Page 6 of 10 FirstFirst ... 2345678910 LastLast
Results 51 to 60 of 99

Thread: Command Service

  1. #51
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:0000002b
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mraid35x\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV]
    "Type"=dword:00000002
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,72,78,\
    64,61,76,2e,73,79,73,00
    "DisplayName"="WebDav Client Redirector"
    "Description"="WebDav Client Redirector"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Parameters]
    "FileInformationCacheLifeTimeInSec"=dword:0000003c
    "FileNotFoundCacheLifeTimeInSec"=dword:0000003c
    "NameCacheMaxEntries"=dword:0000012c
    "DAVDebugFlag"=dword:00000000
    "UMRxDebugFlag"=dword:00000000
    "RequestTimeoutInSec"=dword:00000258

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxDAV\Enum]
    "0"="Root\\LEGACY_MRXDAV\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb]
    "Type"=dword:00000002
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000005
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,72,78,\
    73,6d,62,2e,73,79,73,00
    "DisplayName"="MRXSMB"
    "Group"="Network"
    "Description"="MRXSMB"
    "LastLoadStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Parameters]
    "CscEnabled"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MRxSmb\Enum]
    "0"="Root\\LEGACY_MRXSMB\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC]
    "Type"=dword:00000010
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    6d,73,64,74,63,2e,65,78,65,00
    "DisplayName"="Distributed Transaction Coordinator"
    "Group"="MS Transactions"
    "DependOnService"=hex(7):52,50,43,53,53,00,53,61,6d,53,53,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="NT AUTHORITY\\NetworkService"
    "Description"="Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. "

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Performance]
    "Library"="msdtcuiu.DLL"
    "Open"="DtcPerfOpen"
    "Collect"="DtcPerfCollect"
    "Close"="DtcPerfClose"
    "Last Counter"=dword:000008a2
    "Last Help"=dword:000008a3
    "First Counter"=dword:00000888
    "First Help"=dword:00000889
    "Object List"="2184"
    "WbemAdapFileSignature"=hex:b2,f6,76,ba,72,a3,d4,7f,34,c4,bc,37,0c,a6,68,0f
    "WbemAdapFileTime"=hex:72,44,d4,a3,eb,23,c5,01
    "WbemAdapFileSize"=dword:00027600
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Security]
    "Security"=hex:01,00,14,80,e0,00,00,00,ec,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,b0,00,06,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
    02,00,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
    00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,\
    00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,18,00,fd,01,\
    02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,00,00,14,00,9d,00,02,\
    00,01,01,00,00,00,00,00,05,14,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
    00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSDTC\Enum]
    "0"="Root\\LEGACY_MSDTC\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Msfs]
    "ErrorControl"=dword:00000001
    "Group"="File system"
    "Start"=dword:00000001
    "Type"=dword:00000002

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Msfs\Enum]
    "0"="Root\\LEGACY_MSFS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer]
    "Description"="Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start."
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    6d,73,69,65,78,65,63,2e,65,78,65,20,2f,56,00
    "DisplayName"="Windows Installer"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSIServer\Enum]
    "0"="Root\\LEGACY_MSISERVER\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSKSSRV]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000008
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,4b,\
    53,53,52,56,2e,73,79,73,00
    "DisplayName"="Microsoft Streaming Service Proxy"
    "Group"="Extended Base"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSKSSRV\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPCLOCK]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000007
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,50,\
    43,4c,4f,43,4b,2e,73,79,73,00
    "DisplayName"="Microsoft Streaming Clock Proxy"
    "Group"="Extended Base"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPCLOCK\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPQM]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000009
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,4d,53,50,\
    51,4d,2e,73,79,73,00
    "DisplayName"="Microsoft Streaming Quality Manager Proxy"
    "Group"="Extended Base"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\MSPQM\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6d,73,73,\
    6d,62,69,6f,73,2e,73,79,73,00
    "DisplayName"="Microsoft System Management BIOS Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Data]
    "AcpiData"=hex:52,53,44,54,2c,00,00,00,01,11,4e,76,69,64,69,61,41,57,52,44,41,\
    43,50,49,31,2e,30,42,41,57,52,44,00,00,00,00,40,30,ff,1f,c0,74,ff,1f,46,41,\
    43,50,74,00,00,00,01,69,4e,76,69,64,69,61,41,57,52,44,41,43,50,49,31,2e,30,\
    42,41,57,52,44,00,00,00,00,00,00,ff,1f,c0,30,ff,1f,01,00,09,00,2e,44,00,00,\
    a1,a0,00,00,00,40,00,00,00,00,00,00,04,40,00,00,00,00,00,00,00,00,00,00,08,\
    40,00,00,20,40,00,00,a0,44,00,00,04,02,00,04,08,10,20,00,65,00,e9,03,00,00,\
    00,00,01,00,7d,7e,32,00,00,00,a5,04,00,00,44,53,44,54,e7,43,00,00,01,b2,4e,\
    56,49,44,49,41,41,57,52,44,41,43,50,49,00,10,00,00,4d,53,46,54,0e,00,00,01,\
    41,50,49,43,6e,00,00,00,01,75,4e,76,69,64,69,61,41,57,52,44,41,43,50,49,31,\
    2e,30,42,41,57,52,44,00,00,00,00,00,00,e0,fe,01,00,00,00,00,08,00,00,01,00,\
    00,00,01,0c,02,00,00,00,c0,fe,00,00,00,00,02,0a,00,00,02,00,00,00,00,00,02,\
    0a,00,09,09,00,00,00,0d,00,02,0a,00,0e,0e,00,00,00,05,00,02,0a,00,0f,0f,00,\
    00,00,05,00,04,06,00,05,00,01
    "BiosData"=hex:0a,00,00,00,7e,00,4d,00,48,00,7a,00,00,00,04,00,00,00,04,00,00,\
    00,d9,05,00,00,2c,00,00,00,43,00,6f,00,6d,00,70,00,6f,00,6e,00,65,00,6e,00,\
    74,00,20,00,49,00,6e,00,66,00,6f,00,72,00,6d,00,61,00,74,00,69,00,6f,00,6e,\
    00,00,00,03,00,00,00,10,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,01,00,\
    00,00,26,00,00,00,43,00,6f,00,6e,00,66,00,69,00,67,00,75,00,72,00,61,00,74,\
    00,69,00,6f,00,6e,00,20,00,44,00,61,00,74,00,61,00,00,00,09,00,00,00,10,00,\
    00,00,ff,ff,ff,ff,ff,ff,ff,ff,00,00,00,00,00,00,00,00,16,00,00,00,49,00,64,\
    00,65,00,6e,00,74,00,69,00,66,00,69,00,65,00,72,00,00,00,01,00,00,00,40,00,\
    00,00,78,00,38,00,36,00,20,00,46,00,61,00,6d,00,69,00,6c,00,79,00,20,00,36,\
    00,20,00,4d,00,6f,00,64,00,65,00,6c,00,20,00,38,00,20,00,53,00,74,00,65,00,\
    70,00,70,00,69,00,6e,00,67,00,20,00,31,00,00,00,28,00,00,00,50,00,72,00,6f,\
    00,63,00,65,00,73,00,73,00,6f,00,72,00,4e,00,61,00,6d,00,65,00,53,00,74,00,\
    72,00,69,00,6e,00,67,00,00,00,01,00,00,00,30,00,00,00,41,00,4d,00,44,00,20,\
    00,53,00,65,00,6d,00,70,00,72,00,6f,00,6e,00,28,00,74,00,6d,00,29,00,20,00,\
    20,00,20,00,32,00,32,00,30,00,30,00,2b,00,00,00,1c,00,00,00,55,00,70,00,64,\
    00,61,00,74,00,65,00,20,00,53,00,74,00,61,00,74,00,75,00,73,00,00,00,04,00,\
    00,00,04,00,00,00,01,00,00,00,22,00,00,00,56,00,65,00,6e,00,64,00,6f,00,72,\
    00,49,00,64,00,65,00,6e,00,74,00,69,00,66,00,69,00,65,00,72,00,00,00,01,00,\
    00,00,1a,00,00,00,41,00,75,00,74,00,68,00,65,00,6e,00,74,00,69,00,63,00,41,\
    00,4d,00,44,00,00,00
    "SMBiosData"=hex:00,02,02,22,7e,05,00,00,00,13,00,00,01,02,00,f0,03,03,80,9e,\
    cb,7f,00,00,00,00,37,50,68,6f,65,6e,69,78,20,54,65,63,68,6e,6f,6c,6f,67,69,\
    65,73,2c,20,4c,54,44,00,41,53,55,53,20,41,37,4e,38,58,2d,58,20,41,43,50,49,\
    20,42,49,4f,53,20,52,65,76,20,31,30,31,31,00,30,38,2f,30,34,2f,32,30,30,34,\
    00,00,01,19,01,00,01,02,03,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,06,41,53,55,53,54,65,4b,20,43,6f,6d,70,75,74,65,72,20,49,4e,43,2e,00,41,\
    37,4e,38,58,2d,58,00,52,45,56,20,32,2e,78,78,00,20,20,20,20,20,20,20,20,20,\
    20,20,00,00,02,08,02,00,01,02,03,04,41,53,55,53,54,65,4b,20,43,6f,6d,70,75,\
    74,65,72,20,49,4e,43,2e,00,41,37,4e,38,58,2d,58,00,52,45,56,20,32,2e,78,78,\
    00,20,20,20,20,20,20,20,20,20,20,20,00,00,03,0d,03,00,01,03,02,03,04,03,03,\
    03,03,43,68,61,73,73,69,73,20,4d,61,6e,75,66,61,63,74,74,75,72,65,00,43,68,\
    61,73,73,69,73,20,56,65,72,73,69,6f,6e,00,20,20,20,20,20,20,20,20,20,20,20,\
    20,20,20,20,20,20,20,20,20,20,00,20,20,20,20,20,20,20,20,20,20,20,20,20,20,\
    20,20,00,00,04,20,04,00,01,03,85,02,81,06,00,00,ff,fb,83,03,03,90,a6,00,b8,\
    0b,dc,05,41,04,09,00,0a,00,ff,ff,53,6f,63,6b,65,74,20,41,00,41,4d,44,00,41,\
    4d,44,20,53,65,6d,70,72,6f,6e,28,74,6d,29,00,00,05,16,05,00,03,01,02,02,0a,\
    1c,00,00,05,02,03,06,00,07,00,08,00,04,00,00,06,0c,06,00,01,0f,00,00,01,08,\
    08,00,44,44,52,31,00,00,06,0c,07,00,01,2f,00,00,01,08,08,00,44,44,52,32,00,\
    00,06,0c,08,00,01,ff,00,00,01,7f,7f,00,44,44,52,33,00,00,07,13,09,00,01,80,\
    01,80,00,80,00,30,00,30,00,00,02,04,05,4c,31,20,43,61,63,68,65,00,00,07,13,\
    0a,00,01,a1,01,00,01,00,01,30,00,30,00,00,02,04,05,4c,32,20,43,61,63,68,65,\
    00,00,08,09,0b,00,01,16,00,00,00,50,52,49,4d,41,52,59,20,49,44,45,2f,48,44,\
    44,00,00,08,09,0c,00,01,16,00,00,00,53,45,43,4f,4e,44,41,52,59,20,49,44,45,\
    2f,48,44,44,00,00,08,09,0d,00,01,17,00,00,00,46,4c,4f,50,50,59,00,00,08,09,\
    0e,00,01,00,02,08,08,53,65,72,69,61,6c,20,50,6f,72,74,20,31,00,53,65,72,69,\
    61,6c,20,50,6f,72,74,20,31,00,00,08,09,0f,00,01,00,02,08,08,53,65,72,69,61,\
    6c,20,50,6f,72,74,20,32,00,53,65,72,69,61,6c,20,50,6f,72,74,20,32,00,00,08,\
    09,10,00,01,00,02,05,05,50,61,72,61,6c,6c,65,6c,20,50,6f,72,74,00,50,61,72,\
    61,6c,6c,65,6c,20,50,6f,72,74,00,00,08,09,11,00,01,00,02,0f,0d,50,53,2f,32,\
    20,4b,65,79,62,6f,61,72,64,00,50,53,2f,32,20,4b,65,79,62,6f,61,72,64,00,00,\
    08,09,12,00,01,00,02,0f,0e,50,53,2f,32,20,4d,6f,75,73,65,00,50,53,2f,32,20,\
    4d,6f,75,73,65,00,00,08,09,13,00,00,00,01,12,10,55,53,42,31,00,00,08,09,14,\
    00,00,00,01,12,10,55,53,42,32,00,00,08,09,15,00,00,00,01,12,10,55,53,42,33,\
    00,00,08,09,16,00,00,00,01,12,10,55,53,42,34,00,00,08,09,17,00,00,00,01,12,\
    10,55,53,42,35,00,00,08,09,18,00,00,00,01,12,10,55,53,42,36,00,00,08,09,19,\
    00,00,00,01,0b,1f,45,54,48,45,52,4e,45,54,00,00,08,09,1a,00,00,00,01,0b,1f,\
    45,54,48,45,52,4e,45,54,00,00,08,09,1b,00,00,00,01,07,0c,4a,6f,79,73,74,69,\
    63,20,50,6f,72,74,00,00,08,09,1c,00,00,00,01,07,0b,4d,49,44,49,20,50,6f,72,\
    74,00,00,09,0d,1d,00,01,06,05,03,03,01,00,06,01,50,43,49,31,00,00,09,0d,1e,\
    00,01,06,05,03,03,02,00,06,01,50,43,49,32,00,00,09,0d,1f,00,01,06,05,03,03,\
    03,00,06,01,50,43,49,33,00,00,09,0d,20,00,01,06,05,04,03,04,00,06,01,50,43,\
    49,34,00,00,09,0d,21,00,01,06,05,03,03,05,00,06,01,50,43,49,35,00,00,09,0d,\
    22,00,01,0f,05,03,03,06,00,04,00,41,47,50,00,00,08,09,23,00,00,00,01,21,11,\
    4f,6e,62,6f,61,72,64,20,31,33,39,34,00,00,08,09,24,00,00,00,01,1f,1d,4c,69,\
    6e,65,20,49,6e,20,4a,61,63,6b,20,50,6f,72,74,00,00,0d,16,25,00,03,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,01,6e,7c,55,53,7c,69,73,6f,38,38,35,\
    39,2d,31,00,6e,7c,55,53,7c,69,73,6f,38,38,35,39,2d,31,00,72,7c,43,41,7c,69,\
    73,6f,38,38,35,39,2d,31,00,61,7c,4a,50,7c,75,6e,69,63,6f,64,65,00,00,10,0f,\
    26,00,03,03,03,00,00,18,00,fe,ff,03,00,00,00,11,15,27,00,26,00,fe,ff,48,00,\
    40,00,00,01,09,00,01,02,03,80,00,44,44,52,31,00,42,61,6e,6b,30,2f,31,00,00,\
    11,15,28,00,26,00,fe,ff,48,00,40,00,00,01,09,00,01,02,03,80,00,44,44,52,32,\
    00,42,61,6e,6b,32,2f,33,00,00,11,15,29,00,26,00,fe,ff,48,00,40,00,00,00,09,\
    00,01,02,03,80,00,44,44,52,33,00,42,61,6e,6b,34,2f,35,00,00,13,0f,2a,00,00,\
    00,00,00,ff,ff,07,00,26,00,02,00,00,14,13,2b,00,00,00,00,00,ff,ff,03,00,27,\
    00,2a,00,01,00,00,00,00,14,13,2c,00,00,00,04,00,ff,ff,07,00,28,00,2a,00,01,\
    00,00,00,00,14,13,2d,00,00,00,00,00,00,00,00,00,29,00,2a,00,01,00,00,00,00,\
    20,0b,2e,00,00,00,00,00,00,00,00,00,00,7f,04,2f,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mssmbios\Enum]
    "0"="Root\\SYSTEM\\0002"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6d,73,6d,\
    70,75,34,30,31,2e,73,79,73,00
    "DisplayName"="Microsoft MPU-401 MIDI UART Driver"

  2. #52
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ms_mpu401\Enum]
    "0"="ACPI\\PNPB006\\3&13c0b0c5&0"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup]
    "DisplayName"="Mup"
    "ErrorControl"=dword:00000001
    "Group"="Network"
    "Start"=dword:00000000
    "Tag"=dword:00000002
    "Type"=dword:00000002

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Mup\Enum]
    "0"="Root\\LEGACY_MUP\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS]
    "DisplayName"="NDIS System Driver"
    "ErrorControl"=dword:00000001
    "Group"="NDIS Wrapper"
    "Start"=dword:00000000
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\MediaTypes]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\Parameters]
    "ProcessorAffinityMask"=dword:ffffffff

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDIS\Enum]
    "0"="Root\\LEGACY_NDIS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
    73,74,61,70,69,2e,73,79,73,00
    "DisplayName"="Remote Access NDIS TAPI Driver"
    "Description"="Remote Access NDIS TAPI Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Parameters]
    "AsyncEventQueueSize"=dword:00000300

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisTapi\Enum]
    "0"="Root\\LEGACY_NDISTAPI\\0000"
    "Count"=dword:00000004
    "NextInstance"=dword:00000004
    "1"="Root\\MS_NDISWANIP\\0000"
    "2"="Root\\MS_PPPOEMINIPORT\\0000"
    "3"="Root\\MS_PPTPMINIPORT\\0000"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:0000000b
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
    73,75,69,6f,2e,73,79,73,00
    "DisplayName"="NDIS Usermode I/O Protocol"
    "Group"="NDIS"
    "Description"="NDIS Usermode I/O Protocol"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Linkage]
    "Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,43,45,35,46,41,30,44,30,2d,33,38,34,\
    44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,\
    00,5c,44,65,76,69,63,65,5c,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,\
    44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
    "Route"=hex(7):22,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,\
    39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,22,00,22,7b,41,45,43,\
    38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
    36,31,37,38,32,33,33,33,7d,22,00,00
    "Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,64,69,73,75,69,6f,5f,7b,43,45,35,46,\
    41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,\
    34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,73,75,69,6f,5f,\
    7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,\
    44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndisuio\Enum]
    "0"="Root\\LEGACY_NDISUIO\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,64,69,\
    73,77,61,6e,2e,73,79,73,00
    "DisplayName"="Remote Access NDIS WAN Driver"
    "Description"="Remote Access NDIS WAN Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Linkage]
    "Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,33,35,39,45,36,34,35,41,2d,41,35,45,\
    43,2d,34,34,34,44,2d,38,34,44,45,2d,33,35,33,41,31,45,36,35,42,41,31,33,7d,\
    00,5c,44,65,76,69,63,65,5c,7b,33,31,34,38,34,44,30,43,2d,41,35,37,32,2d,34,\
    30,45,38,2d,38,33,35,44,2d,33,41,42,37,38,31,44,44,37,43,34,30,7d,00,5c,44,\
    65,76,69,63,65,5c,7b,35,37,32,30,37,39,39,30,2d,45,45,41,42,2d,34,41,35,37,\
    2d,38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,00,5c,44,65,76,69,\
    63,65,5c,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,34,46,37,45,2d,38,30,\
    31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,00,5c,44,65,76,69,63,65,5c,\
    7b,35,31,46,46,37,46,39,39,2d,33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,\
    46,37,38,32,42,46,33,46,30,46,34,41,7d,00,00
    "Route"=hex(7):22,7b,33,35,39,45,36,34,35,41,2d,41,35,45,43,2d,34,34,34,44,2d,\
    38,34,44,45,2d,33,35,33,41,31,45,36,35,42,41,31,33,7d,22,00,22,7b,33,31,34,\
    38,34,44,30,43,2d,41,35,37,32,2d,34,30,45,38,2d,38,33,35,44,2d,33,41,42,37,\
    38,31,44,44,37,43,34,30,7d,22,00,22,7b,35,37,32,30,37,39,39,30,2d,45,45,41,\
    42,2d,34,41,35,37,2d,38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,\
    22,00,22,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,34,46,37,45,2d,38,30,\
    31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,22,00,22,7b,35,31,46,46,37,\
    46,39,39,2d,33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,46,37,38,32,42,46,\
    33,46,30,46,34,41,7d,22,00,00
    "Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,7b,33,35,39,45,\
    36,34,35,41,2d,41,35,45,43,2d,34,34,34,44,2d,38,34,44,45,2d,33,35,33,41,31,\
    45,36,35,42,41,31,33,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,\
    7b,33,31,34,38,34,44,30,43,2d,41,35,37,32,2d,34,30,45,38,2d,38,33,35,44,2d,\
    33,41,42,37,38,31,44,44,37,43,34,30,7d,00,5c,44,65,76,69,63,65,5c,4e,64,69,\
    73,57,61,6e,5f,7b,35,37,32,30,37,39,39,30,2d,45,45,41,42,2d,34,41,35,37,2d,\
    38,36,31,46,2d,46,36,42,46,31,43,37,36,41,33,35,35,7d,00,5c,44,65,76,69,63,\
    65,5c,4e,64,69,73,57,61,6e,5f,7b,43,46,34,43,45,42,31,30,2d,38,44,45,45,2d,\
    34,46,37,45,2d,38,30,31,31,2d,35,32,41,38,43,41,45,38,32,33,34,35,7d,00,5c,\
    44,65,76,69,63,65,5c,4e,64,69,73,57,61,6e,5f,7b,35,31,46,46,37,46,39,39,2d,\
    33,34,36,36,2d,34,43,45,44,2d,42,36,30,35,2d,46,37,38,32,42,46,33,46,30,46,\
    34,41,7d,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NdisWan\Enum]
    "0"="Root\\MS_NDISWANIP\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDProxy]
    "DisplayName"=hex(7):4e,44,49,53,20,50,72,6f,78,79,00,00
    "ErrorControl"=dword:00000001
    "Group"="PNP_TDI"
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NDProxy\Enum]
    "0"="Root\\LEGACY_NDPROXY\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS]
    "Type"=dword:00000002
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,65,74,\
    62,69,6f,73,2e,73,79,73,00
    "DisplayName"="NetBIOS Interface"
    "Group"="NetBIOSGroup"
    "Description"="NetBIOS Interface"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Linkage]
    "LanaMap"=hex:01,03,01,00,00,01,00,02
    "Bind"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
    43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,\
    32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
    54,5f,54,63,70,69,70,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,\
    45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,\
    76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,\
    30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,\
    32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,\
    5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,38,\
    2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
    "Route"=hex(7):22,4e,65,74,42,54,22,20,22,54,63,70,69,70,22,20,22,7b,43,45,35,\
    46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,\
    38,34,30,33,30,44,39,39,7d,22,00,22,4e,65,74,42,54,22,20,22,54,63,70,69,70,\
    22,20,22,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,\
    37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,22,00,22,4e,65,74,42,54,22,\
    20,22,54,63,70,69,70,22,20,22,4e,64,69,73,57,61,6e,49,70,22,00,00
    "Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,54,\
    5f,54,63,70,69,70,5f,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,\
    37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,\
    69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
    41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,\
    37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
    49,4f,53,5f,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,30,\
    2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,32,\
    43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,49,4f,53,5f,4e,65,74,42,\
    54,5f,54,63,70,69,70,5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,\
    44,33,2d,42,39,44,38,2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Parameters]
    "MaxLana"=dword:00000003

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Parameters\Winsock]
    "HelperDllName"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,\
    6d,33,32,5c,77,73,68,6e,65,74,62,73,2e,64,6c,6c,00
    "MaxSockAddrLength"=dword:00000014
    "MinSockAddrLength"=dword:00000014
    "Mapping"=hex:02,00,00,00,03,00,00,00,11,00,00,00,05,00,00,00,00,00,00,00,11,\
    00,00,00,02,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBIOS\Enum]
    "0"="Root\\LEGACY_NETBIOS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT]
    "Type"=dword:00000001
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000006
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,65,74,\
    62,74,2e,73,79,73,00
    "DisplayName"="NetBios over Tcpip"
    "Group"="PNP_TDI"
    "DependOnService"=hex(7):54,63,70,69,70,00,00
    "DependOnGroup"=hex(7):00
    "Description"="NetBios over Tcpip"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Linkage]
    "OtherDependencies"=hex(7):54,63,70,69,70,00,00
    "Bind"=hex(7):5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,43,45,35,46,41,30,\
    44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,\
    33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,41,45,43,\
    38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
    36,31,37,38,32,33,33,33,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,70,5f,7b,\
    45,46,41,41,31,41,32,30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,\
    31,45,34,45,34,43,35,32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,54,63,70,69,\
    70,5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,\
    38,2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00
    "Route"=hex(7):22,54,63,70,69,70,22,20,22,7b,43,45,35,46,41,30,44,30,2d,33,38,\
    34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,\
    7d,22,00,22,54,63,70,69,70,22,20,22,7b,41,45,43,38,31,34,31,31,2d,42,45,31,\
    45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,\
    22,00,22,54,63,70,69,70,22,20,22,4e,64,69,73,57,61,6e,49,70,22,00,00
    "Export"=hex(7):5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,\
    43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,\
    32,35,31,38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,\
    54,5f,54,63,70,69,70,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,\
    45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,5c,44,65,\
    76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,5f,7b,45,46,41,41,31,41,32,\
    30,2d,31,31,33,36,2d,34,41,31,33,2d,41,35,33,43,2d,42,31,45,34,45,34,43,35,\
    32,43,42,45,7d,00,5c,44,65,76,69,63,65,5c,4e,65,74,42,54,5f,54,63,70,69,70,\
    5f,7b,39,35,42,42,43,34,35,35,2d,30,43,42,41,2d,34,45,44,33,2d,42,39,44,38,\
    2d,32,41,46,43,45,31,38,43,34,39,45,37,7d,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters]
    "NbProvider"="_tcp"
    "NameServerPort"=dword:00000089
    "CacheTimeout"=dword:000927c0
    "BcastNameQueryCount"=dword:00000003
    "BcastQueryTimeout"=dword:000002ee
    "NameSrvQueryCount"=dword:00000003
    "NameSrvQueryTimeout"=dword:000005dc
    "Size/Small/Medium/Large"=dword:00000001
    "SessionKeepAlive"=dword:0036ee80
    "TransportBindName"="\\Device\\"
    "EnableLMHOSTS"=dword:00000001
    "DhcpNodeType"=dword:00000008

  3. #53
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{95BBC455-0CBA-4ED3-B9D8-2AFCE18C49E7}]
    "NameServerList"=hex(7):00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{AEC81411-BE1E-4DE1-BB79-D79261782333}]
    "NameServerList"=hex(7):00
    "NetbiosOptions"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{CE5FA0D0-384D-4387-9E47-D25184030D99}]
    "NameServerList"=hex(7):00
    "NetbiosOptions"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters\Interfaces\Tcpip_{EFAA1A20-1136-4A13-A53C-B1E4E4C52CBE}]
    "NameServerList"=hex(7):00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Security]
    "Security"=hex:01,00,14,80,e8,00,00,00,f4,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,b8,00,08,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,\
    00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,\
    00,40,00,00,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,40,00,00,00,\
    01,01,00,00,00,00,00,05,14,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,\
    00,00,05,20,00,00,00,2c,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Enum]
    "0"="Root\\LEGACY_NETBT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDE]
    "DependOnService"=hex(7):4e,65,74,44,44,45,44,53,44,4d,00,00
    "Description"="Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start."
    "DisplayName"="Network DDE"
    "ErrorControl"=dword:00000001
    "Group"="NetDDEGroup"
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6e,65,74,64,64,65,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000004
    "Type"=dword:00000020

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDE\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
    02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDEdsdm]
    "DependOnService"=hex(7):00
    "Description"="Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. "
    "DisplayName"="Network DDE DSDM"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6e,65,74,64,64,65,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000004
    "Type"=dword:00000020

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetDDEdsdm\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
    02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,73,61,73,73,2e,65,78,65,00
    "DisplayName"="Net Logon"
    "Group"="RemoteValidation"
    "DependOnService"=hex(7):4c,61,6e,6d,61,6e,57,6f,72,6b,73,74,61,74,69,6f,6e,00,\
    00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Supports pass-through authentication of account logon events for computers in a domain."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Parameters]
    "DisablePasswordChange"=dword:00000000
    "maximumpasswordage"=dword:0000001e
    "requiresignorseal"=dword:00000001
    "requirestrongkey"=dword:00000000
    "sealsecurechannel"=dword:00000001
    "signsecurechannel"=dword:00000001
    "Update"="no"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman]
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "Description"="Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections."
    "DisplayName"="Network Connections"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000003
    "Type"=dword:00000120

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,6e,65,74,6d,61,6e,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netman\Enum]
    "0"="Root\\LEGACY_NETMAN\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Network Location Awareness (NLA)"
    "DependOnService"=hex(7):54,63,70,69,70,00,41,66,64,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Collects and stores network configuration and location information, and notifies applications when this information changes."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,6d,73,77,73,6f,63,6b,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Security]
    "Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
    00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Nla\Enum]
    "0"="Root\\LEGACY_NLA\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs]
    "ErrorControl"=dword:00000001
    "Group"="File system"
    "Start"=dword:00000001
    "Type"=dword:00000002

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs\Aliases]
    "lsass"=hex(7):70,72,6f,74,65,63,74,65,64,5f,73,74,6f,72,61,67,65,00,6e,65,74,\
    6c,6f,67,6f,6e,00,6c,73,61,72,70,63,00,73,61,6d,72,00,00
    "ntsvcs"=hex(7):65,76,65,6e,74,6c,6f,67,00,73,76,63,63,74,6c,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Npfs\Enum]
    "0"="Root\\LEGACY_NPFS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ntfs]
    "ErrorControl"=dword:00000001
    "Group"="File system"
    "Start"=dword:00000004
    "Type"=dword:00000002

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ntfs\Enum]
    "0"="Root\\LEGACY_NTFS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtLmSsp]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,73,61,73,73,2e,65,78,65,00
    "DisplayName"="NT LM Security Support Provider"
    "ObjectName"="LocalSystem"
    "Description"="Provides security to remote procedure call (RPC) programs that use transports other than named pipes."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtLmSsp\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Removable Storage"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,6e,74,6d,73,73,76,63,2e,64,6c,6c,00
    "ShutdownTimeout"=dword:00007530

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NtmsSvc\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Null]
    "ErrorControl"=dword:00000001
    "Group"="Base"
    "Start"=dword:00000001
    "Tag"=dword:00000001
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Null\Enum]
    "0"="Root\\LEGACY_NULL\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6e,76,61,\
    78,2e,73,79,73,00
    "DisplayName"="Service for NVIDIA(R) nForce(TM) Audio Enumerator"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvax\Enum]
    "0"="PCI\\VEN_10DE&DEV_006A&SUBSYS_80951043&REV_A1\\3&13c0b0c5&0&30"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:0000000c
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,4e,56,45,\
    4e,45,54,2e,73,79,73,00
    "DisplayName"="NVIDIA nForce MCP Networking Adapter Driver"
    "Group"="NDIS"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NVENET\Enum]
    "0"="PCI\\VEN_10DE&DEV_0066&SUBSYS_80A71043&REV_A1\\3&13c0b0c5&0&20"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,6e,76,61,\
    70,75,2e,73,79,73,00
    "DisplayName"="Service for NVIDIA(R) nForce(TM) Audio"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\nvnforce\Enum]
    "0"="NVAX\\NFORCE_VAD\\4&30255a3&0&0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFlt]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,77,6c,\
    6e,6b,66,6c,74,2e,73,79,73,00
    "DisplayName"="IPX Traffic Filter Driver"
    "DependOnService"=hex(7):4e,77,6c,6e,6b,46,77,64,00,00
    "DependOnGroup"=hex(7):00
    "Description"="IPX Traffic Filter Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFlt\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFwd]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,6e,77,6c,\
    6e,6b,66,77,64,2e,73,79,73,00
    "DisplayName"="IPX Traffic Forwarder Driver"
    "Description"="IPX Traffic Forwarder Driver"

  4. #54
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NwlnkFwd\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Parport]
    "ErrorControl"=dword:00000001
    "Group"="Parallel arbitrator"
    "Start"=dword:00000003
    "Tag"=dword:00000001
    "Type"=dword:00000001
    "DisplayName"="Parallel port driver"
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,61,72,\
    70,6f,72,74,2e,73,79,73,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Parport\Enum]
    "0"="ACPI\\PNP0401\\3&13c0b0c5&0"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PartMgr]
    "ErrorControl"=dword:00000001
    "Group"="System Bus Extender"
    "Start"=dword:00000000
    "Tag"=dword:00000005
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PartMgr\Enum]
    "0"="Root\\LEGACY_PARTMGR\\0000"
    "Count"=dword:00000002
    "NextInstance"=dword:00000002
    "1"="IDE\\DiskMaxtor_6E040L0__________________________NAR61HA0\\394536324d504548202020202020202020202020"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm]
    "DependOnGroup"=hex(7):50,61,72,61,6c,6c,65,6c,20,61,72,62,69,74,72,61,74,6f,\
    72,00,00
    "DependOnService"=hex(7):50,61,72,70,6f,72,74,00,00
    "ErrorControl"=dword:00000000
    "Group"="Extended base"
    "Start"=dword:00000002
    "Tag"=dword:00000002
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ParVdm\Enum]
    "0"="Root\\LEGACY_PARVDM\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI]
    "ErrorControl"=dword:00000003
    "Group"="Boot Bus Extender"
    "Start"=dword:00000000
    "Tag"=dword:00000002
    "Type"=dword:00000001
    "DisplayName"="PCI Bus Driver"
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,63,69,\
    2e,73,79,73,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI\Parameters]
    "1045C621"=hex:04,00,00,00,00,00,00,00
    "10950640"=hex:04,00,00,00,00,00,00,00
    "80861230"=hex:04,00,00,00,00,00,00,00
    "80867010"=hex:04,00,00,00,00,00,00,00
    "104B0140"=hex:08,00,00,00,00,00,00,00
    "11790603"=hex:08,00,00,00,00,00,00,00
    "80867113"=hex:08,00,00,00,00,00,00,00
    "497884C5"=hex:08,00,00,00,00,00,00,00
    "11063040"=hex:08,00,00,00,00,00,00,00
    "0E111000"=hex:10,00,00,00,00,00,00,00
    "0E112000"=hex:10,00,00,00,00,00,00,00
    "10390406"=hex:10,00,00,00,00,00,00,00
    "80860482"=hex:00,40,00,00,00,00,00,00
    "80860008"=hex:10,00,00,00,00,00,00,00
    "10140002"=hex:10,00,00,00,00,00,00,00
    "10800600"=hex:20,00,00,00,00,00,00,00
    "10131100"=hex:40,00,00,00,00,00,00,00
    "10B95219"=hex:80,00,00,00,00,00,00,00
    "1C1C0001"=hex:00,01,00,00,00,00,00,00
    "10970038"=hex:00,01,00,00,00,00,00,00
    "100BD001"=hex:00,04,00,00,00,00,00,00
    "808604A3"=hex:00,08,00,00,00,00,00,00
    "10AA0000"=hex:00,08,00,00,00,00,00,00
    "533388D1"=hex:00,00,00,00,01,00,00,00
    "11790605"=hex:00,10,00,00,00,00,00,00
    "10131110"=hex:00,20,00,00,00,00,00,00
    "11800478"=hex:00,20,00,00,00,00,00,00
    "11800475"=hex:00,20,00,00,00,00,00,00
    "11800476"=hex:00,20,00,00,00,00,00,00
    "10040101"=hex:00,40,00,00,00,00,00,00
    "10421000"=hex:00,40,00,00,00,00,00,00
    "104CAC12"=hex:00,00,01,00,00,00,00,00
    "11800466"=hex:00,00,01,00,00,00,00,00
    "10140095"=hex:00,00,04,00,00,00,00,00
    "80862418"=hex:00,00,04,00,00,00,00,00
    "80862428"=hex:00,00,04,00,00,00,00,00
    "8086244E"=hex:00,00,04,00,00,00,00,00
    "80862448"=hex:00,00,04,00,00,00,00,00
    "8086122E"=hex:00,00,08,00,00,00,00,00
    "80867000"=hex:00,00,08,00,00,00,00,00
    "80867110"=hex:00,00,08,00,00,00,00,00
    "80867600"=hex:00,00,08,00,00,00,00,00
    "10024747"=hex:00,00,40,00,00,00,00,00
    "10024754"=hex:00,00,00,00,01,00,00,00
    "53338901"=hex:00,00,00,00,01,00,00,00
    "101300D6"=hex:00,00,40,00,00,00,00,00
    "104CAC15"=hex:00,00,40,00,00,00,00,00
    "110B0004"=hex:00,00,40,00,00,00,00,00
    "1000000F"=hex:00,00,40,00,00,00,00,00
    "104CAC17"=hex:00,00,40,00,00,00,00,00
    "10239397"=hex:00,00,40,00,00,00,00,00
    "10024742"=hex:00,00,40,00,00,00,00,00
    "10024744"=hex:00,00,40,00,00,00,00,00
    "10024749"=hex:00,00,40,00,00,00,00,00
    "10024750"=hex:00,00,40,00,00,00,00,00
    "10024751"=hex:00,00,40,00,00,00,00,00
    "10024755"=hex:00,00,40,00,00,00,00,00
    "10024757"=hex:00,00,40,20,00,00,00,00
    "10024759"=hex:00,00,40,20,00,00,00,00
    "10024C42"=hex:00,00,40,00,00,00,00,00
    "10024C44"=hex:00,00,40,00,00,00,00,00
    "10024C47"=hex:00,00,40,00,00,00,00,00
    "10024C49"=hex:00,00,40,00,00,00,00,00
    "10024C50"=hex:00,00,40,00,00,00,00,00
    "10024C51"=hex:00,00,40,00,00,00,00,00
    "10025654"=hex:00,00,00,00,01,00,00,00
    "10025655"=hex:00,00,40,00,00,00,00,00
    "10025656"=hex:00,00,40,00,00,00,00,00
    "121A0003"=hex:00,00,40,00,00,00,00,00
    "1045C861107B9300"=hex:00,00,40,00,00,00,00,00
    "1045C8611045C861"=hex:00,00,40,00,00,00,00,00
    "80861231"=hex:00,00,00,01,00,00,00,00
    "12730002"=hex:00,00,00,01,00,00,00,00
    "1014007D"=hex:00,00,00,01,00,00,00,00
    "12850100"=hex:00,00,00,01,00,00,00,00
    "12176836"=hex:00,00,00,08,00,00,00,00
    "12176832"=hex:00,00,00,08,00,00,00,00
    "109107A0"=hex:00,00,00,20,00,00,00,00
    "80867800"=hex:00,00,00,20,00,00,00,00
    "10c88005"=hex:00,00,00,20,00,00,00,00
    "10c88006"=hex:00,00,00,20,00,00,00,00
    "10c80005"=hex:00,00,00,20,00,00,00,00
    "10c80006"=hex:00,00,00,20,00,00,00,00
    "102B1001"=hex:00,00,00,80,00,00,00,00
    "10DD0100"=hex:00,00,00,20,00,00,00,00
    "10950646"=hex:00,00,00,20,00,00,00,00
    "10950670"=hex:00,00,00,20,00,00,00,00
    "10950648"=hex:00,00,00,20,00,00,00,00
    "10110026"=hex:00,00,00,20,00,00,00,00
    "8086B154"=hex:00,00,00,20,00,00,00,00
    "53338904"=hex:00,00,00,20,00,00,00,00
    "11068598"=hex:00,00,00,20,00,00,00,00
    "11068605"=hex:00,00,00,20,00,00,00,00
    "11790609"=hex:00,00,00,40,00,00,00,00
    "10140047"=hex:00,00,00,40,00,00,00,00
    "102B051B"=hex:00,00,00,80,00,00,00,00
    "102B0520"=hex:00,00,00,80,00,00,00,00
    "102B0521"=hex:00,00,00,80,00,00,00,00
    "102B1025"=hex:00,00,00,80,00,00,00,00
    "102B0525"=hex:00,00,00,80,00,00,00,00
    "80867121"=hex:00,00,00,80,00,00,00,00
    "80867123"=hex:00,00,00,80,00,00,00,00
    "80867125"=hex:00,00,00,80,00,00,00,00
    "80861132"=hex:00,00,00,80,00,00,00,00
    "90050050"=hex:00,00,00,80,00,00,00,00
    "9005005F"=hex:00,00,00,80,00,00,00,00
    "10024752"=hex:00,00,00,80,00,00,00,00
    "1002474F"=hex:00,00,00,80,00,00,00,00
    "1002474D"=hex:00,00,00,80,00,00,00,00
    "10024753"=hex:00,00,00,80,00,00,00,00
    "1002474C"=hex:00,00,00,80,00,00,00,00
    "1002474E"=hex:00,00,00,80,00,00,00,00
    "10024C4D"=hex:00,00,00,80,00,00,00,00
    "10024C4E"=hex:00,00,00,80,00,00,00,00
    "10024C52"=hex:00,00,00,80,00,00,00,00
    "10024C53"=hex:00,00,00,80,00,00,00,00
    "10239880"=hex:00,00,00,80,00,00,00,00
    "10DE00A0"=hex:00,00,00,80,00,00,00,00
    "10DE00A1"=hex:00,00,00,80,00,00,00,00
    "10DE00A3"=hex:00,00,00,80,00,00,00,00
    "10DE00B0"=hex:00,00,00,80,00,00,00,00
    "10DE00B1"=hex:00,00,00,80,00,00,00,00
    "10DE00B3"=hex:00,00,00,80,00,00,00,00
    "10DE0100"=hex:00,00,00,80,00,00,00,00
    "10DE0101"=hex:00,00,00,80,00,00,00,00
    "10DE0102"=hex:00,00,00,80,00,00,00,00
    "10DE0103"=hex:00,00,00,80,00,00,00,00
    "10DE0120"=hex:00,00,00,80,00,00,00,00
    "10DE0121"=hex:00,00,00,80,00,00,00,00
    "10DE0122"=hex:00,00,00,80,00,00,00,00
    "10DE0123"=hex:00,00,00,80,00,00,00,00
    "10DE0150"=hex:00,00,00,80,00,00,00,00
    "10DE0151"=hex:00,00,00,80,00,00,00,00
    "10DE0152"=hex:00,00,00,80,00,00,00,00
    "10DE0153"=hex:00,00,00,80,00,00,00,00
    "10DE0200"=hex:00,00,00,80,00,00,00,00
    "10DE0201"=hex:00,00,00,80,00,00,00,00
    "10DE0202"=hex:00,00,00,80,00,00,00,00
    "10DE0203"=hex:00,00,00,80,00,00,00,00
    "12D20018"=hex:00,00,00,80,00,00,00,00
    "12D20019"=hex:00,00,00,80,00,00,00,00
    "10136003"=hex:00,00,00,80,00,00,00,00
    "3D3D000A"=hex:00,00,00,80,00,00,00,00
    "10024158"=hex:00,00,00,00,01,00,00,00
    "10024354"=hex:00,00,00,00,01,00,00,00
    "10024358"=hex:00,00,00,00,01,00,00,00
    "10024554"=hex:00,00,00,00,01,00,00,00
    "10024758"=hex:00,00,00,00,01,00,00,00
    "10024C54"=hex:00,00,00,00,01,00,00,00
    "53338810"=hex:00,00,00,00,01,00,00,00
    "53338811"=hex:00,00,00,00,01,00,00,00
    "53338812"=hex:00,00,00,00,01,00,00,00
    "53338814"=hex:00,00,00,00,01,00,00,00
    "53338880"=hex:00,00,00,00,01,00,00,00
    "533388B0"=hex:00,00,00,00,01,00,00,00
    "533388C0"=hex:00,00,00,00,01,00,00,00
    "533388C1"=hex:00,00,00,00,01,00,00,00
    "533388D0"=hex:00,00,00,00,01,00,00,00
    "533388F0"=hex:00,00,00,00,01,00,00,00
    "53338902"=hex:00,00,00,00,01,00,00,00
    "0E11B109"=hex:00,00,00,00,02,00,00,00
    "10024342"=hex:00,00,00,00,80,00,00,00
    "10024362"=hex:00,00,00,00,80,00,00,00
    "10024371"=hex:00,00,00,00,80,00,00,00
    "100C3202"=hex:00,8a,00,00,00,00,00,00
    "10668002"=hex:00,00,30,00,00,00,00,00
    "10660002"=hex:00,00,30,00,00,00,00,00
    "10040102"=hex:00,40,00,02,00,00,00,00
    "1045C814"=hex:00,00,40,20,00,00,00,00
    "10024756"=hex:00,00,40,20,00,00,00,00
    "1002475A"=hex:00,00,40,20,00,00,00,00
    "80861161"=hex:00,00,00,40,10,00,00,00
    "80861461"=hex:00,00,00,40,10,00,00,00
    "1000000B"=hex:00,00,00,a0,00,00,00,00
    "10DE0020"=hex:00,00,00,a0,00,00,00,00
    "10DE0028"=hex:00,00,00,a0,00,00,00,00
    "10DE0029"=hex:00,00,00,a0,00,00,00,00
    "10DE002A"=hex:00,00,00,a0,00,00,00,00
    "10DE002B"=hex:00,00,00,a0,00,00,00,00
    "10DE002C"=hex:00,00,00,a0,00,00,00,00
    "10DE002D"=hex:00,00,00,a0,00,00,00,00
    "10DE002E"=hex:00,00,00,a0,00,00,00,00
    "10DE002F"=hex:00,00,00,a0,00,00,00,00
    "101300D6101880D6"=hex:00,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCI\Enum]
    "0"="ACPI\\PNP0A03\\1"
    "Count"=dword:00000003
    "NextInstance"=dword:00000003
    "1"="PCI\\VEN_10DE&DEV_006C&SUBSYS_00000000&REV_A3\\3&13c0b0c5&0&40"
    "2"="PCI\\VEN_10DE&DEV_01E8&SUBSYS_00000000&REV_C1\\3&13c0b0c5&0&F0"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIDump]
    "ErrorControl"=dword:00000000
    "Group"="PCI Configuration"
    "Start"=dword:00000001
    "Tag"=dword:00000001
    "Type"=dword:00000001

  5. #55
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIIde]
    "ErrorControl"=dword:00000001
    "Group"="System Bus Extender"
    "Start"=dword:00000000
    "Tag"=dword:00000003
    "Type"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,63,69,\
    69,64,65,2e,73,79,73,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PCIIde\Enum]
    "0"="PCI\\VEN_10DE&DEV_0065&SUBSYS_0C111043&REV_A2\\3&13c0b0c5&0&48"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Pcmcia]
    "ErrorControl"=dword:00000001
    "Group"="System Bus Extender"
    "Start"=dword:00000004
    "Tag"=dword:00000001
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Pcmcia\Parameters]
    "SoundsEnabled"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDCOMP]
    "ErrorControl"=dword:00000000
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDFRAME]
    "ErrorControl"=dword:00000000
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDRELI]
    "ErrorControl"=dword:00000000
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PDRFRAME]
    "ErrorControl"=dword:00000000
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\perc2hib]
    "ErrorControl"=dword:00000001
    "Group"="Filter"
    "Start"=dword:00000004
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfDisk\Performance]
    "Close"="CloseDiskObject"
    "Collect"="CollectDiskObjectData"
    "Collect Timeout"=dword:000007d0
    "Library"="perfdisk.dll"
    "Object List"="234 236"
    "Open"="OpenDiskObject"
    "Open Timeout"=dword:00001388
    "WbemAdapFileSignature"=hex:ba,86,8a,32,eb,6e,b8,eb,d2,ff,0d,86,79,80,1d,ef
    "WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
    "WbemAdapFileSize"=dword:00006800
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfNet\Performance]
    "Close"="CloseNetSvcsObject"
    "Collect"="CollectNetSvcsObjectData"
    "Collect Timeout"=dword:00001388
    "Library"="perfnet.dll"
    "Object List"="52 262 330 1300"
    "Open"="OpenNetSvcsObject"
    "Open Timeout"=dword:00001f40
    "WbemAdapFileSignature"=hex:63,6a,03,aa,52,09,fc,2e,84,16,a7,46,b1,98,61,55
    "WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
    "WbemAdapFileSize"=dword:00004200
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfOS\Performance]
    "Close"="CloseOSObject"
    "Collect"="CollectOSObjectData"
    "Collect Timeout"=dword:000007d0
    "Library"="perfos.dll"
    "Object List"="2 4 86 238 260 700"
    "Open"="OpenOSObject"
    "Open Timeout"=dword:00001388
    "WbemAdapFileSignature"=hex:fc,77,c6,3c,47,ae,2d,0d,8b,05,da,6e,c1,78,5c,0f
    "WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
    "WbemAdapFileSize"=dword:00006200
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PerfProc\Performance]
    "Close"="CloseSysProcessObject"
    "Collect"="CollectSysProcessObjectData"
    "Collect Timeout"=dword:00001f40
    "Library"="perfproc.dll"
    "Object List"="230 232 786 740 816 1408 1500 1548 1760"
    "Open"="OpenSysProcessObject"
    "Open Timeout"=dword:00002710
    "WbemAdapFileSignature"=hex:26,04,41,1d,b3,62,f3,c7,d4,6b,ab,31,36,2f,0b,55
    "WbemAdapFileTime"=hex:00,5b,4e,ea,bd,79,c4,01
    "WbemAdapFileSize"=dword:00008800
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PlugPlay]
    "Description"="Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability."
    "DisplayName"="Plug and Play"
    "ErrorControl"=dword:00000001
    "Group"="PlugPlay"
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,65,72,76,69,63,65,73,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "PlugPlayServiceType"=dword:00000003
    "Start"=dword:00000002
    "Type"=dword:00000020

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PlugPlay\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent]
    "Type"=dword:00000020
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,73,61,73,73,2e,65,78,65,00
    "DisplayName"="IPSEC Services"
    "DependOnService"=hex(7):52,50,43,53,53,00,54,63,70,69,70,00,49,50,53,65,63,00,\
    00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver."
    "PolstoreDllRegisterVersion"=dword:00000002

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PolicyAgent\Enum]
    "0"="Root\\LEGACY_POLICYAGENT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
    70,70,74,70,2e,73,79,73,00
    "DisplayName"="WAN Miniport (PPTP)"
    "Description"="WAN Miniport (PPTP)"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PptpMiniport\Enum]
    "0"="Root\\MS_PPTPMINIPORT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage]
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "Description"="Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users."
    "DisplayName"="Protected Storage"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,73,61,73,73,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000002
    "Type"=dword:00000120

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ProtectedStorage\Enum]
    "0"="Root\\LEGACY_PROTECTEDSTORAGE\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000007
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,73,63,\
    68,65,64,2e,73,79,73,00
    "DisplayName"="QoS Packet Scheduler"
    "Group"="PNP_TDI"
    "DependOnService"=hex(7):47,70,63,00,00
    "DependOnGroup"=hex(7):00
    "Description"="QoS Packet Scheduler"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\NdisWanIp]
    "UpperBindings"="\\Device\\{D863D632-44F0-407B-8563-B29977806B55}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\{AEC81411-BE1E-4DE1-BB79-D79261782333}]
    "UpperBindings"="\\Device\\{2C05508E-B18D-48A6-950F-748981087CB0}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Parameters\Adapters\{CE5FA0D0-384D-4387-9E47-D25184030D99}]
    "UpperBindings"="\\Device\\{FAD1C0FD-F8E9-4E88-AEA6-FE853F2398E1}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Performance]
    "Library"="pschdprf.dll"
    "Open"="OpenPschedPerformanceData"
    "Close"="ClosePschedPerformanceData"
    "Collect"="CollectPschedPerformanceData"
    "Last Counter"=dword:000007dc
    "Last Help"=dword:000007dd
    "First Counter"=dword:00000790
    "First Help"=dword:00000791
    "WbemAdapFileSignature"=hex:b4,45,9d,13,47,3d,07,fc,b4,33,65,c0,27,32,de,16
    "WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
    "WbemAdapFileSize"=dword:00002a00
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PSched\Enum]
    "0"="Root\\MS_PSCHEDMP\\0000"
    "Count"=dword:00000003
    "NextInstance"=dword:00000003
    "1"="Root\\MS_PSCHEDMP\\0001"
    "2"="Root\\MS_PSCHEDMP\\0002"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,70,74,69,\
    6c,69,6e,6b,2e,73,79,73,00
    "DisplayName"="Direct Parallel Link Driver"
    "Description"="Direct Parallel Link Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ptilink\Enum]
    "0"="Root\\MS_PTIMINIPORT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20]
    "Type"=dword:00000001
    "Start"=dword:00000000
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000007
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,50,78,48,\
    65,6c,70,32,30,2e,73,79,73,00
    "Group"="Filter"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\PxHelp20\Enum]
    "0"="IDE\\CdRomSONY_CD-RW__CRX320EE____________________RYK3____\\3032353030313630303030303533383520202020"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:0000003d
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1080\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:00000023
    "Type"=dword:00000001

  6. #56
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ql10wnt\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:0000003f
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql12160\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:00000031
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1240\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:0000003f
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ql1280\Parameters\PnpInterface]
    "5"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd]
    "Type"=dword:00000001
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
    61,63,64,2e,73,79,73,00
    "DisplayName"="Remote Access Auto Connection Driver"
    "Group"="Streams Drivers"
    "Description"="Remote Access Auto Connection Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAcd\Enum]
    "0"="Root\\LEGACY_RASACD\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Remote Access Auto Connection Manager"
    "DependOnService"=hex(7):52,61,73,4d,61,6e,00,54,61,70,69,73,72,76,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,61,75,74,6f,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasAuto\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
    6c,32,74,70,2e,73,79,73,00
    "DisplayName"="WAN Miniport (L2TP)"
    "Description"="WAN Miniport (L2TP)"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rasl2tp\Enum]
    "0"="Root\\MS_L2TPMINIPORT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Remote Access Connection Manager"
    "DependOnService"=hex(7):54,61,70,69,73,72,76,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Creates a network connection."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Parameters]
    "Medias"=hex(7):72,61,73,74,61,70,69,00,00
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,6d,61,6e,73,2e,64,6c,6c,00
    "IpOutLowWatermark"=dword:00000001
    "IpOutHighWatermark"=dword:00000005

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP]
    "MaxConfigure"=dword:0000000a
    "MaxFailure"=dword:0000000a
    "MaxReject"=dword:00000005
    "MaxTerminate"=dword:00000002
    "Multilink"=dword:00000000
    "NegotiateTime"=dword:00000096
    "RestartTimer"=dword:00000003

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols\BuiltIn]
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,70,70,70,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\ControlProtocols\Chap]
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,63,68,61,70,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP]
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,70,70,70,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\13]
    "RolesSupported"=dword:00000002
    "FriendlyName"="Smart Card or other Certificate"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
    65,6d,33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "InvokeUsernameDialog"=dword:00000000
    "InvokePasswordDialog"=dword:00000000
    "MPPEEncryptionSupported"=dword:00000001
    "ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
    "StandaloneSupported"=dword:00000000
    "NoRootRevocationCheck"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\25]
    "FriendlyName"="Protected EAP (PEAP)"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
    65,6d,33,32,5c,72,61,73,74,6c,73,2e,64,6c,6c,00
    "InvokeUsernameDialog"=dword:00000000
    "InvokePasswordDialog"=dword:00000000
    "MPPEEncryptionSupported"=dword:00000001
    "ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
    "StandaloneSupported"=dword:00000001
    "NoRootRevocationCheck"=dword:00000001
    "RolesSupported"=dword:0000001a

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\26]
    "FriendlyName"="Secured password (EAP-MSCHAP v2)"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
    "ConfigUiPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
    "IdentityPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
    "InteractiveUIPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,\
    65,6d,33,32,5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
    "InvokeUsernameDialog"=dword:00000000
    "InvokePasswordDialog"=dword:00000000
    "MPPEEncryptionSupported"=dword:00000001
    "ConfigCLSID"="{2af6bcaa-f526-4803-aeb8-5777ce386647}"
    "StandaloneSupported"=dword:00000001
    "RolesSupported"=dword:00000004

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\PPP\EAP\4]
    "RolesSupported"=dword:0000000a
    "FriendlyName"="MD5-Challenge"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,63,68,61,70,2e,64,6c,6c,00
    "InvokeUsernameDialog"=dword:00000001
    "InvokePasswordDialog"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Security]
    "Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
    00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasMan\Enum]
    "0"="Root\\LEGACY_RASMAN\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
    70,70,70,6f,65,2e,73,79,73,00
    "DisplayName"="Remote Access PPPOE Driver"
    "Description"="Remote Access PPPOE Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Linkage]
    "Bind"=hex(7):5c,44,65,76,69,63,65,5c,7b,43,45,35,46,41,30,44,30,2d,33,38,34,\
    44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,\
    00,5c,44,65,76,69,63,65,5c,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,\
    44,45,31,2d,42,42,37,39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00
    "Route"=hex(7):22,7b,43,45,35,46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,\
    39,45,34,37,2d,44,32,35,31,38,34,30,33,30,44,39,39,7d,22,00,22,7b,41,45,43,\
    38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,39,2d,44,37,39,32,\
    36,31,37,38,32,33,33,33,7d,22,00,00
    "Export"=hex(7):5c,44,65,76,69,63,65,5c,52,61,73,50,70,70,6f,65,5f,7b,43,45,35,\
    46,41,30,44,30,2d,33,38,34,44,2d,34,33,38,37,2d,39,45,34,37,2d,44,32,35,31,\
    38,34,30,33,30,44,39,39,7d,00,5c,44,65,76,69,63,65,5c,52,61,73,50,70,70,6f,\
    65,5f,7b,41,45,43,38,31,34,31,31,2d,42,45,31,45,2d,34,44,45,31,2d,42,42,37,\
    39,2d,44,37,39,32,36,31,37,38,32,33,33,33,7d,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RasPppoe\Enum]
    "0"="Root\\MS_PPPOEMINIPORT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,61,73,\
    70,74,69,2e,73,79,73,00
    "DisplayName"="Direct Parallel"
    "Description"="Direct Parallel"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Raspti\Enum]
    "0"="Root\\MS_PTIMINIPORT\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss]
    "Type"=dword:00000002
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000004
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,64,62,\
    73,73,2e,73,79,73,00
    "DisplayName"="Rdbss"
    "Group"="Network"
    "Description"="Rdbss"

  7. #57
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Rdbss\Enum]
    "0"="Root\\LEGACY_RDBSS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD]
    "ErrorControl"=dword:00000000
    "Group"="Video Save"
    "ImagePath"="System32\\DRIVERS\\RDPCDD.sys"
    "Start"=dword:00000001
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Device0]
    "Device Description"="RDPDD Chained DD"
    "InstalledDisplayDrivers"=hex(7):52,44,50,44,44,00,00
    "MirrorDriver"=dword:00000001
    "VgaCompatible"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Video]
    "VideoID"="{DEB039CC-B704-4F53-B43E-9DD4432FA2E9}"
    "Service"="RDPCDD"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPCDD\Enum]
    "0"="Root\\LEGACY_RDPCDD\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPDD]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPDD\Device0]
    "InstalledDisplayDrivers"=hex(7):52,44,50,44,44,00,00
    "VgaCompatible"=dword:00000000
    "Attach.RelativeX"=dword:00000000
    "Attach.RelativeY"=dword:00000000
    "Attach.ToDesktop"=dword:00000001
    "DefaultSettings.XResolution"=dword:00000320
    "DefaultSettings.YResolution"=dword:00000258

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,64,70,\
    64,72,2e,73,79,73,00
    "DisplayName"="Terminal Server Device Redirector Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rdpdr\Enum]
    "0"="Root\\RDPDR\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP\NetworkProvider]
    "DeviceName"="\\Device\\RdpDr"
    "Name"="Microsoft Terminal Services"
    "ProviderPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,64,72,70,72,6f,76,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPNP\Enum]
    "0"="Root\\LEGACY_RDPNP\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDPWD]
    "ErrorControl"=dword:00000000
    "Start"=dword:00000003
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDSessMgr]
    "Type"=dword:00000010
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    73,65,73,73,6d,67,72,2e,65,78,65,00
    "DisplayName"="Remote Desktop Help Session Manager"
    "DependOnService"=hex(7):52,50,43,53,53,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RDSessMgr\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook]
    "Type"=dword:00000001
    "Start"=dword:00000001
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000003
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,72,65,64,\
    62,6f,6f,6b,2e,73,79,73,00
    "DisplayName"="Digital CD Audio Playback Filter Driver"
    "Group"="Pnp Filter"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\redbook\Enum]
    "0"="IDE\\CdRomSONY_CD-RW__CRX320EE____________________RYK3____\\3032353030313630303030303533383520202020"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess]
    "Type"=dword:00000020
    "Start"=dword:00000004
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Routing and Remote Access"
    "DependOnService"=hex(7):52,70,63,53,53,00,00
    "DependOnGroup"=hex(7):4e,65,74,42,49,4f,53,47,72,6f,75,70,00,00
    "ObjectName"="LocalSystem"
    "Description"="Offers routing services to businesses in local area and wide area network environments."
    @=""

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers]
    "ActiveProvider"="{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
    "ConfigClsid"="{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}"
    "DisplayName"="RADIUS Accounting"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,72,61,64,2e,64,6c,6c,00
    "ProviderTypeGUID"="{76560D80-2BFD-11d2-9539-3078302C2030}"
    "VendorName"="Microsoft"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
    "ConfigClsid"=""
    "DisplayName"="Windows Accounting"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,6d,70,72,64,64,6d,2e,64,6c,6c,00
    "ProviderTypeGUID"="{76560D81-2BFD-11d2-9539-3078302C2030}"
    "VendorName"="Microsoft"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers]
    "ActiveProvider"="{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
    "ConfigClsid"="{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}"
    "DisplayName"="RADIUS Authentication"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,72,61,73,72,61,64,2e,64,6c,6c,00
    "VendorName"="Microsoft"
    "ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
    "ConfigClsid"=""
    "DisplayName"="Windows Authentication"
    "Path"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,\
    5c,6d,70,72,64,64,6d,2e,64,6c,6c,00
    "VendorName"="Microsoft"
    "ProviderTypeGUID"="{76560D01-2BFD-11d2-9539-3078302C2030}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\DemandDialManager]
    "DllPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,6d,70,72,64,64,6d,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces]
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\0]
    "InterfaceName"="Loopback"
    "Type"=dword:00000005
    "Enabled"=dword:00000001
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\0\Ip]
    "ProtocolId"=dword:00000021
    "InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
    00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
    07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
    00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\1]
    "InterfaceName"="Internal"
    "Type"=dword:00000004
    "Enabled"=dword:00000001
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\1\Ip]
    "ProtocolId"=dword:00000021
    "InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
    00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
    07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
    00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\2]
    "InterfaceName"="{AEC81411-BE1E-4DE1-BB79-D79261782333}"
    "Type"=dword:00000003
    "Enabled"=dword:00000001
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\2\Ip]
    "ProtocolId"=dword:00000021
    "InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
    00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
    07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
    00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\3]
    "InterfaceName"="{CE5FA0D0-384D-4387-9E47-D25184030D99}"
    "Type"=dword:00000003
    "Enabled"=dword:00000001
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Interfaces\3\Ip]
    "ProtocolId"=dword:00000021
    "InterfaceInfo"=hex:01,00,00,00,68,00,00,00,03,00,00,00,05,00,ff,ff,38,00,00,\
    00,00,00,00,00,40,00,00,00,04,00,ff,ff,04,00,00,00,01,00,00,00,40,00,00,00,\
    07,00,ff,ff,10,00,00,00,01,00,00,00,48,00,00,00,00,00,00,00,01,00,00,00,00,\
    00,00,00,58,02,c2,01,08,07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters]
    "RouterType"=dword:00000001
    "ServerFlags"=dword:00002702
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,6d,70,72,64,69,6d,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\AppleTalk]
    "EnableIn"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Ip]
    "AllowClientIpAddresses"=dword:00000000
    "AllowNetworkAccess"=dword:00000001
    "EnableIn"=dword:00000001
    "IpAddress"="0.0.0.0"
    "IpMask"="0.0.0.0"
    "UseDhcpAddressing"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Ipx]
    "EnableIn"=dword:00000001
    "AcceptRemoteNodeNumber"=dword:00000001
    "AllowNetworkAccess"=dword:00000001
    "AutoWanNetAllocation"=dword:00000001
    "FirstWanNet"=dword:00000000
    "GlobalWanNet"=dword:00000001
    "LastWanNet"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Parameters\Nbf]
    "EnableIn"=dword:00000001
    "AllowNetworkAccess"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Performance]
    "Open"="OpenRasPerformanceData"
    "Close"="CloseRasPerformanceData"
    "Collect"="CollectRasPerformanceData"
    "Library"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,72,61,73,63,74,72,73,2e,64,6c,6c,00
    "Last Counter"=dword:00000804
    "Last Help"=dword:00000805
    "First Counter"=dword:000007de
    "First Help"=dword:000007df
    "WbemAdapFileSignature"=hex:b0,b0,d7,90,5a,c7,1b,c2,78,f1,7f,45,5e,18,26,11
    "WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
    "WbemAdapFileSize"=dword:00002e00
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy]
    "ProductDir"="C:\\WINDOWS\\system32\\IAS"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\01]
    @="IAS.ProxyPolicyEnforcer"
    "Requests"="0 1 2"
    "Responses"="0 1 2 3 4"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\02]
    @="IAS.NTSamNames"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0 1 3"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\03]
    @="IAS.BaseCampHost"
    "Requests"="0 1"
    "Responses"="0 1 2 4"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\04]
    @="IAS.RadiusProxy"
    "Providers"="2"
    "Responses"="0"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\05]
    @="IAS.NTSamAuthentication"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\06]
    @="IAS.AccountValidation"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0 1"
    "Reasons"="33"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\07]
    @="IAS.PolicyEnforcer"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0 1 3"
    "Reasons"="33"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\08]
    @="IAS.NTSamPerUser"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0 1 3"
    "Reasons"="33"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\09]
    @="IAS.EAP"
    "Providers"="1"
    "Requests"="0 2"
    "Responses"="0"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\10]
    @="IAS.URHandler"
    "Providers"="0 1"
    "Requests"="0 2"
    "Responses"="0 1"
    "Reasons"="33"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\11]
    @="IAS.ChangePassword"
    "Providers"="1"
    "Requests"="0"
    "Responses"="0 1"

  8. #58
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\12]
    @="IAS.AuthorizationHost"
    "Requests"="0 1 2"
    "Responses"="0 1 2 4"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\13]
    @="IAS.Accounting"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Policy\Pipeline\14]
    @="IAS.MSChapErrorReporter"
    "Providers"="0 1"
    "Requests"="0"
    "Responses"="2"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\RouterManagers]
    "Stamp"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\RouterManagers\Ip]
    "ProtocolId"=dword:00000021
    "GlobalInfo"=hex:01,00,00,00,80,00,00,00,02,00,00,00,03,00,ff,ff,08,00,00,00,\
    01,00,00,00,30,00,00,00,06,00,ff,ff,3c,00,00,00,01,00,00,00,38,00,00,00,00,\
    00,00,00,00,00,00,00,01,00,00,00,07,00,00,00,02,00,00,00,01,00,00,00,03,00,\
    00,00,0a,00,00,00,16,27,00,00,03,00,00,00,17,27,00,00,05,00,00,00,12,27,00,\
    00,07,00,00,00,0d,00,00,00,6e,00,00,00,08,00,00,00,78,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "DLLPath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,69,70,72,74,72,6d,67,72,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteAccess\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry]
    "Description"="Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start."
    "DependOnService"=hex(7):52,50,43,53,53,00,00
    "DisplayName"="Remote Registry"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,4c,6f,63,61,6c,53,65,72,\
    76,69,63,65,00
    "ObjectName"="NT AUTHORITY\\LocalService"
    "Group"=""
    "Start"=dword:00000002
    "Type"=dword:00000020
    "FailureActions"=hex:00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,e0,ad,08,\
    00,01,00,00,00,e8,03,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,72,65,67,73,76,63,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RemoteRegistry\Enum]
    "0"="Root\\LEGACY_REMOTEREGISTRY\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator]
    "Type"=dword:00000010
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,6f,63,61,74,6f,72,2e,65,78,65,00
    "DisplayName"="Remote Procedure Call (RPC) Locator"
    "DependOnService"=hex(7):4c,61,6e,6d,61,6e,57,6f,72,6b,73,74,61,74,69,6f,6e,00,\
    00
    "DependOnGroup"=hex(7):00
    "ObjectName"="NT AUTHORITY\\NetworkService"
    "Description"="Manages the RPC name service database."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator\Parameters]
    "ExpirationAge"=dword:00000e10

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcLocator\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs]
    "Description"="Provides the endpoint mapper and other miscellaneous RPC services."
    "DisplayName"="Remote Procedure Call (RPC)"
    "ErrorControl"=dword:00000001
    "Group"="COM Infrastructure"
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,20,2d,6b,20,72,70,63,73,73,00
    "ObjectName"="NT AUTHORITY\\NetworkService"
    "Start"=dword:00000002
    "Type"=dword:00000020
    "FailureActions"=hex:00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,00,00,00,\
    00,02,00,00,00,60,ea,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,72,70,63,73,73,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Security]
    "Security"=hex:01,00,14,80,a8,00,00,00,b4,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,78,00,05,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
    02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,00,00,\
    18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,\
    00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RpcSs\Enum]
    "0"="Root\\LEGACY_RPCSS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP]
    "Type"=dword:00000010
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,72,73,76,70,2e,65,78,65,00
    "DisplayName"="QoS RSVP"
    "DependOnService"=hex(7):54,63,70,49,70,00,41,66,64,00,52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Parameters]
    "StartBlocker"=""
    "Requests"=""
    "Upcalls"=""

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Performance]
    "Open"="OpenRsvpPerformanceData"
    "Close"="CloseRsvpPerformanceData"
    "Collect"="CollectRsvpPerformanceData"
    "Library"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,72,73,76,70,70,65,72,66,2e,64,6c,6c,00
    "Last Counter"=dword:0000078e
    "Last Help"=dword:0000078f
    "First Counter"=dword:00000738
    "First Help"=dword:00000739
    "WbemAdapFileSignature"=hex:f9,dd,79,9e,07,ed,50,28,db,2f,1f,fe,a7,2c,93,57
    "WbemAdapFileTime"=hex:00,20,7c,22,cb,2b,c1,01
    "WbemAdapFileSize"=dword:00002600
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Security]
    "Security"=hex:01,00,14,80,7c,00,00,00,88,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,4c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,\
    00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:0000000d
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,52,54,4c,\
    38,31,33,39,2e,53,59,53,00
    "DisplayName"="Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver"
    "Group"="NDIS"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\rtl8139\Enum]
    "0"="PCI\\VEN_10EC&DEV_8139&SUBSYS_813910EC&REV_10\\4&3b1d9ab8&0&4840"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs]
    "Description"="Stores security information for local user accounts."
    "DisplayName"="Security Accounts Manager"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,6c,73,61,73,73,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000002
    "Type"=dword:00000020
    "Group"="LocalValidation"
    "DependOnService"=hex(7):52,50,43,53,53,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs\Security]
    "Security"=hex:01,00,14,80,a8,00,00,00,b4,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,78,00,05,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
    02,00,00,00,00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,00,00,\
    18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,\
    00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SamSs\Enum]
    "0"="Root\\LEGACY_SAMSS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCardSvr]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000000
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,53,43,61,72,64,53,76,72,2e,65,78,65,00
    "Description"="Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start."
    "DisplayName"="Smart Card"
    "DependOnService"=hex(7):50,6c,75,67,50,6c,61,79,00,00
    "ObjectName"="NT AUTHORITY\\LocalService"
    "Group"="SmartCardGroup"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SCardSvr\Security]
    "Security"=hex:01,00,04,80,88,00,00,00,94,00,00,00,00,00,00,00,14,00,00,00,02,\
    00,74,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,\
    00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,18,\
    00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,\
    ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,14,00,9d,\
    01,02,00,01,01,00,00,00,00,00,02,00,00,00,00,01,01,00,00,00,00,00,05,12,00,\
    00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule]
    "Description"="Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start."
    "Type"=dword:00000020
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Task Scheduler"
    "Group"="SchedulerGroup"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,05,00,03,\
    00,01,00,00,00,70,17,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00
    "NextAtJobId"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,73,63,68,65,64,73,76,63,2e,64,6c,6c,00
    "ServiceMain"="SchedServiceMain"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Schedule\Enum]
    "0"="Root\\LEGACY_SCHEDULE\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv]
    "Type"=dword:00000001
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,63,\
    64,72,76,2e,73,79,73,00
    "DisplayName"="Secdrv"
    "Description"="SafeDisc driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv\Security]
    "Security"=hex:01,00,14,80,8c,00,00,00,98,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,5c,00,04,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,\
    00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,\
    00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,\
    00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Secdrv\Enum]
    "0"="Root\\LEGACY_SECDRV\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon]
    "Description"="Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start."
    "DisplayName"="Secondary Logon"
    "ErrorControl"=dword:00000000
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "Objectname"="LocalSystem"
    "Start"=dword:00000002
    "Type"=dword:00000120

  9. #59
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,73,65,63,6c,6f,67,6f,6e,2e,64,6c,6c,00
    "ServiceMain"="SvcEntry_Seclogon"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\seclogon\Enum]
    "0"="Root\\LEGACY_SECLOGON\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS]
    "DependOnService"=hex(7):45,76,65,6e,74,53,79,73,74,65,6d,00,00
    "Description"="Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events."
    "DisplayName"="System Event Notification"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "ObjectName"="LocalSystem"
    "Group"="Network"
    "Start"=dword:00000002
    "Type"=dword:00000020

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,73,65,6e,73,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SENS\Enum]
    "0"="Root\\LEGACY_SENS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\serenum]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "DisplayName"="Serenum Filter Driver"
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,72,\
    65,6e,75,6d,2e,73,79,73,00
    "Group"="PNP Filter"
    "Tag"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\serenum\Enum]
    "0"="ACPI\\PNP0501\\1"
    "Count"=dword:00000002
    "NextInstance"=dword:00000002
    "1"="ACPI\\PNP0501\\2"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial]
    "ErrorControl"=dword:00000000
    "Group"="Extended base"
    "Start"=dword:00000001
    "Tag"=dword:00000001
    "Type"=dword:00000001
    "ForceFifoEnable"=dword:00000001
    "RxFIFO"=dword:00000008
    "TxFIFO"=dword:0000000e
    "PermitShare"=dword:00000000
    "LogFifo"=dword:00000000
    "DisplayName"="Serial port driver"
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,65,72,\
    69,61,6c,2e,73,79,73,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Serial\Enum]
    "0"="ACPI\\PNP0501\\1"
    "Count"=dword:00000002
    "NextInstance"=dword:00000002
    "1"="ACPI\\PNP0501\\2"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy]
    "DependOnGroup"=hex(7):53,43,53,49,20,6d,69,6e,69,70,6f,72,74,00,00
    "ErrorControl"=dword:00000000
    "Group"="Primary disk"
    "Start"=dword:00000001
    "Tag"=dword:00000004
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sfloppy\Enum]
    "Count"=dword:00000000
    "NextInstance"=dword:00000000
    "INITSTARTFAILED"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess]
    "DependOnGroup"=hex(7):00
    "DependOnService"=hex(7):4e,65,74,6d,61,6e,00,57,69,6e,4d,67,6d,74,00,00
    "Description"="Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network."
    "DisplayName"="Windows Firewall/Internet Connection Sharing (ICS)"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000002
    "Type"=dword:00000020

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Epoch]
    "Epoch"=dword:000041eb

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,69,70,6e,61,74,68,6c,70,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall"=dword:00000001
    "DoNotAllowExceptions"=dword:00000000
    "DisableNotifications"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "D:\\Limewire Downloaded Files\\LimeWire\\LimeWire.exe"="D:\\Limewire Downloaded Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
    "C:\\Program Files\\Championship Manager 00-01\\cm0001.exe"="C:\\Program Files\\Championship Manager 00-01\\cm0001.exe:*:Enabled:cm0001"
    "C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
    "C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
    "C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"
    "C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe:*:Enabled:avgemc.exe"
    "C:\\Program Files\\Real player\\realplay.exe"="C:\\Program Files\\Real player\\realplay.exe:*:Disabled:RealPlayer"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Setup]
    "ServiceUpgrade"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate]
    "All"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Enum]
    "0"="Root\\LEGACY_SHAREDACCESS\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection]
    "Type"=dword:00000020
    "Start"=dword:00000002
    "ErrorControl"=dword:00000000
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="Shell Hardware Detection"
    "Group"="ShellSvcGroup"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Provides notifications for AutoPlay hardware events."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,73,68,73,76,63,73,2e,64,6c,6c,00
    "ServiceMain"="HardwareDetectionServiceMain"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ShellHWDetection\Enum]
    "0"="Root\\LEGACY_SHELLHWDETECTION\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Simbad]
    "ErrorControl"=dword:00000001
    "Group"="Filter"
    "Start"=dword:00000004
    "Tag"=dword:00000001
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock]
    "Type"=dword:00000001
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):5c,3f,3f,5c,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,\
    6d,33,32,5c,73,6f,63,6b,65,74,6c,6f,63,6b,2e,73,79,73,00
    "DisplayName"="Raw Socket Lock Driver"
    "Group"="PNP_TDI"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SocketLock\Enum]
    "0"="Root\\LEGACY_SOCKETLOCK\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:00000007
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow\Parameters]
    "LegacyAdapterDetection"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Sparrow\Parameters\PnpInterface]
    "1"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,73,70,6c,\
    69,74,74,65,72,2e,73,79,73,00
    "DisplayName"="Microsoft Kernel Audio Splitter"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\splitter\Enum]
    "Count"=dword:00000000
    "NextInstance"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler]
    "DependOnService"=hex(7):52,50,43,53,53,00,00
    "Description"="Loads files to memory for later printing."
    "DisplayName"="Print Spooler"
    "ErrorControl"=dword:00000001
    "FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c,\
    00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00
    "Group"="SpoolerGroup"
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,70,6f,6f,6c,73,76,2e,65,78,65,00
    "ObjectName"="LocalSystem"
    "Start"=dword:00000002
    "Type"=dword:00000110

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Performance]
    "Close"="PerfClose"
    "Collect"="PerfCollect"
    "Collect Timeout"=dword:000007d0
    "Library"="winspool.drv"
    "Object List"="1450"
    "Open"="PerfOpen"
    "Open Timeout"=dword:00000fa0
    "WbemAdapFileSignature"=hex:77,7e,b2,9d,01,35,d8,1a,d9,82,8a,2b,05,44,34,96
    "WbemAdapFileTime"=hex:00,69,75,f1,bd,79,c4,01
    "WbemAdapFileSize"=dword:00023c00
    "WbemAdapStatus"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
    05,0b,00,00,00,00,00,18,00,9d,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    23,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
    02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Spooler\Enum]
    "0"="Root\\LEGACY_SPOOLER\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spupdsvc]
    "Type"=dword:00000010
    "Start"=dword:00000004
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    73,70,75,70,64,73,76,63,2e,65,78,65,00
    "DisplayName"="Windows Service Pack Installer update service"
    "DependOnService"=hex(7):53,61,6d,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Enables Installer to complete its scheduled post-reboot tasks"
    "InstallTimestamp"=hex(b):6e,16,b1,a0,8c,83,c7,01

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\spupdsvc\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr]
    "Type"=dword:00000002
    "Start"=dword:00000000
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000004
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,72,2e,\
    73,79,73,00
    "DisplayName"="System Restore Filter Driver"
    "Group"="FSFilter System Recovery"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Parameters]
    "FirstRun"=dword:00000000
    "DontBackup"=dword:00000000
    "MachineGuid"="{968C9190-6233-4ABD-951B-A494B8B2E236}"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sr\Enum]
    "0"="Root\\LEGACY_SR\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice]
    "Type"=dword:00000020
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,6e,65,74,73,76,63,73,00
    "DisplayName"="System Restore Service"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Parameters]
    "ServiceDll"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,\
    5c,73,72,73,76,63,2e,64,6c,6c,00

  10. #60
    Member
    Join Date
    May 2006
    Posts
    87

    Default

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srservice\Enum]
    "0"="Root\\LEGACY_SRSERVICE\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv]
    "Type"=dword:00000002
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "Tag"=dword:00000006
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,72,76,\
    2e,73,79,73,00
    "DisplayName"="Srv"
    "Group"="Network"
    "Description"="Srv"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Srv\Enum]
    "0"="Root\\LEGACY_SRV\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV]
    "Type"=dword:00000020
    "Start"=dword:00000004
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,4c,6f,63,61,6c,53,65,72,\
    76,69,63,65,00
    "DisplayName"="SSDP Discovery Service"
    "DependOnService"=hex(7):48,54,54,50,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="NT AUTHORITY\\LocalService"
    "Description"="Enables discovery of UPnP devices on your home network."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,\
    33,32,5c,73,73,64,70,73,72,76,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Security]
    "Security"=hex:01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,8c,00,06,00,00,00,00,00,14,00,ff,01,0f,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,\
    02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,\
    00,00,00,00,14,00,9d,00,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,14,\
    00,70,00,02,00,01,01,00,00,00,00,00,05,13,00,00,00,01,01,00,00,00,00,00,05,\
    12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SSDPSRV\Enum]
    "0"="Root\\LEGACY_SSDPSRV\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3]
    "Type"=dword:00000001
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):5c,3f,3f,5c,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,\
    6d,33,32,5c,53,54,45,43,33,2e,73,79,73,00
    "DisplayName"="STEC3"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\STEC3\Enum]
    "0"="Root\\LEGACY_STEC3\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc]
    "Type"=dword:00000020
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,33,\
    32,5c,73,76,63,68,6f,73,74,2e,65,78,65,20,2d,6b,20,69,6d,67,73,76,63,00
    "DisplayName"="Windows Image Acquisition (WIA)"
    "DependOnService"=hex(7):52,70,63,53,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Provides image acquisition services for scanners and cameras."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Parameters]
    "ServiceDll"=hex(2):25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,73,79,73,74,65,6d,\
    33,32,5c,77,69,61,73,65,72,76,63,2e,64,6c,6c,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\stisvc\Enum]
    "0"="Root\\LEGACY_STISVC\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum]
    "ErrorControl"=dword:00000001
    "Start"=dword:00000003
    "Type"=dword:00000001
    "DisplayName"="Software Bus Driver"
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,44,52,49,56,45,52,53,5c,73,77,65,\
    6e,75,6d,2e,73,79,73,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{2f412ab5-ed3a-4590-ab24-b0ce2aa77d3c}\{9B365890-165F-11D0-A195-0020AFD156E4}\{9ea331fa-b91b-45f8-9285-bd2bc77afcde}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{4245ff73-1db4-11d2-86e4-98ae20524153}\{9B365890-165F-11D0-A195-0020AFD156E4}\{bf963d80-c559-11d0-8a2b-00a0c9255ac1}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{6c1b9f60-c0a9-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{dff220f3-f70f-11d0-b917-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic\{dff220f3-f70f-11d0-b917-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}\{3c0d501a-140b-11d1-b40f-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}\{53172480-4791-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}\{9B365890-165F-11D0-A195-0020AFD156E4}\{a7c7a5b1-5af3-11d1-9ced-00a024bf0407}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}\{9B365890-165F-11D0-A195-0020AFD156E4}\{ad809c00-7b88-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}\{9B365890-165F-11D0-A195-0020AFD156E4}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{cd171de3-69e5-11d2-b56d-0000f8754380}\{9B365890-165F-11D0-A195-0020AFD156E4}\{3e227e76-690d-11d2-8161-0000f8775bf1}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}\{97ebaacb-95bd-11d0-a3ea-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac\{ad498944-762f-11d0-8dcb-00c04fc3358c}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{2eb07ea0-7e70-11d0-a5d6-28db04c10000}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{6994ad04-93ef-11d0-a3cc-00a0c9223196}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{ffbb6e3f-ccfe-4d84-90d9-421418b03a8e}]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swenum\Enum]
    "0"="Root\\SYSTEM\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi]
    "Type"=dword:00000001
    "Start"=dword:00000003
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):73,79,73,74,65,6d,33,32,5c,64,72,69,76,65,72,73,5c,73,77,6d,\
    69,64,69,2e,73,79,73,00
    "DisplayName"="Microsoft Kernel GS Wavetable Synthesizer"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\swmidi\Enum]
    "Count"=dword:00000000
    "NextInstance"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SwPrv]
    "Type"=dword:00000010
    "Start"=dword:00000003
    "ErrorControl"=dword:00000000
    "ImagePath"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    64,6c,6c,68,6f,73,74,2e,65,78,65,20,2f,50,72,6f,63,65,73,73,69,64,3a,7b,38,\
    45,46,35,42,30,32,38,2d,44,46,33,33,2d,34,34,32,39,2d,38,45,37,43,2d,45,43,\
    35,38,34,33,32,45,31,35,37,45,7d,00
    "DisplayName"="MS Software Shadow Copy Provider"
    "DependOnService"=hex(7):72,70,63,73,73,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start."

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SwPrv\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC]
    "Type"=dword:00000110
    "Start"=dword:00000002
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):22,43,3a,5c,50,72,6f,67,72,61,6d,20,46,69,6c,65,73,5c,43,6f,\
    6d,6d,6f,6e,20,46,69,6c,65,73,5c,53,79,6d,61,6e,74,65,63,20,53,68,61,72,65,\
    64,5c,43,43,50,44,2d,4c,43,5c,73,79,6d,6c,63,73,76,63,2e,65,78,65,22,00
    "DisplayName"="Symantec Core LC"
    "DependOnService"=hex(7):52,50,43,53,53,00,00
    "DependOnGroup"=hex(7):00
    "ObjectName"="LocalSystem"
    "Description"="Symantec Core LC"
    "Group"="Symantec Services"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC\Security]
    "Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
    00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
    00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
    05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
    20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
    00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
    00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Symantec Core LC\Enum]
    "0"="Root\\LEGACY_SYMANTEC_CORE_LC\\0000"
    "Count"=dword:00000001
    "NextInstance"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810]
    "ErrorControl"=dword:00000001
    "Group"="SCSI miniport"
    "Start"=dword:00000004
    "Tag"=dword:0000001a
    "Type"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810\Parameters]

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\symc810\Parameters\PnpInterface]
    "5"=dword:00000001

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •