934E2C16CAF7964990D1969CD576B18
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2934E2C16CAF7964990D1969CD576B18\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0166F5B2D5C830A488E8308565152A9E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0166F5B2D5C830A488E8308565152A9E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C3C19C1FA44616F44BB254F47F629665
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C3C19C1FA44616F44BB254F47F629665\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D4E0BF3F43A3AA94FB943174F1BD0864
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D4E0BF3F43A3AA94FB943174F1BD0864\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F3964B053B48BC4ABC2C5778A72B8EF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F3964B053B48BC4ABC2C5778A72B8EF\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D79DCB1D1B9CF6B4499BE9D01197EA21
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D79DCB1D1B9CF6B4499BE9D01197EA21\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\337ABE535D078D14099C57A239EF250D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\337ABE535D078D14099C57A239EF250D\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85D8DD0E24C00DB40B10F9F38632A253
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85D8DD0E24C00DB40B10F9F38632A253\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4092152B411BF7B4EB862533C938D699
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4092152B411BF7B4EB862533C938D699\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\850193B30EC5DA144B0582CB84538CDB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\850193B30EC5DA144B0582CB84538CDB\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3FC65AB64CE51E4A99DF582E4B1CEAB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3FC65AB64CE51E4A99DF582E4B1CEAB\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1BC8F95270E2264A94F91ABF943EF71
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1BC8F95270E2264A94F91ABF943EF71\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07825A4C08C27B048AB777FE753EC55B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07825A4C08C27B048AB777FE753EC55B\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\58425B8C9E5AC00428A391BFFC0DF99F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\58425B8C9E5AC00428A391BFFC0DF99F\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D662FD830DA67B4AA73849147C05F24
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D662FD830DA67B4AA73849147C05F24\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F0D7C5C8E9C02F2488BF23F3D39E2F1B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F0D7C5C8E9C02F2488BF23F3D39E2F1B\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB53C2CEB1F9DA94B941AB6143866A46
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB53C2CEB1F9DA94B941AB6143866A46\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6E3DFC5FE989BC54AA0A31C11E5E9951
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6E3DFC5FE989BC54AA0A31C11E5E9951\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C4E7397337911BB48ACFF35FB9685200
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C4E7397337911BB48ACFF35FB9685200\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FC201AD0BD12A34286188A3F8DA6C36
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FC201AD0BD12A34286188A3F8DA6C36\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DE7F110AFAA90C49809BCC45C22CCB7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DE7F110AFAA90C49809BCC45C22CCB7\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206097A43463626498893D00E537F7D2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206097A43463626498893D00E537F7D2\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD71E371BC38E864F82DB6404D2BF408
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD71E371BC38E864F82DB6404D2BF408\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3A377A9AA6AD014AB28757CDAD646AA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3A377A9AA6AD014AB28757CDAD646AA\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1AE339F0568D45C489F213DC56E50B66
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1AE339F0568D45C489F213DC56E50B66\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\422B819BB22CE78499BB4A3C5FC7727F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\422B819BB22CE78499BB4A3C5FC7727F\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1C4C10236F37B6468D9370E57370193
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1C4C10236F37B6468D9370E57370193\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\378FC2EF63F82AB44BC07C8B6423ECB7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\378FC2EF63F82AB44BC07C8B6423ECB7\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F5678751A1B3F6540861D057FDB0044D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F5678751A1B3F6540861D057FDB0044D\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D5120B2BE8BE64EB95103A52283D2E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D5120B2BE8BE64EB95103A52283D2E\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57428418D0241C94990E116C72A6C439
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57428418D0241C94990E116C72A6C439\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F25A90420A18F145BD771D4A9C7AD52
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F25A90420A18F145BD771D4A9C7AD52\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BBBC49BED1E9BC4FB408C4FEA9D517C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BBBC49BED1E9BC4FB408C4FEA9D517C\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE8D5430B37D66D4998D88A8CEC87799
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE8D5430B37D66D4998D88A8CEC87799\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47F704F177BAC3741AAF03FF2B4BA243
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47F704F177BAC3741AAF03FF2B4BA243\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63139F314DE2E294093B2A569AE70C22
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63139F314DE2E294093B2A569AE70C22\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\433E47D4F103687469EC22E211DD5140
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\433E47D4F103687469EC22E211DD5140\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3FA23BFB0DE8BDD4BA12A04347309859
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3FA23BFB0DE8BDD4BA12A04347309859\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3408867C5CAB56545A587B146F5E97A6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3408867C5CAB56545A587B146F5E97A6\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\81440F9466EA0E0479107C5D0A3956FC
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\81440F9466EA0E0479107C5D0A3956FC\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D24A2D4EF3BB5BC4DB5954CDC3ECF186
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D24A2D4EF3BB5BC4DB5954CDC3ECF186\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5D9CDEE220C9F046A62F346C343C567
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5D9CDEE220C9F046A62F346C343C567\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\438256CEC1FA32847B45768EE56D453C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\438256CEC1FA32847B45768EE56D453C\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D9D2A26FB54664499A4A5B702423D40
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D9D2A26FB54664499A4A5B702423D40\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F60B1F509D23041488382BD1FD2168D3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F60B1F509D23041488382BD1FD2168D3\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD0486F25396A2043A5E8974CB56A7BD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD0486F25396A2043A5E8974CB56A7BD\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\112D0333A0D44E047BF983A4106A3C58
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\112D0333A0D44E047BF983A4106A3C58\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F8BFFB9F55F2B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F8BFFB9F55F2B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F8BFFB9F55F2B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F8BFFB9F55F2B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\82DE7549CF3F8CCB0DF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\82DE7549CF3F8CCB0DF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA42BC89BF25F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08B1BC897995F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08B1BC897995F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08B1BC897995F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08B1BC897995F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2171BC8913C5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2171BC8913C5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C61BC8955C5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C61BC8955C5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3671BC89D0C5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3671BC89D0C5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C61BC8955C5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C61BC8955C5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2171BC8913C5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2171BC8913C5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B71BC899EB5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B71BC899EB5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3671BC89D0C5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3671BC89D0C5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5081BC895CB5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5081BC895CB5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6581BC891AB5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6581BC891AB5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B71BC899EB5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B71BC899EB5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A75910C9F3AE0B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A75910C9F3AE0B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5081BC895CB5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5081BC895CB5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A81BC89D7B5F5BD0CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A81BC89D7B5F5BD0CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6581BC891AB5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6581BC891AB5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A81BC89D7B5F5BD0BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A81BC89D7B5F5BD0BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DEA00C998AE1B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DEA00C998AE1B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71EEFB9D1BE3B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71EEFB9D1BE3B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A75910C9F3AE0B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A75910C9F3AE0B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DEA00C998AE1B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DEA00C998AE1B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DAFDFB976BE4B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DAFDFB976BE4B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\854EEFB99D9E3B010CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\854EEFB99D9E3B010CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71EEFB9D1BE3B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71EEFB9D1BE3B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DAFDFB976BE4B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DAFDFB976BE4B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\854EEFB99D9E3B010BF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\854EEFB99D9E3B010BF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F949E36CB3004C50AF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14EDD176026A39190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14EDD176026A39190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F949E36CB3004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F949E36CB3004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C049E3685A004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9C049E3685A004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A0C39E3661D004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A0C39E3661D004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B5C39E362FC004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B5C39E362FC004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CAC39E36ECC004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CAC39E36ECC004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFC39E36AAC004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFC39E36AAC004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4D39E3668C004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4D39E3668C004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F9D39E3626C004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F9D39E3626C004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FD39E36E3C004C50CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FD39E36E3C004C50CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CABF17600B919190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CABF17600B919190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A14DE176A4B929190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A14DE176A4B929190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C60D176EDB949190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C60D176EDB949190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F102C17682C959190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F102C17682C959190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A90D176A9A949190CF18C3B9B1A1EE8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A90D176A9A949190CF18C3B9B1A1EE8\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Products\68AB67CA7DA73301B7449A0000000010
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Products\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Products\68AB67CA7DA73301B7449A0000000010
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Features\00004109D30000000000000000F01FEC
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Features\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Features\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\EXCELFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\EXCELFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98C6F8355DA2600418456C7670479E08
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98C6F8355DA2600418456C7670479E08\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7E71FA8D502F64CBDEC044521ED39A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7E71FA8D502F64CBDEC044521ED39A\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F53CAB350CF77D94AA5184C9C5104C0D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F53CAB350CF77D94AA5184C9C5104C0D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49DFBA7AF457A8B4EBD5783F921FACC2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49DFBA7AF457A8B4EBD5783F921FACC2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E76572D8D3D52F449849F14EDCB67B3D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E76572D8D3D52F449849F14EDCB67B3D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\304225DA0A80689489E4CEBA8B478F00
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\304225DA0A80689489E4CEBA8B478F00\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6C468F8F8250534E92DA89F1E20D9B0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6C468F8F8250534E92DA89F1E20D9B0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\567D3332CC8D8B342B449DA5431AD4A3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\567D3332CC8D8B342B449DA5431AD4A3\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD4E638E8714C454FA1AD399C0E81909
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD4E638E8714C454FA1AD399C0E81909\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463248DC02BD31044AFEAB6A1D3BFBE6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463248DC02BD31044AFEAB6A1D3BFBE6\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CAB7071E27686994093945B9EE85F69D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CAB7071E27686994093945B9EE85F69D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F50307A57404AD4282F43A591BABC84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F50307A57404AD4282F43A591BABC84\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05CEA9EC5FEA8574EA748DE4ABC952AD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05CEA9EC5FEA8574EA748DE4ABC952AD\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B5C02588961CF8428890C980B9F3DD0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B5C02588961CF8428890C980B9F3DD0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\ProductFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\ProductFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A609E893B628DD84791945C946C9CA5E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A609E893B628DD84791945C946C9CA5E\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96B8FAE7CEA69C42B5B73BA69B21A71
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96B8FAE7CEA69C42B5B73BA69B21A71\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F58FB719C858BF4EAF245AC9DA59D1D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F58FB719C858BF4EAF245AC9DA59D1D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D90B8D0738CEDB14593B99ADD26D72C0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D90B8D0738CEDB14593B99ADD26D72C0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29731734CD2333940995A2B963A7E582
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29731734CD2333940995A2B963A7E582\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D762436AF7B6B543820741456BDAF60
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D762436AF7B6B543820741456BDAF60\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F2A7E907B078294BBD356DC8840852C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F2A7E907B078294BBD356DC8840852C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\379E92CC2CB71D119A12000A9CE1A22A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\379E92CC2CB71D119A12000A9CE1A22A\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D9C9EE5ED897D1D4BA2F23CE5128B0F2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D9C9EE5ED897D1D4BA2F23CE5128B0F2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\818AED26EAB038A4BB72C55277E8CE84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\818AED26EAB038A4BB72C55277E8CE84\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\687330DB272F1A54C967131CC53B826C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\687330DB272F1A54C967131CC53B826C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\723C2F65179512E4D80BD2034028D528
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\723C2F65179512E4D80BD2034028D528\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8F5AB6B3B3FBA149A58A12B4A20334C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8F5AB6B3B3FBA149A58A12B4A20334C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E2338564DA4241F499CB8A1F84247C0E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E2338564DA4241F499CB8A1F84247C0E\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\54077434B37616D4A9EA6F78E98A56BF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\54077434B37616D4A9EA6F78E98A56BF\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\723BCECF7B08D0A4F864A2A08963643F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\723BCECF7B08D0A4F864A2A08963643F\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D474E7E9FB172E42A102B59039D88B0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D474E7E9FB172E42A102B59039D88B0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D18DE905BD78FC48A594175D75DF03C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D18DE905BD78FC48A594175D75DF03C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85F98C50329537041A94BEA8DB880526
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85F98C50329537041A94BEA8DB880526\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4E6F86E1FEF077645B1002B7C560B871
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4E6F86E1FEF077645B1002B7C560B871\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E009C76CEC08635368DB50E4DDD1CAA1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E009C76CEC08635368DB50E4DDD1CAA1\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7122F57A45DA6AE3EA412F558F665013
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7122F57A45DA6AE3EA412F558F665013\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A70728DA97715E8389326C667D0C7579
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A70728DA97715E8389326C667D0C7579\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B4CCCEF758F027B37977C1762C52F53C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B4CCCEF758F027B37977C1762C52F53C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A6D2077B64803E30B7837065053EB74
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A6D2077B64803E30B7837065053EB74\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCCB6CC6A1A288037B4AA64D8B1B14B2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCCB6CC6A1A288037B4AA64D8B1B14B2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACEFFF49077DF5C37898805E60656DBF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACEFFF49077DF5C37898805E60656DBF\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8CD4AD91379E0F3B85DCF71AC8684DA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8CD4AD91379E0F3B85DCF71AC8684DA\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFE8E5A39EFFBFB3C91EB0A7344C3917
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFE8E5A39EFFBFB3C91EB0A7344C3917\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F8B3D16074B2F53B855F7CCCDC83FF6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F8B3D16074B2F53B855F7CCCDC83FF6\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB77723BFCB84D138A19CBBF155CD452
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB77723BFCB84D138A19CBBF155CD452\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C0EE3236E87CE636B08EE9C7403EE19
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C0EE3236E87CE636B08EE9C7403EE19\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9FCE2B9622F87F2339EDB74D395D7D09
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9FCE2B9622F87F2339EDB74D395D7D09\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45613AFAE1635B33E95D40A9869823C5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45613AFAE1635B33E95D40A9869823C5\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BD3219F5F227C1388E4B254ECC53CBA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BD3219F5F227C1388E4B254ECC53CBA\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\96EB09331608BA034B79232D764B2973
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\96EB09331608BA034B79232D764B2973\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\13A31C284359A9136A90E7B8EFC2DFBB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\13A31C284359A9136A90E7B8EFC2DFBB\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC271526B8EBA073BB778D86B925A4D6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC271526B8EBA073BB778D86B925A4D6\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45552A042794885318BD5875621A61DA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45552A042794885318BD5875621A61DA\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9BB8A76146A1B263E890F48D1B0F01E8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9BB8A76146A1B263E890F48D1B0F01E8\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DBB1C92272110335A0AED12BD0473EB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DBB1C92272110335A0AED12BD0473EB\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\37709EB0F01C4FB319422B4DA2B2135C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\37709EB0F01C4FB319422B4DA2B2135C\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0F2919EC5305C236A7AD687E12EB4D3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0F2919EC5305C236A7AD687E12EB4D3\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\595273BDEAD50DF3E8E69B1B0681CE84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\595273BDEAD50DF3E8E69B1B0681CE84\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1BEF2E9B13536084DBE2F1D2C9CCF79B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1BEF2E9B13536084DBE2F1D2C9CCF79B\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9DA7BAFB053D9AE41AE7AAC762F84E26
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9DA7BAFB053D9AE41AE7AAC762F84E26\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\638BAF8FEC5E9F645963D084A26A0B2D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\638BAF8FEC5E9F645963D084A26A0B2D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C9A6F846E2818A47A408CAF13381C71
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C9A6F846E2818A47A408CAF13381C71\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Products\00004109D30000000000000000F01FEC
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Products\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Products\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\OneNoteFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\OneNoteFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\798C8F26953DF8D46995FCE1E9E3B647
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\798C8F26953DF8D46995FCE1E9E3B647\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D715C75D1DC7BEA47AB3AB7794E31B52
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D715C75D1DC7BEA47AB3AB7794E31B52\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1982085E3AB56B140A3827AF84FFA8CD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1982085E3AB56B140A3827AF84FFA8CD\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E560759C3F5B1348B1617CA987A1381
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E560759C3F5B1348B1617CA987A1381\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9ECA35218B70DA142A2D4916318EDA29
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9ECA35218B70DA142A2D4916318EDA29\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9F5FAA0D36CC11B4BAC899501E2B906D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9F5FAA0D36CC11B4BAC899501E2B906D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F175CF4803FEBE4CBF117E59186DF5E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F175CF4803FEBE4CBF117E59186DF5E\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DCDA62B963C46924FAEFC7AB0374DC1B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DCDA62B963C46924FAEFC7AB0374DC1B\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C062B2CD949BCB45927993A3FA9E4A5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C062B2CD949BCB45927993A3FA9E4A5\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4821C69D85691B240B4C7689CF990C62
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4821C69D85691B240B4C7689CF990C62\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C6F00615A04BCB46900B7E1BC2253AB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C6F00615A04BCB46900B7E1BC2253AB\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5564B58E1AFD50B44AED6BBDF90706CE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5564B58E1AFD50B44AED6BBDF90706CE\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0283E042C21402145B5FA1646BBB1592
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0283E042C21402145B5FA1646BBB1592\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\59ABA340D3F15A947A14E3A25A3AA2D8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\59ABA340D3F15A947A14E3A25A3AA2D8\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\104ECBD48FB74DF44BBBB7E0FBCA89D2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\104ECBD48FB74DF44BBBB7E0FBCA89D2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EBA3C661A40CB824AADBB36C1267F168
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EBA3C661A40CB824AADBB36C1267F168\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D796CAC860006574ABA4F35848DC97CD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D796CAC860006574ABA4F35848DC97CD\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4AE20C00B4A58A0409ADB4C3D7B04B44
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4AE20C00B4A58A0409ADB4C3D7B04B44\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\OUTLOOKFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\OUTLOOKFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DD31FFC2FE6BE942B563EFB6C05C1D1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DD31FFC2FE6BE942B563EFB6C05C1D1\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\615AE87BB986D3A468E954D0537274EA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\615AE87BB986D3A468E954D0537274EA\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F0828882F99FA94587A431791A7B8E8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F0828882F99FA94587A431791A7B8E8\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\92B2C0607259A3143AF8B797E84389D9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\92B2C0607259A3143AF8B797E84389D9\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\11CE927703D0DA84181FB694E3BA06FF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\11CE927703D0DA84181FB694E3BA06FF\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\856C8A14768638249AD1D8D0923B5203
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\856C8A14768638249AD1D8D0923B5203\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEEE87AA3BFEBCF409DEE7180EED8A83
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEEE87AA3BFEBCF409DEE7180EED8A83\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBB21EA0C8BA4A44E87A4C8369CAA6BE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBB21EA0C8BA4A44E87A4C8369CAA6BE\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A7F78BF47A0C69A40AD928BD7E022C5E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A7F78BF47A0C69A40AD928BD7E022C5E\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47510E0B2F85BAB468FE70E7CA35138D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47510E0B2F85BAB468FE70E7CA35138D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D1D746BE14ECD449B5C8C9520290487
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D1D746BE14ECD449B5C8C9520290487\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\32219D6E447B66049B6F1181D17C4B58
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\32219D6E447B66049B6F1181D17C4B58\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\059BB30391E30EE448A436F1CD4764AF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\059BB30391E30EE448A436F1CD4764AF\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DAB761F8C7AA3342902F14B513257A0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DAB761F8C7AA3342902F14B513257A0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6EA893ACFEF06C4FB229D869E586440
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6EA893ACFEF06C4FB229D869E586440\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\PPTFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\PPTFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02D0E27E36D0B834CB1729BAF9E9B845
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02D0E27E36D0B834CB1729BAF9E9B845\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EA892D3493CF4DE43B5C659D37BFD3E6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EA892D3493CF4DE43B5C659D37BFD3E6\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FE6A09470C919B40AF5B58B30E8D6D6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FE6A09470C919B40AF5B58B30E8D6D6\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4AFC55126308D32438EED59806D01BC9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4AFC55126308D32438EED59806D01BC9\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EFEFB0B336789A24A95117DFC65BF0CE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EFEFB0B336789A24A95117DFC65BF0CE\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CD11C9D1A1CBA44A84764DA3A70F571
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CD11C9D1A1CBA44A84764DA3A70F571\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1B1CE6A9E646B1544A15BC039B124CF5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1B1CE6A9E646B1544A15BC039B124CF5\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DC9A3374B7700D469383417DA0642D8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DC9A3374B7700D469383417DA0642D8\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\WORDFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\WORDFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E628C910A54494645A0BB00FF8CCE4EE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E628C910A54494645A0BB00FF8CCE4EE\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48FFDCEC1CCE7B146B1F44066D670F84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48FFDCEC1CCE7B146B1F44066D670F84\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EE1DEB37E43BC4896128BBFE2A7072
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EE1DEB37E43BC4896128BBFE2A7072\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECC2F8AF995B1E048AE100547214DD98
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECC2F8AF995B1E048AE100547214DD98\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2827EAF21BE7F6242AD913C730BED551
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2827EAF21BE7F6242AD913C730BED551\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E86E599144A2D746BA40C2232590D88
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E86E599144A2D746BA40C2232590D88\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\704E36BA4C4DBA646A5E43B4B0371DE5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\704E36BA4C4DBA646A5E43B4B0371DE5\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\OfficeDigitalSFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\OfficeDigitalSFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\361923C4E76385C438E8C873B8144CF2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\361923C4E76385C438E8C873B8144CF2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\CAGFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\CAGFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D684195474EB54A429709B62660D9368
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D684195474EB54A429709B62660D9368\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04939F7CA5722D24896AEABE227F693A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04939F7CA5722D24896AEABE227F693A\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\690AAD6B02A4EFF4391276A850AD65E8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\690AAD6B02A4EFF4391276A850AD65E8\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57FE3451A6F32BA44A467AB8768DA5C0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57FE3451A6F32BA44A467AB8768DA5C0\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\SetLanguageFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\SetLanguageFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49686B915F2D246409E59E96ECAB6089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49686B915F2D246409E59E96ECAB6089\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\WxpFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\WxpFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C38D8569C7FFC3A4CAE09EE12EDEFD0D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C38D8569C7FFC3A4CAE09EE12EDEFD0D\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\00004109D30000000000000000F01FEC\OISFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D30000000000000000F01FEC\Features\OISFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A606E58BDC0E27D4B8B54D2B6CEF90D2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A606E58BDC0E27D4B8B54D2B6CEF90D2\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\52810A6F5092B444BB85AEC32C509F75
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\52810A6F5092B444BB85AEC32C509F75\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B78A050C551DE4846A08929C7D937B84
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B78A050C551DE4846A08929C7D937B84\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\767C7256DAAC3E845B6CCFE8E3DB4D2B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\767C7256DAAC3E845B6CCFE8E3DB4D2B\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCC74C4A51FA56E4E9F98EBA4D289373
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCC74C4A51FA56E4E9F98EBA4D289373\00004109D30000000000000000F01FEC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Features\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Features\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Features\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\5FD4CC3C5A9372041B63B2E3F1A56B2E\TclTk
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E\Features
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E\Features\TclTk
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30A131E2AD40E6E4CA723607C50E0578
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30A131E2AD40E6E4CA723607C50E0578\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A2864DDD466AF5B438D0C121FD2F94CA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A2864DDD466AF5B438D0C121FD2F94CA\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D84FE8898B9933B49B9659D97E2C4CE9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D84FE8898B9933B49B9659D97E2C4CE9\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9803064C4D2885A468CCC55BADB8B057
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9803064C4D2885A468CCC55BADB8B057\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CF805D3EF1601844080FFCF6C33715B1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CF805D3EF1601844080FFCF6C33715B1\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE591676ABD990B4CB504B1A57C9FFE7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE591676ABD990B4CB504B1A57C9FFE7\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00C80FA04782489469B16B4B573D6797
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00C80FA04782489469B16B4B573D6797\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5613E532A3D4C63459D3F7C987A32D5C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5613E532A3D4C63459D3F7C987A32D5C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94EFB92C7B26D394A9315BA6E90466D0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94EFB92C7B26D394A9315BA6E90466D0\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A457F5CA70AE06C4D8969BC6333A351D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A457F5CA70AE06C4D8969BC6333A351D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F0F5881199E42C4796F3E49FF40DAC3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F0F5881199E42C4796F3E49FF40DAC3\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E98D88B5D0204B341AFF0907BDFBA22E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E98D88B5D0204B341AFF0907BDFBA22E\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BF9146B19ED81D438169382F3E9C1C4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BF9146B19ED81D438169382F3E9C1C4\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9658041141295654F8ED731936432ACE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9658041141295654F8ED731936432ACE\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9FC048735DEA8894882E60C6DFD229C4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9FC048735DEA8894882E60C6DFD229C4\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7026F9DA0500AD44694BD029D55D73F8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7026F9DA0500AD44694BD029D55D73F8\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECF82F4FF1717EB4A8AA747304EF64A3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECF82F4FF1717EB4A8AA747304EF64A3\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF069F1881728B445973716FF32FFD36
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF069F1881728B445973716FF32FFD36\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8B0EAF76FB57A54FAA07C9749BB157A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8B0EAF76FB57A54FAA07C9749BB157A\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A897D2EDF55E1AD44919195F410D30F2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A897D2EDF55E1AD44919195F410D30F2\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C5ABFC391C7507418F0495D92E1E38D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C5ABFC391C7507418F0495D92E1E38D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C674625DEAF81524797B58ECDBCDA763
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C674625DEAF81524797B58ECDBCDA763\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB68F9B8EF8B09541BBB6734BDF32289
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB68F9B8EF8B09541BBB6734BDF32289\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE261C2F0F6DEAB4D966421645A646E9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE261C2F0F6DEAB4D966421645A646E9\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E9A679AE19227B14898CBA32BA368CC2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E9A679AE19227B14898CBA32BA368CC2\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB98CF7DAC9ED244EA8C1C603EF102FB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB98CF7DAC9ED244EA8C1C603EF102FB\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BA420937DC0A9D49A51EBDC38A78585
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BA420937DC0A9D49A51EBDC38A78585\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4A882BE6C1C83845ABDCFAD4904511C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4A882BE6C1C83845ABDCFAD4904511C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47EB8CEE1974D5E41BB87C379A9B4349
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47EB8CEE1974D5E41BB87C379A9B4349\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\20CEA9BBAA6923A48BA28CC5C2F9E54E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\20CEA9BBAA6923A48BA28CC5C2F9E54E\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D836B911F6504C4E9AAF4C785ADB427
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D836B911F6504C4E9AAF4C785ADB427\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1B7DD3054CBB94246AF7471A0EE658E7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1B7DD3054CBB94246AF7471A0EE658E7\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1737988C65E4A4DAC90260BBFEAC23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1737988C65E4A4DAC90260BBFEAC23\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57C1E71F390128849A50B53CD1D04F94
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57C1E71F390128849A50B53CD1D04F94\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F320F540086E0149AFCA2680A4674C2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F320F540086E0149AFCA2680A4674C2\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\551FF89A62A74414987728DCB629C9ED
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\551FF89A62A74414987728DCB629C9ED\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD28A7F160B9ADC47BF0334C39A166E8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD28A7F160B9ADC47BF0334C39A166E8\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DBD691E1BA63AEA45BB45231720AE73C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DBD691E1BA63AEA45BB45231720AE73C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5705832CF623B7547A150E0180DB5AF3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5705832CF623B7547A150E0180DB5AF3\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7F1469DC1EB0AF4E9F648D8B2D5CEF8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7F1469DC1EB0AF4E9F648D8B2D5CEF8\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\99E624D34DD55C84B8F22E7C418806C7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\99E624D34DD55C84B8F22E7C418806C7\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8043D8BFCBECD489C7F9C337780B97
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8043D8BFCBECD489C7F9C337780B97\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9B86781E1F1FAA84AADD648AEFF6BF3C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9B86781E1F1FAA84AADD648AEFF6BF3C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\26D0FEA1197929343A6ABCEA69156E31
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\26D0FEA1197929343A6ABCEA69156E31\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71F7989639BBC24AB4303F2720A2BC2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71F7989639BBC24AB4303F2720A2BC2\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\911F9807684C47D4AA0E6D4A62ADAC23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\911F9807684C47D4AA0E6D4A62ADAC23\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\020D7B969C349DA4FB2E9ABEAC1B2CE0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\020D7B969C349DA4FB2E9ABEAC1B2CE0\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BEE29B27C5E3D04CBF615E9DD60C1A0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BEE29B27C5E3D04CBF615E9DD60C1A0\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0604F1DA5998F5D44BECB18D4273A044
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0604F1DA5998F5D44BECB18D4273A044\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\582DA3A31EC0E8D4CAB4437E38B87CFA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\582DA3A31EC0E8D4CAB4437E38B87CFA\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CE5AD3EFE8031C4492FA8BDC4785E01
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CE5AD3EFE8031C4492FA8BDC4785E01\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\5FD4CC3C5A9372041B63B2E3F1A56B2E\DefaultFeature
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E\Features\DefaultFeature
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\085C916E69800064594689989828957F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\085C916E69800064594689989828957F\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67C12EF40671B7342A2F990919031A57
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67C12EF40671B7342A2F990919031A57\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45A5B37BC8872B446878E30D57816910
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45A5B37BC8872B446878E30D57816910\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2FA26CDFD2CBC44469A69FC3310906B3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2FA26CDFD2CBC44469A69FC3310906B3\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3FE0B1A62B7616F4FB287014E9844402
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3FE0B1A62B7616F4FB287014E9844402\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD54A484742AEB045966842248C40A25
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD54A484742AEB045966842248C40A25\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FB45231A15A5954BAC5F3B332609E09
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FB45231A15A5954BAC5F3B332609E09\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBF753919ACC51543BA8A68CED373478
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBF753919ACC51543BA8A68CED373478\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB6D022414E59C04C945A25CA07960A0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB6D022414E59C04C945A25CA07960A0\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\150F004178AEB9B47B8AB26F2C7D6AD8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\150F004178AEB9B47B8AB26F2C7D6AD8\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79AE6BBD2CFEB0749B72D7AEC756EE2D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79AE6BBD2CFEB0749B72D7AEC756EE2D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C906CC0418560BD49A812802EB7E70DF
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C906CC0418560BD49A812802EB7E70DF\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34D3E14496821C6419C7895505A9FF91
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34D3E14496821C6419C7895505A9FF91\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BC44CC1201877E49B52ED927B987A0D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BC44CC1201877E49B52ED927B987A0D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77A7B100C3261364981A42DDF1077FB7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77A7B100C3261364981A42DDF1077FB7\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB16ABCBBF385D6439ACA2CCF3FC7F5B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB16ABCBBF385D6439ACA2CCF3FC7F5B\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E60594EF39A72E4EAF5929F29863C3F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E60594EF39A72E4EAF5929F29863C3F\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2EB4E80ADFEA0C6469DC4C1E077FDC79
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2EB4E80ADFEA0C6469DC4C1E077FDC79\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F11A6F9EE2E354C499487E43897B2664
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F11A6F9EE2E354C499487E43897B2664\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E3521EE627BEF642A84C488C5AA8944
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E3521EE627BEF642A84C488C5AA8944\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC9080FF873B780469B0526F789620EA
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC9080FF873B780469B0526F789620EA\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FF5FB5C58261D4849B0B0259AE5E226E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FF5FB5C58261D4849B0B0259AE5E226E\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DC8EBE677A9F3A42A8F778A235AA02C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DC8EBE677A9F3A42A8F778A235AA02C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\873DF29732627164EB952821FBC10965
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\873DF29732627164EB952821FBC10965\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\073579FCFCC930744A651839D33127B8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\073579FCFCC930744A651839D33127B8\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\568E9AC6EDA6A9048808A259BDD815F1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\568E9AC6EDA6A9048808A259BDD815F1\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B8AF82DE76C9B54E871ABED11FEA11E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B8AF82DE76C9B54E871ABED11FEA11E\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\005E6C0A3A2293847AD1D3C99DF80161
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\005E6C0A3A2293847AD1D3C99DF80161\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD88009EE8530A1489E6AFA43632EE9D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD88009EE8530A1489E6AFA43632EE9D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\56E47FCF4E5169A4ABEA4716E798A93F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\56E47FCF4E5169A4ABEA4716E798A93F\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22FB141B1C1143140A9A0BA5C695CA7D
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22FB141B1C1143140A9A0BA5C695CA7D\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC732A16B7A43C4898A38575E39EAE9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC732A16B7A43C4898A38575E39EAE9\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8B36C31B33C09D40BF2706C68B3305F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D8B36C31B33C09D40BF2706C68B3305F\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\973CCB277A7F5964E992D64142CC774C
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\973CCB277A7F5964E992D64142CC774C\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D0F0E2E546943048BEA0E801CBC2749
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D0F0E2E546943048BEA0E801CBC2749\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CF117882FDD031449DC9F821CF92D30
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CF117882FDD031449DC9F821CF92D30\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\40FD5B73606D9D94C9BC4660A0F6F65F
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\40FD5B73606D9D94C9BC4660A0F6F65F\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0ECF6A3CB860E5E47BF6DE7630398F9E
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0ECF6A3CB860E5E47BF6DE7630398F9E\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85FDD8230C66CC64CB52B75930C67E8A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85FDD8230C66CC64CB52B75930C67E8A\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD37D0375FB1ECB488026EFFCE0B9C14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD37D0375FB1ECB488026EFFCE0B9C14\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1435DAF1340D74048A239A6806A05753
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1435DAF1340D74048A239A6806A05753\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D18891D4054AB7549A0ACB322C6485CE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D18891D4054AB7549A0ACB322C6485CE\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0D19E58C2FA90A45A298FE9A478DD07
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0D19E58C2FA90A45A298FE9A478DD07\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BC9041898231224E88D744BBA350C5B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BC9041898231224E88D744BBA350C5B\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\696FE4DA19D6CC9418848FB8AA0EF8D1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\696FE4DA19D6CC9418848FB8AA0EF8D1\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9359751BD86A9D419A61AA554E118AD
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9359751BD86A9D419A61AA554E118AD\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45F672403CA08C74BA98BA194DCFE960
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45F672403CA08C74BA98BA194DCFE960\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\82ED9B75E27056E428B1BA773552B5D9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\82ED9B75E27056E428B1BA773552B5D9\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\23E0046F289111048997BA0D047FD369
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\23E0046F289111048997BA0D047FD369\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\582CCF0F94EE64140BB70A8B935E2F01
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\582CCF0F94EE64140BB70A8B935E2F01\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Managed\S-1-5-21-120665959-548228820-2376508522-1001\Installer\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Installer\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_LOCAL_MACHINE\Software\Classes\Installer\Products\5FD4CC3C5A9372041B63B2E3F1A56B2E
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Vagrearg Rkcybere (64-ovg).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Vagrearg Rkcybere.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Pbzznaq Cebzcg.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Abgrcnq.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Jvaqbjf Rkcybere.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Npprffvovyvgl\Zntavsl.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Npprffvovyvgl\Aneengbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Npprffvovyvgl\Ba-Fperra Xrlobneq.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{N77S5Q77-2R2O-44P3-N6N2-NON601054N51}\Npprffbevrf\Flfgrz Gbbyf\Cevingr Punenpgre Rqvgbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npebong.pbz.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqbor Ernqre 9.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zrqvn Pragre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Fvqrone.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Jvaqbjf Nalgvzr Hctenqr.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Jvaqbjf QIQ Znxre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Jvaqbjf Snk naq Fpna.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Jvaqbjf Zrqvn Cynlre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\KCF Ivrjre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Pnyphyngbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\qvfcynlfjvgpu.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Zngu Vachg Cnary.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Zbovyvgl Pragre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\ArgjbexCebwrpgvba.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Cnvag.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Erzbgr Qrfxgbc Pbaarpgvba.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Favccvat Gbby.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Fbhaq Erpbeqre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Fgvpxl Abgrf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flap Pragre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jrypbzr Pragre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jbeqcnq.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Npprffvovyvgl\Fcrrpu Erpbtavgvba.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Punenpgre Znc.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\qsethv.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Qvfx Pyrnahc.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Erfbhepr Zbavgbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Flfgrz Vasbezngvba.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Flfgrz Erfgber.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Gnfx Fpurqhyre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Jvaqbjf Rnfl Genafsre Ercbegf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Flfgrz Gbbyf\Jvaqbjf Rnfl Genafsre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Gnoyrg CP\FuncrPbyyrpgbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Gnoyrg CP\GnoGvc.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Gnoyrg CP\Jvaqbjf Wbheany.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jvaqbjf CbjreFuryy\Jvaqbjf CbjreFuryy (k86).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jvaqbjf CbjreFuryy\Jvaqbjf CbjreFuryy VFR (k86).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jvaqbjf CbjreFuryy\Jvaqbjf CbjreFuryy VFR.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Npprffbevrf\Jvaqbjf CbjreFuryy\Jvaqbjf CbjreFuryy.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Pbzcbarag Freivprf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Pbzchgre Znantrzrag.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Qngn Fbheprf (BQOP).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Rirag Ivrjre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\vFPFV Vavgvngbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Zrzbel Qvntabfgvpf Gbby.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Cresbeznapr Zbavgbe.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Cevag Znantrzrag.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Frphevgl Pbasvthengvba Znantrzrag.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\freivprf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Flfgrz Pbasvthengvba.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Gnfx Fpurqhyre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Jvaqbjf Sverjnyy jvgu Nqinaprq Frphevgl.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Nqzvavfgengvir Gbbyf\Jvaqbjf CbjreFuryy Zbqhyrf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Znvagranapr\Perngr Erpbirel Qvfp.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Znvagranapr\Erzbgr Nffvfgnapr.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Rkpry 2010.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg BarAbgr 2010.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bhgybbx 2010.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg CbjreCbvag 2010.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Jbeq 2010.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Qvtvgny Pregvsvpngr sbe ION Cebwrpgf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Zvpebfbsg Pyvc Betnavmre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Zvpebfbsg Bssvpr 2010 Ynathntr Cersreraprf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Zvpebfbsg Bssvpr 2010 Hcybnq Pragre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Zvpebfbsg Bssvpr Cvpgher Znantre.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Zvpebfbsg Bssvpr\Zvpebfbsg Bssvpr 2010 Gbbyf\Bssvpr Nalgvzr Hctenqr.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Clguba 2.7\VQYR (Clguba THV).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Clguba 2.7\Zbqhyr Qbpf.yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count\{0139Q44R-6NSR-49S2-8690-3QNSPNR6SSO8}\Clguba 2.7\Clguba (pbzznaq yvar).yax
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.Jvaqbjf.TrggvatFgnegrq
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\qvfcynlfjvgpu.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\pnyp.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{S38OS404-1Q43-42S2-9305-67QR0O28SP23}\rkcybere.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.Jvaqbjf.FgvpxlAbgrf
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\FavccvatGbby.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\zfcnvag.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\kcfepuij.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Zvpebfbsg Bssvpr\Bssvpr14\JVAJBEQ.RKR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\freivprf.zfp
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\JSF.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.Jvaqbjf.ErzbgrQrfxgbc
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\zntavsl.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.VagreargRkcybere.64Ovg
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\pzq.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Nqbor\Ernqre 9.0\Ernqre\NpebEq32.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Zvpebfbsg Bssvpr\Bssvpr14\BHGYBBX.RKR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Zvpebfbsg Bssvpr\Bssvpr14\BARABGR.RKR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Zvpebfbsg Bssvpr\Bssvpr14\RKPRY.RKR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.NhgbTrarengrq.{P1P6S8NP-40N3-0S5P-146S-65N9QP70OOO4}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\Zvpebfbsg Bssvpr\Bssvpr14\CBJRECAG.RKR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\Zvpebfbsg.VagreargRkcybere.Qrsnhyg
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count\{1NP14R77-02R7-4R5Q-O744-2RO1NR5198O7}\abgrcnq.rkr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyDetectType
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\COM3\GipActivityBypass
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1AC7516E-E6BB-4A69-B63F-E841904DC5A6}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7673B35E-907A-449D-A49F-E5CE47F0B0B2}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Groups
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\EnabledScopes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows Search\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\IE8RunOnceLastShown
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\IE8RunOnceLastShown
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableFixSecuritySettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1\1000
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2\1000
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Placement
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Position
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FullScreen
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF50}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\ConfiguredScopes
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\User Favorites Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\WindowsSearch\UpgradeTime
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Migration\IE Installed Date
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF55}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF52}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{04C18CCF-1F57-4CBD-88CC-3900F5195CE3}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000809
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\UseIE7AutoComplete
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchControlWidth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigrated
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedInstalled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DefaultScope
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Deleted
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\URL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ShowSearchSuggestions
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ShowSearchSuggestionsGlobal
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSON
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL_JSONFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SuggestionsURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\PreviewURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURL
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconURLFallback
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\FaviconPath
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\Codepage
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\SortIndex
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Locked
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\Enabled
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\TestHandler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\LinksFolderMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\MarketingLinksMigrate
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Path
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Handler
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\FeedUrl
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\CascadeFolderBands
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Advanced\CascadeFolderBands
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\DefaultItemWidth
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\ShellFolder\HasNavigationEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{20D04FE0-3AEA-1069-A2D8-08002B30309D}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\FolderExtensions\{fbeb8a05-beee-4442-804e-409d6c4515e9}\DriveMask
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\DontShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterTimerInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWebView
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ActivityMeterDisable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\SeparateProcess
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoNetCrawling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSimpleStartMenu
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowCompColor
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowInfoTip
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideIcons
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\MapNetDrvBtn
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\WebView
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Filter
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\NoNetCrawling
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\AutoCheckSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\IconsOnly
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowTypeOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\NeverShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}\InitFolderHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Category
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParentFolder
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Description
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\RelativePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\ParsingName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalizedName
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResource
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\StreamResourceType
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\LocalRedirectOnly
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Roamable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PreCreate
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Stream
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\PublishExpandedPath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\FolderTypeID
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F3CE0F7C-4901-4ACC-8648-D5D44B04EF8F}\InitFolderHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\Attributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\CallForAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\RestrictedAttributes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORDISPLAY
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideFolderVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\UseDropHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsFORPARSING
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsParseDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForOverlay
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\MapNetDriveVerbs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\QueryForInfoTip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideInWebView
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HideOnDesktopPerUser
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsAliasedNotifications
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\WantsUniversalDelegate
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\NoFileFolderJunction
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\PinToNameSpaceTree
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{59031A47-3F72-44A7-89C5-5595FE6B30EE}\ShellFolder\HasNavigationEnum
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum\{59031A47-3F72-44A7-89C5-5595FE6B30EE}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsThreshold
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\clsid
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2670000A-7350-4F3C-8081-5663EE0C6C49}\iexplore\Count
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\ButtonText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuCustomize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\MenuStatusBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping\{2670000A-7350-4f3c-8081-5663EE0C6C49}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\Default Visible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\clsid
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\iexplore\Count
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\ButtonText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuText
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuCustomize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\MenuStatusBar
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\Default Visible
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{2670000A-7350-4f3c-8081-5663EE0C6C49}\Icon
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\Icon
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\ThumbnailBehavior
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ITBar7Height
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Width
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window_Min_Height
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\ProgID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0002DF01-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Url History\DaysToKeep
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FrameTabWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FrameTabWindow
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9EC704BA-E1D4-45C5-9B59-BFAE07D9F04E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B40C43F1-F039-44D2-AEB7-87F5AF8ABC3D}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D358F4E1-0465-4965-9DD5-CAE303D2C345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{F704B7E0-4760-46FF-BBDB-7439E0A2A814}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\AllowFileCLSIDJunctions
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
\xe5\x88\x88\xc3\xabEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\Links\Order
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayName
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\DisplayMask
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\Expiration
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LinksBar\ItemCache\0\ErrorState
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\IEXPLORE.EXE\DontUseDesktopChangeRouter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\SecurityService\DefaultAuthLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00020400-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D30C1661-CDAF-11D0-8A3E-00C04FC9E26E}\TypeLib\Version
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}\1.1\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00020430-0000-0000-C000-000000000046}\2.0\0\win32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\UDTAlignmentPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{48A98A1F-5CDD-47EE-9286-DB04A3EB7CE1}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6D5140C1-7436-11CE-8034-00AA006009FA}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B722BCCB-4E68-101B-A2BC-00AA00404770}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\Use FormSuggest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001\ProfileImagePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
\xe5\x88\x88\xc3\xabEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\image/x-icon\Extension
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing\QuickTabsLastUsed
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{B5702E61-E75C-4B64-82A1-6CB4F832FCCF}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{AB310581-AC80-11D1-8DF3-00C04FB6EF58}\ProxyStubClsid32\(Default)
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\DOMStore\CacheOptions
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\feedplat\CacheOptions
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\iecompat\CacheOptions
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\ietld\CacheOptions
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheRepair
\xe8\x89\xa0\xc3\xbc\x0c\x00\xed\x83\x80\xef\x83\xa0\xeb\x83\x95\xe4\xac\xabR\xe8\xb8\x80\xc2\x8e\x00\xe8\xa7\xa8\xec\x8e\xa0\xe0\xb2\xbc\xee\xb4\x80\xe8\x82\x83\xe8\x8f\xaf\xee\xae\xa0\xe9\x96\x83\xea\xb3\xa4\xe5\x8a\xab\xeb\xa3\xa8\xec\x8a\x80\xc2\x8e\xea\x9f\xa8\xee\xb2\xa8\xea\x82\x8e\xeb\x8b\xa0\xee\xba\xbc\xe8\x82\xb4\xe8\x8b\xa8\xee\xa2\x83\xea\xbe\x8f\xea\xbb\xae\xee\xa6\xa0\xe8\x8e\x96\xeb\x8f\xaa\xee\x96\xa4\xea\xae\x8a\xea\x8f\xab\xee\xb2\xa8\xe8\x82\x8a\xe8\xbb\x82\xe9\xbf\xaa\xee\xba\xa8\xea\xa2\xb2\xe8\x8b\xaa\xee\xae\x8e\xea\x82\x8b\xeb\xab\xae
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012019120320191204\CacheOptions
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheRepair
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePath
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CachePrefix
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheLimit
\xe8\x89\xa0\xc3\xbcEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\PrivacIE:\CacheOptions
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\ShellEx\IconHandler\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\DocObject
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\PerceivedType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\BrowseInPlace
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.URL\Content Type
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\CLSID\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\IsShortcut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\AlwaysShowExt
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\InternetShortcut\NeverShowExt
HKEY_CURRENT_USER\Software\Microsoft\Feeds\SyncStatus
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\Version
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DownloadRetries
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\DownloadUpdates
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\User Preferences\88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9706DA66-D17C-48A5-B42D-39963D174DC0}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{5C193B57-4EC0-4387-B98E-BEBF10136422}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Control Panel\Desktop\SmoothScroll
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\EnableBalloonTips
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ListviewAlphaSelect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ListviewShadow
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\TurnOffSPIAnimations
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\crypt32\DebugHeapFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\DisableImprovedZoneCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only
DisableUserModeCallbackFilter
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\DEPOff
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ProtectedModeOffForAllZones
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\TabProcGrowth
HKEY_LOC