Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\System.Windows.Forms.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\System.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\System.EnterpriseServices.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\System.Drawing.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\mscorlib.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\mscoree.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.1.4322\\Microsoft.JScript.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\System.Windows.Forms.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\System.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\System.EnterpriseServices.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\System.Drawing.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\mscorlib.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\mscoree.tlb"=dword:00001000
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Windows\\Microsoft.NET\\Framework\\v1.0.3705\\Microsoft.JScript.tlb"=dword:00001000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bak]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bak\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cfg]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cfg\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.idx]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.idx\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ipa]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ipa\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itc2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itc2\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itdb]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itdb\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itl]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.itl\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.map]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.map\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mdb]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mdb\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.oxps]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.oxps\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.oxps\UserChoice]
"ProgId"="Windows.XPSReachViewer"
"Hash"="axfNDMjaUvQ="
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pls]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pls\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pptx]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pptx\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pst]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pst\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rar]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rar\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tmp]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tmp\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vssettings]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vssettings\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wsb]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wsb\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wsb\UserChoice]
"ProgId"="Windows.Sandbox"
"Hash"="XvPnaSYjQD0="
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xlsx]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xlsx\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xps]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xps\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xps\UserChoice]
"ProgId"="Windows.XPSReachViewer"
"Hash"="2WSQzyI2DKs="
[HKEY_CLASSES_ROOT\AppXaf0097ws4bwb0wre67gmp7pc9fjr8en6\DefaultIcon]
@="C:\\Program Files\\WindowsApps\\Microsoft.Office.OneNote_16001.11901.20096.0_x64__8wekyb3d8bbwe\\images\\OneNoteLogo_150x150.png"
[HKEY_CLASSES_ROOT\AppXj4qrs60k02d8kcd8ycgdx89mga9t57z3\DefaultIcon]
@="C:\\Program Files\\WindowsApps\\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\\images\\icon.png"
[HKEY_CLASSES_ROOT\AppXztymbw55c24qp3qfb1jac0r6a8w3rtfq\DefaultIcon]
@="C:\\Program Files\\WindowsApps\\Microsoft.Microsoft3DViewer_7.1908.9012.0_x64__8wekyb3d8bbwe\\Assets\\Images\\Tiles\\StoreLogo.png"
[HKEY_CLASSES_ROOT\grvopen\DefaultIcon]
@="C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\OneDrive.exe"
[HKEY_CLASSES_ROOT\grvopen\shell\open]
[HKEY_CLASSES_ROOT\grvopen\shell\open\command]
@="\"C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\OneDrive.exe\" /url:\"%1\""
[HKEY_CLASSES_ROOT\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}]
@="UpToDateOverlayHandler2 Class"
[HKEY_CLASSES_ROOT\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32]
"ThreadingModel"="Apartment"
@="C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.123.0624.0005\\FileSyncShell.dll"
[HKEY_CLASSES_ROOT\CLSID\{206FA6D0-A493-41FA-943D-3F655088F7B9}]
@="Perception Simulation Calibration Runtime"
[HKEY_CLASSES_ROOT\CLSID\{206FA6D0-A493-41FA-943D-3F655088F7B9}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{363BE3C0-DDD4-4B21-BC6D-7E9DF8CE19CB}]
@="Perception Simulation Hand Tracker Monitor"
[HKEY_CLASSES_ROOT\CLSID\{363BE3C0-DDD4-4B21-BC6D-7E9DF8CE19CB}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{3F052B8E-512B-419D-9E06-9B9ADDC7118C}]
[HKEY_CLASSES_ROOT\CLSID\{3F052B8E-512B-419D-9E06-9B9ADDC7118C}\InProcServer32]
@="C:\\Windows\\SysWOW64\\MapsCSP.dll"
"ThreadingModel"="Free"
[HKEY_CLASSES_ROOT\CLSID\{4FA480D8-32A4-4849-B774-DE8BD5242A4C}]
@="PSFactoryBuffer"
[HKEY_CLASSES_ROOT\CLSID\{4FA480D8-32A4-4849-B774-DE8BD5242A4C}\InProcServer32]
@="C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\psmachine.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{5EB699B3-9296-41BA-9258-DE70F03B7D6C}]
@="Perception Simulation Spatial Graph Monitor"
[HKEY_CLASSES_ROOT\CLSID\{5EB699B3-9296-41BA-9258-DE70F03B7D6C}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}]
@="ErrorOverlayHandler2 Class"
[HKEY_CLASSES_ROOT\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32]
"ThreadingModel"="Apartment"
@="C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.123.0624.0005\\FileSyncShell.dll"
[HKEY_CLASSES_ROOT\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}]
@="SyncingOverlayHandler2 Class"
[HKEY_CLASSES_ROOT\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32]
"ThreadingModel"="Apartment"
@="C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.123.0624.0005\\FileSyncShell.dll"
[HKEY_CLASSES_ROOT\CLSID\{8685C4A9-D0E4-444C-87A0-D9FB858235A7}]
@="Perception Simulation Surface Reconstruction Monitor"
[HKEY_CLASSES_ROOT\CLSID\{8685C4A9-D0E4-444C-87A0-D9FB858235A7}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}]
@="StorageProviderUriSource Class"
[HKEY_CLASSES_ROOT\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\LocalServer32]
@="C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.123.0624.0005\\FileCoAuth.exe"
[HKEY_CLASSES_ROOT\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\ProgID]
@="StorageProviderUriSource.StorageProviderUriSource.1"
[HKEY_CLASSES_ROOT\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\TypeLib]
@="{638805C3-4BA3-4AC8-8AAC-71A0BA2BC284}"
[HKEY_CLASSES_ROOT\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\VersionIndependentProgID]
@="StorageProviderUriSource.StorageProviderUriSource"
[HKEY_CLASSES_ROOT\CLSID\{95BD18C1-D7FB-4BD3-839A-1C37C90131B1}]
@="Perception Simulation Spatial Graph Runtime"
[HKEY_CLASSES_ROOT\CLSID\{95BD18C1-D7FB-4BD3-839A-1C37C90131B1}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{994B3B2F-2880-4318-A583-15C38A01F571}]
@="Perception Simulation Hand Tracker Runtime"
[HKEY_CLASSES_ROOT\CLSID\{994B3B2F-2880-4318-A583-15C38A01F571}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{A020FAD9-D661-4857-AA43-E6A86FF1163E}]
@="Perception Simulation Calibration Monitor"
[HKEY_CLASSES_ROOT\CLSID\{A020FAD9-D661-4857-AA43-E6A86FF1163E}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{A82536D7-C8E6-4CEF-AA66-11E97EDDFC6D}]
@="Perception Simulation Surface Reconstruction Runtime"
[HKEY_CLASSES_ROOT\CLSID\{A82536D7-C8E6-4CEF-AA66-11E97EDDFC6D}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}]
@="Google.OneClickProcessLauncher"
[HKEY_CLASSES_ROOT\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\LocalServer32]
@="\"C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\GoogleUpdateBroker.exe\""
[HKEY_CLASSES_ROOT\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\ProgID]
@="Google.OneClickProcessLauncherMachine.1.0"
[HKEY_CLASSES_ROOT\CLSID\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}\VersionIndependentProgID]
@="Google.OneClickProcessLauncherMachine"
[HKEY_CLASSES_ROOT\CLSID\{CDAEB70C-E686-4299-93EB-7D63D77B7F63}]
@="Perception Simulation Head Tracker Runtime"
[HKEY_CLASSES_ROOT\CLSID\{CDAEB70C-E686-4299-93EB-7D63D77B7F63}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{D8E090A5-4149-467D-8103-BFB8F51E8BCB}]
@="Perception Simulation Head Tracker Monitor"
[HKEY_CLASSES_ROOT\CLSID\{D8E090A5-4149-467D-8103-BFB8F51E8BCB}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{FA6C507D-A9AF-4385-86C0-80115F0AE20B}]
@="Perception Simulation Secondary Head Tracker Runtime"
[HKEY_CLASSES_ROOT\CLSID\{FA6C507D-A9AF-4385-86C0-80115F0AE20B}\InProcServer32]
@="C:\\Windows\\SysWOW64\\PerceptionSimulationExtensions.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{47AADF36-BA70-4E24-BBDE-20EC9FC139FD}]
@="MainServer Class"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{47AADF36-BA70-4E24-BBDE-20EC9FC139FD}\InprocServer32]
@="C:\\Program Files\\NVIDIA Corporation\\Display\\nvlicensings.dll"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{47AADF36-BA70-4E24-BBDE-20EC9FC139FD}\ProgID]
@="LicensingServer.MainServer.1"
[HKEY_CLASSES_ROOT\CLSID\{47AADF36-BA70-4E24-BBDE-20EC9FC139FD}\TypeLib]
@="{B99B6947-DC2A-486E-9E7F-D278F9E704DD}"
[HKEY_CLASSES_ROOT\CLSID\{47AADF36-BA70-4E24-BBDE-20EC9FC139FD}\VersionIndependentProgID]
@="LicensingServer.MainServer"
[HKEY_CLASSES_ROOT\CLSID\{4FA480D8-32A4-4849-B774-DE8BD5242A4C}]
@="PSFactoryBuffer"
[HKEY_CLASSES_ROOT\CLSID\{4FA480D8-32A4-4849-B774-DE8BD5242A4C}\InProcServer32]
@="C:\\Program Files (x86)\\Google\\Update\\1.3.33.17\\psmachine_64.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{55C27CA1-022A-4381-AE5E-3412BF3D31C9}]
@="CategoryLicense Class"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{55C27CA1-022A-4381-AE5E-3412BF3D31C9}\InprocServer32]
@="C:\\Program Files\\NVIDIA Corporation\\Display\\nvlicensings.dll"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{55C27CA1-022A-4381-AE5E-3412BF3D31C9}\ProgID]
@="LicensingServer.CategoryLicense.1"
[HKEY_CLASSES_ROOT\CLSID\{55C27CA1-022A-4381-AE5E-3412BF3D31C9}\TypeLib]
@="{B99B6947-DC2A-486E-9E7F-D278F9E704DD}"
[HKEY_CLASSES_ROOT\CLSID\{55C27CA1-022A-4381-AE5E-3412BF3D31C9}\VersionIndependentProgID]
@="LicensingServer.CategoryLicense"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}]
@="ManageLicense Class"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}\InprocServer32]
@="C:\\Program Files\\NVIDIA Corporation\\Display\\nvlicensings.dll"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}\ProgID]
@="LicensingServer.ManageLicense.1"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}\TypeLib]
@="{B99B6947-DC2A-486E-9E7F-D278F9E704DD}"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}\Version]
@="1.0"
[HKEY_CLASSES_ROOT\CLSID\{DFA226E7-D28D-407D-95ED-5A79D9745BB5}\VersionIndependentProgID]
@="LicensingServer.ManageLicense"
[HKEY_CLASSES_ROOT\Interface\{2B865677-AC3A-43BD-B9E7-BF6FCD3F0596}]
@="IFileSyncClient11"
[HKEY_CLASSES_ROOT\Interface\{2B865677-AC3A-43BD-B9E7-BF6FCD3F0596}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{2B865677-AC3A-43BD-B9E7-BF6FCD3F0596}\TypeLib]
@="{909A6CCD-6810-46C4-89DF-05BE7EB61E6C}"
"Version"="1.0"
[HKEY_CLASSES_ROOT\Applications\provtool.exe\shell\open]
[HKEY_CLASSES_ROOT\Applications\provtool.exe\shell\open\command]
@=hex(2):22,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,70,00,\
72,00,6f,00,76,00,74,00,6f,00,6f,00,6c,00,2e,00,65,00,78,00,65,00,22,00,20,\
00,22,00,25,00,31,00,22,00,20,00,2f,00,73,00,6f,00,75,00,72,00,63,00,65,00,\
20,00,53,00,68,00,65,00,6c,00,6c,00,4f,00,70,00,65,00,6e,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]
"C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.002.0107.0005\\FileSyncConfig.exe"=hex:53,\
41,43,50,01,00,00,00,00,00,00,00,07,00,00,00,28,00,00,00,30,81,04,00,91,56,\
05,00,01,00,00,00,00,00,00,00,00,00,00,0a,00,21,00,00,63,1f,6e,6f,0e,de,d4,\
01,00,00,00,01,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]
"C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\Update\\OneDriveSetup.exe"=hex:53,\
41,43,50,01,00,00,00,00,00,00,00,07,00,00,00,28,00,00,00,78,22,04,02,6d,68,\
04,02,01,00,00,00,00,00,00,00,00,00,00,0a,00,21,00,00,63,1f,6e,6f,0e,de,d4,\
01,00,00,00,01,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]
"C:\\Users\\34622\\AppData\\Local\\Microsoft\\OneDrive\\19.123.0624.0005\\FileSyncConfig.exe"=hex:53,\
41,43,50,01,00,00,00,00,00,00,00,07,00,00,00,28,00,00,00,78,8c,05,00,08,98,\
05,00,01,00,00,00,00,00,00,00,00,00,00,0a,00,21,00,00,63,1f,6e,6f,0e,de,d4,\
01,00,00,00,01,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"Collab-P2PHost-In-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=In|Protocol=6|App=%SystemRoot%\\system32\\p2phost.exe|[email protected],-32003|[email protected],-32006|[email protected],-32002|Edge=TRUE|Defer=App|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"Collab-P2PHost-Out-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\\system32\\p2phost.exe|[email protected],-32007|[email protected],-32010|[email protected],-32002|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"Collab-P2PHost-WSD-In-UDP"="v2.30|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\system32\\p2phost.exe|[email protected],-32011|[email protected],-32014|[email protected],-32002|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"Collab-P2PHost-WSD-Out-UDP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\system32\\p2phost.exe|[email protected],-32015|[email protected],-32018|[email protected],-32002|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-In-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\ehome\\ehshell.exe|[email protected],-30761|[email protected],-30764|[email protected],-30752|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-Out-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\ehome\\ehshell.exe|[email protected],-30765|[email protected],-30768|[email protected],-30752|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-In-UDP"="v2.30|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\ehome\\ehshell.exe|[email protected],-30801|[email protected],-30804|[email protected],-30752|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-Out-UDP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\\ehome\\ehshell.exe|[email protected],-30805|[email protected],-30808|[email protected],-30752|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-Prov-Out-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\\ehome\\mcx2prov.exe|[email protected],-30812|[email protected],-30813|[email protected],-30752|"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"MCX-McrMgr-Out-TCP"="v2.30|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\\ehome\\mcrmgr.exe|[email protected],-30818|[email protected],-30819|[email protected],-30752|"