-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:0000002b
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV]
"Type"=dword:00000002
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,72,78,\
64,61,76,2e,73,79,73,00
"DisplayName"="WebDav Client Redirector"
"Description"="WebDav Client Redirector"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Parameters]
"FileInformationCacheLifeTimeInSec"=dword:0000003c
"FileNotFoundCacheLifeTimeInSec"=dword:0000003c
"NameCacheMaxEntries"=dword:0000012c
"DAVDebugFlag"=dword:00000000
"UMRxDebugFlag"=dword:00000000
"RequestTimeoutInSec"=dword:00000258
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Enum]
"0"="Root\\LEGACY_MRXDAV\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb]
"Type"=dword:00000002
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000005
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,72,78,\
73,6d,62,2e,73,79,73,00
"DisplayName"="MRXSMB"
"Group"="Network"
"Description"="MRXSMB"
"LastLoadStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Parameters]
"CscEnabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Enum]
"0"="Root\\LEGACY_MRXSMB\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC]
"Type"=dword:00000010
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
6d,73,64,74,63,2e,65,78,65,00
"DisplayName"="Distributed Transaction Coordinator"
"Group"="MS Transactions"
"DependOnService"=hex(7):52,50,43,53,53,00,53,61,6d,53,53,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="NT AUTHORITY\\NetworkService"
"Description"="Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. "
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance]
"Library"="msdtcuiu.DLL"
"Open"="DtcPerfOpen"
"Collect"="DtcPerfCollect"
"Close"="DtcPerfClose"
"Last Counter"=dword:000008a2
"Last Help"=dword:000008a3
"First Counter"=dword:00000888
"First Help"=dword:00000889
"Object List"="2184"
"WbemAdapFileSignature"=hex:b2,f6,76,ba,72,a3,d4,7f,34,c4,bc,37,0c,a6,68,0f
"WbemAdapFileTime"=hex:72,44,d4,a3,eb,23,c5,01
"WbemAdapFileSize"=dword:00027600
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Security]
"Security"=hex:01,00,14,80,e0,00,00,00,ec,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,b0,00,06,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
02,00,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,\
00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,18,00,fd,01,\
02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,00,00,14,00,9d,00,02,\
00,01,01,00,00,00,00,00,05,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Enum]
"0"="Root\\LEGACY_MSDTC\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Msfs]
"ErrorControl"=dword:00000001
"Group"="File system"
"Start"=dword:00000001
"Type"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Msfs\Enum]
"0"="Root\\LEGACY_MSFS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer]
"Description"="Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start."
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
6d,73,69,65,78,65,63,2e,65,78,65,20,2f,56,00
"DisplayName"="Windows Installer"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer\Enum]
"0"="Root\\LEGACY_MSISERVER\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSKSSRV]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:00000008
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,4b,\
53,53,52,56,2e,73,79,73,00
"DisplayName"="Microsoft Streaming Service Proxy"
"Group"="Extended Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSKSSRV\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPCLOCK]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:00000007
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,50,\
43,4c,4f,43,4b,2e,73,79,73,00
"DisplayName"="Microsoft Streaming Clock Proxy"
"Group"="Extended Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPCLOCK\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPQM]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:00000009
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,50,\
51,4d,2e,73,79,73,00
"DisplayName"="Microsoft Streaming Quality Manager Proxy"
"Group"="Extended Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPQM\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,73,73,\
6d,62,69,6f,73,2e,73,79,73,00
"DisplayName"="Microsoft System Management BIOS Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Data]
"AcpiData"=hex:52,53,44,54,2c,00,00,00,01,11,4e,76,69,64,69,61,41,57,52,44,41,\
43,50,49,31,2e,30,42,41,57,52,44,00,00,00,00,40,30,ff,1f,c0,74,ff,1f,46,41,\
43,50,74,00,00,00,01,69,4e,76,69,64,69,61,41,57,52,44,41,43,50,49,31,2e,30,\
42,41,57,52,44,00,00,00,00,00,00,ff,1f,c0,30,ff,1f,01,00,09,00,2e,44,00,00,\
a1,a0,00,00,00,40,00,00,00,00,00,00,04,40,00,00,00,00,00,00,00,00,00,00,08,\
40,00,00,20,40,00,00,a0,44,00,00,04,02,00,04,08,10,20,00,65,00,e9,03,00,00,\
00,00,01,00,7d,7e,32,00,00,00,a5,04,00,00,44,53,44,54,e7,43,00,00,01,b2,4e,\
56,49,44,49,41,41,57,52,44,41,43,50,49,00,10,00,00,4d,53,46,54,0e,00,00,01,\
41,50,49,43,6e,00,00,00,01,75,4e,76,69,64,69,61,41,57,52,44,41,43,50,49,31,\
2e,30,42,41,57,52,44,00,00,00,00,00,00,e0,fe,01,00,00,00,00,08,00,00,01,00,\
00,00,01,0c,02,00,00,00,c0,fe,00,00,00,00,02,0a,00,00,02,00,00,00,00,00,02,\
0a,00,09,09,00,00,00,0d,00,02,0a,00,0e,0e,00,00,00,05,00,02,0a,00,0f,0f,00,\
00,00,05,00,04,06,00,05,00,01
"BiosData"=hex:0a,00,00,00,7e,00,4d,00,48,00,7a,00,00,00,04,00,00,00,04,00,00,\
00,d9,05,00,00,2c,00,00,00,43,00,6f,00,6d,00,70,00,6f,00,6e,00,65,00,6e,00,\
74,00,20,00,49,00,6e,00,66,00,6f,00,72,00,6d,00,61,00,74,00,69,00,6f,00,6e,\
00,00,00,03,00,00,00,10,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,01,00,\
00,00,26,00,00,00,43,00,6f,00,6e,00,66,00,69,00,67,00,75,00,72,00,61,00,74,\
00,69,00,6f,00,6e,00,20,00,44,00,61,00,74,00,61,00,00,00,09,00,00,00,10,00,\
00,00,ff,ff,ff,ff,ff,ff,ff,ff,00,00,00,00,00,00,00,00,16,00,00,00,49,00,64,\
00,65,00,6e,00,74,00,69,00,66,00,69,00,65,00,72,00,00,00,01,00,00,00,40,00,\
00,00,78,00,38,00,36,00,20,00,46,00,61,00,6d,00,69,00,6c,00,79,00,20,00,36,\
00,20,00,4d,00,6f,00,64,00,65,00,6c,00,20,00,38,00,20,00,53,00,74,00,65,00,\
70,00,70,00,69,00,6e,00,67,00,20,00,31,00,00,00,28,00,00,00,50,00,72,00,6f,\
00,63,00,65,00,73,00,73,00,6f,00,72,00,4e,00,61,00,6d,00,65,00,53,00,74,00,\
72,00,69,00,6e,00,67,00,00,00,01,00,00,00,30,00,00,00,41,00,4d,00,44,00,20,\
00,53,00,65,00,6d,00,70,00,72,00,6f,00,6e,00,28,00,74,00,6d,00,29,00,20,00,\
20,00,20,00,32,00,32,00,30,00,30,00,2b,00,00,00,1c,00,00,00,55,00,70,00,64,\
00,61,00,74,00,65,00,20,00,53,00,74,00,61,00,74,00,75,00,73,00,00,00,04,00,\
00,00,04,00,00,00,01,00,00,00,22,00,00,00,56,00,65,00,6e,00,64,00,6f,00,72,\
00,49,00,64,00,65,00,6e,00,74,00,69,00,66,00,69,00,65,00,72,00,00,00,01,00,\
00,00,1a,00,00,00,41,00,75,00,74,00,68,00,65,00,6e,00,74,00,69,00,63,00,41,\
00,4d,00,44,00,00,00
"SMBiosData"=hex:00,02,02,22,7e,05,00,00,00,13,00,00,01,02,00,f0,03,03,80,9e,\
cb,7f,00,00,00,00,37,50,68,6f,65,6e,69,78,20,54,65,63,68,6e,6f,6c,6f,67,69,\
65,73,2c,20,4c,54,44,00,41,53,55,53,20,41,37,4e,38,58,2d,58,20,41,43,50,49,\
20,42,49,4f,53,20,52,65,76,20,31,30,31,31,00,30,38,2f,30,34,2f,32,30,30,34,\
00,00,01,19,01,00,01,02,03,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,06,41,53,55,53,54,65,4b,20,43,6f,6d,70,75,74,65,72,20,49,4e,43,2e,00,41,\
37,4e,38,58,2d,58,00,52,45,56,20,32,2e,78,78,00,20,20,20,20,20,20,20,20,20,\
20,20,00,00,02,08,02,00,01,02,03,04,41,53,55,53,54,65,4b,20,43,6f,6d,70,75,\
74,65,72,20,49,4e,43,2e,00,41,37,4e,38,58,2d,58,00,52,45,56,20,32,2e,78,78,\
00,20,20,20,20,20,20,20,20,20,20,20,00,00,03,0d,03,00,01,03,02,03,04,03,03,\
03,03,43,68,61,73,73,69,73,20,4d,61,6e,75,66,61,63,74,74,75,72,65,00,43,68,\
61,73,73,69,73,20,56,65,72,73,69,6f,6e,00,20,20,20,20,20,20,20,20,20,20,20,\
20,20,20,20,20,20,20,20,20,20,00,20,20,20,20,20,20,20,20,20,20,20,20,20,20,\
20,20,00,00,04,20,04,00,01,03,85,02,81,06,00,00,ff,fb,83,03,03,90,a6,00,b8,\
0b,dc,05,41,04,09,00,0a,00,ff,ff,53,6f,63,6b,65,74,20,41,00,41,4d,44,00,41,\
4d,44,20,53,65,6d,70,72,6f,6e,28,74,6d,29,00,00,05,16,05,00,03,01,02,02,0a,\
1c,00,00,05,02,03,06,00,07,00,08,00,04,00,00,06,0c,06,00,01,0f,00,00,01,08,\
08,00,44,44,52,31,00,00,06,0c,07,00,01,2f,00,00,01,08,08,00,44,44,52,32,00,\
00,06,0c,08,00,01,ff,00,00,01,7f,7f,00,44,44,52,33,00,00,07,13,09,00,01,80,\
01,80,00,80,00,30,00,30,00,00,02,04,05,4c,31,20,43,61,63,68,65,00,00,07,13,\
0a,00,01,a1,01,00,01,00,01,30,00,30,00,00,02,04,05,4c,32,20,43,61,63,68,65,\
00,00,08,09,0b,00,01,16,00,00,00,50,52,49,4d,41,52,59,20,49,44,45,2f,48,44,\
44,00,00,08,09,0c,00,01,16,00,00,00,53,45,43,4f,4e,44,41,52,59,20,49,44,45,\
2f,48,44,44,00,00,08,09,0d,00,01,17,00,00,00,46,4c,4f,50,50,59,00,00,08,09,\
0e,00,01,00,02,08,08,53,65,72,69,61,6c,20,50,6f,72,74,20,31,00,53,65,72,69,\
61,6c,20,50,6f,72,74,20,31,00,00,08,09,0f,00,01,00,02,08,08,53,65,72,69,61,\
6c,20,50,6f,72,74,20,32,00,53,65,72,69,61,6c,20,50,6f,72,74,20,32,00,00,08,\
09,10,00,01,00,02,05,05,50,61,72,61,6c,6c,65,6c,20,50,6f,72,74,00,50,61,72,\
61,6c,6c,65,6c,20,50,6f,72,74,00,00,08,09,11,00,01,00,02,0f,0d,50,53,2f,32,\
20,4b,65,79,62,6f,61,72,64,00,50,53,2f,32,20,4b,65,79,62,6f,61,72,64,00,00,\
08,09,12,00,01,00,02,0f,0e,50,53,2f,32,20,4d,6f,75,73,65,00,50,53,2f,32,20,\
4d,6f,75,73,65,00,00,08,09,13,00,00,00,01,12,10,55,53,42,31,00,00,08,09,14,\
00,00,00,01,12,10,55,53,42,32,00,00,08,09,15,00,00,00,01,12,10,55,53,42,33,\
00,00,08,09,16,00,00,00,01,12,10,55,53,42,34,00,00,08,09,17,00,00,00,01,12,\
10,55,53,42,35,00,00,08,09,18,00,00,00,01,12,10,55,53,42,36,00,00,08,09,19,\
00,00,00,01,0b,1f,45,54,48,45,52,4e,45,54,00,00,08,09,1a,00,00,00,01,0b,1f,\
45,54,48,45,52,4e,45,54,00,00,08,09,1b,00,00,00,01,07,0c,4a,6f,79,73,74,69,\
63,20,50,6f,72,74,00,00,08,09,1c,00,00,00,01,07,0b,4d,49,44,49,20,50,6f,72,\
74,00,00,09,0d,1d,00,01,06,05,03,03,01,00,06,01,50,43,49,31,00,00,09,0d,1e,\
00,01,06,05,03,03,02,00,06,01,50,43,49,32,00,00,09,0d,1f,00,01,06,05,03,03,\
03,00,06,01,50,43,49,33,00,00,09,0d,20,00,01,06,05,04,03,04,00,06,01,50,43,\
49,34,00,00,09,0d,21,00,01,06,05,03,03,05,00,06,01,50,43,49,35,00,00,09,0d,\
22,00,01,0f,05,03,03,06,00,04,00,41,47,50,00,00,08,09,23,00,00,00,01,21,11,\
4f,6e,62,6f,61,72,64,20,31,33,39,34,00,00,08,09,24,00,00,00,01,1f,1d,4c,69,\
6e,65,20,49,6e,20,4a,61,63,6b,20,50,6f,72,74,00,00,0d,16,25,00,03,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,01,6e,7c,55,53,7c,69,73,6f,38,38,35,\
39,2d,31,00,6e,7c,55,53,7c,69,73,6f,38,38,35,39,2d,31,00,72,7c,43,41,7c,69,\
73,6f,38,38,35,39,2d,31,00,61,7c,4a,50,7c,75,6e,69,63,6f,64,65,00,00,10,0f,\
26,00,03,03,03,00,00,18,00,fe,ff,03,00,00,00,11,15,27,00,26,00,fe,ff,48,00,\
40,00,00,01,09,00,01,02,03,80,00,44,44,52,31,00,42,61,6e,6b,30,2f,31,00,00,\
11,15,28,00,26,00,fe,ff,48,00,40,00,00,01,09,00,01,02,03,80,00,44,44,52,32,\
00,42,61,6e,6b,32,2f,33,00,00,11,15,29,00,26,00,fe,ff,48,00,40,00,00,00,09,\
00,01,02,03,80,00,44,44,52,33,00,42,61,6e,6b,34,2f,35,00,00,13,0f,2a,00,00,\
00,00,00,ff,ff,07,00,26,00,02,00,00,14,13,2b,00,00,00,00,00,ff,ff,03,00,27,\
00,2a,00,01,00,00,00,00,14,13,2c,00,00,00,04,00,ff,ff,07,00,28,00,2a,00,01,\
00,00,00,00,14,13,2d,00,00,00,00,00,00,00,00,00,29,00,2a,00,01,00,00,00,00,\
20,0b,2e,00,00,00,00,00,00,00,00,00,00,7f,04,2f,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Enum]
"0"="Root\\SYSTEM\\0002"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6d,73,6d,\
70,75,34,30,31,2e,73,79,73,00
"DisplayName"="Microsoft MPU-401 MIDI UART Driver"
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401\Enum]
"0"="ACPI\\PNPB006\\3&13c0b0c5&0"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup]
"DisplayName"="Mup"
"ErrorControl"=dword:00000001
"Group"="Network"
"Start"=dword:00000000
"Tag"=dword:00000002
"Type"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup\Enum]
"0"="Root\\LEGACY_MUP\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS]
"DisplayName"="NDIS System Driver"
"ErrorControl"=dword:00000001
"Group"="NDIS Wrapper"
"Start"=dword:00000000
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MediaTypes]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\Parameters]
"ProcessorAffinityMask"=dword:ffffffff
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\Enum]
"0"="Root\\LEGACY_NDIS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
73,74,61,70,69,2e,73,79,73,00
"DisplayName"="Remote Access NDIS TAPI Driver"
"Description"="Remote Access NDIS TAPI Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Parameters]
"AsyncEventQueueSize"=dword:00000300
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Enum]
"0"="Root\\LEGACY_NDISTAPI\\0000"
"Count"=dword:00000004
"NextInstance"=dword:00000004
"1"="Root\\MS_NDISWANIP\\0000"
"2"="Root\\MS_PPPOEMINIPORT\\0000"
"3"="Root\\MS_PPTPMINIPORT\\0000"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:0000000b
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
73,75,69,6f,2e,73,79,73,00
"DisplayName"="NDIS Usermode I/O Protocol"
"Group"="NDIS"
"Description"="NDIS Usermode I/O Protocol"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Linkage]
"Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,43,45,35,46,41,30,44,30,2d,33,38,34,\
44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,\
00,5c,44,65,76,69,63,65,5c,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,\
44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
"Route"=hex(7):22,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,\
39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,22,00,22,7b,41,45,43,\
38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
36,31,37,38,32,33,33,33,7d,22,00,00
"Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,64,69,73,75,69,6f,5f,7b,43,45,35,46,\
41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,\
34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,73,75,69,6f,5f,\
7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,\
44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Enum]
"0"="Root\\LEGACY_NDISUIO\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
73,77,61,6e,2e,73,79,73,00
"DisplayName"="Remote Access NDIS WAN Driver"
"Description"="Remote Access NDIS WAN Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Linkage]
"Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,33,35,39,45,36,34,35,41,2d,41,35,45,\
43,2d,34,34,34,44,2d,38,34,44,45,2d,33,35,33,41,31,45,36,35,42,41,31,33,7d,\
00,5c,44,65,76,69,63,65,5c,7b,33,31,34,38,34,44,30,43,2d,41,35,37,32,2d,34,\
30,45,38,2d,38,33,35,44,2d,33,41,42,37,38,31,44,44,37,43,34,30,7d,00,5c,44,\
65,76,69,63,65,5c,7b,35,37,32,30,37,39,39,30,2d,45,45,41,42,2d,34,41,35,37,\
2d,38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,00,5c,44,65,76,69,\
63,65,5c,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,34,46,37,45,2d,38,30,\
31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,00,5c,44,65,76,69,63,65,5c,\
7b,35,31,46,46,37,46,39,39,2d,33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,\
46,37,38,32,42,46,33,46,30,46,34,41,7d,00,00
"Route"=hex(7):22,7b,33,35,39,45,36,34,35,41,2d,41,35,45,43,2d,34,34,34,44,2d,\
38,34,44,45,2d,33,35,33,41,31,45,36,35,42,41,31,33,7d,22,00,22,7b,33,31,34,\
38,34,44,30,43,2d,41,35,37,32,2d,34,30,45,38,2d,38,33,35,44,2d,33,41,42,37,\
38,31,44,44,37,43,34,30,7d,22,00,22,7b,35,37,32,30,37,39,39,30,2d,45,45,41,\
42,2d,34,41,35,37,2d,38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,\
22,00,22,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,34,46,37,45,2d,38,30,\
31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,22,00,22,7b,35,31,46,46,37,\
46,39,39,2d,33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,46,37,38,32,42,46,\
33,46,30,46,34,41,7d,22,00,00
"Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,7b,33,35,39,45,\
36,34,35,41,2d,41,35,45,43,2d,34,34,34,44,2d,38,34,44,45,2d,33,35,33,41,31,\
45,36,35,42,41,31,33,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,\
7b,33,31,34,38,34,44,30,43,2d,41,35,37,32,2d,34,30,45,38,2d,38,33,35,44,2d,\
33,41,42,37,38,31,44,44,37,43,34,30,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,\
73,57,61,6e,5f,7b,35,37,32,30,37,39,39,30,2d,45,45,41,42,2d,34,41,35,37,2d,\
38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,00,5c,44,65,76,69,63,\
65,5c,4e,64,69,73,57,61,6e,5f,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,\
34,46,37,45,2d,38,30,31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,00,5c,\
44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,7b,35,31,46,46,37,46,39,39,2d,\
33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,46,37,38,32,42,46,33,46,30,46,\
34,41,7d,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Enum]
"0"="Root\\MS_NDISWANIP\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDProxy]
"DisplayName"=hex(7):4e,44,49,53,20,50,72,6f,78,79,00,00
"ErrorControl"=dword:00000001
"Group"="PNP_TDI"
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDProxy\Enum]
"0"="Root\\LEGACY_NDPROXY\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS]
"Type"=dword:00000002
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,65,74,\
62,69,6f,73,2e,73,79,73,00
"DisplayName"="NetBIOS Interface"
"Group"="NetBIOSGroup"
"Description"="NetBIOS Interface"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Linkage]
"LanaMap"=hex:01,03,01,00,00,01,00,02
"Bind"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,\
32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
54,5f,54,63,70,69,70,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,\
45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,\
76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,\
30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,\
32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,\
5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,38,\
2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
"Route"=hex(7):22,4e,65,74,42,54,22,20,22,54,63,70,69,70,22,20,22,7b,43,45,35,\
46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,\
38,34,30,33,30,44,39,39,7d,22,00,22,4e,65,74,42,54,22,20,22,54,63,70,69,70,\
22,20,22,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,\
37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,22,00,22,4e,65,74,42,54,22,\
20,22,54,63,70,69,70,22,20,22,4e,64,69,73,57,61,6e,49,70,22,00,00
"Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,54,\
5f,54,63,70,69,70,5f,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,\
37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,\
69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,\
37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
49,4f,53,5f,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,30,\
2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,32,\
43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,\
54,5f,54,63,70,69,70,5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,\
44,33,2d,42,39,44,38,2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Parameters]
"MaxLana"=dword:00000003
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Parameters\Winsock]
"HelperDllName"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,\
6d,33,32,5c,77,73,68,6e,65,74,62,73,2e,64,6c,6c,00
"MaxSockAddrLength"=dword:00000014
"MinSockAddrLength"=dword:00000014
"Mapping"=hex:02,00,00,00,03,00,00,00,11,00,00,00,05,00,00,00,00,00,00,00,11,\
00,00,00,02,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Enum]
"0"="Root\\LEGACY_NETBIOS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000006
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,65,74,\
62,74,2e,73,79,73,00
"DisplayName"="NetBios over Tcpip"
"Group"="PNP_TDI"
"DependOnService"=hex(7):54,63,70,69,70,00,00
"DependOnGroup"=hex(7):00
"Description"="NetBios over Tcpip"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Linkage]
"OtherDependencies"=hex(7):54,63,70,69,70,00,00
"Bind"=hex(7):5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,43,45,35,46,41,30,\
44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,\
33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,41,45,43,\
38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
36,31,37,38,32,33,33,33,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,\
45,46,41,41,31,41,32,30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,\
31,45,34,45,34,43,35,32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,\
70,5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,\
38,2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
"Route"=hex(7):22,54,63,70,69,70,22,20,22,7b,43,45,35,46,41,30,44,30,2d,33,38,\
34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,\
7d,22,00,22,54,63,70,69,70,22,20,22,7b,41,45,43,38,31,34,31,31,2d,42,45,31,\
45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,\
22,00,22,54,63,70,69,70,22,20,22,4e,64,69,73,57,61,6e,49,70,22,00,00
"Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,\
32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
54,5f,54,63,70,69,70,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,\
45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,\
76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,\
30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,\
32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,\
5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,38,\
2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters]
"NbProvider"="_tcp"
"NameServerPort"=dword:00000089
"CacheTimeout"=dword:000927c0
"BcastNameQueryCount"=dword:00000003
"BcastQueryTimeout"=dword:000002ee
"NameSrvQueryCount"=dword:00000003
"NameSrvQueryTimeout"=dword:000005dc
"Size/Small/Medium/Large"=dword:00000001
"SessionKeepAlive"=dword:0036ee80
"TransportBindName"="\\Device\\"
"EnableLMHOSTS"=dword:00000001
"DhcpNodeType"=dword:00000008
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{95BBC455-0CBA-4ED3-B9D8-2AFCE18C49E7}]
"NameServerList"=hex(7):00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{AEC81411-BE1E-4DE1-BB79-D79261782333}]
"NameServerList"=hex(7):00
"NetbiosOptions"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{CE5FA0D0-384D-4387-9E47-D25184030D99}]
"NameServerList"=hex(7):00
"NetbiosOptions"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{EFAA1A20-1136-4A13-A53C-B1E4E4C52CBE}]
"NameServerList"=hex(7):00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Security]
"Security"=hex:01,00,14,80,e8,00,00,00,f4,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,b8,00,08,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,\
00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,\
00,40,00,00,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,40,00,00,00,\
01,01,00,00,00,00,00,05,14,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,\
00,00,05,20,00,00,00,2c,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Enum]
"0"="Root\\LEGACY_NETBT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDE]
"DependOnService"=hex(7):4e,65,74,44,44,45,44,53,44,4d,00,00
"Description"="Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start."
"DisplayName"="Network DDE"
"ErrorControl"=dword:00000001
"Group"="NetDDEGroup"
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6e,65,74,64,64,65,2e,65,78,65,00
"ObjectName"="LocalSystem"
"Start"=dword:00000004
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDE\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDEdsdm]
"DependOnService"=hex(7):00
"Description"="Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. "
"DisplayName"="Network DDE DSDM"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6e,65,74,64,64,65,2e,65,78,65,00
"ObjectName"="LocalSystem"
"Start"=dword:00000004
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDEdsdm\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,73,61,73,73,2e,65,78,65,00
"DisplayName"="Net Logon"
"Group"="RemoteValidation"
"DependOnService"=hex(7):4c,61,6e,6d,61,6e,57,6f,72,6b,73,74,61,74,69,6f,6e,00,\
00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Supports pass-through authentication of account logon events for computers in a domain."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Parameters]
"DisablePasswordChange"=dword:00000000
"maximumpasswordage"=dword:0000001e
"requiresignorseal"=dword:00000001
"requirestrongkey"=dword:00000000
"sealsecurechannel"=dword:00000001
"signsecurechannel"=dword:00000001
"Update"="no"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman]
"DependOnService"=hex(7):52,70,63,53,73,00,00
"Description"="Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections."
"DisplayName"="Network Connections"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"ObjectName"="LocalSystem"
"Start"=dword:00000003
"Type"=dword:00000120
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,6e,65,74,6d,61,6e,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman\Enum]
"0"="Root\\LEGACY_NETMAN\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Network Location Awareness (NLA)"
"DependOnService"=hex(7):54,63,70,69,70,00,41,66,64,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Collects and stores network configuration and location information, and notifies applications when this information changes."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,6d,73,77,73,6f,63,6b,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Security]
"Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Enum]
"0"="Root\\LEGACY_NLA\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs]
"ErrorControl"=dword:00000001
"Group"="File system"
"Start"=dword:00000001
"Type"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs\Aliases]
"lsass"=hex(7):70,72,6f,74,65,63,74,65,64,5f,73,74,6f,72,61,67,65,00,6e,65,74,\
6c,6f,67,6f,6e,00,6c,73,61,72,70,63,00,73,61,6d,72,00,00
"ntsvcs"=hex(7):65,76,65,6e,74,6c,6f,67,00,73,76,63,63,74,6c,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs\Enum]
"0"="Root\\LEGACY_NPFS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ntfs]
"ErrorControl"=dword:00000001
"Group"="File system"
"Start"=dword:00000004
"Type"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ntfs\Enum]
"0"="Root\\LEGACY_NTFS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtLmSsp]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,73,61,73,73,2e,65,78,65,00
"DisplayName"="NT LM Security Support Provider"
"ObjectName"="LocalSystem"
"Description"="Provides security to remote procedure call (RPC) programs that use transports other than named pipes."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtLmSsp\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Removable Storage"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,6e,74,6d,73,73,76,63,2e,64,6c,6c,00
"ShutdownTimeout"=dword:00007530
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Null]
"ErrorControl"=dword:00000001
"Group"="Base"
"Start"=dword:00000001
"Tag"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Null\Enum]
"0"="Root\\LEGACY_NULL\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6e,76,61,\
78,2e,73,79,73,00
"DisplayName"="Service for NVIDIA(R) nForce(TM) Audio Enumerator"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax\Enum]
"0"="PCI\\VEN_10DE&DEV_006A&SUBSYS_80951043&REV_A1\\3&13c0b0c5&0&30"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:0000000c
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,4e,56,45,\
4e,45,54,2e,73,79,73,00
"DisplayName"="NVIDIA nForce MCP Networking Adapter Driver"
"Group"="NDIS"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET\Enum]
"0"="PCI\\VEN_10DE&DEV_0066&SUBSYS_80A71043&REV_A1\\3&13c0b0c5&0&20"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6e,76,61,\
70,75,2e,73,79,73,00
"DisplayName"="Service for NVIDIA(R) nForce(TM) Audio"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce\Enum]
"0"="NVAX\\NFORCE_VAD\\4&30255a3&0&0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFlt]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,77,6c,\
6e,6b,66,6c,74,2e,73,79,73,00
"DisplayName"="IPX Traffic Filter Driver"
"DependOnService"=hex(7):4e,77,6c,6e,6b,46,77,64,00,00
"DependOnGroup"=hex(7):00
"Description"="IPX Traffic Filter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFlt\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFwd]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,77,6c,\
6e,6b,66,77,64,2e,73,79,73,00
"DisplayName"="IPX Traffic Forwarder Driver"
"Description"="IPX Traffic Forwarder Driver"
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFwd\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Parport]
"ErrorControl"=dword:00000001
"Group"="Parallel arbitrator"
"Start"=dword:00000003
"Tag"=dword:00000001
"Type"=dword:00000001
"DisplayName"="Parallel port driver"
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,61,72,\
70,6f,72,74,2e,73,79,73,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Parport\Enum]
"0"="ACPI\\PNP0401\\3&13c0b0c5&0"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PartMgr]
"ErrorControl"=dword:00000001
"Group"="System Bus Extender"
"Start"=dword:00000000
"Tag"=dword:00000005
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PartMgr\Enum]
"0"="Root\\LEGACY_PARTMGR\\0000"
"Count"=dword:00000002
"NextInstance"=dword:00000002
"1"="IDE\\DiskMaxtor_6E040L0__________________________NAR61HA0\\394536324d504548202020202020202020202020"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm]
"DependOnGroup"=hex(7):50,61,72,61,6c,6c,65,6c,20,61,72,62,69,74,72,61,74,6f,\
72,00,00
"DependOnService"=hex(7):50,61,72,70,6f,72,74,00,00
"ErrorControl"=dword:00000000
"Group"="Extended base"
"Start"=dword:00000002
"Tag"=dword:00000002
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm\Enum]
"0"="Root\\LEGACY_PARVDM\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI]
"ErrorControl"=dword:00000003
"Group"="Boot Bus Extender"
"Start"=dword:00000000
"Tag"=dword:00000002
"Type"=dword:00000001
"DisplayName"="PCI Bus Driver"
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,63,69,\
2e,73,79,73,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI\Parameters]
"1045C621"=hex:04,00,00,00,00,00,00,00
"10950640"=hex:04,00,00,00,00,00,00,00
"80861230"=hex:04,00,00,00,00,00,00,00
"80867010"=hex:04,00,00,00,00,00,00,00
"104B0140"=hex:08,00,00,00,00,00,00,00
"11790603"=hex:08,00,00,00,00,00,00,00
"80867113"=hex:08,00,00,00,00,00,00,00
"497884C5"=hex:08,00,00,00,00,00,00,00
"11063040"=hex:08,00,00,00,00,00,00,00
"0E111000"=hex:10,00,00,00,00,00,00,00
"0E112000"=hex:10,00,00,00,00,00,00,00
"10390406"=hex:10,00,00,00,00,00,00,00
"80860482"=hex:00,40,00,00,00,00,00,00
"80860008"=hex:10,00,00,00,00,00,00,00
"10140002"=hex:10,00,00,00,00,00,00,00
"10800600"=hex:20,00,00,00,00,00,00,00
"10131100"=hex:40,00,00,00,00,00,00,00
"10B95219"=hex:80,00,00,00,00,00,00,00
"1C1C0001"=hex:00,01,00,00,00,00,00,00
"10970038"=hex:00,01,00,00,00,00,00,00
"100BD001"=hex:00,04,00,00,00,00,00,00
"808604A3"=hex:00,08,00,00,00,00,00,00
"10AA0000"=hex:00,08,00,00,00,00,00,00
"533388D1"=hex:00,00,00,00,01,00,00,00
"11790605"=hex:00,10,00,00,00,00,00,00
"10131110"=hex:00,20,00,00,00,00,00,00
"11800478"=hex:00,20,00,00,00,00,00,00
"11800475"=hex:00,20,00,00,00,00,00,00
"11800476"=hex:00,20,00,00,00,00,00,00
"10040101"=hex:00,40,00,00,00,00,00,00
"10421000"=hex:00,40,00,00,00,00,00,00
"104CAC12"=hex:00,00,01,00,00,00,00,00
"11800466"=hex:00,00,01,00,00,00,00,00
"10140095"=hex:00,00,04,00,00,00,00,00
"80862418"=hex:00,00,04,00,00,00,00,00
"80862428"=hex:00,00,04,00,00,00,00,00
"8086244E"=hex:00,00,04,00,00,00,00,00
"80862448"=hex:00,00,04,00,00,00,00,00
"8086122E"=hex:00,00,08,00,00,00,00,00
"80867000"=hex:00,00,08,00,00,00,00,00
"80867110"=hex:00,00,08,00,00,00,00,00
"80867600"=hex:00,00,08,00,00,00,00,00
"10024747"=hex:00,00,40,00,00,00,00,00
"10024754"=hex:00,00,00,00,01,00,00,00
"53338901"=hex:00,00,00,00,01,00,00,00
"101300D6"=hex:00,00,40,00,00,00,00,00
"104CAC15"=hex:00,00,40,00,00,00,00,00
"110B0004"=hex:00,00,40,00,00,00,00,00
"1000000F"=hex:00,00,40,00,00,00,00,00
"104CAC17"=hex:00,00,40,00,00,00,00,00
"10239397"=hex:00,00,40,00,00,00,00,00
"10024742"=hex:00,00,40,00,00,00,00,00
"10024744"=hex:00,00,40,00,00,00,00,00
"10024749"=hex:00,00,40,00,00,00,00,00
"10024750"=hex:00,00,40,00,00,00,00,00
"10024751"=hex:00,00,40,00,00,00,00,00
"10024755"=hex:00,00,40,00,00,00,00,00
"10024757"=hex:00,00,40,20,00,00,00,00
"10024759"=hex:00,00,40,20,00,00,00,00
"10024C42"=hex:00,00,40,00,00,00,00,00
"10024C44"=hex:00,00,40,00,00,00,00,00
"10024C47"=hex:00,00,40,00,00,00,00,00
"10024C49"=hex:00,00,40,00,00,00,00,00
"10024C50"=hex:00,00,40,00,00,00,00,00
"10024C51"=hex:00,00,40,00,00,00,00,00
"10025654"=hex:00,00,00,00,01,00,00,00
"10025655"=hex:00,00,40,00,00,00,00,00
"10025656"=hex:00,00,40,00,00,00,00,00
"121A0003"=hex:00,00,40,00,00,00,00,00
"1045C861107B9300"=hex:00,00,40,00,00,00,00,00
"1045C8611045C861"=hex:00,00,40,00,00,00,00,00
"80861231"=hex:00,00,00,01,00,00,00,00
"12730002"=hex:00,00,00,01,00,00,00,00
"1014007D"=hex:00,00,00,01,00,00,00,00
"12850100"=hex:00,00,00,01,00,00,00,00
"12176836"=hex:00,00,00,08,00,00,00,00
"12176832"=hex:00,00,00,08,00,00,00,00
"109107A0"=hex:00,00,00,20,00,00,00,00
"80867800"=hex:00,00,00,20,00,00,00,00
"10c88005"=hex:00,00,00,20,00,00,00,00
"10c88006"=hex:00,00,00,20,00,00,00,00
"10c80005"=hex:00,00,00,20,00,00,00,00
"10c80006"=hex:00,00,00,20,00,00,00,00
"102B1001"=hex:00,00,00,80,00,00,00,00
"10DD0100"=hex:00,00,00,20,00,00,00,00
"10950646"=hex:00,00,00,20,00,00,00,00
"10950670"=hex:00,00,00,20,00,00,00,00
"10950648"=hex:00,00,00,20,00,00,00,00
"10110026"=hex:00,00,00,20,00,00,00,00
"8086B154"=hex:00,00,00,20,00,00,00,00
"53338904"=hex:00,00,00,20,00,00,00,00
"11068598"=hex:00,00,00,20,00,00,00,00
"11068605"=hex:00,00,00,20,00,00,00,00
"11790609"=hex:00,00,00,40,00,00,00,00
"10140047"=hex:00,00,00,40,00,00,00,00
"102B051B"=hex:00,00,00,80,00,00,00,00
"102B0520"=hex:00,00,00,80,00,00,00,00
"102B0521"=hex:00,00,00,80,00,00,00,00
"102B1025"=hex:00,00,00,80,00,00,00,00
"102B0525"=hex:00,00,00,80,00,00,00,00
"80867121"=hex:00,00,00,80,00,00,00,00
"80867123"=hex:00,00,00,80,00,00,00,00
"80867125"=hex:00,00,00,80,00,00,00,00
"80861132"=hex:00,00,00,80,00,00,00,00
"90050050"=hex:00,00,00,80,00,00,00,00
"9005005F"=hex:00,00,00,80,00,00,00,00
"10024752"=hex:00,00,00,80,00,00,00,00
"1002474F"=hex:00,00,00,80,00,00,00,00
"1002474D"=hex:00,00,00,80,00,00,00,00
"10024753"=hex:00,00,00,80,00,00,00,00
"1002474C"=hex:00,00,00,80,00,00,00,00
"1002474E"=hex:00,00,00,80,00,00,00,00
"10024C4D"=hex:00,00,00,80,00,00,00,00
"10024C4E"=hex:00,00,00,80,00,00,00,00
"10024C52"=hex:00,00,00,80,00,00,00,00
"10024C53"=hex:00,00,00,80,00,00,00,00
"10239880"=hex:00,00,00,80,00,00,00,00
"10DE00A0"=hex:00,00,00,80,00,00,00,00
"10DE00A1"=hex:00,00,00,80,00,00,00,00
"10DE00A3"=hex:00,00,00,80,00,00,00,00
"10DE00B0"=hex:00,00,00,80,00,00,00,00
"10DE00B1"=hex:00,00,00,80,00,00,00,00
"10DE00B3"=hex:00,00,00,80,00,00,00,00
"10DE0100"=hex:00,00,00,80,00,00,00,00
"10DE0101"=hex:00,00,00,80,00,00,00,00
"10DE0102"=hex:00,00,00,80,00,00,00,00
"10DE0103"=hex:00,00,00,80,00,00,00,00
"10DE0120"=hex:00,00,00,80,00,00,00,00
"10DE0121"=hex:00,00,00,80,00,00,00,00
"10DE0122"=hex:00,00,00,80,00,00,00,00
"10DE0123"=hex:00,00,00,80,00,00,00,00
"10DE0150"=hex:00,00,00,80,00,00,00,00
"10DE0151"=hex:00,00,00,80,00,00,00,00
"10DE0152"=hex:00,00,00,80,00,00,00,00
"10DE0153"=hex:00,00,00,80,00,00,00,00
"10DE0200"=hex:00,00,00,80,00,00,00,00
"10DE0201"=hex:00,00,00,80,00,00,00,00
"10DE0202"=hex:00,00,00,80,00,00,00,00
"10DE0203"=hex:00,00,00,80,00,00,00,00
"12D20018"=hex:00,00,00,80,00,00,00,00
"12D20019"=hex:00,00,00,80,00,00,00,00
"10136003"=hex:00,00,00,80,00,00,00,00
"3D3D000A"=hex:00,00,00,80,00,00,00,00
"10024158"=hex:00,00,00,00,01,00,00,00
"10024354"=hex:00,00,00,00,01,00,00,00
"10024358"=hex:00,00,00,00,01,00,00,00
"10024554"=hex:00,00,00,00,01,00,00,00
"10024758"=hex:00,00,00,00,01,00,00,00
"10024C54"=hex:00,00,00,00,01,00,00,00
"53338810"=hex:00,00,00,00,01,00,00,00
"53338811"=hex:00,00,00,00,01,00,00,00
"53338812"=hex:00,00,00,00,01,00,00,00
"53338814"=hex:00,00,00,00,01,00,00,00
"53338880"=hex:00,00,00,00,01,00,00,00
"533388B0"=hex:00,00,00,00,01,00,00,00
"533388C0"=hex:00,00,00,00,01,00,00,00
"533388C1"=hex:00,00,00,00,01,00,00,00
"533388D0"=hex:00,00,00,00,01,00,00,00
"533388F0"=hex:00,00,00,00,01,00,00,00
"53338902"=hex:00,00,00,00,01,00,00,00
"0E11B109"=hex:00,00,00,00,02,00,00,00
"10024342"=hex:00,00,00,00,80,00,00,00
"10024362"=hex:00,00,00,00,80,00,00,00
"10024371"=hex:00,00,00,00,80,00,00,00
"100C3202"=hex:00,8a,00,00,00,00,00,00
"10668002"=hex:00,00,30,00,00,00,00,00
"10660002"=hex:00,00,30,00,00,00,00,00
"10040102"=hex:00,40,00,02,00,00,00,00
"1045C814"=hex:00,00,40,20,00,00,00,00
"10024756"=hex:00,00,40,20,00,00,00,00
"1002475A"=hex:00,00,40,20,00,00,00,00
"80861161"=hex:00,00,00,40,10,00,00,00
"80861461"=hex:00,00,00,40,10,00,00,00
"1000000B"=hex:00,00,00,a0,00,00,00,00
"10DE0020"=hex:00,00,00,a0,00,00,00,00
"10DE0028"=hex:00,00,00,a0,00,00,00,00
"10DE0029"=hex:00,00,00,a0,00,00,00,00
"10DE002A"=hex:00,00,00,a0,00,00,00,00
"10DE002B"=hex:00,00,00,a0,00,00,00,00
"10DE002C"=hex:00,00,00,a0,00,00,00,00
"10DE002D"=hex:00,00,00,a0,00,00,00,00
"10DE002E"=hex:00,00,00,a0,00,00,00,00
"10DE002F"=hex:00,00,00,a0,00,00,00,00
"101300D6101880D6"=hex:00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI\Enum]
"0"="ACPI\\PNP0A03\\1"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="PCI\\VEN_10DE&DEV_006C&SUBSYS_00000000&REV_A3\\3&13c0b0c5&0&40"
"2"="PCI\\VEN_10DE&DEV_01E8&SUBSYS_00000000&REV_C1\\3&13c0b0c5&0&F0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIDump]
"ErrorControl"=dword:00000000
"Group"="PCI Configuration"
"Start"=dword:00000001
"Tag"=dword:00000001
"Type"=dword:00000001
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIIde]
"ErrorControl"=dword:00000001
"Group"="System Bus Extender"
"Start"=dword:00000000
"Tag"=dword:00000003
"Type"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,63,69,\
69,64,65,2e,73,79,73,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIIde\Enum]
"0"="PCI\\VEN_10DE&DEV_0065&SUBSYS_0C111043&REV_A2\\3&13c0b0c5&0&48"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Pcmcia]
"ErrorControl"=dword:00000001
"Group"="System Bus Extender"
"Start"=dword:00000004
"Tag"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Pcmcia\Parameters]
"SoundsEnabled"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDCOMP]
"ErrorControl"=dword:00000000
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDFRAME]
"ErrorControl"=dword:00000000
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDRELI]
"ErrorControl"=dword:00000000
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDRFRAME]
"ErrorControl"=dword:00000000
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2hib]
"ErrorControl"=dword:00000001
"Group"="Filter"
"Start"=dword:00000004
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk\Performance]
"Close"="CloseDiskObject"
"Collect"="CollectDiskObjectData"
"Collect Timeout"=dword:000007d0
"Library"="perfdisk.dll"
"Object List"="234 236"
"Open"="OpenDiskObject"
"Open Timeout"=dword:00001388
"WbemAdapFileSignature"=hex:ba,86,8a,32,eb,6e,b8,eb,d2,ff,0d,86,79,80,1d,ef
"WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
"WbemAdapFileSize"=dword:00006800
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet\Performance]
"Close"="CloseNetSvcsObject"
"Collect"="CollectNetSvcsObjectData"
"Collect Timeout"=dword:00001388
"Library"="perfnet.dll"
"Object List"="52 262 330 1300"
"Open"="OpenNetSvcsObject"
"Open Timeout"=dword:00001f40
"WbemAdapFileSignature"=hex:63,6a,03,aa,52,09,fc,2e,84,16,a7,46,b1,98,61,55
"WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
"WbemAdapFileSize"=dword:00004200
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS\Performance]
"Close"="CloseOSObject"
"Collect"="CollectOSObjectData"
"Collect Timeout"=dword:000007d0
"Library"="perfos.dll"
"Object List"="2 4 86 238 260 700"
"Open"="OpenOSObject"
"Open Timeout"=dword:00001388
"WbemAdapFileSignature"=hex:fc,77,c6,3c,47,ae,2d,0d,8b,05,da,6e,c1,78,5c,0f
"WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
"WbemAdapFileSize"=dword:00006200
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc\Performance]
"Close"="CloseSysProcessObject"
"Collect"="CollectSysProcessObjectData"
"Collect Timeout"=dword:00001f40
"Library"="perfproc.dll"
"Object List"="230 232 786 740 816 1408 1500 1548 1760"
"Open"="OpenSysProcessObject"
"Open Timeout"=dword:00002710
"WbemAdapFileSignature"=hex:26,04,41,1d,b3,62,f3,c7,d4,6b,ab,31,36,2f,0b,55
"WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
"WbemAdapFileSize"=dword:00008800
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PlugPlay]
"Description"="Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability."
"DisplayName"="Plug and Play"
"ErrorControl"=dword:00000001
"Group"="PlugPlay"
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,65,72,76,69,63,65,73,2e,65,78,65,00
"ObjectName"="LocalSystem"
"PlugPlayServiceType"=dword:00000003
"Start"=dword:00000002
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PlugPlay\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent]
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,73,61,73,73,2e,65,78,65,00
"DisplayName"="IPSEC Services"
"DependOnService"=hex(7):52,50,43,53,53,00,54,63,70,69,70,00,49,50,53,65,63,00,\
00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver."
"PolstoreDllRegisterVersion"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent\Enum]
"0"="Root\\LEGACY_POLICYAGENT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
70,70,74,70,2e,73,79,73,00
"DisplayName"="WAN Miniport (PPTP)"
"Description"="WAN Miniport (PPTP)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport\Enum]
"0"="Root\\MS_PPTPMINIPORT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage]
"DependOnService"=hex(7):52,70,63,53,73,00,00
"Description"="Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users."
"DisplayName"="Protected Storage"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,73,61,73,73,2e,65,78,65,00
"ObjectName"="LocalSystem"
"Start"=dword:00000002
"Type"=dword:00000120
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage\Enum]
"0"="Root\\LEGACY_PROTECTEDSTORAGE\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:00000007
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,73,63,\
68,65,64,2e,73,79,73,00
"DisplayName"="QoS Packet Scheduler"
"Group"="PNP_TDI"
"DependOnService"=hex(7):47,70,63,00,00
"DependOnGroup"=hex(7):00
"Description"="QoS Packet Scheduler"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\NdisWanIp]
"UpperBindings"="\\Device\\{D863D632-44F0-407B-8563-B29977806B55}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\{AEC81411-BE1E-4DE1-BB79-D79261782333}]
"UpperBindings"="\\Device\\{2C05508E-B18D-48A6-950F-748981087CB0}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\{CE5FA0D0-384D-4387-9E47-D25184030D99}]
"UpperBindings"="\\Device\\{FAD1C0FD-F8E9-4E88-AEA6-FE853F2398E1}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Performance]
"Library"="pschdprf.dll"
"Open"="OpenPschedPerformanceData"
"Close"="ClosePschedPerformanceData"
"Collect"="CollectPschedPerformanceData"
"Last Counter"=dword:000007dc
"Last Help"=dword:000007dd
"First Counter"=dword:00000790
"First Help"=dword:00000791
"WbemAdapFileSignature"=hex:b4,45,9d,13,47,3d,07,fc,b4,33,65,c0,27,32,de,16
"WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
"WbemAdapFileSize"=dword:00002a00
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Enum]
"0"="Root\\MS_PSCHEDMP\\0000"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="Root\\MS_PSCHEDMP\\0001"
"2"="Root\\MS_PSCHEDMP\\0002"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,74,69,\
6c,69,6e,6b,2e,73,79,73,00
"DisplayName"="Direct Parallel Link Driver"
"Description"="Direct Parallel Link Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink\Enum]
"0"="Root\\MS_PTIMINIPORT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20]
"Type"=dword:00000001
"Start"=dword:00000000
"ErrorControl"=dword:00000001
"Tag"=dword:00000007
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,50,78,48,\
65,6c,70,32,30,2e,73,79,73,00
"Group"="Filter"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20\Enum]
"0"="IDE\\CdRomSONY_CD-RW__CRX320EE____________________RYK3____\\3032353030313630303030303533383520202020"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:0000003d
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:00000023
"Type"=dword:00000001
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:0000003f
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:00000031
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:0000003f
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280\Parameters\PnpInterface]
"5"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
61,63,64,2e,73,79,73,00
"DisplayName"="Remote Access Auto Connection Driver"
"Group"="Streams Drivers"
"Description"="Remote Access Auto Connection Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Enum]
"0"="Root\\LEGACY_RASACD\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Remote Access Auto Connection Manager"
"DependOnService"=hex(7):52,61,73,4d,61,6e,00,54,61,70,69,73,72,76,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,61,75,74,6f,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
6c,32,74,70,2e,73,79,73,00
"DisplayName"="WAN Miniport (L2TP)"
"Description"="WAN Miniport (L2TP)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp\Enum]
"0"="Root\\MS_L2TPMINIPORT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Remote Access Connection Manager"
"DependOnService"=hex(7):54,61,70,69,73,72,76,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Creates a network connection."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Parameters]
"Medias"=hex(7):72,61,73,74,61,70,69,00,00
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,6d,61,6e,73,2e,64,6c,6c,00
"IpOutLowWatermark"=dword:00000001
"IpOutHighWatermark"=dword:00000005
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP]
"MaxConfigure"=dword:0000000a
"MaxFailure"=dword:0000000a
"MaxReject"=dword:00000005
"MaxTerminate"=dword:00000002
"Multilink"=dword:00000000
"NegotiateTime"=dword:00000096
"RestartTimer"=dword:00000003
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,70,70,70,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols\Chap]
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP]
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,70,70,70,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\13]
"RolesSupported"=dword:00000002
"FriendlyName"="Smart Card or other Certificate"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
65,6d,33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"InvokeUsernameDialog"=dword:00000000
"InvokePasswordDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"StandaloneSupported"=dword:00000000
"NoRootRevocationCheck"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\25]
"FriendlyName"="Protected EAP (PEAP)"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
65,6d,33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
"InvokeUsernameDialog"=dword:00000000
"InvokePasswordDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"StandaloneSupported"=dword:00000001
"NoRootRevocationCheck"=dword:00000001
"RolesSupported"=dword:0000001a
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\26]
"FriendlyName"="Secured password (EAP-MSCHAP v2)"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
"ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
"IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
"InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
65,6d,33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
"InvokeUsernameDialog"=dword:00000000
"InvokePasswordDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"ConfigCLSID"="{2af6bcaa-f526-4803-aeb8-5777ce386647}"
"StandaloneSupported"=dword:00000001
"RolesSupported"=dword:00000004
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\4]
"RolesSupported"=dword:0000000a
"FriendlyName"="MD5-Challenge"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
"InvokeUsernameDialog"=dword:00000001
"InvokePasswordDialog"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Security]
"Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Enum]
"0"="Root\\LEGACY_RASMAN\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
70,70,70,6f,65,2e,73,79,73,00
"DisplayName"="Remote Access PPPOE Driver"
"Description"="Remote Access PPPOE Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Linkage]
"Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,43,45,35,46,41,30,44,30,2d,33,38,34,\
44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,\
00,5c,44,65,76,69,63,65,5c,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,\
44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
"Route"=hex(7):22,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,\
39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,22,00,22,7b,41,45,43,\
38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
36,31,37,38,32,33,33,33,7d,22,00,00
"Export"=hex(7):5c,44,65,76,69,63,65,5c,52,61,73,50,70,70,6f,65,5f,7b,43,45,35,\
46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,\
38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,52,61,73,50,70,70,6f,\
65,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,\
39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Enum]
"0"="Root\\MS_PPPOEMINIPORT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
70,74,69,2e,73,79,73,00
"DisplayName"="Direct Parallel"
"Description"="Direct Parallel"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti\Enum]
"0"="Root\\MS_PTIMINIPORT\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss]
"Type"=dword:00000002
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000004
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,64,62,\
73,73,2e,73,79,73,00
"DisplayName"="Rdbss"
"Group"="Network"
"Description"="Rdbss"
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss\Enum]
"0"="Root\\LEGACY_RDBSS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD]
"ErrorControl"=dword:00000000
"Group"="Video Save"
"ImagePath"="System32\\DRIVERS\\RDPCDD.sys"
"Start"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Device0]
"Device Description"="RDPDD Chained DD"
"InstalledDisplayDrivers"=hex(7):52,44,50,44,44,00,00
"MirrorDriver"=dword:00000001
"VgaCompatible"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Video]
"VideoID"="{DEB039CC-B704-4F53-B43E-9DD4432FA2E9}"
"Service"="RDPCDD"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Enum]
"0"="Root\\LEGACY_RDPCDD\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPDD]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPDD\Device0]
"InstalledDisplayDrivers"=hex(7):52,44,50,44,44,00,00
"VgaCompatible"=dword:00000000
"Attach.RelativeX"=dword:00000000
"Attach.RelativeY"=dword:00000000
"Attach.ToDesktop"=dword:00000001
"DefaultSettings.XResolution"=dword:00000320
"DefaultSettings.YResolution"=dword:00000258
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,64,70,\
64,72,2e,73,79,73,00
"DisplayName"="Terminal Server Device Redirector Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr\Enum]
"0"="Root\\RDPDR\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP\NetworkProvider]
"DeviceName"="\\Device\\RdpDr"
"Name"="Microsoft Terminal Services"
"ProviderPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,64,72,70,72,6f,76,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP\Enum]
"0"="Root\\LEGACY_RDPNP\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPWD]
"ErrorControl"=dword:00000000
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDSessMgr]
"Type"=dword:00000010
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
73,65,73,73,6d,67,72,2e,65,78,65,00
"DisplayName"="Remote Desktop Help Session Manager"
"DependOnService"=hex(7):52,50,43,53,53,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDSessMgr\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000003
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,65,64,\
62,6f,6f,6b,2e,73,79,73,00
"DisplayName"="Digital CD Audio Playback Filter Driver"
"Group"="Pnp Filter"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook\Enum]
"0"="IDE\\CdRomSONY_CD-RW__CRX320EE____________________RYK3____\\3032353030313630303030303533383520202020"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess]
"Type"=dword:00000020
"Start"=dword:00000004
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Routing and Remote Access"
"DependOnService"=hex(7):52,70,63,53,53,00,00
"DependOnGroup"=hex(7):4e,65,74,42,49,4f,53,47,72,6f,75,70,00,00
"ObjectName"="LocalSystem"
"Description"="Offers routing services to businesses in local area and wide area network environments."
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider"="{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="RADIUS Accounting"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,72,61,64,2e,64,6c,6c,00
"ProviderTypeGUID"="{76560D80-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="Windows Accounting"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,6d,70,72,64,64,6d,2e,64,6c,6c,00
"ProviderTypeGUID"="{76560D81-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider"="{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="RADIUS Authentication"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,72,61,73,72,61,64,2e,64,6c,6c,00
"VendorName"="Microsoft"
"ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="Windows Authentication"
"Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
5c,6d,70,72,64,64,6d,2e,64,6c,6c,00
"VendorName"="Microsoft"
"ProviderTypeGUID"="{76560D01-2BFD-11d2-9539-3078302C2030}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\DemandDialManager]
"DllPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,6d,70,72,64,64,6d,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces]
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\0]
"InterfaceName"="Loopback"
"Type"=dword:00000005
"Enabled"=dword:00000001
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\0\Ip]
"ProtocolId"=dword:00000021
"InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\1]
"InterfaceName"="Internal"
"Type"=dword:00000004
"Enabled"=dword:00000001
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\1\Ip]
"ProtocolId"=dword:00000021
"InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\2]
"InterfaceName"="{AEC81411-BE1E-4DE1-BB79-D79261782333}"
"Type"=dword:00000003
"Enabled"=dword:00000001
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\2\Ip]
"ProtocolId"=dword:00000021
"InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\3]
"InterfaceName"="{CE5FA0D0-384D-4387-9E47-D25184030D99}"
"Type"=dword:00000003
"Enabled"=dword:00000001
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\3\Ip]
"ProtocolId"=dword:00000021
"InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters]
"RouterType"=dword:00000001
"ServerFlags"=dword:00002702
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,6d,70,72,64,69,6d,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\AppleTalk]
"EnableIn"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Ip]
"AllowClientIpAddresses"=dword:00000000
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000001
"IpAddress"="0.0.0.0"
"IpMask"="0.0.0.0"
"UseDhcpAddressing"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Ipx]
"EnableIn"=dword:00000001
"AcceptRemoteNodeNumber"=dword:00000001
"AllowNetworkAccess"=dword:00000001
"AutoWanNetAllocation"=dword:00000001
"FirstWanNet"=dword:00000000
"GlobalWanNet"=dword:00000001
"LastWanNet"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Nbf]
"EnableIn"=dword:00000001
"AllowNetworkAccess"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance]
"Open"="OpenRasPerformanceData"
"Close"="CloseRasPerformanceData"
"Collect"="CollectRasPerformanceData"
"Library"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,72,61,73,63,74,72,73,2e,64,6c,6c,00
"Last Counter"=dword:00000804
"Last Help"=dword:00000805
"First Counter"=dword:000007de
"First Help"=dword:000007df
"WbemAdapFileSignature"=hex:b0,b0,d7,90,5a,c7,1b,c2,78,f1,7f,45,5e,18,26,11
"WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
"WbemAdapFileSize"=dword:00002e00
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy]
"ProductDir"="C:\\WINDOWS\\system32\\IAS"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\01]
@="IAS.ProxyPolicyEnforcer"
"Requests"="0 1 2"
"Responses"="0 1 2 3 4"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\02]
@="IAS.NTSamNames"
"Providers"="1"
"Requests"="0"
"Responses"="0 1 3"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\03]
@="IAS.BaseCampHost"
"Requests"="0 1"
"Responses"="0 1 2 4"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\04]
@="IAS.RadiusProxy"
"Providers"="2"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\05]
@="IAS.NTSamAuthentication"
"Providers"="1"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\06]
@="IAS.AccountValidation"
"Providers"="1"
"Requests"="0"
"Responses"="0 1"
"Reasons"="33"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\07]
@="IAS.PolicyEnforcer"
"Providers"="1"
"Requests"="0"
"Responses"="0 1 3"
"Reasons"="33"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\08]
@="IAS.NTSamPerUser"
"Providers"="1"
"Requests"="0"
"Responses"="0 1 3"
"Reasons"="33"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\09]
@="IAS.EAP"
"Providers"="1"
"Requests"="0 2"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\10]
@="IAS.URHandler"
"Providers"="0 1"
"Requests"="0 2"
"Responses"="0 1"
"Reasons"="33"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\11]
@="IAS.ChangePassword"
"Providers"="1"
"Requests"="0"
"Responses"="0 1"
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\12]
@="IAS.AuthorizationHost"
"Requests"="0 1 2"
"Responses"="0 1 2 4"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\13]
@="IAS.Accounting"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\14]
@="IAS.MSChapErrorReporter"
"Providers"="0 1"
"Requests"="0"
"Responses"="2"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\RouterManagers]
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\RouterManagers\Ip]
"ProtocolId"=dword:00000021
"GlobalInfo"=hex:01,00,00,00,80,00,00,00,02,00,00,00,03,00,ff,ff,08,00,00,00,\
01,00,00,00,30,00,00,00,06,00,ff,ff,3c,00,00,00,01,00,00,00,38,00,00,00,00,\
00,00,00,00,00,00,00,01,00,00,00,07,00,00,00,02,00,00,00,01,00,00,00,03,00,\
00,00,0a,00,00,00,16,27,00,00,03,00,00,00,17,27,00,00,05,00,00,00,12,27,00,\
00,07,00,00,00,0d,00,00,00,6e,00,00,00,08,00,00,00,78,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"DLLPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,69,70,72,74,72,6d,67,72,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry]
"Description"="Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start."
"DependOnService"=hex(7):52,50,43,53,53,00,00
"DisplayName"="Remote Registry"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,4c,6f,63,61,6c,53,65,72,\
76,69,63,65,00
"ObjectName"="NT AUTHORITY\\LocalService"
"Group"=""
"Start"=dword:00000002
"Type"=dword:00000020
"FailureActions"=hex:00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,e0,ad,08,\
00,01,00,00,00,e8,03,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,72,65,67,73,76,63,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Enum]
"0"="Root\\LEGACY_REMOTEREGISTRY\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator]
"Type"=dword:00000010
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,6f,63,61,74,6f,72,2e,65,78,65,00
"DisplayName"="Remote Procedure Call (RPC) Locator"
"DependOnService"=hex(7):4c,61,6e,6d,61,6e,57,6f,72,6b,73,74,61,74,69,6f,6e,00,\
00
"DependOnGroup"=hex(7):00
"ObjectName"="NT AUTHORITY\\NetworkService"
"Description"="Manages the RPC name service database."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator\Parameters]
"ExpirationAge"=dword:00000e10
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs]
"Description"="Provides the endpoint mapper and other miscellaneous RPC services."
"DisplayName"="Remote Procedure Call (RPC)"
"ErrorControl"=dword:00000001
"Group"="COM Infrastructure"
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,20,2d,6b,20,72,70,63,73,73,00
"ObjectName"="NT AUTHORITY\\NetworkService"
"Start"=dword:00000002
"Type"=dword:00000020
"FailureActions"=hex:00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,00,00,00,\
00,02,00,00,00,60,ea,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,72,70,63,73,73,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Security]
"Security"=hex:01,00,14,80,a8,00,00,00,b4,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,78,00,05,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,00,00,\
18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,\
00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Enum]
"0"="Root\\LEGACY_RPCSS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP]
"Type"=dword:00000010
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,72,73,76,70,2e,65,78,65,00
"DisplayName"="QoS RSVP"
"DependOnService"=hex(7):54,63,70,49,70,00,41,66,64,00,52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Parameters]
"StartBlocker"=""
"Requests"=""
"Upcalls"=""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Performance]
"Open"="OpenRsvpPerformanceData"
"Close"="CloseRsvpPerformanceData"
"Collect"="CollectRsvpPerformanceData"
"Library"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,72,73,76,70,70,65,72,66,2e,64,6c,6c,00
"Last Counter"=dword:0000078e
"Last Help"=dword:0000078f
"First Counter"=dword:00000738
"First Help"=dword:00000739
"WbemAdapFileSignature"=hex:f9,dd,79,9e,07,ed,50,28,db,2f,1f,fe,a7,2c,93,57
"WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
"WbemAdapFileSize"=dword:00002600
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Security]
"Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:0000000d
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,52,54,4c,\
38,31,33,39,2e,53,59,53,00
"DisplayName"="Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver"
"Group"="NDIS"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139\Enum]
"0"="PCI\\VEN_10EC&DEV_8139&SUBSYS_813910EC&REV_10\\4&3b1d9ab8&0&4840"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs]
"Description"="Stores security information for local user accounts."
"DisplayName"="Security Accounts Manager"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,6c,73,61,73,73,2e,65,78,65,00
"ObjectName"="LocalSystem"
"Start"=dword:00000002
"Type"=dword:00000020
"Group"="LocalValidation"
"DependOnService"=hex(7):52,50,43,53,53,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs\Security]
"Security"=hex:01,00,14,80,a8,00,00,00,b4,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,78,00,05,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,00,00,\
18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,\
00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs\Enum]
"0"="Root\\LEGACY_SAMSS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCardSvr]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000000
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,53,43,61,72,64,53,76,72,2e,65,78,65,00
"Description"="Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start."
"DisplayName"="Smart Card"
"DependOnService"=hex(7):50,6c,75,67,50,6c,61,79,00,00
"ObjectName"="NT AUTHORITY\\LocalService"
"Group"="SmartCardGroup"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCardSvr\Security]
"Security"=hex:01,00,04,80,88,00,00,00,94,00,00,00,00,00,00,00,14,00,00,00,02,\
00,74,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,\
00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,18,\
00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,\
ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,14,00,9d,\
01,02,00,01,01,00,00,00,00,00,02,00,00,00,00,01,01,00,00,00,00,00,05,12,00,\
00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule]
"Description"="Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start."
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Task Scheduler"
"Group"="SchedulerGroup"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,05,00,03,\
00,01,00,00,00,70,17,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00
"NextAtJobId"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,73,63,68,65,64,73,76,63,2e,64,6c,6c,00
"ServiceMain"="SchedServiceMain"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Enum]
"0"="Root\\LEGACY_SCHEDULE\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv]
"Type"=dword:00000001
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,63,\
64,72,76,2e,73,79,73,00
"DisplayName"="Secdrv"
"Description"="SafeDisc driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv\Security]
"Security"=hex:01,00,14,80,8c,00,00,00,98,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,5c,00,04,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,\
00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,\
00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,\
00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv\Enum]
"0"="Root\\LEGACY_SECDRV\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon]
"Description"="Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start."
"DisplayName"="Secondary Logon"
"ErrorControl"=dword:00000000
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"Objectname"="LocalSystem"
"Start"=dword:00000002
"Type"=dword:00000120
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,73,65,63,6c,6f,67,6f,6e,2e,64,6c,6c,00
"ServiceMain"="SvcEntry_Seclogon"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Enum]
"0"="Root\\LEGACY_SECLOGON\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS]
"DependOnService"=hex(7):45,76,65,6e,74,53,79,73,74,65,6d,00,00
"Description"="Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events."
"DisplayName"="System Event Notification"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"ObjectName"="LocalSystem"
"Group"="Network"
"Start"=dword:00000002
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,73,65,6e,73,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Enum]
"0"="Root\\LEGACY_SENS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\serenum]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="Serenum Filter Driver"
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,72,\
65,6e,75,6d,2e,73,79,73,00
"Group"="PNP Filter"
"Tag"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\serenum\Enum]
"0"="ACPI\\PNP0501\\1"
"Count"=dword:00000002
"NextInstance"=dword:00000002
"1"="ACPI\\PNP0501\\2"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial]
"ErrorControl"=dword:00000000
"Group"="Extended base"
"Start"=dword:00000001
"Tag"=dword:00000001
"Type"=dword:00000001
"ForceFifoEnable"=dword:00000001
"RxFIFO"=dword:00000008
"TxFIFO"=dword:0000000e
"PermitShare"=dword:00000000
"LogFifo"=dword:00000000
"DisplayName"="Serial port driver"
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,72,\
69,61,6c,2e,73,79,73,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial\Enum]
"0"="ACPI\\PNP0501\\1"
"Count"=dword:00000002
"NextInstance"=dword:00000002
"1"="ACPI\\PNP0501\\2"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy]
"DependOnGroup"=hex(7):53,43,53,49,20,6d,69,6e,69,70,6f,72,74,00,00
"ErrorControl"=dword:00000000
"Group"="Primary disk"
"Start"=dword:00000001
"Tag"=dword:00000004
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy\Enum]
"Count"=dword:00000000
"NextInstance"=dword:00000000
"INITSTARTFAILED"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess]
"DependOnGroup"=hex(7):00
"DependOnService"=hex(7):4e,65,74,6d,61,6e,00,57,69,6e,4d,67,6d,74,00,00
"Description"="Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network."
"DisplayName"="Windows Firewall/Internet Connection Sharing (ICS)"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"ObjectName"="LocalSystem"
"Start"=dword:00000002
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Epoch]
"Epoch"=dword:000041eb
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,69,70,6e,61,74,68,6c,70,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=dword:00000001
"DoNotAllowExceptions"=dword:00000000
"DisableNotifications"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\\Limewire Downloaded Files\\LimeWire\\LimeWire.exe"="D:\\Limewire Downloaded Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Championship Manager 00-01\\cm0001.exe"="C:\\Program Files\\Championship Manager 00-01\\cm0001.exe:*:Enabled:cm0001"
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe:*:Enabled:avgemc.exe"
"C:\\Program Files\\Real player\\realplay.exe"="C:\\Program Files\\Real player\\realplay.exe:*:Disabled:RealPlayer"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Setup]
"ServiceUpgrade"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate]
"All"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Enum]
"0"="Root\\LEGACY_SHAREDACCESS\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection]
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000000
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="Shell Hardware Detection"
"Group"="ShellSvcGroup"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Provides notifications for AutoPlay hardware events."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,73,68,73,76,63,73,2e,64,6c,6c,00
"ServiceMain"="HardwareDetectionServiceMain"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Enum]
"0"="Root\\LEGACY_SHELLHWDETECTION\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Simbad]
"ErrorControl"=dword:00000001
"Group"="Filter"
"Start"=dword:00000004
"Tag"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock]
"Type"=dword:00000001
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):5c,3f,3f,5c,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,\
6d,33,32,5c,73,6f,63,6b,65,74,6c,6f,63,6b,2e,73,79,73,00
"DisplayName"="Raw Socket Lock Driver"
"Group"="PNP_TDI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock\Enum]
"0"="Root\\LEGACY_SOCKETLOCK\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:00000007
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow\Parameters]
"LegacyAdapterDetection"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow\Parameters\PnpInterface]
"1"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,73,70,6c,\
69,74,74,65,72,2e,73,79,73,00
"DisplayName"="Microsoft Kernel Audio Splitter"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter\Enum]
"Count"=dword:00000000
"NextInstance"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler]
"DependOnService"=hex(7):52,50,43,53,53,00,00
"Description"="Loads files to memory for later printing."
"DisplayName"="Print Spooler"
"ErrorControl"=dword:00000001
"FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c,\
00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00
"Group"="SpoolerGroup"
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,70,6f,6f,6c,73,76,2e,65,78,65,00
"ObjectName"="LocalSystem"
"Start"=dword:00000002
"Type"=dword:00000110
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Performance]
"Close"="PerfClose"
"Collect"="PerfCollect"
"Collect Timeout"=dword:000007d0
"Library"="winspool.drv"
"Object List"="1450"
"Open"="PerfOpen"
"Open Timeout"=dword:00000fa0
"WbemAdapFileSignature"=hex:77,7e,b2,9d,01,35,d8,1a,d9,82,8a,2b,05,44,34,96
"WbemAdapFileTime"=hex:00,69,75,f1,bd,79,c4,01
"WbemAdapFileSize"=dword:00023c00
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Enum]
"0"="Root\\LEGACY_SPOOLER\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spupdsvc]
"Type"=dword:00000010
"Start"=dword:00000004
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
73,70,75,70,64,73,76,63,2e,65,78,65,00
"DisplayName"="Windows Service Pack Installer update service"
"DependOnService"=hex(7):53,61,6d,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Enables Installer to complete its scheduled post-reboot tasks"
"InstallTimestamp"=hex(b):6e,16,b1,a0,8c,83,c7,01
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spupdsvc\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr]
"Type"=dword:00000002
"Start"=dword:00000000
"ErrorControl"=dword:00000001
"Tag"=dword:00000004
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,72,2e,\
73,79,73,00
"DisplayName"="System Restore Filter Driver"
"Group"="FSFilter System Recovery"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Parameters]
"FirstRun"=dword:00000000
"DontBackup"=dword:00000000
"MachineGuid"="{968C9190-6233-4ABD-951B-A494B8B2E236}"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Enum]
"0"="Root\\LEGACY_SR\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice]
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
"DisplayName"="System Restore Service"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Parameters]
"ServiceDll"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,\
5c,73,72,73,76,63,2e,64,6c,6c,00
-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Enum]
"0"="Root\\LEGACY_SRSERVICE\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv]
"Type"=dword:00000002
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:00000006
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,72,76,\
2e,73,79,73,00
"DisplayName"="Srv"
"Group"="Network"
"Description"="Srv"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv\Enum]
"0"="Root\\LEGACY_SRV\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV]
"Type"=dword:00000020
"Start"=dword:00000004
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,4c,6f,63,61,6c,53,65,72,\
76,69,63,65,00
"DisplayName"="SSDP Discovery Service"
"DependOnService"=hex(7):48,54,54,50,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="NT AUTHORITY\\LocalService"
"Description"="Enables discovery of UPnP devices on your home network."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
33,32,5c,73,73,64,70,73,72,76,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Security]
"Security"=hex:01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,8c,00,06,00,00,00,00,00,14,00,ff,01,0f,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,\
00,00,00,00,14,00,9d,00,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,14,\
00,70,00,02,00,01,01,00,00,00,00,00,05,13,00,00,00,01,01,00,00,00,00,00,05,\
12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Enum]
"0"="Root\\LEGACY_SSDPSRV\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3]
"Type"=dword:00000001
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):5c,3f,3f,5c,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,\
6d,33,32,5c,53,54,45,43,33,2e,73,79,73,00
"DisplayName"="STEC3"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3\Enum]
"0"="Root\\LEGACY_STEC3\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc]
"Type"=dword:00000020
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,69,6d,67,73,76,63,00
"DisplayName"="Windows Image Acquisition (WIA)"
"DependOnService"=hex(7):52,70,63,53,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Provides image acquisition services for scanners and cameras."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Parameters]
"ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,77,69,61,73,65,72,76,63,2e,64,6c,6c,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Enum]
"0"="Root\\LEGACY_STISVC\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum]
"ErrorControl"=dword:00000001
"Start"=dword:00000003
"Type"=dword:00000001
"DisplayName"="Software Bus Driver"
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,77,65,\
6e,75,6d,2e,73,79,73,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}\{9ea331fa-b91b-45f8-9285-bd2bc77afcde}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{bf963d80-c559-11d0-8a2b-00a0c9255ac1}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{dff220f3-f70f-11d0-b917-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{dff220f3-f70f-11d0-b917-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}\{3c0d501a-140b-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}\{53172480-4791-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}\{9B365890-165F-11D0-A195-0020AFD156E4}\{a7c7a5b1-5af3-11d1-9ced-00a024bf0407}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{ad809c00-7b88-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}\{9B365890-165F-11D0-A195-0020AFD156E4}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}\{9B365890-165F-11D0-A195-0020AFD156E4}\{3e227e76-690d-11d2-8161-0000f8775bf1}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}\{97ebaacb-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac\{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{ffbb6e3f-ccfe-4d84-90d9-421418b03a8e}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Enum]
"0"="Root\\SYSTEM\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,73,77,6d,\
69,64,69,2e,73,79,73,00
"DisplayName"="Microsoft Kernel GS Wavetable Synthesizer"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi\Enum]
"Count"=dword:00000000
"NextInstance"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SwPrv]
"Type"=dword:00000010
"Start"=dword:00000003
"ErrorControl"=dword:00000000
"ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
64,6c,6c,68,6f,73,74,2e,65,78,65,20,2f,50,72,6f,63,65,73,73,69,64,3a,7b,38,\
45,46,35,42,30,32,38,2d,44,46,33,33,2d,34,34,32,39,2d,38,45,37,43,2d,45,43,\
35,38,34,33,32,45,31,35,37,45,7d,00
"DisplayName"="MS Software Shadow Copy Provider"
"DependOnService"=hex(7):72,70,63,73,73,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SwPrv\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC]
"Type"=dword:00000110
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):22,43,3a,5c,50,72,6f,67,72,61,6d,20,46,69,6c,65,73,5c,43,6f,\
6d,6d,6f,6e,20,46,69,6c,65,73,5c,53,79,6d,61,6e,74,65,63,20,53,68,61,72,65,\
64,5c,43,43,50,44,2d,4c,43,5c,73,79,6d,6c,63,73,76,63,2e,65,78,65,22,00
"DisplayName"="Symantec Core LC"
"DependOnService"=hex(7):52,50,43,53,53,00,00
"DependOnGroup"=hex(7):00
"ObjectName"="LocalSystem"
"Description"="Symantec Core LC"
"Group"="Symantec Services"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC\Enum]
"0"="Root\\LEGACY_SYMANTEC_CORE_LC\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810]
"ErrorControl"=dword:00000001
"Group"="SCSI miniport"
"Start"=dword:00000004
"Tag"=dword:0000001a
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810\Parameters\PnpInterface]
"5"=dword:00000001
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules