Analysis

Category Package Started Completed Duration Options Log
FILE Extraction 2020-01-14 13:46:07 2020-01-14 13:50:49 282 seconds Show Options Show Log
  • Info: The analysis hit the critical timeout, terminating.
procdump = 0
2020-01-14 13:46:08,000 [root] INFO: Date set to: 01-14-20, time set to: 13:46:08, timeout set to: 200
2020-01-14 13:46:08,015 [root] DEBUG: Starting analyzer from: C:\ulhndfvwoh
2020-01-14 13:46:08,015 [root] DEBUG: Storing results at: C:\TclfSyn
2020-01-14 13:46:08,015 [root] DEBUG: Pipe server name: \\.\PIPE\BNaKFBDe
2020-01-14 13:46:08,015 [root] INFO: Analysis package "Extraction" has been specified.
2020-01-14 13:46:08,936 [root] DEBUG: Started auxiliary module Browser
2020-01-14 13:46:08,936 [root] DEBUG: Started auxiliary module Curtain
2020-01-14 13:46:08,936 [modules.auxiliary.digisig] DEBUG: Checking for a digitial signature.
2020-01-14 13:46:10,730 [modules.auxiliary.digisig] DEBUG: File is not signed.
2020-01-14 13:46:10,730 [modules.auxiliary.digisig] INFO: Uploading signature results to aux/DigiSig.json
2020-01-14 13:46:10,730 [root] DEBUG: Started auxiliary module DigiSig
2020-01-14 13:46:10,744 [root] DEBUG: Started auxiliary module Disguise
2020-01-14 13:46:10,744 [root] DEBUG: Started auxiliary module Human
2020-01-14 13:46:10,744 [root] DEBUG: Started auxiliary module Screenshots
2020-01-14 13:46:10,744 [root] DEBUG: Started auxiliary module Sysmon
2020-01-14 13:46:10,744 [root] DEBUG: Started auxiliary module Usage
2020-01-14 13:46:10,744 [root] INFO: Analyzer: DLL set to Extraction.dll from package modules.packages.Extraction
2020-01-14 13:46:10,744 [root] INFO: Analyzer: DLL_64 set to Extraction_x64.dll from package modules.packages.Extraction
2020-01-14 13:46:10,822 [lib.api.process] INFO: Successfully executed process from path "C:\Users\user\AppData\Local\Temp\wA7NV0.exe" with arguments "" with pid 884
2020-01-14 13:46:10,869 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:46:10,869 [lib.api.process] INFO: 32-bit DLL to inject is C:\ulhndfvwoh\dll\tCxLWOhn.dll, loader C:\ulhndfvwoh\bin\IKATNAL.exe
2020-01-14 13:46:11,042 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:46:11,042 [root] DEBUG: Loader: Injecting process 884 (thread 1368) with C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:46:11,042 [root] DEBUG: Process image base: 0x00400000
2020-01-14 13:46:11,042 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:46:11,042 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:46:11,056 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:46:11,056 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 884
2020-01-14 13:46:13,085 [lib.api.process] INFO: Successfully resumed process with pid 884
2020-01-14 13:46:13,085 [root] INFO: Added new process to list with pid: 884
2020-01-14 13:46:13,834 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:46:13,834 [root] DEBUG: Process dumps disabled.
2020-01-14 13:46:14,052 [root] DEBUG: RestoreHeaders: Restored original import table.
2020-01-14 13:46:14,052 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:14,052 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:14,052 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:14,068 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:14,068 [root] DEBUG: WoW64 detected: 64-bit ntdll base: 0x77110000, KiUserExceptionDispatcher: 0x0, NtSetContextThread: 0x7716124a, Wow64PrepareForException: 0x0
2020-01-14 13:46:14,068 [root] DEBUG: WoW64 workaround: KiUserExceptionDispatcher hook installed at: 0x270000
2020-01-14 13:46:14,068 [root] DEBUG: Debugger initialised.
2020-01-14 13:46:14,068 [root] DEBUG: CAPE initialised: 32-bit Extraction package loaded in process 884 at 0x747d0000, image base 0x400000, stack from 0x186000-0x190000
2020-01-14 13:46:14,068 [root] DEBUG: Commandline: C:\Users\user\AppData\Local\Temp\"C:\Users\user\AppData\Local\Temp\wA7NV0.exe".
2020-01-14 13:46:14,068 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00400000) returned 0x00000000.
2020-01-14 13:46:14,084 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:14,084 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00400000) -> AllocationBase 0x00400000 RegionSize 0x4096.
2020-01-14 13:46:14,084 [root] DEBUG: AddTrackedRegion: EntryPoint 0x100c, Entropy 6.137306e+00
2020-01-14 13:46:14,084 [root] DEBUG: AddTrackedRegion: New region at 0x00400000 size 0x1000 added to tracked regions.
2020-01-14 13:46:14,084 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:46:14,084 [root] INFO: Monitor successfully loaded in process with pid 884.
2020-01-14 13:46:14,193 [root] DEBUG: DLL unloaded from 0x74950000.
2020-01-14 13:46:14,286 [root] DEBUG: DLL loaded at 0x74940000: C:\Windows\system32\ncobjapi (0xf000 bytes).
2020-01-14 13:46:14,302 [root] DEBUG: Allocation: 0x003F0000 - 0x003F1000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,302 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,302 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,302 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,302 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x003F0000, size: 0x1000.
2020-01-14 13:46:14,302 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x003F0000) returned 0x00000000.
2020-01-14 13:46:14,302 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:14,302 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x003F0000) -> AllocationBase 0x003F0000 RegionSize 0x4096.
2020-01-14 13:46:14,302 [root] DEBUG: AddTrackedRegion: New region at 0x003F0000 size 0x1000 added to tracked regions.
2020-01-14 13:46:14,302 [root] DEBUG: set_caller_info: Adding region at 0x003F0000 to caller regions list (ntdll::LdrLoadDll).
2020-01-14 13:46:14,302 [root] DEBUG: set_caller_info: Caller at 0x003F000E in tracked regions.
2020-01-14 13:46:14,302 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,318 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,318 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,318 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,318 [root] DEBUG: DumpPEsInRange: Scanning range 0x3f0000 - 0x3f1000.
2020-01-14 13:46:14,318 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x3f0000-0x3f1000.
2020-01-14 13:46:14,318 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x003F0000 - 0x003F1000.
2020-01-14 13:46:14,318 [root] DEBUG: set_caller_info: Adding region at 0x01F40000 to caller regions list (kernel32::GetSystemTime).
2020-01-14 13:46:14,318 [root] DEBUG: DumpPEsInRange: Scanning range 0x3f0000 - 0x3f1000.
2020-01-14 13:46:14,318 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x3f0000-0x3f1000.
2020-01-14 13:46:14,318 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x003F0000 - 0x003F1000.
2020-01-14 13:46:14,332 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_114079018414261814212020 successfully created, size 0x1000
2020-01-14 13:46:14,332 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_114079018414261814212020
2020-01-14 13:46:14,332 [root] DEBUG: DumpRegion: Dumped stack region from 0x003F0000, size 0x1000.
2020-01-14 13:46:14,332 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x003F0000.
2020-01-14 13:46:14,332 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x3f0000 - 0x3f1000.
2020-01-14 13:46:14,348 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_153323168514261814212020 successfully created, size 0x1000
2020-01-14 13:46:14,380 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_153323168514261814212020
2020-01-14 13:46:14,380 [root] DEBUG: DumpRegion: Dumped stack region from 0x003F0000, size 0x1000.
2020-01-14 13:46:14,380 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x003F0000.
2020-01-14 13:46:14,380 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x3f0000 - 0x3f1000.
2020-01-14 13:46:14,395 [root] DEBUG: Allocation: 0x00420000 - 0x00421000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,395 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,395 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,395 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,395 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,395 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x00420000, size: 0x1000.
2020-01-14 13:46:14,395 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00420000) returned 0x00000000.
2020-01-14 13:46:14,395 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:14,411 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00420000) -> AllocationBase 0x00420000 RegionSize 0x4096.
2020-01-14 13:46:14,411 [root] DEBUG: AddTrackedRegion: New region at 0x00420000 size 0x1000 added to tracked regions.
2020-01-14 13:46:14,411 [root] DEBUG: set_caller_info: Adding region at 0x00420000 to caller regions list (ntdll::NtAllocateVirtualMemory).
2020-01-14 13:46:14,411 [root] DEBUG: set_caller_info: Caller at 0x004205E0 in tracked regions.
2020-01-14 13:46:14,411 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,411 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,411 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,411 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,411 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:14,411 [root] DEBUG: DumpPEsInRange: Scanning range 0x420000 - 0x421000.
2020-01-14 13:46:14,411 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x420000-0x421000.
2020-01-14 13:46:14,411 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00420000 - 0x00421000.
2020-01-14 13:46:14,411 [root] DEBUG: DumpPEsInRange: Scanning range 0x420000 - 0x421000.
2020-01-14 13:46:14,411 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x420000-0x421000.
2020-01-14 13:46:14,411 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00420000 - 0x00421000.
2020-01-14 13:46:14,411 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_45865873614261814212020 successfully created, size 0x1000
2020-01-14 13:46:14,427 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_45865873614261814212020
2020-01-14 13:46:14,427 [root] DEBUG: DumpRegion: Dumped stack region from 0x00420000, size 0x1000.
2020-01-14 13:46:14,427 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00420000.
2020-01-14 13:46:14,427 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x420000 - 0x421000.
2020-01-14 13:46:14,427 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_38715573214261814212020 successfully created, size 0x1000
2020-01-14 13:46:14,441 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_38715573214261814212020
2020-01-14 13:46:14,441 [root] DEBUG: DumpRegion: Dumped stack region from 0x00420000, size 0x1000.
2020-01-14 13:46:14,441 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00420000.
2020-01-14 13:46:14,441 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x420000 - 0x421000.
2020-01-14 13:46:14,457 [root] DEBUG: DLL loaded at 0x744C0000: C:\Windows\system32\mscoree (0x4a000 bytes).
2020-01-14 13:46:14,457 [root] DEBUG: set_caller_info: Adding region at 0x00090000 to caller regions list (advapi32::RegQueryInfoKeyW).
2020-01-14 13:46:14,457 [root] DEBUG: set_caller_info: Adding region at 0x00570000 to caller regions list (kernel32::FindFirstFileExW).
2020-01-14 13:46:14,457 [root] DEBUG: DLL loaded at 0x74440000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei (0x7b000 bytes).
2020-01-14 13:46:14,473 [root] DEBUG: DLL loaded at 0x73DA0000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr (0x69b000 bytes).
2020-01-14 13:46:14,473 [root] DEBUG: DLL loaded at 0x73CC0000: C:\Windows\system32\MSVCR110_CLR0400 (0xd3000 bytes).
2020-01-14 13:46:14,473 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1360.
2020-01-14 13:46:14,489 [root] DEBUG: DLL unloaded from 0x772F0000.
2020-01-14 13:46:14,489 [root] DEBUG: Allocation: 0x01ED2000 - 0x01ED3000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,489 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,489 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,489 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,489 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,489 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:14,505 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x01ED2000, size: 0x1000.
2020-01-14 13:46:14,505 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x01ED2000) returned 0x00000000.
2020-01-14 13:46:14,505 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:14,505 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x01ED2000) -> AllocationBase 0x01ED0000 RegionSize 0x4096.
2020-01-14 13:46:14,519 [root] DEBUG: AddTrackedRegion: New region at 0x01ED0000 size 0x1000 added to tracked regions.
2020-01-14 13:46:14,519 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1576.
2020-01-14 13:46:14,536 [root] DEBUG: DLL loaded at 0x729C0000: C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\045c9588954c3662d542b53f4462268b\mscorlib.ni (0x102e000 bytes).
2020-01-14 13:46:14,816 [root] DEBUG: Allocation: 0x03C31000 - 0x03C32000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,816 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,816 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,816 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,832 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,832 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:14,832 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:14,832 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x03C31000, size: 0x1000.
2020-01-14 13:46:14,832 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x03C31000) returned 0x00000000.
2020-01-14 13:46:14,832 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:14,832 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x03C31000) -> AllocationBase 0x03C30000 RegionSize 0x4096.
2020-01-14 13:46:14,832 [root] DEBUG: AddTrackedRegion: New region at 0x03C30000 size 0x1000 added to tracked regions.
2020-01-14 13:46:14,894 [root] DEBUG: Allocation: 0x03C32000 - 0x03C33000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:14,894 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:14,894 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C30000, size: 0x1000.
2020-01-14 13:46:14,957 [root] DEBUG: Allocation: 0x01EDA000 - 0x01EDB000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:14,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:14,957 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01ED0000, size: 0x1000.
2020-01-14 13:46:15,035 [root] DEBUG: set_caller_info: Adding region at 0x01ED0000 to caller regions list (kernel32::SetErrorMode).
2020-01-14 13:46:15,035 [root] DEBUG: set_caller_info: Caller at 0x01EDA062 in tracked regions.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,035 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,035 [root] DEBUG: DumpPEsInRange: Scanning range 0x1ed0000 - 0x1ed1000.
2020-01-14 13:46:15,035 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x1ed0000-0x1ed1000.
2020-01-14 13:46:15,035 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x01ED0000 - 0x01ED1000.
2020-01-14 13:46:15,051 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_137471440335261814212020 successfully created, size 0x10000
2020-01-14 13:46:15,051 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x1ed4000 (expected in memory scans), passing to next handler.
2020-01-14 13:46:15,051 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x1ed0000
2020-01-14 13:46:15,051 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x01ED0000 size 0x10000.
2020-01-14 13:46:15,051 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_83070880035261814212020 successfully created, size 0x2000
2020-01-14 13:46:15,051 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_83070880035261814212020
2020-01-14 13:46:15,051 [root] DEBUG: DumpRegion: Dumped stack region from 0x01ED0000, size 0x2000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x01ED0000.
2020-01-14 13:46:15,051 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x1ed0000 - 0x1ed1000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,051 [root] DEBUG: Allocation: 0x01EDC000 - 0x01EDD000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,051 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,051 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01ED0000, size: 0x1000.
2020-01-14 13:46:15,128 [root] DEBUG: Allocation: 0x03C33000 - 0x03C34000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,144 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,144 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C30000, size: 0x1000.
2020-01-14 13:46:15,207 [root] DEBUG: Allocation: 0x01EEC000 - 0x01EED000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,207 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x01EEC000, size: 0x1000.
2020-01-14 13:46:15,207 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x01EEC000) returned 0x00000000.
2020-01-14 13:46:15,207 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:15,207 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x01EEC000) -> AllocationBase 0x01EE0000 RegionSize 0x4096.
2020-01-14 13:46:15,207 [root] DEBUG: AddTrackedRegion: New region at 0x01EE0000 size 0x1000 added to tracked regions.
2020-01-14 13:46:15,207 [root] DEBUG: Allocation: 0x01F1B000 - 0x01F1C000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,207 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,221 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x01F1B000, size: 0x1000.
2020-01-14 13:46:15,221 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x01F1B000) returned 0x00000000.
2020-01-14 13:46:15,221 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:15,221 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x01F1B000) -> AllocationBase 0x01F10000 RegionSize 0x4096.
2020-01-14 13:46:15,221 [root] DEBUG: AddTrackedRegion: New region at 0x01F10000 size 0x1000 added to tracked regions.
2020-01-14 13:46:15,221 [root] DEBUG: Allocation: 0x01F17000 - 0x01F18000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,221 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,237 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01F10000, size: 0x1000.
2020-01-14 13:46:15,237 [root] DEBUG: Allocation: 0x03C34000 - 0x03C35000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,237 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,237 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C30000, size: 0x1000.
2020-01-14 13:46:15,253 [root] DEBUG: DLL loaded at 0x73C40000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit (0x7d000 bytes).
2020-01-14 13:46:15,285 [root] DEBUG: DLL loaded at 0x72020000: C:\Windows\assembly\NativeImages_v4.0.30319_32\System\79f6324a598a7c4446a4a1168be7c4b1\System.ni (0x99a000 bytes).
2020-01-14 13:46:15,315 [root] DEBUG: DLL loaded at 0x71E80000: C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\c4477b3ce64d0d612d1ab0dba425b77f\System.Drawing.ni (0x194000 bytes).
2020-01-14 13:46:15,315 [root] DEBUG: DLL loaded at 0x71230000: C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\05ca0ca95b6fcc0d710b63b6200cc178\System.Windows.Forms.ni (0xc4f000 bytes).
2020-01-14 13:46:15,471 [root] DEBUG: Allocation: 0x03C20000 - 0x03C21000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,471 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,487 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,487 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,487 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x03C20000, size: 0x1000.
2020-01-14 13:46:15,487 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x03C20000) returned 0x00000000.
2020-01-14 13:46:15,487 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:15,487 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x03C20000) -> AllocationBase 0x03C20000 RegionSize 0x4096.
2020-01-14 13:46:15,487 [root] DEBUG: AddTrackedRegion: New region at 0x03C20000 size 0x1000 added to tracked regions.
2020-01-14 13:46:15,596 [root] DEBUG: set_caller_info: Adding region at 0x03C20000 to caller regions list (kernel32::SetErrorMode).
2020-01-14 13:46:15,596 [root] DEBUG: set_caller_info: Caller at 0x03C20058 in tracked regions.
2020-01-14 13:46:15,596 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,596 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,611 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:15,611 [root] DEBUG: DumpPEsInRange: Scanning range 0x3c20000 - 0x3c21000.
2020-01-14 13:46:15,611 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x3c20000-0x3c21000.
2020-01-14 13:46:15,611 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x03C20000 - 0x03C21000.
2020-01-14 13:46:15,611 [root] DEBUG: DumpPEsInRange: Scanning range 0x3c20000 - 0x3c21000.
2020-01-14 13:46:15,611 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x3c20000-0x3c21000.
2020-01-14 13:46:15,611 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x03C20000 - 0x03C21000.
2020-01-14 13:46:15,628 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_165344621235261814212020 successfully created, size 0x10000
2020-01-14 13:46:15,628 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x3c21000 (expected in memory scans), passing to next handler.
2020-01-14 13:46:15,628 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x3c20000
2020-01-14 13:46:15,628 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x03C20000 size 0x10000.
2020-01-14 13:46:15,628 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_206684241235261814212020 successfully created, size 0x1000
2020-01-14 13:46:15,644 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_206684241235261814212020
2020-01-14 13:46:15,644 [root] DEBUG: DumpRegion: Dumped stack region from 0x03C20000, size 0x1000.
2020-01-14 13:46:15,644 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x03C20000.
2020-01-14 13:46:15,644 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x3c20000 - 0x3c21000.
2020-01-14 13:46:15,644 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_3232081635261814212020 successfully created, size 0x10000
2020-01-14 13:46:15,644 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x3c21000 (expected in memory scans), passing to next handler.
2020-01-14 13:46:15,644 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x3c20000
2020-01-14 13:46:15,644 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x03C20000 size 0x10000.
2020-01-14 13:46:15,644 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_103533056435261814212020 successfully created, size 0x1000
2020-01-14 13:46:15,658 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_103533056435261814212020
2020-01-14 13:46:15,658 [root] DEBUG: DumpRegion: Dumped stack region from 0x03C20000, size 0x1000.
2020-01-14 13:46:15,658 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x03C20000.
2020-01-14 13:46:15,658 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x3c20000 - 0x3c21000.
2020-01-14 13:46:15,783 [root] DEBUG: Allocation: 0x01EF6000 - 0x01EF7000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,799 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:15,799 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x01EF6000, size: 0x1000.
2020-01-14 13:46:15,799 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x01EF6000) returned 0x00000000.
2020-01-14 13:46:15,815 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:15,815 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x01EF6000) -> AllocationBase 0x01EF0000 RegionSize 0x4096.
2020-01-14 13:46:15,815 [root] DEBUG: AddTrackedRegion: New region at 0x01EF0000 size 0x1000 added to tracked regions.
2020-01-14 13:46:15,815 [root] DEBUG: Allocation: 0x01EFA000 - 0x01EFB000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,815 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:15,831 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01EF0000, size: 0x1000.
2020-01-14 13:46:15,831 [root] DEBUG: Allocation: 0x01EF7000 - 0x01EF8000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:15,831 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01EF0000, size: 0x1000.
2020-01-14 13:46:15,831 [root] DEBUG: Allocation: 0x01F15000 - 0x01F16000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:15,831 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:15,831 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x01F10000, size: 0x1000.
2020-01-14 13:46:15,970 [root] DEBUG: DLL loaded at 0x73C20000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting (0x12000 bytes).
2020-01-14 13:46:16,111 [root] DEBUG: DLL loaded at 0x70B80000: C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\4e69f1e7d86d79012db2d7e0dadc8880\System.Core.ni (0x6ae000 bytes).
2020-01-14 13:46:16,142 [root] DEBUG: DLL loaded at 0x73AF0000: C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\13f5eb7285c90c219d2be24eebb55cd9\System.Management.ni (0x123000 bytes).
2020-01-14 13:46:16,641 [root] DEBUG: DLL loaded at 0x74C70000: C:\Windows\system32\CRYPTSP (0x16000 bytes).
2020-01-14 13:46:16,657 [root] DEBUG: DLL loaded at 0x74C30000: C:\Windows\system32\rsaenh (0x3b000 bytes).
2020-01-14 13:46:16,657 [root] DEBUG: DLL loaded at 0x74930000: C:\Windows\system32\RpcRtRemote (0xe000 bytes).
2020-01-14 13:46:16,657 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2668.
2020-01-14 13:46:16,766 [root] DEBUG: DLL loaded at 0x73AE0000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\wminet_utils (0xa000 bytes).
2020-01-14 13:46:16,891 [root] DEBUG: Allocation: 0x03C21000 - 0x03C22000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:16,891 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:16,891 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C20000, size: 0x1000.
2020-01-14 13:46:16,907 [root] DEBUG: Allocation: 0x03C22000 - 0x03C23000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:16,907 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:16,907 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C20000, size: 0x1000.
2020-01-14 13:46:16,923 [root] DEBUG: Allocation: 0x03C23000 - 0x03C24000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:16,923 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:16,937 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:16,937 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:16,937 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:16,937 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:16,937 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:16,937 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C20000, size: 0x1000.
2020-01-14 13:46:16,970 [root] DEBUG: Allocation: 0x7EF40000 - 0x7EF90000, size: 0x50000, protection: 0x40.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:16,970 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:16,970 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x7EF40000, size: 0x50000.
2020-01-14 13:46:16,970 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x7EF40000) returned 0x00000000.
2020-01-14 13:46:16,970 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:16,970 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x7EF40000) -> AllocationBase 0x7EF40000 RegionSize 0x327680.
2020-01-14 13:46:16,970 [root] DEBUG: AddTrackedRegion: New region at 0x7EF40000 size 0x50000 added to tracked regions.
2020-01-14 13:46:16,970 [root] DEBUG: AllocationHandler: Memory reserved but not committed at 0x7EF40000.
2020-01-14 13:46:16,984 [root] DEBUG: Allocation: 0x7EF40000 - 0x7EF41000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:16,984 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:46:17,000 [root] DEBUG: AllocationHandler: Previously reserved region 0x7EF40000 - 0x7EF90000, committing at: 0x7EF40000.
2020-01-14 13:46:17,000 [root] DEBUG: Allocation: 0x7EF40000 - 0x7EF41000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:46:17,000 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x7EF40000, size: 0x50000.
2020-01-14 13:46:17,000 [root] DEBUG: Allocation: 0x7EF48000 - 0x7EF49000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:17,000 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:17,016 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:46:17,016 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x7EF40000, size: 0x50000.
2020-01-14 13:46:17,032 [root] DEBUG: Allocation: 0x7EF30000 - 0x7EF40000, size: 0x10000, protection: 0x40.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:17,032 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:46:17,032 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x7EF30000, size: 0x10000.
2020-01-14 13:46:17,032 [root] DEBUG: AddTrackedRegion: DEBUG Warning - number of tracked regions 11.
2020-01-14 13:46:17,032 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x7EF30000) returned 0x00000000.
2020-01-14 13:46:17,032 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:46:17,032 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x7EF30000) -> AllocationBase 0x7EF30000 RegionSize 0x65536.
2020-01-14 13:46:17,048 [root] DEBUG: AddTrackedRegion: New region at 0x7EF30000 size 0x10000 added to tracked regions.
2020-01-14 13:46:17,048 [root] DEBUG: AllocationHandler: Memory reserved but not committed at 0x7EF30000.
2020-01-14 13:46:17,048 [root] DEBUG: Allocation: 0x7EF30000 - 0x7EF31000, size: 0x1000, protection: 0x40.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:46:17,048 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF30000.
2020-01-14 13:46:17,048 [root] DEBUG: AllocationHandler: Previously reserved region 0x7EF30000 - 0x7EF40000, committing at: 0x7EF30000.
2020-01-14 13:46:17,062 [root] DEBUG: DLL loaded at 0x74EB0000: C:\Windows\syswow64\CLBCatQ (0x83000 bytes).
2020-01-14 13:46:17,187 [root] DEBUG: DLL loaded at 0x70B60000: C:\Windows\system32\wbem\wmiutils (0x17000 bytes).
2020-01-14 13:46:17,312 [root] DEBUG: DLL loaded at 0x70B00000: C:\Windows\system32\wbemcomn (0x5c000 bytes).
2020-01-14 13:46:17,359 [root] DEBUG: DLL loaded at 0x75D00000: C:\Windows\syswow64\WS2_32 (0x35000 bytes).
2020-01-14 13:46:17,359 [root] DEBUG: DLL loaded at 0x75130000: C:\Windows\syswow64\NSI (0x6000 bytes).
2020-01-14 13:46:17,530 [root] DEBUG: DLL loaded at 0x73AD0000: C:\Windows\system32\wbem\wbemprox (0xa000 bytes).
2020-01-14 13:46:26,438 [root] INFO: Stopped WMI Service
2020-01-14 13:46:26,438 [root] INFO: Attaching to DcomLaunch service (pid 564)
2020-01-14 13:46:26,470 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:46:26,470 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:46:26,500 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:46:26,500 [root] DEBUG: Loader: Injecting process 564 (thread 0) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:26,500 [root] DEBUG: InjectDll: No thread ID supplied, GetProcessInitialThreadId failed, falling back to thread injection.
2020-01-14 13:46:26,516 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:46:26,516 [root] DEBUG: Process dumps disabled.
2020-01-14 13:46:26,516 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:26,563 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:46:26,563 [root] WARNING: Unable to hook LockResource
2020-01-14 13:46:26,609 [root] DEBUG: Debugger initialised.
2020-01-14 13:46:26,625 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 564 at 0x0000000070A10000, image base 0x00000000FFA10000, stack from 0x0000000001A86000-0x0000000001A90000
2020-01-14 13:46:26,625 [root] DEBUG: Commandline: C:\Windows\sysnative\svchost.exe -k DcomLaunch.
2020-01-14 13:46:26,625 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FFA10000) returned 0x0000000000000000.
2020-01-14 13:46:26,625 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:46:26,625 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FFA10000) -> AllocationBase 0x00000000FFA10000 RegionSize 0x4096.
2020-01-14 13:46:26,625 [root] DEBUG: AddTrackedRegion: EntryPoint 0x246c, Entropy 3.671080e+00
2020-01-14 13:46:26,625 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FFA10000 size 0x1000 added to tracked regions.
2020-01-14 13:46:26,625 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:46:26,625 [root] INFO: Added new process to list with pid: 564
2020-01-14 13:46:26,641 [root] INFO: Monitor successfully loaded in process with pid 564.
2020-01-14 13:46:26,641 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2020-01-14 13:46:26,641 [root] DEBUG: InjectDll: Successfully injected DLL via thread.
2020-01-14 13:46:26,641 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:30,713 [root] INFO: Started WMI Service
2020-01-14 13:46:30,713 [root] INFO: Attaching to WMI service (pid 920)
2020-01-14 13:46:30,713 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:46:30,713 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:46:30,713 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:46:30,713 [root] DEBUG: Loader: Injecting process 920 (thread 0) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:30,713 [root] DEBUG: InjectDll: No thread ID supplied, GetProcessInitialThreadId failed, falling back to thread injection.
2020-01-14 13:46:30,713 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:46:30,713 [root] DEBUG: Process dumps disabled.
2020-01-14 13:46:30,713 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:30,743 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:46:30,743 [root] WARNING: Unable to hook LockResource
2020-01-14 13:46:30,743 [root] DEBUG: Debugger initialised.
2020-01-14 13:46:30,743 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 920 at 0x0000000070A10000, image base 0x00000000FFA10000, stack from 0x0000000001645000-0x0000000001650000
2020-01-14 13:46:30,743 [root] DEBUG: Commandline: C:\Windows\sysnative\svchost.exe -k netsvcs.
2020-01-14 13:46:30,743 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FFA10000) returned 0x0000000000000000.
2020-01-14 13:46:30,743 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:46:30,743 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FFA10000) -> AllocationBase 0x00000000FFA10000 RegionSize 0x4096.
2020-01-14 13:46:30,743 [root] DEBUG: AddTrackedRegion: EntryPoint 0x246c, Entropy 3.657549e+00
2020-01-14 13:46:30,743 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FFA10000 size 0x1000 added to tracked regions.
2020-01-14 13:46:30,743 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:46:30,743 [root] INFO: Added new process to list with pid: 920
2020-01-14 13:46:30,743 [root] INFO: Monitor successfully loaded in process with pid 920.
2020-01-14 13:46:30,743 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2020-01-14 13:46:30,759 [root] DEBUG: InjectDll: Successfully injected DLL via thread.
2020-01-14 13:46:30,759 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:32,788 [root] DEBUG: CreateThread: Initialising breakpoints for thread 576.
2020-01-14 13:46:32,865 [root] DEBUG: DLL loaded at 0x000007FEF9E80000: C:\Windows\system32\VSSAPI (0x1b0000 bytes).
2020-01-14 13:46:32,865 [root] DEBUG: DLL loaded at 0x000007FEFB270000: C:\Windows\system32\ATL (0x19000 bytes).
2020-01-14 13:46:32,865 [root] DEBUG: DLL loaded at 0x000007FEF9E60000: C:\Windows\system32\VssTrace (0x17000 bytes).
2020-01-14 13:46:32,913 [root] DEBUG: DLL loaded at 0x000007FEFA870000: C:\Windows\system32\samcli (0x14000 bytes).
2020-01-14 13:46:32,927 [root] DEBUG: DLL loaded at 0x000007FEFB820000: C:\Windows\system32\SAMLIB (0x1d000 bytes).
2020-01-14 13:46:32,990 [root] DEBUG: DLL loaded at 0x000007FEFAC20000: C:\Windows\system32\netutils (0xc000 bytes).
2020-01-14 13:46:33,022 [root] DEBUG: DLL loaded at 0x000007FEFB0D0000: C:\Windows\system32\es (0x67000 bytes).
2020-01-14 13:46:33,069 [root] DEBUG: DLL loaded at 0x000007FEFB840000: C:\Windows\system32\PROPSYS (0x12c000 bytes).
2020-01-14 13:46:33,131 [root] DEBUG: DLL loaded at 0x000007FEF9540000: C:\Windows\system32\wbem\wbemcore (0x12f000 bytes).
2020-01-14 13:46:33,131 [root] DEBUG: DLL loaded at 0x000007FEF94D0000: C:\Windows\system32\wbem\esscli (0x6f000 bytes).
2020-01-14 13:46:33,147 [root] DEBUG: DLL loaded at 0x000007FEF9A00000: C:\Windows\system32\wbem\FastProx (0xe2000 bytes).
2020-01-14 13:46:33,147 [root] DEBUG: DLL loaded at 0x000007FEF9980000: C:\Windows\system32\NTDSAPI (0x27000 bytes).
2020-01-14 13:46:33,224 [root] DEBUG: DLL unloaded from 0x000007FEF9540000.
2020-01-14 13:46:33,224 [root] DEBUG: DLL loaded at 0x000007FEFA0A0000: C:\Windows\system32\wbem\wbemsvc (0x14000 bytes).
2020-01-14 13:46:33,286 [root] DEBUG: DLL loaded at 0x73AA0000: C:\Windows\system32\wbem\wbemsvc (0xf000 bytes).
2020-01-14 13:46:33,318 [root] DEBUG: DLL loaded at 0x70970000: C:\Windows\system32\wbem\fastprox (0x96000 bytes).
2020-01-14 13:46:33,334 [root] DEBUG: DLL loaded at 0x70950000: C:\Windows\system32\NTDSAPI (0x18000 bytes).
2020-01-14 13:46:33,334 [root] DEBUG: DLL loaded at 0x000007FEFCAC0000: C:\Windows\system32\authZ (0x2f000 bytes).
2020-01-14 13:46:33,349 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1240.
2020-01-14 13:46:33,365 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:46:33,395 [root] DEBUG: DLL loaded at 0x000007FEF97C0000: C:\Windows\system32\wbem\wmiutils (0x26000 bytes).
2020-01-14 13:46:33,427 [root] DEBUG: DLL loaded at 0x000007FEF90B0000: C:\Windows\system32\wbem\repdrvfs (0x73000 bytes).
2020-01-14 13:46:33,427 [root] WARNING: File at path "C:\Windows\sysnative\wbem\repository\WRITABLE.TST" does not exist, skip.
2020-01-14 13:46:33,443 [root] DEBUG: DLL loaded at 0x000007FEFCB00000: C:\Windows\system32\Wevtapi (0x6d000 bytes).
2020-01-14 13:46:33,490 [root] DEBUG: DLL unloaded from 0x000007FEFCB00000.
2020-01-14 13:46:33,755 [root] DEBUG: DLL loaded at 0x000007FEF80F0000: C:\Windows\system32\wbem\wmiprvsd (0xbc000 bytes).
2020-01-14 13:46:33,770 [root] DEBUG: DLL loaded at 0x000007FEFA0C0000: C:\Windows\system32\NCObjAPI (0x16000 bytes).
2020-01-14 13:46:33,818 [root] DEBUG: DLL loaded at 0x000007FEF38A0000: C:\Windows\system32\wbem\wbemess (0x7e000 bytes).
2020-01-14 13:46:33,848 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2132.
2020-01-14 13:46:33,848 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:46:33,927 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2276.
2020-01-14 13:46:33,927 [root] DEBUG: DLL unloaded from 0x0000000076FF0000.
2020-01-14 13:46:33,941 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2228.
2020-01-14 13:46:33,941 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:46:33,957 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1916.
2020-01-14 13:46:33,957 [root] DEBUG: CreateThread: Initialising breakpoints for thread 772.
2020-01-14 13:46:33,973 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1016.
2020-01-14 13:46:33,973 [root] DEBUG: CreateThread: Initialising breakpoints for thread 864.
2020-01-14 13:46:33,989 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2340.
2020-01-14 13:46:34,052 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2532.
2020-01-14 13:46:34,052 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2648.
2020-01-14 13:46:34,052 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1672.
2020-01-14 13:46:34,207 [root] INFO: Announced 64-bit process name: WmiPrvSE.exe pid: 2684
2020-01-14 13:46:34,207 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:46:34,207 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:46:34,223 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:46:34,223 [root] DEBUG: Loader: Injecting process 2684 (thread 2556) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,223 [root] DEBUG: Process image base: 0x00000000FF2D0000
2020-01-14 13:46:34,223 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,223 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:46:34,223 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,223 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2684
2020-01-14 13:46:34,239 [root] INFO: Announced 64-bit process name: WmiPrvSE.exe pid: 2684
2020-01-14 13:46:34,239 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:46:34,239 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:46:34,239 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:46:34,239 [root] DEBUG: Loader: Injecting process 2684 (thread 2556) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,269 [root] DEBUG: Process image base: 0x00000000FF2D0000
2020-01-14 13:46:34,269 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,269 [root] DEBUG: InjectDllViaIAT: This image has already been patched.
2020-01-14 13:46:34,269 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:46:34,269 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2684
2020-01-14 13:46:34,269 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:46:34,269 [root] DEBUG: Process dumps disabled.
2020-01-14 13:46:34,286 [root] INFO: Disabling sleep skipping.
2020-01-14 13:46:34,286 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:46:34,286 [root] WARNING: Unable to hook LockResource
2020-01-14 13:46:34,286 [root] DEBUG: RestoreHeaders: Restored original import table.
2020-01-14 13:46:34,286 [root] DEBUG: Debugger initialised.
2020-01-14 13:46:34,286 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 2684 at 0x0000000070A10000, image base 0x00000000FF2D0000, stack from 0x0000000000140000-0x0000000000150000
2020-01-14 13:46:34,286 [root] DEBUG: Commandline: C:\Windows\sysnative\wbem\wmiprvse.exe -secured -Embedding.
2020-01-14 13:46:34,286 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FF2D0000) returned 0x0000000000000000.
2020-01-14 13:46:34,301 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:46:34,301 [root] DEBUG: DLL loaded at 0x000007FEFA1E0000: C:\Windows\system32\wbem\ncprov (0x16000 bytes).
2020-01-14 13:46:34,301 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FF2D0000) -> AllocationBase 0x00000000FF2D0000 RegionSize 0x4096.
2020-01-14 13:46:34,332 [root] DEBUG: AddTrackedRegion: EntryPoint 0xa9b4, Entropy 5.872387e+00
2020-01-14 13:46:34,332 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FF2D0000 size 0x1000 added to tracked regions.
2020-01-14 13:46:34,332 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:46:34,332 [root] INFO: Added new process to list with pid: 2684
2020-01-14 13:46:34,332 [root] INFO: Monitor successfully loaded in process with pid 2684.
2020-01-14 13:46:34,348 [root] DEBUG: DLL loaded at 0x000007FEFCF50000: C:\Windows\system32\CRYPTBASE (0xf000 bytes).
2020-01-14 13:46:34,348 [root] DEBUG: DLL loaded at 0x000007FEFC190000: C:\Windows\system32\ntmarta (0x2d000 bytes).
2020-01-14 13:46:34,378 [root] DEBUG: DLL loaded at 0x000007FEFE860000: C:\Windows\system32\WLDAP32 (0x52000 bytes).
2020-01-14 13:46:34,394 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2716.
2020-01-14 13:46:34,394 [root] DEBUG: CreateThread: Initialising breakpoints for thread 336.
2020-01-14 13:46:34,394 [root] DEBUG: CreateThread: Initialising breakpoints for thread 336.
2020-01-14 13:46:34,410 [root] DEBUG: DLL loaded at 0x000007FEFE400000: C:\Windows\system32\CLBCatQ (0x99000 bytes).
2020-01-14 13:46:34,410 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2348.
2020-01-14 13:46:34,410 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:46:34,426 [root] DEBUG: DLL loaded at 0x000007FEF9D50000: C:\Windows\system32\wbem\wbemprox (0xf000 bytes).
2020-01-14 13:46:34,441 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1776.
2020-01-14 13:46:34,441 [root] DEBUG: DLL loaded at 0x000007FEFC8F0000: C:\Windows\system32\CRYPTSP (0x17000 bytes).
2020-01-14 13:46:34,457 [root] DEBUG: DLL loaded at 0x000007FEFC5F0000: C:\Windows\system32\rsaenh (0x47000 bytes).
2020-01-14 13:46:34,457 [root] DEBUG: DLL loaded at 0x000007FEFD000000: C:\Windows\system32\RpcRtRemote (0x14000 bytes).
2020-01-14 13:46:34,473 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2580.
2020-01-14 13:46:34,487 [root] DEBUG: DLL loaded at 0x000007FEFA0A0000: C:\Windows\system32\wbem\wbemsvc (0x14000 bytes).
2020-01-14 13:46:34,503 [root] DEBUG: DLL loaded at 0x000007FEF97C0000: C:\Windows\system32\wbem\wmiutils (0x26000 bytes).
2020-01-14 13:46:34,551 [root] DEBUG: DLL loaded at 0x000007FEF2CD0000: C:\Windows\system32\wbem\cimwin32 (0x1fa000 bytes).
2020-01-14 13:46:34,551 [root] DEBUG: DLL loaded at 0x000007FEF4570000: C:\Windows\system32\framedynos (0x4c000 bytes).
2020-01-14 13:46:34,551 [root] DEBUG: DLL loaded at 0x000007FEFAFA0000: C:\Windows\system32\WTSAPI32 (0x11000 bytes).
2020-01-14 13:46:34,676 [root] DEBUG: DLL loaded at 0x0000000070930000: C:\Windows\system32\WMI (0x3000 bytes).
2020-01-14 13:46:34,676 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1460.
2020-01-14 13:46:34,940 [root] DEBUG: DLL unloaded from 0x000007FEFE320000.
2020-01-14 13:46:35,440 [root] DEBUG: DLL loaded at 0x000007FEFA1D0000: C:\Windows\System32\perfos (0xb000 bytes).
2020-01-14 13:46:48,762 [root] DEBUG: DLL unloaded from 0x0000000070930000.
2020-01-14 13:46:49,184 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2052.
2020-01-14 13:46:49,198 [root] DEBUG: DLL unloaded from 0x000007FEF9540000.
2020-01-14 13:46:58,996 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1552.
2020-01-14 13:46:58,996 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:46:59,619 [root] DEBUG: DLL loaded at 0x000007FEFD410000: C:\Windows\system32\DEVOBJ (0x1a000 bytes).
2020-01-14 13:46:59,619 [root] DEBUG: DLL loaded at 0x000007FEFD1B0000: C:\Windows\system32\CFGMGR32 (0x36000 bytes).
2020-01-14 13:46:59,931 [root] DEBUG: DLL loaded at 0x000007FEFE4A0000: C:\Windows\system32\SETUPAPI (0x1d7000 bytes).
2020-01-14 13:47:00,384 [root] DEBUG: DLL loaded at 0x000007FEF8D40000: C:\Windows\system32\dxgi (0xa7000 bytes).
2020-01-14 13:47:00,415 [root] DEBUG: DLL loaded at 0x000007FEFC1C0000: C:\Windows\system32\VERSION (0xc000 bytes).
2020-01-14 13:47:00,805 [root] DEBUG: DLL loaded at 0x000007FEFAF40000: C:\Windows\system32\dwmapi (0x18000 bytes).
2020-01-14 13:47:01,007 [root] DEBUG: DLL loaded at 0x000007FEFD360000: C:\Windows\system32\WINTRUST (0x3a000 bytes).
2020-01-14 13:47:01,039 [root] DEBUG: DLL loaded at 0x000007FEFD1F0000: C:\Windows\system32\CRYPT32 (0x167000 bytes).
2020-01-14 13:47:01,257 [root] DEBUG: DLL loaded at 0x000007FEFD100000: C:\Windows\system32\MSASN1 (0xf000 bytes).
2020-01-14 13:47:01,414 [root] DEBUG: DLL unloaded from 0x000007FEFEF60000.
2020-01-14 13:47:01,444 [root] DEBUG: DLL unloaded from 0x000007FEFE4A0000.
2020-01-14 13:47:01,742 [root] DEBUG: DLL unloaded from 0x000007FEF8D40000.
2020-01-14 13:47:02,459 [root] DEBUG: DLL loaded at 0x70930000: C:\Windows\system32\secur32 (0x8000 bytes).
2020-01-14 13:47:02,474 [root] DEBUG: DLL loaded at 0x75E70000: C:\Windows\syswow64\shell32 (0xc4a000 bytes).
2020-01-14 13:47:02,615 [root] DEBUG: DLL loaded at 0x70920000: C:\Windows\system32\profapi (0xb000 bytes).
2020-01-14 13:47:02,740 [root] DEBUG: DLL loaded at 0x70900000: C:\Windows\system32\bcrypt (0x17000 bytes).
2020-01-14 13:47:02,802 [root] DEBUG: Allocation: 0x03C24000 - 0x03C25000, size: 0x1000, protection: 0x40.
2020-01-14 13:47:02,865 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:47:02,895 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:47:02,911 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:47:02,943 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:47:02,957 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:47:02,990 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:47:03,005 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:47:03,036 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:47:03,036 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:47:03,068 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:47:03,098 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:47:03,114 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:47:03,145 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF30000.
2020-01-14 13:47:03,191 [root] DEBUG: AllocationHandler: New allocation already in tracked region list: 0x03C20000, size: 0x1000.
2020-01-14 13:47:03,286 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2632.
2020-01-14 13:47:03,441 [root] DEBUG: DLL unloaded from 0x000007FEF9540000.
2020-01-14 13:47:10,898 [root] DEBUG: DLL unloaded from 0x000007FEFD1B0000.
2020-01-14 13:47:15,220 [root] DEBUG: DLL loaded at 0x000007FEFC1C0000: C:\Windows\system32\VERSION (0xc000 bytes).
2020-01-14 13:47:22,099 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2036.
2020-01-14 13:47:22,099 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:47:23,721 [root] DEBUG: DLL loaded at 0x000007FEF9B90000: C:\Windows\system32\wbem\ntevt (0x44000 bytes).
2020-01-14 13:47:23,769 [root] DEBUG: DLL loaded at 0x000007FEF9850000: C:\Windows\system32\PROVTHRD (0x4e000 bytes).
2020-01-14 13:47:23,908 [root] DEBUG: DLL loaded at 0x000007FEF80D0000: C:\Windows\system32\msvcirt (0x17000 bytes).
2020-01-14 13:47:23,908 [root] DEBUG: DLL loaded at 0x000007FEFA1C0000: C:\Windows\system32\WSOCK32 (0x9000 bytes).
2020-01-14 13:47:23,924 [root] DEBUG: DLL loaded at 0x000007FEFCB00000: C:\Windows\system32\wevtapi (0x6d000 bytes).
2020-01-14 13:47:24,470 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2576.
2020-01-14 13:47:24,641 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1436.
2020-01-14 13:47:24,970 [root] DEBUG: DLL loaded at 0x749D0000: C:\Windows\system32\ntmarta (0x21000 bytes).
2020-01-14 13:47:24,986 [root] DEBUG: DLL loaded at 0x76EA0000: C:\Windows\syswow64\WLDAP32 (0x45000 bytes).
2020-01-14 13:47:25,016 [root] DEBUG: DLL loaded at 0x708F0000: C:\Windows\system32\feclient (0xc000 bytes).
2020-01-14 13:47:25,032 [root] DEBUG: DLL unloaded from 0x75C10000.
2020-01-14 13:47:25,063 [root] INFO: Announced starting service "EFS"
2020-01-14 13:47:25,063 [root] INFO: Attaching to Service Control Manager (services.exe - pid 460)
2020-01-14 13:47:25,063 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:47:25,063 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:47:25,078 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:47:25,078 [root] DEBUG: Loader: Injecting process 460 (thread 0) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:25,078 [root] DEBUG: InjectDll: No thread ID supplied, GetProcessInitialThreadId failed, falling back to thread injection.
2020-01-14 13:47:25,078 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:47:25,078 [root] DEBUG: Process dumps disabled.
2020-01-14 13:47:25,078 [root] INFO: Disabling sleep skipping.
2020-01-14 13:47:25,109 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:47:25,109 [root] WARNING: Unable to hook LockResource
2020-01-14 13:47:25,125 [root] DEBUG: Debugger initialised.
2020-01-14 13:47:25,125 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 460 at 0x0000000070A10000, image base 0x00000000FFA10000, stack from 0x0000000002B06000-0x0000000002B10000
2020-01-14 13:47:25,125 [root] DEBUG: Commandline: C:\Windows\sysnative\services.exe.
2020-01-14 13:47:25,125 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FFA10000) returned 0x0000000000000000.
2020-01-14 13:47:25,141 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:47:25,141 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FFA10000) -> AllocationBase 0x00000000FFA10000 RegionSize 0x4096.
2020-01-14 13:47:25,203 [root] DEBUG: AddTrackedRegion: EntryPoint 0x13310, Entropy 6.073543e+00
2020-01-14 13:47:25,203 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FFA10000 size 0x1000 added to tracked regions.
2020-01-14 13:47:25,220 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:47:25,220 [root] INFO: Added new process to list with pid: 460
2020-01-14 13:47:25,220 [root] INFO: Monitor successfully loaded in process with pid 460.
2020-01-14 13:47:25,220 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2020-01-14 13:47:25,220 [root] DEBUG: InjectDll: Successfully injected DLL via thread.
2020-01-14 13:47:25,220 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,249 [root] INFO: Announced 64-bit process name: lsass.exe pid: 2596
2020-01-14 13:47:26,249 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:47:26,249 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:47:26,249 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:47:26,249 [root] DEBUG: Loader: Injecting process 2596 (thread 2392) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,249 [root] DEBUG: Process image base: 0x00000000FF1A0000
2020-01-14 13:47:26,249 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,249 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:47:26,249 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,265 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2596
2020-01-14 13:47:26,265 [root] INFO: Announced 64-bit process name: lsass.exe pid: 2596
2020-01-14 13:47:26,265 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:47:26,265 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:47:26,279 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:47:26,279 [root] DEBUG: Loader: Injecting process 2596 (thread 2392) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,279 [root] DEBUG: Process image base: 0x00000000FF1A0000
2020-01-14 13:47:26,279 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,279 [root] DEBUG: InjectDllViaIAT: This image has already been patched.
2020-01-14 13:47:26,279 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:47:26,279 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2596
2020-01-14 13:47:26,296 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:47:26,296 [root] DEBUG: Process dumps disabled.
2020-01-14 13:47:26,296 [root] INFO: Disabling sleep skipping.
2020-01-14 13:47:26,296 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:47:26,296 [root] WARNING: Unable to hook LockResource
2020-01-14 13:47:26,312 [root] DEBUG: RestoreHeaders: Restored original import table.
2020-01-14 13:47:26,312 [root] DEBUG: Debugger initialised.
2020-01-14 13:47:26,312 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 2596 at 0x0000000070A10000, image base 0x00000000FF1A0000, stack from 0x00000000001D4000-0x00000000001E0000
2020-01-14 13:47:26,312 [root] DEBUG: Commandline: C:\Windows\sysnative\lsass.exe.
2020-01-14 13:47:26,312 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FF1A0000) returned 0x0000000000000000.
2020-01-14 13:47:26,312 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:47:26,312 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FF1A0000) -> AllocationBase 0x00000000FF1A0000 RegionSize 0x4096.
2020-01-14 13:47:26,326 [root] DEBUG: AddTrackedRegion: EntryPoint 0x1850, Entropy 3.682657e+00
2020-01-14 13:47:26,326 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FF1A0000 size 0x1000 added to tracked regions.
2020-01-14 13:47:26,326 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:47:26,326 [root] INFO: Added new process to list with pid: 2596
2020-01-14 13:47:26,326 [root] INFO: Monitor successfully loaded in process with pid 2596.
2020-01-14 13:47:33,596 [root] DEBUG: DLL unloaded from 0x751B0000.
2020-01-14 13:48:19,444 [root] DEBUG: DLL unloaded from 0x000007FEF9540000.
2020-01-14 13:48:19,444 [root] DEBUG: DLL unloaded from 0x000007FEFE8C0000.
2020-01-14 13:48:19,444 [root] DEBUG: NtTerminateProcess hook: Processing tracked regions before shutdown (process 460).
2020-01-14 13:48:19,444 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x0000000000000000.
2020-01-14 13:48:19,460 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000FFA10000.
2020-01-14 13:48:19,476 [root] DEBUG: ProcessImageBase: EP 0x0000000000013310 image base 0x00000000FFA10000 size 0x0 entropy 6.073823e+00.
2020-01-14 13:48:19,492 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 1992.
2020-01-14 13:48:19,507 [root] INFO: Notified of termination of process with pid 2596.
2020-01-14 13:48:19,601 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1516.
2020-01-14 13:48:19,632 [root] DEBUG: DLL unloaded from 0x772F0000.
2020-01-14 13:48:20,413 [root] INFO: Announced 64-bit process name: taskhost.exe pid: 2852
2020-01-14 13:48:20,522 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:48:20,522 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:48:20,631 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:48:20,709 [root] DEBUG: Loader: Injecting process 2852 (thread 2832) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:20,865 [root] DEBUG: Process image base: 0x00000000FFC30000
2020-01-14 13:48:20,927 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:20,990 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:48:26,637 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:26,730 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2852
2020-01-14 13:48:26,855 [root] INFO: Announced 64-bit process name: taskhost.exe pid: 2852
2020-01-14 13:48:26,964 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:48:26,996 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:48:27,213 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:48:27,385 [root] DEBUG: Loader: Injecting process 2852 (thread 2832) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:27,417 [root] DEBUG: Process image base: 0x00000000FFC30000
2020-01-14 13:48:27,604 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:27,697 [root] DEBUG: InjectDllViaIAT: This image has already been patched.
2020-01-14 13:48:29,523 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:48:29,601 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2852
2020-01-14 13:48:29,756 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:48:29,803 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2864.
2020-01-14 13:48:30,147 [root] DEBUG: Process dumps disabled.
2020-01-14 13:48:30,302 [root] INFO: Disabling sleep skipping.
2020-01-14 13:48:30,381 [root] WARNING: Unable to place hook on LockResource
2020-01-14 13:48:30,427 [root] WARNING: Unable to hook LockResource
2020-01-14 13:48:30,427 [root] DEBUG: RestoreHeaders: Restored original import table.
2020-01-14 13:48:30,427 [root] DEBUG: Debugger initialised.
2020-01-14 13:48:30,474 [root] DEBUG: CAPE initialised: 64-bit Extraction package loaded in process 2852 at 0x0000000070A10000, image base 0x00000000FFC30000, stack from 0x0000000000215000-0x0000000000220000
2020-01-14 13:48:30,474 [root] DEBUG: Commandline: C:\Windows\sysnative\"taskhost.exe".
2020-01-14 13:48:30,520 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00000000FFC30000) returned 0x0000000000000000.
2020-01-14 13:48:30,520 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x0000000000000000.
2020-01-14 13:48:30,552 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00000000FFC30000) -> AllocationBase 0x00000000FFC30000 RegionSize 0x4096.
2020-01-14 13:48:30,568 [root] DEBUG: DLL loaded at 0x707F0000: C:\Windows\system32\PROPSYS (0xf5000 bytes).
2020-01-14 13:48:30,568 [root] DEBUG: AddTrackedRegion: EntryPoint 0x2ce0, Entropy 5.003625e+00
2020-01-14 13:48:30,598 [root] DEBUG: AddTrackedRegion: New region at 0x00000000FFC30000 size 0x1000 added to tracked regions.
2020-01-14 13:48:30,598 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:48:30,598 [root] INFO: Added new process to list with pid: 2852
2020-01-14 13:48:30,598 [root] INFO: Monitor successfully loaded in process with pid 2852.
2020-01-14 13:48:30,598 [root] DEBUG: DLL loaded at 0x000007FEFCF50000: C:\Windows\system32\CRYPTBASE (0xf000 bytes).
2020-01-14 13:48:30,661 [root] DEBUG: DLL loaded at 0x70650000: C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32 (0x19e000 bytes).
2020-01-14 13:48:30,865 [root] DEBUG: DLL loaded at 0x74AF0000: C:\Windows\system32\apphelp (0x4c000 bytes).
2020-01-14 13:48:30,865 [root] DEBUG: CreateThread: Initialising breakpoints for thread 924.
2020-01-14 13:48:30,865 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:48:30,911 [root] DEBUG: DLL unloaded from 0x75E70000.
2020-01-14 13:48:30,911 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1512.
2020-01-14 13:48:31,005 [root] DEBUG: DLL loaded at 0x74A40000: C:\Windows\System32\shdocvw (0x2e000 bytes).
2020-01-14 13:48:31,223 [root] DEBUG: DLL loaded at 0x000007FEFE400000: C:\Windows\system32\CLBCatQ (0x99000 bytes).
2020-01-14 13:48:31,223 [root] DEBUG: DLL loaded at 0x000007FEFA040000: C:\Windows\System32\wdi (0x19000 bytes).
2020-01-14 13:48:31,239 [root] DEBUG: DLL loaded at 0x74F40000: C:\Windows\SysWOW64\urlmon (0x136000 bytes).
2020-01-14 13:48:31,269 [root] DEBUG: DLL loaded at 0x75600000: C:\Windows\syswow64\WININET (0xf5000 bytes).
2020-01-14 13:48:31,286 [root] DEBUG: DLL loaded at 0x76CA0000: C:\Windows\syswow64\iertutil (0x1fb000 bytes).
2020-01-14 13:48:31,286 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1788.
2020-01-14 13:48:31,316 [root] DEBUG: DLL loaded at 0x75790000: C:\Windows\syswow64\CRYPT32 (0x11d000 bytes).
2020-01-14 13:48:31,316 [root] DEBUG: DLL loaded at 0x755F0000: C:\Windows\syswow64\MSASN1 (0xc000 bytes).
2020-01-14 13:48:31,348 [root] DEBUG: DLL loaded at 0x000007FEF9C40000: C:\Windows\system32\radarrs (0x18000 bytes).
2020-01-14 13:48:31,411 [root] DEBUG: DLL loaded at 0x000007FEFBB00000: C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\COMCTL32 (0x1f4000 bytes).
2020-01-14 13:48:31,426 [root] DEBUG: DLL loaded at 0x000007FEFD560000: C:\Windows\system32\SHELL32 (0xd88000 bytes).
2020-01-14 13:48:31,426 [root] INFO: Announced 32-bit process name: wfpcl.exe pid: 2616
2020-01-14 13:48:31,441 [root] DEBUG: DLL loaded at 0x000007FEF9910000: C:\Windows\system32\RstrtMgr (0x33000 bytes).
2020-01-14 13:48:31,441 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:48:31,441 [lib.api.process] INFO: 32-bit DLL to inject is C:\ulhndfvwoh\dll\tCxLWOhn.dll, loader C:\ulhndfvwoh\bin\IKATNAL.exe
2020-01-14 13:48:31,473 [root] DEBUG: DLL loaded at 0x000007FEFCA70000: C:\Windows\system32\ncrypt (0x4e000 bytes).
2020-01-14 13:48:31,473 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:48:31,473 [root] DEBUG: DLL loaded at 0x000007FEFCA40000: C:\Windows\system32\bcrypt (0x22000 bytes).
2020-01-14 13:48:31,473 [root] DEBUG: Loader: Injecting process 2616 (thread 2688) with C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:31,473 [root] DEBUG: DLL loaded at 0x000007FEFD100000: C:\Windows\system32\MSASN1 (0xf000 bytes).
2020-01-14 13:48:31,473 [root] DEBUG: Process image base: 0x00400000
2020-01-14 13:48:31,473 [root] DEBUG: DLL loaded at 0x000007FEF8CA0000: C:\Windows\system32\wer (0x7c000 bytes).
2020-01-14 13:48:31,473 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:31,473 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:48:31,473 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:31,519 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 2616
2020-01-14 13:48:31,535 [root] DEBUG: DLL loaded at 0x000007FEFC1C0000: C:\Windows\system32\VERSION (0xc000 bytes).
2020-01-14 13:48:31,535 [root] INFO: Announced 32-bit process name: wfpcl.exe pid: 2616
2020-01-14 13:48:31,535 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:48:31,535 [lib.api.process] INFO: 32-bit DLL to inject is C:\ulhndfvwoh\dll\tCxLWOhn.dll, loader C:\ulhndfvwoh\bin\IKATNAL.exe
2020-01-14 13:48:32,815 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:48:32,815 [root] DEBUG: Loader: Injecting process 2616 (thread 2688) with C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:35,684 [root] DEBUG: Process image base: 0x00400000
2020-01-14 13:48:35,684 [root] DEBUG: DLL unloaded from 0x00000000FFC30000.
2020-01-14 13:48:35,700 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:38,618 [root] DEBUG: InjectDllViaIAT: This image has already been patched.
2020-01-14 13:48:40,052 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\tCxLWOhn.dll.
2020-01-14 13:48:40,052 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1236.
2020-01-14 13:48:40,052 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 2616
2020-01-14 13:48:40,052 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:48:40,069 [root] DEBUG: Terminate processes on terminate_event enabled.
2020-01-14 13:48:40,069 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2728.
2020-01-14 13:48:40,069 [root] DEBUG: DLL unloaded from 0x000007FEF9D50000.
2020-01-14 13:48:40,084 [root] DEBUG: Process dumps disabled.
2020-01-14 13:48:40,099 [root] DEBUG: DLL unloaded from 0x772F0000.
2020-01-14 13:48:40,256 [root] INFO: Disabling sleep skipping.
2020-01-14 13:48:40,286 [root] DEBUG: RestoreHeaders: Restored original import table.
2020-01-14 13:48:41,082 [root] DEBUG: DLL unloaded from 0x000007FEFB0D0000.
2020-01-14 13:48:47,947 [root] DEBUG: CreateThread: Initialising breakpoints for thread 3016.
2020-01-14 13:48:47,947 [root] DEBUG: WoW64 detected: 64-bit ntdll base: 0x77110000, KiUserExceptionDispatcher: 0x0, NtSetContextThread: 0x7716124a, Wow64PrepareForException: 0x0
2020-01-14 13:48:47,947 [root] DEBUG: NtTerminateProcess hook: Processing tracked regions before shutdown (process 884).
2020-01-14 13:48:48,102 [root] DEBUG: WoW64 workaround: KiUserExceptionDispatcher hook installed at: 0x270000
2020-01-14 13:48:48,102 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:48:48,102 [root] DEBUG: Debugger initialised.
2020-01-14 13:48:48,102 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:48:48,118 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:48:48,118 [root] DEBUG: CAPE initialised: 32-bit Extraction package loaded in process 2616 at 0x747d0000, image base 0x400000, stack from 0x186000-0x190000
2020-01-14 13:48:48,134 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x003F0000.
2020-01-14 13:48:48,148 [root] DEBUG: Commandline: C:\Users\user\AppData\Local\Temp\"C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe".
2020-01-14 13:48:48,164 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00420000.
2020-01-14 13:48:48,164 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00400000) returned 0x00000000.
2020-01-14 13:48:48,180 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01ED0000.
2020-01-14 13:48:48,180 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:48:48,196 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00400000) -> AllocationBase 0x00400000 RegionSize 0x4096.
2020-01-14 13:48:48,211 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C30000.
2020-01-14 13:48:48,226 [root] DEBUG: AddTrackedRegion: EntryPoint 0x100c, Entropy 6.137306e+00
2020-01-14 13:48:48,243 [root] DEBUG: DumpPEsInRange: Scanning range 0x3c30000 - 0x3c31000.
2020-01-14 13:48:48,273 [root] DEBUG: AddTrackedRegion: New region at 0x00400000 size 0x1000 added to tracked regions.
2020-01-14 13:48:48,289 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x3c30000-0x3c31000.
2020-01-14 13:48:48,336 [root] DEBUG: ExtractionInit: Adding main image base to tracked regions.
2020-01-14 13:48:48,336 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x03C30000 - 0x03C31000.
2020-01-14 13:48:48,368 [root] INFO: Added new process to list with pid: 2616
2020-01-14 13:48:48,382 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_29658209648381814212020 successfully created, size 0x40000
2020-01-14 13:48:48,382 [root] INFO: Monitor successfully loaded in process with pid 2616.
2020-01-14 13:48:48,414 [root] DEBUG: DLL unloaded from 0x74950000.
2020-01-14 13:48:48,430 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x3c35000 (expected in memory scans), passing to next handler.
2020-01-14 13:48:48,460 [root] DEBUG: DLL loaded at 0x74940000: C:\Windows\system32\ncobjapi (0xf000 bytes).
2020-01-14 13:48:48,476 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x3c30000
2020-01-14 13:48:48,539 [root] DEBUG: Allocation: 0x00740000 - 0x00741000, size: 0x1000, protection: 0x40.
2020-01-14 13:48:48,617 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x03C30000 size 0x40000.
2020-01-14 13:48:48,648 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:48:48,664 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_60646130348381814212020 successfully created, size 0x5000
2020-01-14 13:48:48,742 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:48:48,742 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:48:48,757 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:48:48,882 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_60646130348381814212020
2020-01-14 13:48:48,882 [root] DEBUG: DumpRegion: Dumped stack region from 0x03C30000, size 0x5000.
2020-01-14 13:48:48,914 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x00740000, size: 0x1000.
2020-01-14 13:48:48,914 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x03C30000.
2020-01-14 13:48:48,914 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00740000) returned 0x00000000.
2020-01-14 13:48:48,928 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:48:48,928 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x3c30000 - 0x3c31000.
2020-01-14 13:48:48,928 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00740000) -> AllocationBase 0x00740000 RegionSize 0x4096.
2020-01-14 13:48:48,928 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EE0000.
2020-01-14 13:48:48,928 [root] DEBUG: CreateThread: Initialising breakpoints for thread 2960.
2020-01-14 13:48:48,928 [root] DEBUG: AddTrackedRegion: New region at 0x00740000 size 0x1000 added to tracked regions.
2020-01-14 13:48:48,928 [root] DEBUG: DumpPEsInRange: Scanning range 0x1ee0000 - 0x1ee1000.
2020-01-14 13:48:48,944 [root] DEBUG: set_caller_info: Adding region at 0x00740000 to caller regions list (ntdll::LdrLoadDll).
2020-01-14 13:48:48,944 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x1ee0000-0x1ee1000.
2020-01-14 13:48:48,944 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x01EE0000 - 0x01EE1000.
2020-01-14 13:48:48,944 [root] DEBUG: set_caller_info: Caller at 0x0074000E in tracked regions.
2020-01-14 13:48:48,944 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:48:48,960 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_49265026148381814212020 successfully created, size 0x10000
2020-01-14 13:48:48,960 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x1ee9000 (expected in memory scans), passing to next handler.
2020-01-14 13:48:48,960 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:48:48,960 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:48:48,960 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x1ee0000
2020-01-14 13:48:48,960 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00740000.
2020-01-14 13:48:48,960 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x01EE0000 size 0x10000.
2020-01-14 13:48:48,960 [root] DEBUG: DumpPEsInRange: Scanning range 0x740000 - 0x741000.
2020-01-14 13:48:48,960 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_173162296548381814212020 successfully created, size 0x9000
2020-01-14 13:48:48,960 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x740000-0x741000.
2020-01-14 13:48:48,960 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00740000 - 0x00741000.
2020-01-14 13:48:48,976 [root] DEBUG: set_caller_info: Adding region at 0x01FC0000 to caller regions list (kernel32::GetSystemTime).
2020-01-14 13:48:48,976 [root] DEBUG: DumpPEsInRange: Scanning range 0x740000 - 0x741000.
2020-01-14 13:48:49,069 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x740000-0x741000.
2020-01-14 13:48:49,069 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_173162296548381814212020
2020-01-14 13:48:49,256 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00740000 - 0x00741000.
2020-01-14 13:48:49,319 [root] DEBUG: DumpRegion: Dumped stack region from 0x01EE0000, size 0x9000.
2020-01-14 13:48:49,365 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\2616_201443123049281814212020 successfully created, size 0x1000
2020-01-14 13:48:49,413 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\2616_201443123049281814212020
2020-01-14 13:48:49,756 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x01EE0000.
2020-01-14 13:48:50,209 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x1ee0000 - 0x1ee1000.
2020-01-14 13:48:50,302 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01F10000.
2020-01-14 13:48:52,267 [root] DEBUG: DumpRegion: Dumped stack region from 0x00740000, size 0x1000.
2020-01-14 13:48:52,282 [root] DEBUG: DumpPEsInRange: Scanning range 0x1f10000 - 0x1f11000.
2020-01-14 13:48:52,299 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00740000.
2020-01-14 13:48:52,299 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x1f10000-0x1f11000.
2020-01-14 13:48:52,299 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x01F10000 - 0x01F11000.
2020-01-14 13:48:52,315 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x740000 - 0x741000.
2020-01-14 13:48:52,315 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_58144642752381814212020 successfully created, size 0x10000
2020-01-14 13:48:52,315 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\2616_191903646552281814212020 successfully created, size 0x1000
2020-01-14 13:48:52,315 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x1f11000 (expected in memory scans), passing to next handler.
2020-01-14 13:48:52,315 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x1f10000
2020-01-14 13:48:52,315 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x01F10000 size 0x10000.
2020-01-14 13:48:52,329 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\2616_191903646552281814212020
2020-01-14 13:48:52,345 [root] DEBUG: DumpRegion: Dumped stack region from 0x00740000, size 0x1000.
2020-01-14 13:48:52,345 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_70465347052381814212020 successfully created, size 0x1000
2020-01-14 13:48:52,345 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00740000.
2020-01-14 13:48:52,361 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x740000 - 0x741000.
2020-01-14 13:48:52,377 [root] DEBUG: Allocation: 0x00750000 - 0x00751000, size: 0x1000, protection: 0x40.
2020-01-14 13:48:52,377 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_70465347052381814212020
2020-01-14 13:48:52,454 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:48:52,549 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:48:53,953 [root] DEBUG: DumpRegion: Dumped stack region from 0x01F10000, size 0x1000.
2020-01-14 13:48:53,999 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:48:53,999 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x01F10000.
2020-01-14 13:48:53,999 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00740000.
2020-01-14 13:48:53,999 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x1f10000 - 0x1f11000.
2020-01-14 13:48:53,999 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x00750000, size: 0x1000.
2020-01-14 13:48:54,015 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x00750000) returned 0x00000000.
2020-01-14 13:48:54,015 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x03C20000.
2020-01-14 13:48:54,092 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:48:54,201 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x00750000) -> AllocationBase 0x00750000 RegionSize 0x4096.
2020-01-14 13:48:54,217 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x01EF0000.
2020-01-14 13:48:54,326 [root] DEBUG: AddTrackedRegion: New region at 0x00750000 size 0x1000 added to tracked regions.
2020-01-14 13:48:54,326 [root] DEBUG: DumpPEsInRange: Scanning range 0x1ef0000 - 0x1ef1000.
2020-01-14 13:48:54,326 [root] DEBUG: set_caller_info: Adding region at 0x00750000 to caller regions list (ntdll::NtAllocateVirtualMemory).
2020-01-14 13:48:54,326 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x1ef0000-0x1ef1000.
2020-01-14 13:48:54,326 [root] DEBUG: set_caller_info: Caller at 0x007505E0 in tracked regions.
2020-01-14 13:48:54,342 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x01EF0000 - 0x01EF1000.
2020-01-14 13:48:54,404 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_59215690054381814212020 successfully created, size 0x10000
2020-01-14 13:48:54,545 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x1ef1000 (expected in memory scans), passing to next handler.
2020-01-14 13:48:59,413 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:48:59,413 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x1ef0000
2020-01-14 13:48:59,444 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:48:59,490 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:49:00,036 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x01EF0000 size 0x10000.
2020-01-14 13:49:00,036 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00740000.
2020-01-14 13:49:00,082 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_18816852160391814212020 successfully created, size 0x1000
2020-01-14 13:49:00,098 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00750000.
2020-01-14 13:49:00,115 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_18816852160391814212020
2020-01-14 13:49:00,223 [root] DEBUG: DumpPEsInRange: Scanning range 0x750000 - 0x751000.
2020-01-14 13:49:00,223 [root] DEBUG: DumpRegion: Dumped stack region from 0x01EF0000, size 0x1000.
2020-01-14 13:49:00,255 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x750000-0x751000.
2020-01-14 13:49:00,316 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00750000 - 0x00751000.
2020-01-14 13:49:00,316 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x01EF0000.
2020-01-14 13:49:00,394 [root] DEBUG: DumpPEsInRange: Scanning range 0x750000 - 0x751000.
2020-01-14 13:49:05,418 [root] DEBUG: ScanForDisguisedPE: No PE image located in range 0x750000-0x751000.
2020-01-14 13:49:05,418 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x1ef0000 - 0x1ef1000.
2020-01-14 13:49:05,418 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x00750000 - 0x00751000.
2020-01-14 13:49:06,230 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF40000.
2020-01-14 13:49:19,630 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\2616_12262817765291814212020 successfully created, size 0x1000
2020-01-14 13:49:19,630 [root] DEBUG: DumpPEsInRange: Scanning range 0x7ef40000 - 0x7ef90000.
2020-01-14 13:49:19,693 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\2616_12262817765291814212020
2020-01-14 13:49:19,707 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x1d9a in capemon caught accessing 0x7ef41000 (expected in memory scans), passing to next handler.
2020-01-14 13:49:19,707 [root] DEBUG: DumpRegion: Dumped stack region from 0x00750000, size 0x1000.
2020-01-14 13:49:19,707 [root] DEBUG: ScanForDisguisedPE: Exception occured scanning buffer at 0x7ef40fc1
2020-01-14 13:49:19,707 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00750000.
2020-01-14 13:49:19,707 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x7EF40000 - 0x7EF90000.
2020-01-14 13:49:19,707 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x750000 - 0x751000.
2020-01-14 13:49:19,707 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_107507756419391814212020 successfully created, size 0x50000
2020-01-14 13:49:19,723 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\2616_173339138419291814212020 successfully created, size 0x1000
2020-01-14 13:49:19,723 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x7ef41000 (expected in memory scans), passing to next handler.
2020-01-14 13:49:19,848 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x7ef40000
2020-01-14 13:49:19,864 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\2616_173339138419291814212020
2020-01-14 13:49:19,864 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x7EF40000 size 0x50000.
2020-01-14 13:49:19,864 [root] DEBUG: DumpRegion: Dumped stack region from 0x00750000, size 0x1000.
2020-01-14 13:49:19,864 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_213802892819391814212020 successfully created, size 0x1000
2020-01-14 13:49:19,864 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x00750000.
2020-01-14 13:49:19,880 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_213802892819391814212020
2020-01-14 13:49:19,911 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x750000 - 0x751000.
2020-01-14 13:49:19,911 [root] DEBUG: DumpRegion: Dumped stack region from 0x7EF40000, size 0x1000.
2020-01-14 13:49:19,927 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x7EF40000.
2020-01-14 13:49:19,927 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x7ef40000 - 0x7ef90000.
2020-01-14 13:49:19,927 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x7EF30000.
2020-01-14 13:49:19,927 [root] DEBUG: DLL unloaded from 0x000007FEF9B90000.
2020-01-14 13:49:19,927 [root] DEBUG: DLL loaded at 0x744C0000: C:\Windows\system32\mscoree (0x4a000 bytes).
2020-01-14 13:49:19,973 [root] DEBUG: DumpPEsInRange: Scanning range 0x7ef30000 - 0x7ef40000.
2020-01-14 13:49:20,019 [root] DEBUG: set_caller_info: Adding region at 0x00090000 to caller regions list (advapi32::RegQueryInfoKeyW).
2020-01-14 13:49:20,019 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x1d9a in capemon caught accessing 0x7ef31000 (expected in memory scans), passing to next handler.
2020-01-14 13:49:20,036 [root] DEBUG: DLL unloaded from 0x000007FEF2CD0000.
2020-01-14 13:49:20,036 [root] DEBUG: set_caller_info: Adding region at 0x00500000 to caller regions list (kernel32::FindFirstFileExW).
2020-01-14 13:49:20,036 [root] DEBUG: ScanForDisguisedPE: Exception occured scanning buffer at 0x7ef30fc1
2020-01-14 13:49:20,036 [root] DEBUG: DumpPEsInTrackedRegion: No PE images found in range range 0x7EF30000 - 0x7EF40000.
2020-01-14 13:49:20,036 [root] DEBUG: DLL loaded at 0x74440000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei (0x7b000 bytes).
2020-01-14 13:49:20,144 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_95385951220391814212020 successfully created, size 0x10000
2020-01-14 13:49:20,239 [root] DEBUG: CAPEExceptionFilter: Exception 0xc0000005 caught at RVA 0x3ff2e in capemon caught accessing 0x7ef31000 (expected in memory scans), passing to next handler.
2020-01-14 13:49:20,410 [root] DEBUG: DumpMemory: Exception occured reading memory address 0x7ef30000
2020-01-14 13:49:20,410 [root] DEBUG: DumpRegion: Failed to dump entire allocation from 0x7EF30000 size 0x10000.
2020-01-14 13:49:20,565 [root] DEBUG: DumpMemory: CAPE output file C:\TclfSyn\CAPE\884_28835556020391814212020 successfully created, size 0x1000
2020-01-14 13:49:20,582 [root] DEBUG: DLL loaded at 0x73DA0000: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr (0x69b000 bytes).
2020-01-14 13:49:20,644 [root] DEBUG: DLL loaded at 0x73CC0000: C:\Windows\system32\MSVCR110_CLR0400 (0xd3000 bytes).
2020-01-14 13:49:20,660 [root] INFO: Added new CAPE file to list with path: C:\TclfSyn\CAPE\884_28835556020391814212020
2020-01-14 13:49:22,203 [root] DEBUG: DLL unloaded from 0x000007FEF97C0000.
2020-01-14 13:49:29,691 [root] DEBUG: DumpRegion: Dumped stack region from 0x7EF30000, size 0x1000.
2020-01-14 13:49:29,691 [root] DEBUG: DLL unloaded from 0x000007FEF9A00000.
2020-01-14 13:49:29,801 [root] DEBUG: ProcessTrackedRegion: dumped executable memory range at 0x7EF30000.
2020-01-14 13:49:29,816 [root] INFO: Announced 64-bit process name: WmiPrvSE.exe pid: 2456
2020-01-14 13:49:30,003 [root] DEBUG: ClearBreakpointsInRange: Clearing breakpoints in range 0x7ef30000 - 0x7ef40000.
2020-01-14 13:49:30,253 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2668.
2020-01-14 13:49:35,605 [root] DEBUG: DLL unloaded from 0x000007FEFA0A0000.
2020-01-14 13:49:35,605 [root] DEBUG: CreateThread: Initialising breakpoints for thread 1468.
2020-01-14 13:49:35,605 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 576.
2020-01-14 13:49:35,605 [lib.api.process] INFO: Option 'procdump' with value '0' sent to monitor
2020-01-14 13:49:35,619 [lib.api.process] INFO: 64-bit DLL to inject is C:\ulhndfvwoh\dll\ybahRSwn.dll, loader C:\ulhndfvwoh\bin\HgbkFKUT.exe
2020-01-14 13:49:35,713 [root] DEBUG: CreateThread: Initialising breakpoints for thread 3064.
2020-01-14 13:49:35,713 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2052.
2020-01-14 13:49:35,869 [root] DEBUG: DLL unloaded from 0x772F0000.
2020-01-14 13:49:35,947 [root] DEBUG: Allocation: 0x039E2000 - 0x039E3000, size: 0x1000, protection: 0x40.
2020-01-14 13:49:36,618 [root] INFO: Analysis timeout hit (200 seconds), terminating analysis.
2020-01-14 13:49:36,618 [root] INFO: Created shutdown mutex.
2020-01-14 13:49:37,664 [lib.api.process] INFO: Terminate event set for process 884
2020-01-14 13:49:41,703 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000.
2020-01-14 13:49:41,703 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2632.
2020-01-14 13:49:41,703 [root] DEBUG: DLL unloaded from 0x000007FEFE8C0000.
2020-01-14 13:49:41,703 [root] DEBUG: DLL unloaded from 0x0000000077110000.
2020-01-14 13:49:41,798 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00400000.
2020-01-14 13:49:41,798 [root] DEBUG: NtTerminateProcess hook: Processing tracked regions before shutdown (process 2684).
2020-01-14 13:49:41,953 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x0000000000000000.
2020-01-14 13:49:47,382 [root] ERROR: Traceback (most recent call last):
  File "C:\ulhndfvwoh\lib\core\log.py", line 79, in run
    self.handle_logs()
  File "C:\ulhndfvwoh\lib\core\log.py", line 61, in handle_logs
    data += buf.raw[:bytes_read.value]
MemoryError
Traceback (most recent call last):
  File "C:\ulhndfvwoh\lib\core\log.py", line 79, in run
    self.handle_logs()
  File "C:\ulhndfvwoh\lib\core\log.py", line 61, in handle_logs
    data += buf.raw[:bytes_read.value]
MemoryError
2020-01-14 13:49:47,617 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 1516.
2020-01-14 13:49:47,617 [root] DEBUG: ProcessImageBase: EP 0x0000100C image base 0x00400000 size 0x0 entropy 6.137894e+00.
2020-01-14 13:49:47,617 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000FF2D0000.
2020-01-14 13:49:47,648 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00740000.
2020-01-14 13:49:47,678 [root] DEBUG: ProcessImageBase: EP 0x000000000000A9B4 image base 0x00000000FF2D0000 size 0x0 entropy 5.873235e+00.
2020-01-14 13:49:47,726 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2348.
2020-01-14 13:49:49,052 [root] DEBUG: DLL unloaded from 0x000007FEFD430000.
2020-01-14 13:49:53,607 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 1776.
2020-01-14 13:49:53,607 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2864.
2020-01-14 13:49:53,607 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00750000.
2020-01-14 13:49:53,607 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2580.
2020-01-14 13:49:53,668 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 1460.
2020-01-14 13:49:53,716 [root] DEBUG: ReadConfig: Successfully loaded pipe name \\.\PIPE\BNaKFBDe.
2020-01-14 13:49:55,354 [root] DEBUG: DLL unloaded from 0x000007FEFF190000.
2020-01-14 13:49:59,612 [root] DEBUG: Loader: Injecting process 2456 (thread 2448) with C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:49:59,612 [root] DEBUG: DLL unloaded from 0x707F0000.
2020-01-14 13:49:59,660 [root] DEBUG: Process image base: 0x00000000FF2D0000
2020-01-14 13:49:59,799 [root] DEBUG: DLL unloaded from 0x75D60000.
2020-01-14 13:50:09,815 [root] DEBUG: NtTerminateProcess hook: Processing tracked regions before shutdown (process 2684).
2020-01-14 13:50:09,815 [root] DEBUG: DLL unloaded from 0x73DA0000.
2020-01-14 13:50:09,846 [root] DEBUG: InjectDllViaIAT: IAT patching with dll name C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:50:09,908 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2020-01-14 13:50:09,908 [root] DEBUG: DLL loaded at 0x000007FEFCEF0000: C:\Windows\system32\apphelp (0x57000 bytes).
2020-01-14 13:50:09,956 [root] DEBUG: Successfully injected DLL C:\ulhndfvwoh\dll\ybahRSwn.dll.
2020-01-14 13:50:10,003 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2456
2020-01-14 13:50:13,809 [root] DEBUG: AllocationHandler: Adding allocation to tracked region list: 0x039E2000, size: 0x1000.
2020-01-14 13:50:13,855 [root] DEBUG: AddTrackedRegion: GetTrackedRegion(0x039E2000) returned 0x00000000.
2020-01-14 13:50:15,805 [root] DEBUG: DLL unloaded from 0x74440000.
2020-01-14 13:50:15,868 [root] DEBUG: DLL unloaded from 0x75140000.
2020-01-14 13:50:19,611 [root] DEBUG: AddTrackedRegion: Created new tracked region: TrackedRegion->AllocationBase 0x00000000.
2020-01-14 13:50:19,644 [root] DEBUG: AddTrackedRegion: VirtualQuery(0x039E2000) -> AllocationBase 0x039E0000 RegionSize 0x4096.
2020-01-14 13:50:21,608 [root] DEBUG: DLL unloaded from 0x749D0000.
2020-01-14 13:50:21,608 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x0000000000000000.
2020-01-14 13:50:21,625 [root] DEBUG: ProcessTrackedRegions: Processing region at 0x00000000FF2D0000.
2020-01-14 13:50:21,703 [root] DEBUG: ProcessImageBase: EP 0x000000000000A9B4 image base 0x00000000FF2D0000 size 0x0 entropy 5.873235e+00.
2020-01-14 13:50:25,618 [root] DEBUG: AddTrackedRegion: New region at 0x039E0000 size 0x1000 added to tracked regions.
2020-01-14 13:50:27,615 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 2348.
2020-01-14 13:50:27,615 [root] DEBUG: NtTerminateProcess hook: Processing tracked regions before shutdown (process 884).
2020-01-14 13:50:27,661 [root] DEBUG: ClearAllBreakpoints: Error getting thread context for thread 1776.

MalScore

10.0

Malicious

Machine

Name Label Manager Started On Shutdown On
target-01 target-01 ESX 2020-01-14 13:46:08 2020-01-14 13:50:44

File Details

File Name 76c4120a2b2b475feda74b057a16a46d52654572012f748578c27a39f3aafac5.exe
File Size 70144 bytes
File Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 57d6230f89533e4d420d37552813ff49
SHA1 4cba66e152eeeb2178e27c8e8e5c6c1b56bee0a5
SHA256 76c4120a2b2b475feda74b057a16a46d52654572012f748578c27a39f3aafac5
SHA512 10697820e143aa441882905df6fcdf0c5c7b77502d74d11bf584fb42a9ee91c40b1f928717720bb0017b0a38ba4772bd6518d4ad92de4c3e31f38215a6a24b27
CRC32 8B38956C
Ssdeep 1536:mNRrLFomE4qpTyiZLmYJ0GW2Z6CUsHK1:ygmEBhahGW2oCY
TrID
  • 34.2% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
  • 23.4% (.EXE) Win32 Executable (generic) (4508/7/1)
  • 10.7% (.EXE) Win16/32 Executable Delphi generic (2072/23)
  • 10.5% (.EXE) OS/2 Executable (generic) (2029/13)
  • 10.4% (.EXE) Generic Win/DOS Executable (2002/3)
ClamAV None matched
Yara None matched
CAPE Yara None matched
Resubmit sample

Signatures

SetUnhandledExceptionFilter detected (possible anti-debug)
Behavioural detection: Executable code extraction
Yara rule detections observed from a process memory dump/dropped files/CAPE
Hit: PID 884 trigged the Yara rule 'shellcode_patterns'
Possible date expiration check, exits too soon after checking local time
process: wA7NV0.exe, PID 884
Guard pages use detected - possible anti-debugging.
A process attempted to delay the analysis task.
Process: WmiPrvSE.exe tried to sleep 602 seconds, actually delayed analysis time by 0 seconds
Process: wA7NV0.exe tried to sleep 360 seconds, actually delayed analysis time by 0 seconds
Dynamic (imported) function loading detected
DynamicLoader: kernel32.dll/RegQueryValueExW
DynamicLoader: kernel32.dll/HeapAlloc
DynamicLoader: kernel32.dll/HeapFree
DynamicLoader: kernel32.dll/GetTickCount
DynamicLoader: mscoree.dll/CLRCreateInstance
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryInfoKeyW
DynamicLoader: ADVAPI32.dll/RegEnumKeyExW
DynamicLoader: ADVAPI32.dll/RegEnumValueW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: mscoree.dll/
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: mscoreei.dll/RegisterShimImplCallback
DynamicLoader: mscoreei.dll/RegisterShimImplCleanupCallback
DynamicLoader: mscoreei.dll/SetShellShimInstance
DynamicLoader: mscoreei.dll/OnShimDllMainCalled
DynamicLoader: mscoreei.dll/CLRCreateInstance
DynamicLoader: kernel32.dll/GetCurrentPackageId
DynamicLoader: clr.dll/SetRuntimeInfo
DynamicLoader: clr.dll/DllGetClassObjectInternal
DynamicLoader: kernel32.dll/GetCurrentPackageId
DynamicLoader: mscoree.dll/CreateConfigStream
DynamicLoader: mscoreei.dll/CreateConfigStream_RetAddr
DynamicLoader: mscoreei.dll/CreateConfigStream
DynamicLoader: SHLWAPI.dll/UrlIsW
DynamicLoader: kernel32.dll/GetNumaHighestNodeNumber
DynamicLoader: kernel32.dll/FlsSetValue
DynamicLoader: kernel32.dll/FlsGetValue
DynamicLoader: kernel32.dll/FlsAlloc
DynamicLoader: kernel32.dll/FlsFree
DynamicLoader: kernel32.dll/SetThreadStackGuarantee
DynamicLoader: mscoree.dll/CLRCreateInstance
DynamicLoader: SHLWAPI.dll/PathFindFileNameW
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: kernel32.dll/GetSystemWindowsDirectoryW
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: kernel32.dll/AddSIDToBoundaryDescriptor
DynamicLoader: kernel32.dll/CreateBoundaryDescriptorW
DynamicLoader: kernel32.dll/CreatePrivateNamespaceW
DynamicLoader: kernel32.dll/OpenPrivateNamespaceW
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: kernel32.dll/DeleteBoundaryDescriptor
DynamicLoader: kernel32.dll/WerRegisterRuntimeExceptionModule
DynamicLoader: kernel32.dll/RaiseException
DynamicLoader: kernel32.dll/AddVectoredExceptionHandler
DynamicLoader: kernel32.dll/RemoveVectoredExceptionHandler
DynamicLoader: kernel32.dll/AddVectoredContinueHandler
DynamicLoader: kernel32.dll/RemoveVectoredContinueHandler
DynamicLoader: mscoree.dll/
DynamicLoader: mscoreei.dll/
DynamicLoader: KERNELBASE.dll/SetSystemFileCacheSize
DynamicLoader: ntdll.dll/NtSetSystemInformation
DynamicLoader: KERNELBASE.dll/PrivIsDllSynchronizationHeld
DynamicLoader: kernel32.dll/AddDllDirectory
DynamicLoader: kernel32.dll/GetWriteWatch
DynamicLoader: kernel32.dll/ResetWriteWatch
DynamicLoader: kernel32.dll/CreateMemoryResourceNotification
DynamicLoader: kernel32.dll/QueryMemoryResourceNotification
DynamicLoader: kernel32.dll/SortGetHandle
DynamicLoader: kernel32.dll/SortCloseHandle
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: mscoree.dll/_CorExeMain
DynamicLoader: mscoree.dll/_CorImageUnloading
DynamicLoader: mscoree.dll/_CorValidateImage
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: CRYPTBASE.dll/SystemFunction036
DynamicLoader: mscoree.dll/GetProcessExecutableHeap
DynamicLoader: mscoreei.dll/GetProcessExecutableHeap_RetAddr
DynamicLoader: mscoreei.dll/GetProcessExecutableHeap
DynamicLoader: ole32.dll/CoGetContextToken
DynamicLoader: OLEAUT32.dll/SafeArrayCreate
DynamicLoader: OLEAUT32.dll/SafeArrayAccessData
DynamicLoader: OLEAUT32.dll/SafeArrayUnaccessData
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/SafeArrayCreateVector
DynamicLoader: clrjit.dll/sxsJitStartup
DynamicLoader: clrjit.dll/getJit
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/QueryThreadCycleTime
DynamicLoader: kernel32.dll/GetModuleFileName
DynamicLoader: kernel32.dll/GetModuleFileNameW
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: kernel32.dll/GetFullPathName
DynamicLoader: kernel32.dll/GetFullPathNameW
DynamicLoader: kernel32.dll/GetLocaleInfoEx
DynamicLoader: kernel32.dll/LocaleNameToLCID
DynamicLoader: kernel32.dll/GetUserDefaultLocaleName
DynamicLoader: kernel32.dll/LCIDToLocaleName
DynamicLoader: kernel32.dll/GetUserPreferredUILanguages
DynamicLoader: nlssorting.dll/SortGetHandle
DynamicLoader: nlssorting.dll/SortCloseHandle
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/GetNativeSystemInfo
DynamicLoader: kernel32.dll/CreateEvent
DynamicLoader: kernel32.dll/CreateEventW
DynamicLoader: kernel32.dll/ReleaseMutex
DynamicLoader: kernel32.dll/CreateMutex
DynamicLoader: kernel32.dll/CreateMutexW
DynamicLoader: kernel32.dll/CloseHandle
DynamicLoader: ole32.dll/CoGetObjectContext
DynamicLoader: sechost.dll/LookupAccountNameLocalW
DynamicLoader: ADVAPI32.dll/LookupAccountSidW
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptGenRandom
DynamicLoader: ole32.dll/NdrOleInitializeExtension
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: ole32.dll/CoGetPSClsid
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: ole32.dll/DcomChannelSetHResult
DynamicLoader: RpcRtRemote.dll/I_RpcExtInitializeExtensionPoint
DynamicLoader: kernel32.dll/LoadLibrary
DynamicLoader: kernel32.dll/LoadLibraryA
DynamicLoader: kernel32.dll/WideCharToMultiByte
DynamicLoader: kernel32.dll/GetProcAddress
DynamicLoader: wminet_utils.dll/ResetSecurity
DynamicLoader: wminet_utils.dll/SetSecurity
DynamicLoader: wminet_utils.dll/BlessIWbemServices
DynamicLoader: wminet_utils.dll/BlessIWbemServicesObject
DynamicLoader: wminet_utils.dll/GetPropertyHandle
DynamicLoader: wminet_utils.dll/WritePropertyValue
DynamicLoader: wminet_utils.dll/Clone
DynamicLoader: wminet_utils.dll/VerifyClientKey
DynamicLoader: wminet_utils.dll/GetQualifierSet
DynamicLoader: wminet_utils.dll/Get
DynamicLoader: wminet_utils.dll/Put
DynamicLoader: wminet_utils.dll/Delete
DynamicLoader: wminet_utils.dll/GetNames
DynamicLoader: wminet_utils.dll/BeginEnumeration
DynamicLoader: wminet_utils.dll/Next
DynamicLoader: wminet_utils.dll/EndEnumeration
DynamicLoader: wminet_utils.dll/GetPropertyQualifierSet
DynamicLoader: wminet_utils.dll/Clone
DynamicLoader: wminet_utils.dll/GetObjectText
DynamicLoader: wminet_utils.dll/SpawnDerivedClass
DynamicLoader: wminet_utils.dll/SpawnInstance
DynamicLoader: wminet_utils.dll/CompareTo
DynamicLoader: wminet_utils.dll/GetPropertyOrigin
DynamicLoader: wminet_utils.dll/InheritsFrom
DynamicLoader: wminet_utils.dll/GetMethod
DynamicLoader: wminet_utils.dll/PutMethod
DynamicLoader: wminet_utils.dll/DeleteMethod
DynamicLoader: wminet_utils.dll/BeginMethodEnumeration
DynamicLoader: wminet_utils.dll/NextMethod
DynamicLoader: wminet_utils.dll/EndMethodEnumeration
DynamicLoader: wminet_utils.dll/GetMethodQualifierSet
DynamicLoader: wminet_utils.dll/GetMethodOrigin
DynamicLoader: wminet_utils.dll/QualifierSet_Get
DynamicLoader: wminet_utils.dll/QualifierSet_Put
DynamicLoader: wminet_utils.dll/QualifierSet_Delete
DynamicLoader: wminet_utils.dll/QualifierSet_GetNames
DynamicLoader: wminet_utils.dll/QualifierSet_BeginEnumeration
DynamicLoader: wminet_utils.dll/QualifierSet_Next
DynamicLoader: wminet_utils.dll/QualifierSet_EndEnumeration
DynamicLoader: wminet_utils.dll/GetCurrentApartmentType
DynamicLoader: wminet_utils.dll/GetDemultiplexedStub
DynamicLoader: wminet_utils.dll/CreateInstanceEnumWmi
DynamicLoader: wminet_utils.dll/CreateClassEnumWmi
DynamicLoader: wminet_utils.dll/ExecQueryWmi
DynamicLoader: wminet_utils.dll/ExecNotificationQueryWmi
DynamicLoader: wminet_utils.dll/PutInstanceWmi
DynamicLoader: wminet_utils.dll/PutClassWmi
DynamicLoader: wminet_utils.dll/CloneEnumWbemClassObject
DynamicLoader: wminet_utils.dll/ConnectServerWmi
DynamicLoader: kernel32.dll/LCMapStringEx
DynamicLoader: ole32.dll/IIDFromString
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoCreateFreeThreadedMarshaler
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoGetObjectContext
DynamicLoader: kernel32.dll/GetThreadPreferredUILanguages
DynamicLoader: kernel32.dll/SetThreadPreferredUILanguages
DynamicLoader: kernel32.dll/LocaleNameToLCID
DynamicLoader: kernel32.dll/GetLocaleInfoEx
DynamicLoader: kernel32.dll/LCIDToLocaleName
DynamicLoader: kernel32.dll/GetSystemDefaultLocaleName
DynamicLoader: OLEAUT32.dll/SysStringLen
DynamicLoader: kernel32.dll/RtlZeroMemory
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/GetUserName
DynamicLoader: ADVAPI32.dll/GetUserNameW
DynamicLoader: kernel32.dll/GetComputerName
DynamicLoader: kernel32.dll/GetComputerNameW
DynamicLoader: secur32.dll/GetUserNameEx
DynamicLoader: secur32.dll/GetUserNameExW
DynamicLoader: ADVAPI32.dll/ConvertSidToStringSidW
DynamicLoader: shell32.dll/SHGetFolderPathW
DynamicLoader: kernel32.dll/SetThreadErrorMode
DynamicLoader: kernel32.dll/GetFileAttributesEx
DynamicLoader: kernel32.dll/GetFileAttributesExW
DynamicLoader: bcrypt.dll/BCryptGetFipsAlgorithmMode
DynamicLoader: CRYPTSP.dll/CryptGetDefaultProviderW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptCreateHash
DynamicLoader: CRYPTSP.dll/CryptHashData
DynamicLoader: CRYPTSP.dll/CryptGetHashParam
DynamicLoader: CRYPTSP.dll/CryptDestroyHash
DynamicLoader: kernel32.dll/GetEnvironmentVariable
DynamicLoader: kernel32.dll/GetEnvironmentVariableW
DynamicLoader: kernel32.dll/RegOpenKeyExW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/AdjustTokenPrivileges
DynamicLoader: ADVAPI32.dll/AdjustTokenPrivilegesW
DynamicLoader: ADVAPI32.dll/GetNamedSecurityInfoW
DynamicLoader: ntmarta.dll/GetMartaExtensionInterface
DynamicLoader: ADVAPI32.dll/GetSecurityDescriptorLength
DynamicLoader: kernel32.dll/LocalFree
DynamicLoader: ADVAPI32.dll/SetNamedSecurityInfoW
DynamicLoader: ADVAPI32.dll/LsaClose
DynamicLoader: ADVAPI32.dll/LsaFreeMemory
DynamicLoader: ADVAPI32.dll/LsaOpenPolicy
DynamicLoader: ADVAPI32.dll/LsaLookupNames2
DynamicLoader: ADVAPI32.dll/EncryptFile
DynamicLoader: ADVAPI32.dll/EncryptFileW
DynamicLoader: feclient.dll/FeClientInitialize
DynamicLoader: sechost.dll/OpenSCManagerW
DynamicLoader: sechost.dll/OpenServiceW
DynamicLoader: sechost.dll/QueryServiceStatusEx
DynamicLoader: sechost.dll/StartServiceW
DynamicLoader: sechost.dll/CloseServiceHandle
DynamicLoader: kernel32.dll/FormatMessage
DynamicLoader: kernel32.dll/FormatMessageW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/EventRegister
DynamicLoader: kernel32.dll/LocalAlloc
DynamicLoader: shell32.dll/ShellExecuteEx
DynamicLoader: shell32.dll/ShellExecuteExW
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_Size_ExW
DynamicLoader: SETUPAPI.dll/CM_Get_Device_Interface_List_ExW
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: ole32.dll/CoRevokeInitializeSpy
DynamicLoader: comctl32.dll/
DynamicLoader: kernel32.dll/CloseHandle
DynamicLoader: ADVAPI32.dll/EventUnregister
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: ADVAPI32.dll/UnregisterTraceGuids
DynamicLoader: comctl32.dll/
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
DynamicLoader: kernel32.dll/CreateActCtxW
DynamicLoader: kernel32.dll/AddRefActCtx
DynamicLoader: kernel32.dll/ReleaseActCtx
DynamicLoader: kernel32.dll/ActivateActCtx
DynamicLoader: kernel32.dll/DeactivateActCtx
DynamicLoader: kernel32.dll/GetCurrentActCtx
DynamicLoader: kernel32.dll/QueryActCtxW
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: ole32.dll/CoGetPSClsid
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: ole32.dll/DcomChannelSetHResult
DynamicLoader: VSSAPI.DLL/CreateWriter
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ADVAPI32.dll/LookupAccountNameW
DynamicLoader: sechost.dll/LookupAccountNameLocalW
DynamicLoader: ADVAPI32.dll/LookupAccountSidW
DynamicLoader: samcli.dll/NetLocalGroupGetMembers
DynamicLoader: SAMLIB.dll/SamConnect
DynamicLoader: RPCRT4.dll/NdrClientCall3
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: SAMLIB.dll/SamOpenDomain
DynamicLoader: SAMLIB.dll/SamLookupNamesInDomain
DynamicLoader: SAMLIB.dll/SamOpenAlias
DynamicLoader: SAMLIB.dll/SamFreeMemory
DynamicLoader: SAMLIB.dll/SamCloseHandle
DynamicLoader: SAMLIB.dll/SamGetMembersInAlias
DynamicLoader: netutils.dll/NetApiBufferFree
DynamicLoader: SAMLIB.dll/SamEnumerateDomainsInSamServer
DynamicLoader: SAMLIB.dll/SamLookupDomainInSamServer
DynamicLoader: ole32.dll/CoCreateGuid
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/StringFromCLSID
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: PROPSYS.dll/VariantToPropVariant
DynamicLoader: OLEAUT32.dll/
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: wbemsvc.dll/DllGetClassObject
DynamicLoader: wbemsvc.dll/DllCanUnloadNow
DynamicLoader: authZ.dll/AuthzInitializeContextFromToken
DynamicLoader: authZ.dll/AuthzInitializeObjectAccessAuditEvent2
DynamicLoader: authZ.dll/AuthzAccessCheck
DynamicLoader: authZ.dll/AuthzFreeAuditEvent
DynamicLoader: authZ.dll/AuthzFreeContext
DynamicLoader: authZ.dll/AuthzInitializeResourceManager
DynamicLoader: authZ.dll/AuthzFreeResourceManager
DynamicLoader: RPCRT4.dll/NdrClientCall3
DynamicLoader: RPCRT4.dll/RpcBindingCreateW
DynamicLoader: RPCRT4.dll/RpcBindingBind
DynamicLoader: RPCRT4.dll/I_RpcMapWin32Status
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ADVAPI32.dll/EventRegister
DynamicLoader: ADVAPI32.dll/EventUnregister
DynamicLoader: ADVAPI32.dll/EventWrite
DynamicLoader: kernel32.dll/RegCloseKey
DynamicLoader: kernel32.dll/RegSetValueExW
DynamicLoader: kernel32.dll/RegOpenKeyExW
DynamicLoader: kernel32.dll/RegQueryValueExW
DynamicLoader: kernel32.dll/RegCloseKey
DynamicLoader: wmisvc.dll/IsImproperShutdownDetected
DynamicLoader: Wevtapi.dll/EvtRender
DynamicLoader: Wevtapi.dll/EvtNext
DynamicLoader: Wevtapi.dll/EvtClose
DynamicLoader: Wevtapi.dll/EvtQuery
DynamicLoader: Wevtapi.dll/EvtCreateRenderContext
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcBindingSetAuthInfoExW
DynamicLoader: RPCRT4.dll/RpcBindingSetOption
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/NdrClientCall3
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: ole32.dll/CoCreateFreeThreadedMarshaler
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CreateStreamOnHGlobal
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ADVAPI32.dll/RegCreateKeyExW
DynamicLoader: ADVAPI32.dll/RegSetValueExW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptGenRandom
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: KERNELBASE.dll/InitializeAcl
DynamicLoader: KERNELBASE.dll/AddAce
DynamicLoader: sechost.dll/ConvertStringSecurityDescriptorToSecurityDescriptorW
DynamicLoader: kernel32.dll/IsThreadAFiber
DynamicLoader: kernel32.dll/OpenProcessToken
DynamicLoader: KERNELBASE.dll/GetTokenInformation
DynamicLoader: KERNELBASE.dll/DuplicateTokenEx
DynamicLoader: KERNELBASE.dll/AdjustTokenPrivileges
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: kernel32.dll/SetThreadToken
DynamicLoader: KERNELBASE.dll/CheckTokenMembership
DynamicLoader: KERNELBASE.dll/AllocateAndInitializeSid
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/RegOpenKeyW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CLSIDFromString
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoRevertToSelf
DynamicLoader: ADVAPI32.dll/LogonUserExExW
DynamicLoader: SspiCli.dll/LogonUserExExW
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: authZ.dll/AuthzInitializeContextFromToken
DynamicLoader: authZ.dll/AuthzInitializeResourceManager
DynamicLoader: authZ.dll/AuthzInitializeContextFromSid
DynamicLoader: authZ.dll/AuthzInitializeContextFromToken
DynamicLoader: authZ.dll/AuthzAccessCheck
DynamicLoader: authZ.dll/AuthzFreeContext
DynamicLoader: authZ.dll/AuthzFreeResourceManager
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: ole32.dll/CoGetCallContext
DynamicLoader: ole32.dll/CoImpersonateClient
DynamicLoader: ADVAPI32.dll/OpenThreadToken
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoSwitchCallContext
DynamicLoader: ole32.dll/CoCreateGuid
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: sechost.dll/ConvertStringSecurityDescriptorToSecurityDescriptorW
DynamicLoader: sechost.dll/ConvertStringSecurityDescriptorToSecurityDescriptorW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: ole32.dll/CoInitializeEx
DynamicLoader: ole32.dll/CoUninitialize
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: wbemcore.dll/Reinitialize
DynamicLoader: kernel32.dll/RegCreateKeyExW
DynamicLoader: ntdll.dll/EtwRegisterTraceGuidsW
DynamicLoader: ntdll.dll/EtwRegisterTraceGuidsW
DynamicLoader: kernel32.dll/SortGetHandle
DynamicLoader: kernel32.dll/SortCloseHandle
DynamicLoader: CRYPTBASE.dll/SystemFunction036
DynamicLoader: ntmarta.dll/GetMartaExtensionInterface
DynamicLoader: sechost.dll/LookupAccountNameLocalW
DynamicLoader: ADVAPI32.dll/LookupAccountSidW
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: CRYPTSP.dll/CryptAcquireContextW
DynamicLoader: CRYPTSP.dll/CryptGenRandom
DynamicLoader: RpcRtRemote.dll/I_RpcExtInitializeExtensionPoint
DynamicLoader: ole32.dll/CoGetClassObject
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/StringFromIID
DynamicLoader: ole32.dll/CoGetPSClsid
DynamicLoader: ole32.dll/CoTaskMemAlloc
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: ole32.dll/CoCreateInstance
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: ole32.dll/DcomChannelSetHResult
DynamicLoader: ole32.dll/CoGetMarshalSizeMax
DynamicLoader: ole32.dll/CoMarshalInterface
DynamicLoader: ole32.dll/CoUnmarshalInterface
DynamicLoader: ole32.dll/CoReleaseMarshalData
DynamicLoader: wbemsvc.dll/DllGetClassObject
DynamicLoader: wbemsvc.dll/DllCanUnloadNow
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: kernel32.dll/RegOpenKeyExW
DynamicLoader: kernel32.dll/RegQueryValueExW
DynamicLoader: kernel32.dll/RegCloseKey
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/RegOpenKeyW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: kernel32.dll/GetThreadPreferredUILanguages
DynamicLoader: kernel32.dll/SetThreadPreferredUILanguages
DynamicLoader: kernel32.dll/LocaleNameToLCID
DynamicLoader: kernel32.dll/GetLocaleInfoEx
DynamicLoader: kernel32.dll/LCIDToLocaleName
DynamicLoader: kernel32.dll/GetSystemDefaultLocaleName
DynamicLoader: WMI.DLL/WmiQueryAllDataW
DynamicLoader: WMI.DLL/WmiQuerySingleInstanceW
DynamicLoader: WMI.DLL/WmiSetSingleItemW
DynamicLoader: WMI.DLL/WmiSetSingleInstanceW
DynamicLoader: WMI.DLL/WmiExecuteMethodW
DynamicLoader: WMI.DLL/WmiNotificationRegistrationW
DynamicLoader: WMI.DLL/WmiMofEnumerateResourcesW
DynamicLoader: WMI.DLL/WmiFileHandleToInstanceNameW
DynamicLoader: WMI.DLL/WmiDevInstToInstanceNameW
DynamicLoader: WMI.DLL/WmiQueryGuidInformation
DynamicLoader: WMI.DLL/WmiOpenBlock
DynamicLoader: WMI.DLL/WmiCloseBlock
DynamicLoader: WMI.DLL/WmiFreeBuffer
DynamicLoader: WMI.DLL/WmiEnumerateGuids
DynamicLoader: OLEAUT32.dll/
DynamicLoader: DEVOBJ.dll/DevObjCreateDeviceInfoList
DynamicLoader: DEVOBJ.dll/DevObjGetClassDevs
DynamicLoader: DEVOBJ.dll/DevObjEnumDeviceInfo
DynamicLoader: DEVOBJ.dll/DevObjDestroyDeviceInfoList
DynamicLoader: SETUPAPI.dll/CM_Open_DevNode_Key_Ex
DynamicLoader: DEVOBJ.dll/DevObjGetDeviceProperty
DynamicLoader: CFGMGR32.dll/CM_Connect_MachineA
DynamicLoader: CFGMGR32.dll/CM_Disconnect_Machine
DynamicLoader: CFGMGR32.dll/CM_Locate_DevNodeW
DynamicLoader: CFGMGR32.dll/CM_Get_DevNode_Registry_PropertyW
DynamicLoader: CFGMGR32.dll/CM_Get_Child
DynamicLoader: CFGMGR32.dll/CM_Get_Sibling
DynamicLoader: CFGMGR32.dll/CM_Get_DevNode_Status
DynamicLoader: CFGMGR32.dll/CM_Get_First_Log_Conf
DynamicLoader: CFGMGR32.dll/CM_Get_Next_Res_Des
DynamicLoader: CFGMGR32.dll/CM_Get_Res_Des_Data
DynamicLoader: CFGMGR32.dll/CM_Get_Res_Des_Data_Size
DynamicLoader: CFGMGR32.dll/CM_Free_Log_Conf_Handle
DynamicLoader: CFGMGR32.dll/CM_Free_Res_Des_Handle
DynamicLoader: CFGMGR32.dll/CM_Get_Device_IDA
DynamicLoader: CFGMGR32.dll/CM_Get_Device_ID_Size
DynamicLoader: CFGMGR32.dll/CM_Get_Parent
DynamicLoader: USER32.dll/GetSystemMetrics
DynamicLoader: USER32.dll/MonitorFromWindow
DynamicLoader: USER32.dll/MonitorFromRect
DynamicLoader: USER32.dll/MonitorFromPoint
DynamicLoader: USER32.dll/EnumDisplayMonitors
DynamicLoader: USER32.dll/EnumDisplayDevicesW
DynamicLoader: USER32.dll/GetMonitorInfoW
DynamicLoader: dxgi.dll/DXGIReportAdapterConfiguration
DynamicLoader: SETUPAPI.dll/SetupDiGetClassDevsW
DynamicLoader: SETUPAPI.dll/SetupDiEnumDeviceInterfaces
DynamicLoader: SETUPAPI.dll/SetupDiGetDeviceInterfaceDetailW
DynamicLoader: SETUPAPI.dll/SetupDiDestroyDeviceInfoList
DynamicLoader: GDI32.dll/D3DKMTOpenAdapterFromDeviceName
DynamicLoader: GDI32.dll/D3DKMTQueryAdapterInfo
DynamicLoader: GDI32.dll/D3DKMTGetDisplayModeList
DynamicLoader: GDI32.dll/D3DKMTCloseAdapter
DynamicLoader: WINTRUST.dll/WinVerifyTrust
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ADVAPI32.dll/LookupPrivilegeValueW
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: VERSION.dll/GetFileVersionInfoSizeW
DynamicLoader: RPCRT4.dll/RpcStringBindingComposeW
DynamicLoader: RPCRT4.dll/RpcBindingFromStringBindingW
DynamicLoader: RPCRT4.dll/RpcBindingSetAuthInfoExW
DynamicLoader: RPCRT4.dll/RpcBindingSetOption
DynamicLoader: RPCRT4.dll/RpcStringFreeW
DynamicLoader: RPCRT4.dll/NdrClientCall3
DynamicLoader: ole32.dll/StringFromCLSID
DynamicLoader: ole32.dll/CoTaskMemFree
DynamicLoader: RPCRT4.dll/RpcBindingFree
DynamicLoader: OLEAUT32.dll/
DynamicLoader: OLEAUT32.dll/
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
DynamicLoader: ntdll.dll/EtwUnregisterTraceGuids
DynamicLoader: CRYPTSP.dll/CryptReleaseContext
DynamicLoader: CRYPTBASE.dll/SystemFunction036
DynamicLoader: sechost.dll/LookupAccountNameLocalW
DynamicLoader: ADVAPI32.dll/LookupAccountSidW
DynamicLoader: sechost.dll/LookupAccountSidLocalW
DynamicLoader: RPCRT4.dll/UuidFromStringW
DynamicLoader: radarrs.dll/WdiDiagnosticModuleMain
DynamicLoader: radarrs.dll/WdiHandleInstance
DynamicLoader: radarrs.dll/WdiGetDiagnosticModuleInterfaceVersion
DynamicLoader: VERSION.dll/GetFileVersionInfoSizeW
DynamicLoader: VERSION.dll/GetFileVersionInfoW
DynamicLoader: VERSION.dll/VerQueryValueW
DynamicLoader: kernel32.dll/SortGetHandle
DynamicLoader: kernel32.dll/SortCloseHandle
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/RegGetValueW
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ADVAPI32.dll/DuplicateToken
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/CheckTokenMembership
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: kernel32.dll/RegQueryValueExW
DynamicLoader: kernel32.dll/HeapAlloc
DynamicLoader: kernel32.dll/HeapFree
DynamicLoader: kernel32.dll/GetTickCount
DynamicLoader: mscoree.dll/CLRCreateInstance
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryInfoKeyW
DynamicLoader: ADVAPI32.dll/RegEnumKeyExW
DynamicLoader: ADVAPI32.dll/RegEnumValueW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: mscoree.dll/
DynamicLoader: ADVAPI32.dll/RegOpenKeyExW
DynamicLoader: ADVAPI32.dll/RegQueryValueExW
DynamicLoader: ADVAPI32.dll/RegCloseKey
DynamicLoader: mscoreei.dll/RegisterShimImplCallback
DynamicLoader: mscoreei.dll/RegisterShimImplCleanupCallback
DynamicLoader: mscoreei.dll/SetShellShimInstance
DynamicLoader: mscoreei.dll/OnShimDllMainCalled
DynamicLoader: mscoreei.dll/CLRCreateInstance
DynamicLoader: kernel32.dll/GetCurrentPackageId
DynamicLoader: clr.dll/SetRuntimeInfo
DynamicLoader: clr.dll/DllGetClassObjectInternal
DynamicLoader: kernel32.dll/GetCurrentPackageId
DynamicLoader: mscoree.dll/CreateConfigStream
DynamicLoader: mscoreei.dll/CreateConfigStream_RetAddr
DynamicLoader: mscoreei.dll/CreateConfigStream
DynamicLoader: SHLWAPI.dll/UrlIsW
DynamicLoader: kernel32.dll/GetNumaHighestNodeNumber
DynamicLoader: kernel32.dll/FlsSetValue
DynamicLoader: kernel32.dll/FlsGetValue
DynamicLoader: kernel32.dll/FlsAlloc
DynamicLoader: kernel32.dll/FlsFree
DynamicLoader: kernel32.dll/SetThreadStackGuarantee
DynamicLoader: mscoree.dll/CLRCreateInstance
DynamicLoader: SHLWAPI.dll/PathFindFileNameW
DynamicLoader: kernel32.dll/IsWow64Process
DynamicLoader: kernel32.dll/GetSystemWindowsDirectoryW
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: kernel32.dll/AddSIDToBoundaryDescriptor
DynamicLoader: kernel32.dll/CreateBoundaryDescriptorW
DynamicLoader: kernel32.dll/CreatePrivateNamespaceW
DynamicLoader: kernel32.dll/OpenPrivateNamespaceW
DynamicLoader: ADVAPI32.dll/AllocateAndInitializeSid
DynamicLoader: ADVAPI32.dll/OpenProcessToken
DynamicLoader: ADVAPI32.dll/GetTokenInformation
DynamicLoader: ADVAPI32.dll/InitializeAcl
DynamicLoader: ADVAPI32.dll/AddAccessAllowedAce
DynamicLoader: ADVAPI32.dll/FreeSid
DynamicLoader: kernel32.dll/DeleteBoundaryDescriptor
DynamicLoader: kernel32.dll/WerRegisterRuntimeExceptionModule
DynamicLoader: kernel32.dll/RaiseException
DynamicLoader: kernel32.dll/AddVectoredExceptionHandler
DynamicLoader: kernel32.dll/RemoveVectoredExceptionHandler
DynamicLoader: kernel32.dll/AddVectoredContinueHandler
DynamicLoader: kernel32.dll/RemoveVectoredContinueHandler
DynamicLoader: mscoree.dll/
DynamicLoader: mscoreei.dll/
DynamicLoader: KERNELBASE.dll/SetSystemFileCacheSize
DynamicLoader: ntdll.dll/NtSetSystemInformation
DynamicLoader: KERNELBASE.dll/PrivIsDllSynchronizationHeld
DynamicLoader: kernel32.dll/AddDllDirectory
DynamicLoader: kernel32.dll/GetWriteWatch
DynamicLoader: kernel32.dll/ResetWriteWatch
DynamicLoader: kernel32.dll/CreateMemoryResourceNotification
DynamicLoader: kernel32.dll/QueryMemoryResourceNotification
At least one IP Address, Domain, or File Name was found in a crypto call
ioc: 3.60GHzuserStandard
ioc: 6.1.7601
CAPE extracted potentially suspicious content
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
wA7NV0.exe: Extracted Shellcode
The binary contains an unknown PE section name indicative of packing
unknown section: name: .kdata, entropy: 3.90, characteristics: IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ, raw_size: 0x00000400, virtual_size: 0x0000033a
unknown section: name: .bdata, entropy: 0.74, characteristics: IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE, raw_size: 0x00000600, virtual_size: 0x000004b0
The binary likely contains encrypted or compressed data.
section: name: .text, entropy: 7.12, characteristics: IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE, raw_size: 0x0000ec00, virtual_size: 0x0000ea87
Likely virus infection of existing system binary
file: c:\users\user\appdata\local\microsoft\windows\wfpcl.exe
Checks the CPU name from registry, possibly for anti-virtualization
Creates a copy of itself
copy: C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
copy: C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
Drops a binary and executes it
binary: C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
binary: C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe

Screenshots


Hosts

No hosts contacted.

DNS

No domains contacted.


Summary

C:\Windows\System32\en-US\ulib.dll.mui
C:\Users\user\AppData\Local\Temp\wsiybijcuws
C:\Users\user\AppData\Local\Temp\ccwmucfraxd
C:\Users\user\AppData\Local\Temp\kgjsspnnorfv
C:\Users\user\AppData\Local\Temp\nwabjapi.dll
C:\Windows\System32\nwabjapi.dll
C:\Windows\system\nwabjapi.dll
C:\Windows\nwabjapi.dll
C:\Windows\System32\wbem\nwabjapi.dll
C:\Windows\System32\WindowsPowerShell\v1.0\nwabjapi.dll
C:\Windows\System32\mscoree.dll.local
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\Microsoft.NET\Framework\*
C:\Windows\Microsoft.NET\Framework\v1.0.3705\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\clr.dll
C:\Windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\clr.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSVCR110_CLR0400.dll
C:\Windows\System32\MSVCR110_CLR0400.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoree.dll
C:\Users\user\AppData\Local\Temp\wA7NV0.exe.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\machine.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\fusion.localgac
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Windows\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\045c9588954c3662d542b53f4462268b\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\045c9588954c3662d542b53f4462268b\mscorlib.ni.dll.aux
C:\Windows\Microsoft.NET\Framework\v4.0.30319\ole32.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\OLEAUT32.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
C:\Windows\assembly\pubpol23.dat
C:\Windows\assembly\GAC\PublisherPolicy.tme
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\05ca0ca95b6fcc0d710b63b6200cc178\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\05ca0ca95b6fcc0d710b63b6200cc178\System.Windows.Forms.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\c4477b3ce64d0d612d1ab0dba425b77f\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\c4477b3ce64d0d612d1ab0dba425b77f\System.Drawing.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_32\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\79f6324a598a7c4446a4a1168be7c4b1\System.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\79f6324a598a7c4446a4a1168be7c4b1\System.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\SortDefault.nlp
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\4e69f1e7d86d79012db2d7e0dadc8880\System.Core.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\4e69f1e7d86d79012db2d7e0dadc8880\System.Core.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\*
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\13f5eb7285c90c219d2be24eebb55cd9\System.Management.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\13f5eb7285c90c219d2be24eebb55cd9\System.Management.ni.dll.aux
C:\Windows\Microsoft.Net\assembly\GAC_32\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\wminet_utils.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\oleaut32.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\secur32.dll
C:\Windows\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\bcrypt.dll
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
C:\Users\user\AppData\Local\Microsoft\Windows\
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe\
C:\Users\user\AppData\Local\Microsoft\Windows
C:\Users\user\AppData\Local\Microsoft
C:\Users\user\AppData\Local\Microsoft\
C:\Users\user\AppData\Local
C:\Users\user\AppData\Local\
C:\Users\user\AppData
C:\Users\user\AppData\
C:\Users\user
C:\Users\user\
C:\Users
C:\Users\
C:
\??\MountPointManager
C:\Windows\SysWOW64\en-US\KERNELBASE.dll.mui
C:\Windows\Microsoft.NET\Framework\v4.0.30319\en-US\mscorrc.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\en-US\mscorrc.dll.DLL
C:\Windows\Microsoft.NET\Framework\v4.0.30319\en\mscorrc.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\en\mscorrc.dll.DLL
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorrc.dll
C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\shell32.dll
C:\Windows\inf\display.inf
C:\Windows\sysnative\DriverStore\en-US\display.inf_loc
C:\Windows\inf\display.PNF
C:\Windows\sysnative\cscsvc.dll
C:\Windows\sysnative\drivers\ndis.sys
C:\Windows\sysnative\drivers\discache.sys
C:\Windows\sysnative\drivers\en-US\discache.sys.mui
C:\Windows\sysnative\drivers\en\discache.sys.mui
C:\Windows\sysnative\drivers\netbt.sys
C:\Windows\sysnative\drivers\en-US\netbt.sys.mui
C:\Windows\sysnative\drivers\en\netbt.sys.mui
C:\Windows\sysnative\vmstorfltres.dll
C:\Windows\sysnative\tcpipcfg.dll
C:\Windows\sysnative\en-US\tcpipcfg.dll.mui
C:\Windows\sysnative\drivers\fvevol.sys
C:\Windows\sysnative\drivers\en-US\fvevol.sys.mui
C:\Windows\sysnative\drivers\nsiproxy.sys
C:\Windows\sysnative\drivers\en-US\nsiproxy.sys.mui
C:\Windows\sysnative\drivers\en\nsiproxy.sys.mui
C:\Windows\sysnative\drivers\http.sys
C:\Windows\sysnative\drivers\en-US\http.sys.mui
C:\Windows\sysnative\drivers\hwpolicy.sys
C:\Windows\sysnative\drivers\en-US\hwpolicy.sys.mui
C:\Windows\sysnative\drivers\en\hwpolicy.sys.mui
C:\Windows\sysnative\drivers\tssecsrv.sys
C:\Windows\sysnative\drivers\en-US\tssecsrv.sys.mui
C:\Windows\sysnative\drivers\en\tssecsrv.sys.mui
C:\Windows\sysnative\drivers\pacer.sys
C:\Windows\sysnative\drivers\en-US\pacer.sys.mui
C:\Windows\sysnative\drivers\mountmgr.sys
C:\Windows\sysnative\drivers\en-US\mountmgr.sys.mui
C:\Windows\sysnative\drivers\RDPCDD.sys
C:\Windows\sysnative\drivers\en-US\RDPCDD.sys.mui
C:\Windows\sysnative\drivers\en\RDPCDD.sys.mui
C:\Windows\sysnative\drivers\volmgrx.sys
C:\Windows\sysnative\drivers\en-US\volmgrx.sys.mui
C:\Windows\sysnative\drivers\afd.sys
C:\Windows\sysnative\drivers\en-US\afd.sys.mui
C:\Windows\sysnative\FirewallAPI.dll
C:\Windows\sysnative\en-US\FirewallAPI.dll.mui
C:\Windows\sysnative\drivers\RDPENCDD.sys
C:\Windows\sysnative\drivers\en-US\RDPENCDD.sys.mui
C:\Windows\sysnative\drivers\en\RDPENCDD.sys.mui
C:\Windows\sysnative\rascfg.dll
C:\Windows\sysnative\en-US\rascfg.dll.mui
C:\Windows\sysnative\drivers\RDPREFMP.sys
C:\Windows\sysnative\drivers\en-US\RdpRefMp.sys.mui
C:\Windows\sysnative\drivers\en\RdpRefMp.sys.mui
C:\Windows\sysnative\clfs.sys
C:\Windows\sysnative\en-US\clfs.sys.mui
\??\PIPE\samr
C:\DosDevices\pipe\
C:\Windows\sysnative\wbem\repository
C:\Windows\sysnative\wbem\Logs
C:\Windows\sysnative\wbem\AutoRecover
C:\Windows\sysnative\wbem\MOF
C:\Windows\sysnative\wbem\repository\INDEX.BTR
C:\Windows\sysnative\wbem\repository\WRITABLE.TST
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
C:\Windows\sysnative\wbem\repository\WBEM9xUpgd.dat
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
C:\Windows\sysnative\wbem\Logs\
\Device\KsecDD
\??\WMIDataDevice
C:\
C:\Users\user\AppData\Local\Temp\wA7NV0.exe
C:\Windows\sysnative\tzres.dll
C:\Windows\Temp
C:\Windows\sysnative\LogFiles\Scm\eaca24ff-236c-401d-a1e7-b3d5267b8a50
C:\Users\user\AppData\Local\Temp
C:\Windows\sysnative\Tasks\Microsoft\Windows\WDI\ResolutionHost
C:\Windows\sysnative\LogFiles\Scm\9435f817-fed2-454e-88cd-7f78fda62c48
C:\Windows\sysnative\en-US\radarrs.dll.mui
C:\Windows\sysnative\radarrs.dll
C:\Users\user\AppData\Local\Microsoft\Windows\nwabjapi.dll
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe.config
C:\Windows\System32\en-US\ulib.dll.mui
C:\Users\user\AppData\Local\Temp\ccwmucfraxd
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
C:\Windows\System32\MSVCR110_CLR0400.dll
C:\Users\user\AppData\Local\Temp\wA7NV0.exe.config
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\machine.config
C:\Windows\Globalization\Sorting\sortdefault.nls
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\045c9588954c3662d542b53f4462268b\mscorlib.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\045c9588954c3662d542b53f4462268b\mscorlib.ni.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
C:\Windows\assembly\pubpol23.dat
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\05ca0ca95b6fcc0d710b63b6200cc178\System.Windows.Forms.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\c4477b3ce64d0d612d1ab0dba425b77f\System.Drawing.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\79f6324a598a7c4446a4a1168be7c4b1\System.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\System\79f6324a598a7c4446a4a1168be7c4b1\System.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\c4477b3ce64d0d612d1ab0dba425b77f\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\05ca0ca95b6fcc0d710b63b6200cc178\System.Windows.Forms.ni.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\SortDefault.nlp
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\4e69f1e7d86d79012db2d7e0dadc8880\System.Core.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\4e69f1e7d86d79012db2d7e0dadc8880\System.Core.ni.dll
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\13f5eb7285c90c219d2be24eebb55cd9\System.Management.ni.dll.aux
C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\13f5eb7285c90c219d2be24eebb55cd9\System.Management.ni.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\wminet_utils.dll
C:\Windows\SysWOW64\en-US\KERNELBASE.dll.mui
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorrc.dll
C:\Windows\inf\display.PNF
C:\Windows\sysnative\cscsvc.dll
C:\Windows\sysnative\drivers\ndis.sys
C:\Windows\sysnative\drivers\discache.sys
C:\Windows\sysnative\drivers\en-US\discache.sys.mui
C:\Windows\sysnative\drivers\en\discache.sys.mui
C:\Windows\sysnative\drivers\netbt.sys
C:\Windows\sysnative\drivers\en-US\netbt.sys.mui
C:\Windows\sysnative\drivers\en\netbt.sys.mui
C:\Windows\sysnative\vmstorfltres.dll
C:\Windows\sysnative\tcpipcfg.dll
C:\Windows\sysnative\en-US\tcpipcfg.dll.mui
C:\Windows\sysnative\drivers\fvevol.sys
C:\Windows\sysnative\drivers\en-US\fvevol.sys.mui
C:\Windows\sysnative\drivers\nsiproxy.sys
C:\Windows\sysnative\drivers\en-US\nsiproxy.sys.mui
C:\Windows\sysnative\drivers\en\nsiproxy.sys.mui
C:\Windows\sysnative\drivers\http.sys
C:\Windows\sysnative\drivers\en-US\http.sys.mui
C:\Windows\sysnative\drivers\hwpolicy.sys
C:\Windows\sysnative\drivers\en-US\hwpolicy.sys.mui
C:\Windows\sysnative\drivers\en\hwpolicy.sys.mui
C:\Windows\sysnative\drivers\tssecsrv.sys
C:\Windows\sysnative\drivers\en-US\tssecsrv.sys.mui
C:\Windows\sysnative\drivers\en\tssecsrv.sys.mui
C:\Windows\sysnative\drivers\pacer.sys
C:\Windows\sysnative\drivers\en-US\pacer.sys.mui
C:\Windows\sysnative\drivers\mountmgr.sys
C:\Windows\sysnative\drivers\en-US\mountmgr.sys.mui
C:\Windows\sysnative\drivers\RDPCDD.sys
C:\Windows\sysnative\drivers\en-US\RDPCDD.sys.mui
C:\Windows\sysnative\drivers\en\RDPCDD.sys.mui
C:\Windows\sysnative\drivers\volmgrx.sys
C:\Windows\sysnative\drivers\en-US\volmgrx.sys.mui
C:\Windows\sysnative\drivers\afd.sys
C:\Windows\sysnative\drivers\en-US\afd.sys.mui
C:\Windows\sysnative\FirewallAPI.dll
C:\Windows\sysnative\en-US\FirewallAPI.dll.mui
C:\Windows\sysnative\drivers\RDPENCDD.sys
C:\Windows\sysnative\drivers\en-US\RDPENCDD.sys.mui
C:\Windows\sysnative\drivers\en\RDPENCDD.sys.mui
C:\Windows\sysnative\rascfg.dll
C:\Windows\sysnative\en-US\rascfg.dll.mui
C:\Windows\sysnative\drivers\RDPREFMP.sys
C:\Windows\sysnative\drivers\en-US\RdpRefMp.sys.mui
C:\Windows\sysnative\drivers\en\RdpRefMp.sys.mui
C:\Windows\sysnative\clfs.sys
C:\Windows\sysnative\en-US\clfs.sys.mui
\??\PIPE\samr
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
C:\Windows\sysnative\wbem\repository\INDEX.BTR
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
\Device\KsecDD
\??\WMIDataDevice
C:\Windows\sysnative\tzres.dll
C:\Users\user\AppData\Local\Temp\wA7NV0.exe
C:\Windows\sysnative\LogFiles\Scm\eaca24ff-236c-401d-a1e7-b3d5267b8a50
C:\Windows\sysnative\en-US\radarrs.dll.mui
C:\Windows\sysnative\radarrs.dll
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe.config
C:\Users\user\AppData\Local\Temp\kgjsspnnorfv
\??\PIPE\samr
C:\Windows\sysnative\wbem\repository\WRITABLE.TST
C:\Windows\sysnative\wbem\repository\MAPPING1.MAP
C:\Windows\sysnative\wbem\repository\MAPPING2.MAP
C:\Windows\sysnative\wbem\repository\MAPPING3.MAP
C:\Windows\sysnative\wbem\repository\OBJECTS.DATA
C:\Windows\sysnative\wbem\repository\INDEX.BTR
\??\pipe\PIPE_EVENTROOT\CIMV2PROVIDERSUBSYSTEM
\??\pipe\PIPE_EVENTROOT\CIMV2WMI SELF-INSTRUMENTATION EVENT PROVIDER
\??\WMIDataDevice
C:\Users\user\AppData\Local\Temp\wA7NV0.exe
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
C:\Windows\sysnative\LogFiles\Scm\9435f817-fed2-454e-88cd-7f78fda62c48
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-GB
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-GB
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale\Alternate Sorts
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Language Groups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000809
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLEAUT
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Setup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\SourcePath
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\DevicePath
HKEY_LOCAL_MACHINE\Hardware\DESCRIPTION\System
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\Identifier
DisableUserModeCallbackFilter
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\Policy\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\Policy\v4.0
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\CLRLoadLogDir
HKEY_CURRENT_USER\Software\Microsoft\.NETFramework
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wA7NV0.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_CURRENT_USER\Software\Microsoft\Fusion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\Software\Microsoft\.NETFramework\NGen\Policy\v4.0
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\Servicing
HKEY_LOCAL_MACHINE\Software\Microsoft\StrongName
HKEY_LOCAL_MACHINE\Software\Microsoft\Fusion\PublisherPolicy\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\index23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\LegacyPolicyTimeStamp
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Windows.Forms__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Windows.Forms__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Drawing__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Drawing__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Configuration__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Configuration__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Xml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Xml__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.Accessibility__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.Accessibility__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Security__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Security__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Runtime.Serialization.Formatters.Soap__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Runtime.Serialization.Formatters.Soap__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Deployment__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Deployment__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Core__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Core__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Policy\APTCA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000409
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Numerics__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Numerics__b77a5c561934e089
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Management__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Management__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.4.0.System.Configuration.Install__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.4.0.System.Configuration.Install__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\v4.0_policy.10.0.Microsoft.JScript__b03f5f7f11d50a3a
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\policy.10.0.Microsoft.JScript__b03f5f7f11d50a3a
HKEY_CURRENT_USER\Software\Classes
HKEY_CURRENT_USER\Software\Classes\AppID\wA7NV0.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE\AppCompat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_CURRENT_USER\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc\Extensions
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BFE
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledProcesses\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\3865CF2B
HKEY_LOCAL_MACHINE\Software\Microsoft\SQMClient\Windows\DisabledSessions\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_CLASSES_ROOT\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\System\DNSclient
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Domain
HKEY_CURRENT_USER\Software\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_CURRENT_USER\Software\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_CURRENT_USER\Software\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 024
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
\xe8\x86\x90\xc7\xbcEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA\AccessProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ServiceParameters
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LaunchPermission
HKEY_LOCAL_MACHINE\Software\Microsoft\OLE
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LoadUserSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Phantom
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Driver
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003\00000000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003\00000000\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003\00000000\Data
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\DeviceDesc
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Control Panel\International
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Control Panel\International\LocaleName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Mfg
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Service
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002\00000000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002\00000000\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002\00000000\Data
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#DiskVMware_Virtual_SATA_Hard_Drive__________00000001#6&158e87a7&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#DiskVMware_Virtual_SATA_Hard_Drive__________00000001#6&158e87a7&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#DiskVMware_Virtual_SATA_Hard_Drive__________00000001#6&158e87a7&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\Properties
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\Class
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_94_-_INTEL(R)_XEON(R)_CPU_E3-1270_V5_@_3.60GHZ\_0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT12
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_94_-_INTEL(R)_XEON(R)_CPU_E3-1270_V5_@_3.60GHZ\_1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\FriendlyName
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Power\PowerRequestOverride
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Power\PowerRequestOverride
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power\PowerRequestOverride\Driver
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\LogConf
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LocationInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LocationInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomNECVMWar_VMware_SATA_CD01_______________1.00____#6&2848384c&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomNECVMWar_VMware_SATA_CD01_______________1.00____#6&2848384c&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomNECVMWar_VMware_SATA_CD01_______________1.00____#6&2848384c&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\#
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\Tracing\WMI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\SessionEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Level
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AreaFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Session
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\BufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MinimumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFileMode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\FlushTimer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AgeLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SYSTEM\Setup
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Safeboot\Option
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\VssAccessControl
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\Rpc
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Settings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSS\Diag\WMI Writer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\Software\Classes
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\IdentifierLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\QueryLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\PathLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbThrottlingEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighMaxLimitFactor
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbTaskMaxSleep
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3Mult
HKEY_LOCAL_MACHINE\system\Setup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Unchecked Task Count
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Build
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\MOF Self-Install Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Default Repository Driver
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueCoreFsrepVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Cache Spill Ratio
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckPointValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SnapShotValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckRepositoryOnNextStartup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NumWriteIdCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Item Age (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NextAutoRecoverFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Enable Provider Subsystem
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\ProcessIdentifier
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableEvents
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssToBeInitialized
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Low Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\High Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Wait On Events (ms)
HKEY_LOCAL_MACHINE\Software\Microsoft\WBEM\ESS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Merger Query Arbitration Enabled
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\CIMOM
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerBatchSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ClientCallbackTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerQueueThreshold
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Tasks
HKEY_LOCAL_MACHINE\software\microsoft\wbem\cimom
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SetupDate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Async Result Queue Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/subscription
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\CIMV2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\CIMV2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_CLASSES_ROOT\CLSID\{d63a5850-8f16-11cf-9f47-00aa00bf345c}\InProcServer32
HKEY_CLASSES_ROOT\CLSID\{d63a5850-8f16-11cf-9f47-00aa00bf345c}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{d63a5850-8f16-11cf-9f47-00aa00bf345c}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\CIMV2:__Win32Provider.Name="CIMWin32"
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\minint
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2\SCM Event Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocHandler
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\cimv2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\cimv2
HKEY_CLASSES_ROOT\CLSID\{FD4F53E0-65DC-11d1-AB64-00C04FD9159E}\InProcServer32
HKEY_CLASSES_ROOT\CLSID\{FD4F53E0-65DC-11d1-AB64-00C04FD9159E}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{FD4F53E0-65DC-11d1-AB64-00C04FD9159E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\CIMV2:__Win32Provider.Name="MS_NT_EVENTLOG_PROVIDER"
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\wmi
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\wmi
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\InProcServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}\LocalServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_CLASSES_ROOT\CLSID\{D2D588B5-D081-11d0-99E0-00C04FC2F8EC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ProcessID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnablePrivateObjectHeap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ContextLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ObjectLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Cimom
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmiprvse.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\InprocHandler
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\6A7AE7C1
HKEY_CURRENT_USER
HKEY_CURRENT_USER\Control Panel\International
HKEY_CURRENT_USER\Control Panel\International\LocaleName
HKEY_CURRENT_USER\Control Panel\International\sCountry
HKEY_CURRENT_USER\Control Panel\International\sList
HKEY_CURRENT_USER\Control Panel\International\sDecimal
HKEY_CURRENT_USER\Control Panel\International\sThousand
HKEY_CURRENT_USER\Control Panel\International\sGrouping
HKEY_CURRENT_USER\Control Panel\International\sNativeDigits
HKEY_CURRENT_USER\Control Panel\International\sCurrency
HKEY_CURRENT_USER\Control Panel\International\sMonDecimalSep
HKEY_CURRENT_USER\Control Panel\International\sMonThousandSep
HKEY_CURRENT_USER\Control Panel\International\sMonGrouping
HKEY_CURRENT_USER\Control Panel\International\sPositiveSign
HKEY_CURRENT_USER\Control Panel\International\sNegativeSign
HKEY_CURRENT_USER\Control Panel\International\sTimeFormat
HKEY_CURRENT_USER\Control Panel\International\sShortTime
HKEY_CURRENT_USER\Control Panel\International\s1159
HKEY_CURRENT_USER\Control Panel\International\s2359
HKEY_CURRENT_USER\Control Panel\International\sShortDate
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_CURRENT_USER\Control Panel\International\sLongDate
HKEY_CURRENT_USER\Control Panel\International\iCountry
HKEY_CURRENT_USER\Control Panel\International\iMeasure
HKEY_CURRENT_USER\Control Panel\International\iPaperSize
HKEY_CURRENT_USER\Control Panel\International\iDigits
HKEY_CURRENT_USER\Control Panel\International\iLZero
HKEY_CURRENT_USER\Control Panel\International\iNegNumber
HKEY_CURRENT_USER\Control Panel\International\NumShape
HKEY_CURRENT_USER\Control Panel\International\iCurrDigits
HKEY_CURRENT_USER\Control Panel\International\iCurrency
HKEY_CURRENT_USER\Control Panel\International\iNegCurr
HKEY_CURRENT_USER\Control Panel\International\iCalendarType
HKEY_CURRENT_USER\Control Panel\International\iFirstDayOfWeek
HKEY_CURRENT_USER\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Component Information
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\ProcessorNameString
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Identifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009
HKEY_PERFORMANCE_TEXT\Counter
HKEY_PERFORMANCE_DATA\238
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\Component Information
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\ProcessorNameString
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\Identifier
HKEY_LOCAL_MACHINE\SYSTEM
HKEY_LOCAL_MACHINE\SOFTWARE
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CoDeviceInstallers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PerHwIdStorage
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InfPath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InfSection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InstalledDisplayDrivers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.MemorySize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.ChipType
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.DACType
HKEY_LOCAL_MACHINE\Software\Classes\.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\(Default)
HKEY_LOCAL_MACHINE\Software\Classes\exefile
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msrle32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msvidc32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\imaadp32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msg711.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msgsm32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msadp32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msyuv.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\iyuv_32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\tsbyuv.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\C:\Windows\System32\l3codeca.acm
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\HardwareEvents
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Internet Explorer
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Key Management Service
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Media Center
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\OAlerts
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Security
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\System
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Windows PowerShell
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SESSION MANAGER\MEMORY MANAGEMENT\PagingFiles
HKEY_LOCAL_MACHINE\Software\Microsoft\Ole
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\MaximumAllowedAllocationSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\WOW64
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\Environment
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_USERS\S-1-5-18
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_USERS\.DEFAULT\Environment
HKEY_USERS\.DEFAULT\Volatile Environment
HKEY_USERS\.DEFAULT\Volatile Environment\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\RequiredPrivileges
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lsass.exe
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\RequiredPrivileges
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001\ProfileImagePath
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Environment
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Volatile Environment
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Volatile Environment\0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ObjectName
HKEY_CURRENT_USER\Software\Classes\AppID\taskhost.exe
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\WDI\DiagnosticModules
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\NameResource
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\WDI\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\Config\ServerName
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\CLResolutionInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\DisplayInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\SkipWatson
HKEY_LOCAL_MACHINE\Software\Microsoft\RADAR\HeapLeakDetection\Settings
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\Settings\ReflectionInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\RADAR_PRE_LEAK_64
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ExcludedApplications
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DebugApplications
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\SendEFSFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Windows Error Reporting
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\RADAR_PRE_LEAK_64
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DisableQueue
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ExcludedApplications
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DebugApplications
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\SendEFSFiles
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerPortNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseAuthentication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC\RacWerSampleTime
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wfpcl.exe
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-GB
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-GB
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000809
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\SourcePath
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\DevicePath
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\Identifier
DisableUserModeCallbackFilter
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\InstallRoot
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\CLRLoadLogDir
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\DisableConfigCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\CacheLocation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DownloadCacheQuotaInKB
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\EnableLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LoggingLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\ForceLog
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogFailures
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\LogResourceBinds
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseRetryAttempts
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\FileInUseMillisecondsBetweenRetries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\UseLegacyIdentityFormat
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\DisableMSIPeek
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DevOverrideEnable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\.NETFramework\NGen\Policy\v4.0\OptimizeUsedBinaries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\Latest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\index23
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\PublisherPolicy\Default\LegacyPolicyTimeStamp
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000409
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\AppCompat\RaiseDefaultAuthnLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\DefaultAccessPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc\Extensions\RemoteRpcDll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\3865CF2B
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\MachineThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledSessions\GlobalSession
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CF4CC405-E2C5-4DDD-B3CE-5E7582D8C9FA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Hostname
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters\Domain
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy\Enabled
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\FipsAlgorithmPolicy
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
\xe8\x86\x90\xc7\xbcEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider Types\Type 024\Name
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{3abfb8f2-2ffd-11e7-a4cf-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cc-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Data
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\CPC\Volume\{5e1375cd-b5ba-11e3-a2f5-806e6f6e6963}\Generation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LocalService
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ServiceParameters
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RunAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ActivateAtStorage
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\ROTFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AppIDFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LaunchPermission
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyAuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\LegacyImpersonationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\AuthenticationLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\RemoteServerName
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\SRPTrustLevel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\PreferredServerBitness
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\LoadUserSettings
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Phantom
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Driver
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003\00000000\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000003\00000000\Data
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\DeviceDesc
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Control Panel\International\LocaleName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Mfg
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Service
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002\00000000\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Properties\{a8b865dd-2e3d-4094-ad97-e593a70c75d6}\00000002\00000000\Data
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#DiskVMware_Virtual_SATA_Hard_Drive__________00000001#6&158e87a7&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\Class
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003\6&B77DA92&0&1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CNG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0303\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&17\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07E0&SUBSYS_07E015AD&REV_00\4&3AD87E0A&0&2088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MSISADRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MSSMBIOS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SECDRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CSC\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT6\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_00\7&2A7D3009&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_AGILEVPNMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&18\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000000100000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_SPLDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0800\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDIS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&5\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_1977&SUBSYS_197715AD&REV_09\4&3AD87E0A&0&2888\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_L2TPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_DISCACHE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&19\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7110&SUBSYS_197615AD&REV_08\3&2B8E0B4B&0&38\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT7\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0003&MI_01\7&2A7D3009&0&0001\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NDPROXY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANBH\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A03\2&DABA3FF&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&6\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_00\8&17BE0303&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUME\{FF79F28C-2FFB-11E7-A8F3-806E6F6E6963}#0000000006500000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AA\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BA\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT8\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0A05\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SW\{EEAB7790-C514-11D1-B42B-00805FC1270E}\ASYNCMAC\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&7\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NETBT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&20\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\ACPI0003\1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_NDISWANIPV6\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_STORFLT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\4&C5D1198&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0B00\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HID\VID_0E0F&PID_0003&MI_01\8&2F818F48&0&0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\FIXEDBUTTON\2&DABA3FF&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HarddiskVolumeSnapshot12\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&8\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPPOEMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT9\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_FVEVOL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&2B8E0B4B&0&78\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&21\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AB\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\1F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BB\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\GenuineIntel_-_Intel64_Family_6_Model_94_-_Intel(R)_Xeon(R)_CPU_E3-1270_v5_@_3.60GHz\_1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NSIPROXY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_100F&SUBSYS_075015AD&REV_01\4&3AD87E0A&0&0888\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&39\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TCPIPREG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0C02\4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HTTP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_PPTPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&9\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&22\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_HWPOLICY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDTCP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\MS_SSTPMINIPORT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT10\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0740&SUBSYS_074015AD&REV_10\3&2B8E0B4B&0&3F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NULL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*6TO4MP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\VMW0003\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&23\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BC\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TDX\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&10\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDPBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7190&SUBSYS_197615AD&REV_01\3&2B8E0B4B&0&00\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\CDROMNECVMWAR_VMWARE_SATA_CD01_______________1.00____\6&2848384C&0&1.0.0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\*ISATAP\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PCW\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_TSSECSRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_KBD\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_KSECPKG\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\ACPI_HAL\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT11\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&24\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PEAUTH\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&11\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\DISPLAY\DEFAULT_MONITOR\4&10C2E2D6&0&12345678&00&0F\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\RDP_MOU\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0770&SUBSYS_077015AD&REV_00\4&3AD87E0A&0&1088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\BLBDRIVE\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_LLTDIO\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\UMB\UMB\1&841921D&0&PRINTERBUSENUMERATOR\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AD\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0001\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BD\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_PSCHED\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\SYSTEM\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&25\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_8086&DEV_7191&SUBSYS_00000000&REV_01\3&2B8E0B4B&0&08\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITEBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&12\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\UMBUS\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\COMPOSITE_BATTERY\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VGASAVE\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VDRVROOT\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&26\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MOUNTMGR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&13\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0100\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPCDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0774&SUBSYS_197615AD&REV_00\4&3AD87E0A&0&0088\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AE\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BE\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\VOLMGR\0000\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C6\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB\5&3BB57B&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLMGRX\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_AFD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT3\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MPSDRV\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&27\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0103\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&14\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_BEEP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_VOLSNAP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPENCDD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&28\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT4\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&15\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_0790&SUBSYS_079015AD&REV_02\3&2B8E0B4B&0&88\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\ROOT_HUB20\5&6106580&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&AF\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WANARPV6\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&BF\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&C7\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPREFMP\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI\PNP0200\4&205AD762&0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\HDAUDIO\FUNC_01&VEN_15AD&DEV_1975&SUBSYS_15AD1975&REV_1001\5&1D3E533D&0&0001\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&29\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\USB\VID_0E0F&PID_0002\6&B77DA92&0&2\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WDF01000\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&16\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RDPWD\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_CLFS\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT5\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_WFPLWF\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&A8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\IDE\DISKVMWARE_VIRTUAL_SATA_HARD_DRIVE__________00000001\6&158E87A7&0&0.0.0\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\ForcedConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&3\LogConf\BootConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B0\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_RSPNDR\0000\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\DeviceDesc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\FriendlyName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\ConfigFlags
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCI\VEN_15AD&DEV_07A0&SUBSYS_07A015AD&REV_01\3&2B8E0B4B&0&B8\Control\AllocConfig
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&0\LocationInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\PCIIDE\IDECHANNEL\5&12368B4A&0&1\LocationInformation
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#IDE#CdRomNECVMWar_VMware_SATA_CD01_______________1.00____#6&2848384c&0&1.0.0#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\##?#STORAGE#Volume#{ff79f28c-2ffb-11e7-a8f3-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\DeviceInstance
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\SessionEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Level
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AreaFlags
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\Session
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\BufferSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MinimumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumBuffers
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\MaximumFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\LogFileMode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\FlushTimer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Tracing\WMI\AgeLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemSetupInProgress
HKEY_LOCAL_MACHINE\SYSTEM\Setup\UpgradeInProgress
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\ActiveWriterStateTimeout
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Diag\(Default)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSS\Settings\TornComponentsMax
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000100-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9555-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{609B9557-4FB6-11D1-9971-00C04FBBB345}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\IdentifierLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\QueryLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\PathLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbThrottlingEnabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighMaxLimitFactor
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbTaskMaxSleep
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold1Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold2Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ArbSystemHighThreshold3Mult
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Unchecked Task Count
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Working Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Build
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\MOF Self-Install Directory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Default Repository Driver
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueCoreFsrepVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Repository Cache Spill Ratio
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckPointValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SnapShotValue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\CheckRepositoryOnNextStartup
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NumWriteIdCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Class Cache Item Age (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableObjectValidation
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\NextAutoRecoverFile
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Enable Provider Subsystem
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{20F627E7-698F-40B0-90B3-A74E8735E5D2}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{500489C5-87D1-459A-8E3D-E58ACB8BBB9F}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{52DEB809-F42F-4C8E-B4AE-03F95F2FDE63}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Provider
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Scope
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\Locale
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\User
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Client\{67D5A612-B2EE-4E88-8D9E-AF0260B63966}\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnableEvents
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssToBeInitialized
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Low Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\High Threshold On Events (B)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Wait On Events (ms)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Merger Query Arbitration Enabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerBatchSize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ClientCallbackTimeout
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\FinalizerQueueThreshold
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Tasks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SetupDate
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Max Async Result Queue Size
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\CIMV2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\CIMV2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{661FF7F6-F4D1-4593-B59D-4C54C1ECE68B}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D63A5850-8F16-11CF-9F47-00AA00BF345C}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\CIMV2:__Win32Provider.Name="CIMWin32"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7B31DF9-D515-11D3-A11C-00105A1F515A}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{07435309-D440-41B7-83F3-EB82DB6C622F}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{21CD80A2-B305-4F37-9D4C-4534A8D9B568}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{06413D98-405C-4A5A-8D6F-19B8B7C6ACF7}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F50A28CF-5C9C-4F7E-9D80-E25E16E18C59}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6B3FC272-BF37-4968-933A-6DF9222A2607}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0FC8C622-1728-4149-A57F-AD19D0970710}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FEC1B0AC-5808-4033-A915-C0185934581E}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EB658B8A-7A64-4DDC-9B8D-A92610DB0206}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C857801-7381-11CF-884D-00AA004B2E24}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71285C44-1DC0-11D2-B5FB-00104B703EFD}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\Root
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\cimv2
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\cimv2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD4F53E0-65DC-11D1-AB64-00C04FD9159E}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders\ROOT\CIMV2:__Win32Provider.Name="MS_NT_EVENTLOG_PROVIDER"
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\wmi
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\wmi
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\InprocServer32\Synchronization
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2D588B5-D081-11D0-99E0-00C04FC2F8EC}\AppId
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ProcessID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\EnablePrivateObjectHeap
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ContextLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ObjectLimit
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Sink Transmit Buffer Size
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\DefaultRpcStackSize
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44D5-8C73-4EFFB68962F2}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SQMClient\Windows\DisabledProcesses\6A7AE7C1
HKEY_CURRENT_USER\Control Panel\International\LocaleName
HKEY_CURRENT_USER\Control Panel\International\sCountry
HKEY_CURRENT_USER\Control Panel\International\sList
HKEY_CURRENT_USER\Control Panel\International\sDecimal
HKEY_CURRENT_USER\Control Panel\International\sThousand
HKEY_CURRENT_USER\Control Panel\International\sGrouping
HKEY_CURRENT_USER\Control Panel\International\sNativeDigits
HKEY_CURRENT_USER\Control Panel\International\sCurrency
HKEY_CURRENT_USER\Control Panel\International\sMonDecimalSep
HKEY_CURRENT_USER\Control Panel\International\sMonThousandSep
HKEY_CURRENT_USER\Control Panel\International\sMonGrouping
HKEY_CURRENT_USER\Control Panel\International\sPositiveSign
HKEY_CURRENT_USER\Control Panel\International\sNegativeSign
HKEY_CURRENT_USER\Control Panel\International\sTimeFormat
HKEY_CURRENT_USER\Control Panel\International\sShortTime
HKEY_CURRENT_USER\Control Panel\International\s1159
HKEY_CURRENT_USER\Control Panel\International\s2359
HKEY_CURRENT_USER\Control Panel\International\sShortDate
HKEY_CURRENT_USER\Control Panel\International\sYearMonth
HKEY_CURRENT_USER\Control Panel\International\sLongDate
HKEY_CURRENT_USER\Control Panel\International\iCountry
HKEY_CURRENT_USER\Control Panel\International\iMeasure
HKEY_CURRENT_USER\Control Panel\International\iPaperSize
HKEY_CURRENT_USER\Control Panel\International\iDigits
HKEY_CURRENT_USER\Control Panel\International\iLZero
HKEY_CURRENT_USER\Control Panel\International\iNegNumber
HKEY_CURRENT_USER\Control Panel\International\NumShape
HKEY_CURRENT_USER\Control Panel\International\iCurrDigits
HKEY_CURRENT_USER\Control Panel\International\iCurrency
HKEY_CURRENT_USER\Control Panel\International\iNegCurr
HKEY_CURRENT_USER\Control Panel\International\iCalendarType
HKEY_CURRENT_USER\Control Panel\International\iFirstDayOfWeek
HKEY_CURRENT_USER\Control Panel\International\iFirstWeekOfYear
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\Logging
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Component Information
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\ProcessorNameString
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Identifier
HKEY_PERFORMANCE_TEXT\Counter
HKEY_PERFORMANCE_DATA\238
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\Component Information
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\ProcessorNameString
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\1\Identifier
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InfPath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InfSection
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\InstalledDisplayDrivers
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.MemorySize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.ChipType
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CLASS\{4D36E968-E325-11CE-BFC1-08002BE10318}\0001\HardwareInformation.DACType
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.exe\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msrle32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msvidc32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\imaadp32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msg711.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msgsm32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msadp32.acm
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\msyuv.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\iyuv_32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\tsbyuv.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc\C:\Windows\System32\l3codeca.acm
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SESSION MANAGER\MEMORY MANAGEMENT\PagingFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLE\MaximumAllowedAllocationSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DcomLaunch\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcEptMapper\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RpcSs\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\WOW64
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18\ProfileImagePath
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\Environment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EFS\RequiredPrivileges
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\WOW64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WdiSystemHost\RequiredPrivileges
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-120665959-548228820-2376508522-1001\ProfileImagePath
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_USERS\S-1-5-21-120665959-548228820-2376508522-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Start
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ErrorControl
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Tag
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnService
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\DependOnGroup
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\Group
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc\ObjectName
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{15fba3b8-a37a-4f91-bdba-fbb98fe804bf}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{282396b2-6c46-4d66-b413-70b0445df33c}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{284ddb2f-beea-4c9d-91e8-e3670ed91517}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{3EA6B3DF-393E-41C3-9885-29EC5A701926}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{45DE1EA9-10BC-4f96-9B21-4B6B83DBF476}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{4d21da64-fd02-4b82-a0a5-783266e430ab}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{50e3b0eb-5780-49de-9eb5-8d53a51fd146}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5C85A128-86F7-41a4-B655-BEE3F2ADEF46}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{5EE64AFB-398D-4edb-AF71-3B830219ABF7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{63e0d0f7-ac2f-493b-a7f2-2f3ccdb66fca}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{67f1ec80-6c5b-43bb-860b-d47ae85242b1}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{72dbb5ac-6a91-46e6-885b-d429828bea2e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{7a54f16f-a73a-4258-ba46-a1e998a6aa74}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{85e0acd9-809a-482b-b60b-bcad1f8d0cd7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{88d4896f-f553-446a-9c75-9dec124ff8b7}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8CC29128-0B57-4a2b-A7B9-A74A70BA6FA1}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{8d39bd5b-81f8-4b94-a608-6a50bbff5d15}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{95c162b7-5b71-44f8-82e4-abfd3108f40f}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{9c5a40da-b965-4fc3-8781-88dd50a6299d}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a0d86e0d-3f06-411b-9dd5-35bc5666ff3e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{a59f0643-a6ca-48e0-a7c4-4cdd258439e2}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{abd0ea66-a840-44a9-97b1-fb74fddaa8c8}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{b171ab1c-60e9-4301-a338-beab1c70b3e9}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{bf2de437-b736-48fb-84a0-5f0c389a068e}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{C0F51D84-11B9-4e74-B083-99F11BA2DB0A}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c70949f5-bda4-4bf3-8121-af0bc174925f}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{c8544339-5be9-4f25-862e-485f1b1a6935}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{d8bcedf8-46c3-440e-bc65-dfa6a5094054}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\ImagePath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\NeverLowerPagePriority
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\DiagnosticModules\{E4CD2E3E-3852-4952-B76B-23BB8E35D344}\NameResource
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\WDI\Config\ServerName
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\CLResolutionInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\DisplayInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RADAR\SkipWatson
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\Settings\ReflectionInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\RADAR_PRE_LEAK_64
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DisableQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\SendEFSFiles
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Disabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\DefaultOverrideBehavior
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\Consent\RADAR_PRE_LEAK_64
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\LoggingDisabled
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DontShowUI
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DisableArchive
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ConfigureArchive
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\DisableQueue
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\MaxQueueCount
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\MaxArchiveCount
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ForceQueue
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\QueuePesterInterval
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\SendEFSFiles
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\BypassDataThrottling
HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting\ForceUserModeCabCollection
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerServer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseSSL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerPortNumber
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\CorporateWerUseAuthentication
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Reliability Analysis\RAC\RacWerSampleTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\LastServiceStart
HKEY_LOCAL_MACHINE\Software\Microsoft\Wbem\Transports\Decoupled\Server
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\CreationTime
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\MarshaledProxy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Transports\Decoupled\Server\ProcessIdentifier
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\ConfigValueEssNeedsLoading
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\List of event-active namespaces
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\ESS\//./root/CIMV2\SCM Event Provider
kernel32.dll.RegQueryValueExW
kernel32.dll.HeapAlloc
kernel32.dll.HeapFree
kernel32.dll.GetTickCount
mscoree.dll.CLRCreateInstance
advapi32.dll.RegOpenKeyExW
advapi32.dll.RegQueryInfoKeyW
advapi32.dll.RegEnumKeyExW
advapi32.dll.RegEnumValueW
advapi32.dll.RegCloseKey
advapi32.dll.RegQueryValueExW
mscoree.dll.#142
mscoreei.dll.RegisterShimImplCallback
mscoreei.dll.OnShimDllMainCalled
mscoreei.dll.CLRCreateInstance
clr.dll.SetRuntimeInfo
clr.dll.DllGetClassObjectInternal
mscoree.dll.CreateConfigStream
mscoreei.dll.CreateConfigStream
shlwapi.dll.UrlIsW
kernel32.dll.GetNumaHighestNodeNumber
kernel32.dll.FlsSetValue
kernel32.dll.FlsGetValue
kernel32.dll.FlsAlloc
kernel32.dll.FlsFree
kernel32.dll.SetThreadStackGuarantee
shlwapi.dll.PathFindFileNameW
kernel32.dll.IsWow64Process
kernel32.dll.GetSystemWindowsDirectoryW
advapi32.dll.AllocateAndInitializeSid
advapi32.dll.OpenProcessToken
advapi32.dll.GetTokenInformation
advapi32.dll.InitializeAcl
advapi32.dll.AddAccessAllowedAce
advapi32.dll.FreeSid
kernel32.dll.AddSIDToBoundaryDescriptor
kernel32.dll.CreateBoundaryDescriptorW
kernel32.dll.CreatePrivateNamespaceW
kernel32.dll.OpenPrivateNamespaceW
kernel32.dll.DeleteBoundaryDescriptor
kernel32.dll.WerRegisterRuntimeExceptionModule
kernel32.dll.RaiseException
kernel32.dll.AddVectoredExceptionHandler
kernel32.dll.RemoveVectoredExceptionHandler
kernel32.dll.AddVectoredContinueHandler
kernel32.dll.RemoveVectoredContinueHandler
mscoree.dll.#24
mscoreei.dll.#24
ntdll.dll.NtSetSystemInformation
kernel32.dll.GetWriteWatch
kernel32.dll.ResetWriteWatch
kernel32.dll.CreateMemoryResourceNotification
kernel32.dll.QueryMemoryResourceNotification
kernel32.dll.SortGetHandle
kernel32.dll.SortCloseHandle
kernel32.dll.GetNativeSystemInfo
mscoree.dll._CorExeMain
mscoree.dll._CorImageUnloading
mscoree.dll._CorValidateImage
ole32.dll.CoInitializeEx
cryptbase.dll.SystemFunction036
mscoree.dll.GetProcessExecutableHeap
mscoreei.dll.GetProcessExecutableHeap
ole32.dll.CoGetContextToken
oleaut32.dll.SafeArrayCreate
oleaut32.dll.SafeArrayAccessData
oleaut32.dll.SafeArrayUnaccessData
oleaut32.dll.#17
oleaut32.dll.#20
oleaut32.dll.#77
oleaut32.dll.SafeArrayCreateVector
clrjit.dll.sxsJitStartup
clrjit.dll.getJit
kernel32.dll.QueryThreadCycleTime
kernel32.dll.GetModuleFileNameW
ole32.dll.CoTaskMemAlloc
ole32.dll.CoTaskMemFree
kernel32.dll.GetFullPathNameW
kernel32.dll.GetLocaleInfoEx
kernel32.dll.LocaleNameToLCID
kernel32.dll.GetUserDefaultLocaleName
kernel32.dll.LCIDToLocaleName
kernel32.dll.GetUserPreferredUILanguages
nlssorting.dll.SortGetHandle
nlssorting.dll.SortCloseHandle
kernel32.dll.CreateEventW
kernel32.dll.ReleaseMutex
kernel32.dll.CreateMutexW
kernel32.dll.CloseHandle
ole32.dll.CoGetObjectContext
sechost.dll.LookupAccountNameLocalW
advapi32.dll.LookupAccountSidW
sechost.dll.LookupAccountSidLocalW
cryptsp.dll.CryptAcquireContextW
cryptsp.dll.CryptGenRandom
ole32.dll.NdrOleInitializeExtension
ole32.dll.CoGetClassObject
ole32.dll.CoGetMarshalSizeMax
ole32.dll.CoMarshalInterface
ole32.dll.CoUnmarshalInterface
ole32.dll.StringFromIID
ole32.dll.CoGetPSClsid
ole32.dll.CoCreateInstance
ole32.dll.CoReleaseMarshalData
ole32.dll.DcomChannelSetHResult
rpcrtremote.dll.I_RpcExtInitializeExtensionPoint
kernel32.dll.LoadLibraryA
kernel32.dll.WideCharToMultiByte
kernel32.dll.GetProcAddress
wminet_utils.dll.ResetSecurity
wminet_utils.dll.SetSecurity
wminet_utils.dll.BlessIWbemServices
wminet_utils.dll.BlessIWbemServicesObject
wminet_utils.dll.GetPropertyHandle
wminet_utils.dll.WritePropertyValue
wminet_utils.dll.Clone
wminet_utils.dll.VerifyClientKey
wminet_utils.dll.GetQualifierSet
wminet_utils.dll.Get
wminet_utils.dll.Put
wminet_utils.dll.Delete
wminet_utils.dll.GetNames
wminet_utils.dll.BeginEnumeration
wminet_utils.dll.Next
wminet_utils.dll.EndEnumeration
wminet_utils.dll.GetPropertyQualifierSet
wminet_utils.dll.GetObjectText
wminet_utils.dll.SpawnDerivedClass
wminet_utils.dll.SpawnInstance
wminet_utils.dll.CompareTo
wminet_utils.dll.GetPropertyOrigin
wminet_utils.dll.InheritsFrom
wminet_utils.dll.GetMethod
wminet_utils.dll.PutMethod
wminet_utils.dll.DeleteMethod
wminet_utils.dll.BeginMethodEnumeration
wminet_utils.dll.NextMethod
wminet_utils.dll.EndMethodEnumeration
wminet_utils.dll.GetMethodQualifierSet
wminet_utils.dll.GetMethodOrigin
wminet_utils.dll.QualifierSet_Get
wminet_utils.dll.QualifierSet_Put
wminet_utils.dll.QualifierSet_Delete
wminet_utils.dll.QualifierSet_GetNames
wminet_utils.dll.QualifierSet_BeginEnumeration
wminet_utils.dll.QualifierSet_Next
wminet_utils.dll.QualifierSet_EndEnumeration
wminet_utils.dll.GetCurrentApartmentType
wminet_utils.dll.GetDemultiplexedStub
wminet_utils.dll.CreateInstanceEnumWmi
wminet_utils.dll.CreateClassEnumWmi
wminet_utils.dll.ExecQueryWmi
wminet_utils.dll.ExecNotificationQueryWmi
wminet_utils.dll.PutInstanceWmi
wminet_utils.dll.PutClassWmi
wminet_utils.dll.CloneEnumWbemClassObject
wminet_utils.dll.ConnectServerWmi
kernel32.dll.LCMapStringEx
ole32.dll.IIDFromString
ole32.dll.CoCreateFreeThreadedMarshaler
oleaut32.dll.#2
oleaut32.dll.#6
kernel32.dll.GetThreadPreferredUILanguages
kernel32.dll.SetThreadPreferredUILanguages
kernel32.dll.GetSystemDefaultLocaleName
oleaut32.dll.SysStringLen
kernel32.dll.RtlZeroMemory
oleaut32.dll.#283
oleaut32.dll.#284
oleaut32.dll.#9
oleaut32.dll.#149
advapi32.dll.GetUserNameW
kernel32.dll.GetComputerNameW
secur32.dll.GetUserNameExW
advapi32.dll.ConvertSidToStringSidW
shell32.dll.SHGetFolderPathW
kernel32.dll.SetThreadErrorMode
kernel32.dll.GetFileAttributesExW
bcrypt.dll.BCryptGetFipsAlgorithmMode
cryptsp.dll.CryptGetDefaultProviderW
cryptsp.dll.CryptCreateHash
cryptsp.dll.CryptHashData
cryptsp.dll.CryptGetHashParam
cryptsp.dll.CryptDestroyHash
kernel32.dll.GetEnvironmentVariableW
kernel32.dll.RegOpenKeyExW
oleaut32.dll.#4
advapi32.dll.AdjustTokenPrivileges
advapi32.dll.GetNamedSecurityInfoW
ntmarta.dll.GetMartaExtensionInterface
advapi32.dll.GetSecurityDescriptorLength
kernel32.dll.LocalFree
advapi32.dll.SetNamedSecurityInfoW
advapi32.dll.LsaClose
advapi32.dll.LsaFreeMemory
advapi32.dll.LsaOpenPolicy
advapi32.dll.LsaLookupNames2
advapi32.dll.EncryptFileW
feclient.dll.FeClientInitialize
sechost.dll.OpenSCManagerW
sechost.dll.OpenServiceW
sechost.dll.QueryServiceStatusEx
sechost.dll.StartServiceW
sechost.dll.CloseServiceHandle
kernel32.dll.FormatMessageW
oleaut32.dll.#500
oleaut32.dll.#200
advapi32.dll.EventRegister
kernel32.dll.LocalAlloc
shell32.dll.ShellExecuteEx
shell32.dll.ShellExecuteExW
setupapi.dll.CM_Get_Device_Interface_List_Size_ExW
setupapi.dll.CM_Get_Device_Interface_List_ExW
ole32.dll.CoUninitialize
ole32.dll.CoRevokeInitializeSpy
comctl32.dll.#388
advapi32.dll.EventUnregister
cryptsp.dll.CryptReleaseContext
advapi32.dll.UnregisterTraceGuids
comctl32.dll.#321
ntdll.dll.EtwUnregisterTraceGuids
kernel32.dll.CreateActCtxW
kernel32.dll.AddRefActCtx
kernel32.dll.ReleaseActCtx
kernel32.dll.ActivateActCtx
kernel32.dll.DeactivateActCtx
kernel32.dll.GetCurrentActCtx
kernel32.dll.QueryActCtxW
vssapi.dll.CreateWriter
advapi32.dll.LookupAccountNameW
samcli.dll.NetLocalGroupGetMembers
samlib.dll.SamConnect
rpcrt4.dll.NdrClientCall3
rpcrt4.dll.RpcStringBindingComposeW
rpcrt4.dll.RpcBindingFromStringBindingW
rpcrt4.dll.RpcStringFreeW
rpcrt4.dll.RpcBindingFree
samlib.dll.SamOpenDomain
samlib.dll.SamLookupNamesInDomain
samlib.dll.SamOpenAlias
samlib.dll.SamFreeMemory
samlib.dll.SamCloseHandle
samlib.dll.SamGetMembersInAlias
netutils.dll.NetApiBufferFree
samlib.dll.SamEnumerateDomainsInSamServer
samlib.dll.SamLookupDomainInSamServer
ole32.dll.CoCreateGuid
ole32.dll.StringFromCLSID
oleaut32.dll.#7
propsys.dll.VariantToPropVariant
wbemcore.dll.Reinitialize
wbemsvc.dll.DllGetClassObject
wbemsvc.dll.DllCanUnloadNow
authz.dll.AuthzInitializeContextFromToken
authz.dll.AuthzInitializeObjectAccessAuditEvent2
authz.dll.AuthzAccessCheck
authz.dll.AuthzFreeAuditEvent
authz.dll.AuthzFreeContext
authz.dll.AuthzInitializeResourceManager
authz.dll.AuthzFreeResourceManager
rpcrt4.dll.RpcBindingCreateW
rpcrt4.dll.RpcBindingBind
rpcrt4.dll.I_RpcMapWin32Status
advapi32.dll.EventWrite
kernel32.dll.RegCloseKey
kernel32.dll.RegSetValueExW
wmisvc.dll.IsImproperShutdownDetected
wevtapi.dll.EvtRender
wevtapi.dll.EvtNext
wevtapi.dll.EvtClose
wevtapi.dll.EvtQuery
wevtapi.dll.EvtCreateRenderContext
rpcrt4.dll.RpcBindingSetAuthInfoExW
rpcrt4.dll.RpcBindingSetOption
ole32.dll.CreateStreamOnHGlobal
advapi32.dll.RegCreateKeyExW
advapi32.dll.RegSetValueExW
kernelbase.dll.InitializeAcl
kernelbase.dll.AddAce
sechost.dll.ConvertStringSecurityDescriptorToSecurityDescriptorW
kernel32.dll.IsThreadAFiber
kernel32.dll.OpenProcessToken
kernelbase.dll.GetTokenInformation
kernelbase.dll.DuplicateTokenEx
kernelbase.dll.AdjustTokenPrivileges
kernel32.dll.SetThreadToken
kernelbase.dll.CheckTokenMembership
kernelbase.dll.AllocateAndInitializeSid
oleaut32.dll.#285
advapi32.dll.RegOpenKeyW
oleaut32.dll.#12
oleaut32.dll.#286
ole32.dll.CLSIDFromString
oleaut32.dll.#19
oleaut32.dll.#25
ole32.dll.CoRevertToSelf
advapi32.dll.LogonUserExExW
sspicli.dll.LogonUserExExW
authz.dll.AuthzInitializeContextFromSid
ole32.dll.CoGetCallContext
ole32.dll.CoImpersonateClient
advapi32.dll.OpenThreadToken
oleaut32.dll.#8
ole32.dll.CoSwitchCallContext
oleaut32.dll.#287
oleaut32.dll.#288
oleaut32.dll.#289
kernel32.dll.RegCreateKeyExW
ntdll.dll.EtwRegisterTraceGuidsW
oleaut32.dll.#290
wmi.dll.WmiQueryAllDataW
wmi.dll.WmiQuerySingleInstanceW
wmi.dll.WmiSetSingleItemW
wmi.dll.WmiSetSingleInstanceW
wmi.dll.WmiExecuteMethodW
wmi.dll.WmiNotificationRegistrationW
wmi.dll.WmiMofEnumerateResourcesW
wmi.dll.WmiFileHandleToInstanceNameW
wmi.dll.WmiDevInstToInstanceNameW
wmi.dll.WmiQueryGuidInformation
wmi.dll.WmiOpenBlock
wmi.dll.WmiCloseBlock
wmi.dll.WmiFreeBuffer
wmi.dll.WmiEnumerateGuids
devobj.dll.DevObjCreateDeviceInfoList
devobj.dll.DevObjGetClassDevs
devobj.dll.DevObjEnumDeviceInfo
devobj.dll.DevObjDestroyDeviceInfoList
setupapi.dll.CM_Open_DevNode_Key_Ex
devobj.dll.DevObjGetDeviceProperty
cfgmgr32.dll.CM_Connect_MachineA
cfgmgr32.dll.CM_Disconnect_Machine
cfgmgr32.dll.CM_Locate_DevNodeW
cfgmgr32.dll.CM_Get_DevNode_Registry_PropertyW
cfgmgr32.dll.CM_Get_Child
cfgmgr32.dll.CM_Get_Sibling
cfgmgr32.dll.CM_Get_DevNode_Status
cfgmgr32.dll.CM_Get_First_Log_Conf
cfgmgr32.dll.CM_Get_Next_Res_Des
cfgmgr32.dll.CM_Get_Res_Des_Data
cfgmgr32.dll.CM_Get_Res_Des_Data_Size
cfgmgr32.dll.CM_Free_Log_Conf_Handle
cfgmgr32.dll.CM_Free_Res_Des_Handle
cfgmgr32.dll.CM_Get_Device_IDA
cfgmgr32.dll.CM_Get_Device_ID_Size
cfgmgr32.dll.CM_Get_Parent
user32.dll.GetSystemMetrics
user32.dll.MonitorFromWindow
user32.dll.MonitorFromRect
user32.dll.MonitorFromPoint
user32.dll.EnumDisplayMonitors
user32.dll.EnumDisplayDevicesW
user32.dll.GetMonitorInfoW
dxgi.dll.DXGIReportAdapterConfiguration
setupapi.dll.SetupDiGetClassDevsW
setupapi.dll.SetupDiEnumDeviceInterfaces
setupapi.dll.SetupDiGetDeviceInterfaceDetailW
setupapi.dll.SetupDiDestroyDeviceInfoList
gdi32.dll.D3DKMTOpenAdapterFromDeviceName
gdi32.dll.D3DKMTQueryAdapterInfo
gdi32.dll.D3DKMTGetDisplayModeList
gdi32.dll.D3DKMTCloseAdapter
wintrust.dll.WinVerifyTrust
advapi32.dll.LookupPrivilegeValueW
oleaut32.dll.#150
version.dll.GetFileVersionInfoSizeW
rpcrt4.dll.UuidFromStringW
radarrs.dll.WdiDiagnosticModuleMain
radarrs.dll.WdiHandleInstance
radarrs.dll.WdiGetDiagnosticModuleInterfaceVersion
version.dll.GetFileVersionInfoW
version.dll.VerQueryValueW
advapi32.dll.RegGetValueW
advapi32.dll.DuplicateToken
advapi32.dll.CheckTokenMembership
"C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe"
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
C:\Windows\system32\wbem\wmiprvse.exe -Embedding
C:\Windows\System32\lsass.exe
"taskhost.exe"
EFS

PE Information

Image Base 0x00400000
Entry Point 0x0040100c
Reported Checksum 0x00013a63
Actual Checksum 0x00013a63
Minimum OS Version 5.1
Compile Time 2015-05-07 07:28:19
Import Hash 1ffacbb147c700edcaf3970198c043e9

Sections

Name Virtual Address Virtual Size Size of Raw Data Characteristics Entropy
.text 0x00001000 0x0000ea87 0x0000ec00 IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 7.12
.kdata 0x00010000 0x0000033a 0x00000400 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 3.90
.bdata 0x00011000 0x000004b0 0x00000600 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0.74
.rsrc 0x00012000 0x00000360 0x00000400 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6.40
.reloc 0x00013000 0x00001214 0x00001400 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 6.57

Imports

Library kernel32.dll:
0x410008 GetCommandLineA
0x41000c TlsSetValue
0x410010 SearchPathA
0x410014 SearchPathA
0x410018 TlsSetValue
0x41001c FindFirstFileA
0x410020 FindClose
0x410024 SearchPathA
0x410028 GetShortPathNameA
0x41002c VirtualAlloc
0x410030 CreateMailslotA
0x410034 CopyFileA
0x410038 LoadLibraryA
0x41003c GetACP
0x410040 SearchPathA
0x410044 ResetEvent
0x410048 SearchPathA
0x41004c GetTickCount
0x410050 GetTickCount
0x410054 CreateJobObjectW
0x410058 SearchPathA
0x41005c Sleep
0x410060 SearchPathA
0x410064 RemoveDirectoryA
0x410068 LoadLibraryExA
0x41006c SetLocalTime
Library untfs.dll:
0x410074 Extend
0x410078 Format
0x41007c FormatEx

.text
.kdata
@.bdata
.rsrc
@.reloc
S=s)a
VirtualAlloc
GetCurrentDirectoryW
SearchPathA
SearchPathA
CreateMailslotA
LoadLibraryA
SearchPathA
SearchPathA
GetTickCount
SearchPathA
WaitForMultipleObjectsEx
GetTickCount
CreateJobObjectW
TlsSetValue
GetCommandLineA
FindFirstFileA
RemoveDirectoryA
TlsSetValue
Sleep
LoadLibraryExA
ResetEvent
SetLocalTime
GetACP
SearchPathA
FindClose
SearchPathA
GetShortPathNameA
CopyFileA
kernel32.dll
Format
FormatEx
Extend
untfs.dll
hafekislopkjunhytghlkiollpp
ncobjapi.dll
FERNEF22.dll
VirtualAlloc
wsiybijcuws
ccwmucfraxd
kgjsspnnorfv
This file is not on VirusTotal.

Process Tree


wA7NV0.exe, PID: 884, Parent PID: 2480
Full Path: C:\Users\user\AppData\Local\Temp\wA7NV0.exe
Command Line: "C:\Users\user\AppData\Local\Temp\wA7NV0.exe"
svchost.exe, PID: 564, Parent PID: 460
Full Path: C:\Windows\sysnative\svchost.exe
Command Line: C:\Windows\system32\svchost.exe -k DcomLaunch
svchost.exe, PID: 920, Parent PID: 460
Full Path: C:\Windows\sysnative\svchost.exe
Command Line: C:\Windows\system32\svchost.exe -k netsvcs
WmiPrvSE.exe, PID: 2684, Parent PID: 564
Full Path: C:\Windows\sysnative\wbem\WmiPrvSE.exe
Command Line: C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
services.exe, PID: 460, Parent PID: 372
Full Path: C:\Windows\sysnative\services.exe
Command Line: C:\Windows\system32\services.exe
lsass.exe, PID: 2596, Parent PID: 460
Full Path: C:\Windows\sysnative\lsass.exe
Command Line: C:\Windows\System32\lsass.exe
taskhost.exe, PID: 2852, Parent PID: 460
Full Path: C:\Windows\sysnative\taskhost.exe
Command Line: "taskhost.exe"
wfpcl.exe, PID: 2616, Parent PID: 884
Full Path: C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
Command Line: "C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe"

Hosts

No hosts contacted.

TCP

No TCP connections recorded.

UDP

No UDP connections recorded.

DNS

No domains contacted.

HTTP Requests

No HTTP requests performed.

SMTP traffic

No SMTP traffic performed.

IRC traffic

No IRC requests performed.

ICMP traffic

No ICMP traffic performed.

CIF Results

No CIF Results

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Suricata HTTP

No Suricata HTTP

Sorry! No dropped Suricata Extracted files.

JA3

No JA3 hashes found.

File name wA7NV0.exe
Associated Filenames
C:\Users\user\AppData\Local\Temp\wA7NV0.exe
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
C:\Users\user\AppData\Local\Microsoft\Windows\wfpcl.exe
File Size 70144 bytes
File Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 57d6230f89533e4d420d37552813ff49
SHA1 4cba66e152eeeb2178e27c8e8e5c6c1b56bee0a5
SHA256 76c4120a2b2b475feda74b057a16a46d52654572012f748578c27a39f3aafac5
CRC32 8B38956C
Ssdeep 1536:mNRrLFomE4qpTyiZLmYJ0GW2Z6CUsHK1:ygmEBhahGW2oCY
ClamAV None
Yara None matched
CAPE Yara None matched
VirusTotal Search for Analysis
Submit file
File name 9435f817-fed2-454e-88cd-7f78fda62c48
Associated Filenames
C:\Windows\sysnative\LogFiles\Scm\9435f817-fed2-454e-88cd-7f78fda62c48
File Size 12 bytes
File Type data
MD5 c0a578b5d835799b713b8b978f085150
SHA1 44a3a9bd3bc8ef6c3112fa5bf85ffc63628ee5e1
SHA256 1598030d332e6712a1b0eff245f1549771f86ff1624ffd1965774f6c758f57a1
CRC32 4FA74541
Ssdeep 3:mk//:L/
ClamAV None
Yara None matched
CAPE Yara None matched
VirusTotal Search for Analysis
Submit file
Type Extracted Shellcode
Size 4096 bytes
Virtual Address 0x003F0000
Process wA7NV0.exe
PID 884
Path C:\Users\user\AppData\Local\Temp\wA7NV0.exe
MD5 6118b692aacd18b2d20724881a195353
SHA1 de22e63b08c9726469ae9b9f8a1a9f9de3572cdf
SHA256 fbded414ce2a9511c38425934a9d565a58b7a31a00ac86376f0a2c5a98b87ce5
CRC32 A0B681F8
Ssdeep 48:YwOZMP2Wk0pBfbH2lI3FEBbTvrV93IJSyHnhRG25dosOr7E:w90zylKmBbTvrr6BRV5Ws9
Yara None matched
CAPE Yara None matched
Download Download ZIP
Type Extracted Shellcode
Size 8192 bytes
Virtual Address 0x01ED0000
Process wA7NV0.exe
PID 884
Path C:\Users\user\AppData\Local\Temp\wA7NV0.exe
MD5 4928787e1e465d85957fb90c82ef87b9
SHA1 8fca39e425f383310dd28ebb88dc8a3fb3578e5e
SHA256 1ab80b74b86eaa4785e181882cdc6b985cdd3973d1a0c9178a4f1ab2b8b1245c
CRC32 A9613CD0
Ssdeep 96:LX4o2GyeGHY2irh3nncih3nncNdhyPtUer83bk:LX8Geirh3ncih3nc3hyPtRu
Yara None matched
CAPE Yara None matched
Download Download ZIP
Type Extracted Shellcode
Size 4096 bytes
Virtual Address 0x03C20000
Process wA7NV0.exe
PID 884
Path C:\Users\user\AppData\Local\Temp\wA7NV0.exe
MD5 b4a6b4d99d5e0d2e74ba6f8013223ddf
SHA1 13c62b6568a8031b18c252b4e7c59642c876cd8e
SHA256 a30a8ee5cd9a9a84a9831d99c6f124a2641b512fa43885f19164733b0cce00ed
CRC32 773D4AB8
Ssdeep 3:qlVll9YnCltlClial/ljll0m9WbJN6Ei4PJ5g3W5dBgaTXKrl:qNl9KGCjltjll0KKFiiJa3W5dBj
Yara
  • shellcode_patterns - Matched shellcode byte patterns
CAPE Yara None matched
Download Download ZIP
Type Extracted Shellcode
Size 20480 bytes
Virtual Address 0x03C30000
Process wA7NV0.exe
PID 884
Path C:\Users\user\AppData\Local\Temp\wA7NV0.exe
MD5 b45c1c9026d52d522034cfe0d66777de
SHA1 6765be1a60342f45f772a90a2565230c9dcea1a7
SHA256 0029aa8f7a7105c7def07cac77ed130f6d863f27400a9fa95fe2f6cd95d2081f
CRC32 5A33F9BF
Ssdeep 96:Ml/i+XJkTmZR7zv9MO3Mb0LiwOm1KEBPnH7xBlUgT7H0m9gQl3u3fm5juTgeqEP4:MlbQU7zGAMK7tBH7FV7UjUu3uh8geqH
Yara