[Version] Signature = "$Windows NT$" [AddReg] HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDVersion",0x10001,0x100 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDReleaseType",0x10001,0 HKLM,"SYSTEM\CurrentControlSet\Control","CurrentUser",0x00000002,"USERNAME" HKLM,"SYSTEM\CurrentControlSet\Control","WaitToKillServiceTimeout",0x00000002,"20000" HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0520",0x00030003,80,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0521",0x00030003,80,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0525",0x00030003,80,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","10DE0100",0x00030003,00,01,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53339102",0x00030003,00,01,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53338C10",0x00030003,00,01,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53338C12",0x00030003,00,01,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\Arbiters",,0x00000012 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo","InfName",0x00000002,"biosinfo.inf" @@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo\APM","Attributes", 0x00010001, 00000001 HKLM,"SYSTEM\CurrentControlSet\Control\BootVerificationProgram",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Class",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\PnP",,0x00000012 ; ; safeboot options ; HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot","AlternateShell",0x00000000,"cmd.exe" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal",,0x00000010 HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmboot.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmload.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmio.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmserver","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmadmin","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}","",0x00000000,"Universal Serial Bus controllers" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}","",0x00000000,"CD-ROM Drive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}","",0x00000000,"DiskDrive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Standard floppy disk controller" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Hdc" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Keyboard" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Mouse" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}","",0x00000000,"PCMCIA Adapters" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"SCSIAdapter" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}","",0x00000000,"System" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Floppy disk drive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","",0x00000000,"Volume" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}","",0x00000000,"Human Interface Devices" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network",,0x00000010 HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Base","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot file system","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\File system","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Filter","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PCI Configuration","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP Filter","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Primary disk","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCSI Class","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\System Bus Extender","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot Bus Extender","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sermouse.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vga.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vgasave.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmboot.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmload.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmio.sys","",0x00000000,"Driver" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmserver","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmadmin","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EventLog","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PlugPlay","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcSs","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Browser","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dhcp","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DnsCache","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanServer","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanWorkstation","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LmHosts","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Messenger","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetMan","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NtLmSsp","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBT","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Tcpip","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AFD","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOS","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinMgmt","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ndisuio","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WZCSVC","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppMgmt","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CryptSvc","",0x00000000,"Service" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS Wrapper","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Network","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOSGroup","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetDDEGroup","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetworkProvider","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Streams Drivers","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDI","",0x00000000,"Driver Group" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{36FC9E60-C465-11CF-8056-444553540000}","",0x00000000,"Universal Serial Bus controllers" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}","",0x00000000,"CD-ROM Drive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}","",0x00000000,"DiskDrive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Standard floppy disk controller" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Hdc" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Keyboard" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Mouse" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"SCSIAdapter" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}","",0x00000000,"System" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","",0x00000000,"Volume" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Net" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetClient" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetService" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetTrans" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Floppy disk drive" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}","",0x00000000,"PCMCIA Adapters" HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}","",0x00000000,"Human Interface Devices" ; ; The following are Backup & Restore specific key ; ; HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","ASR Log File",0x00010000,"%SystemRoot%\repair\asr.log" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","ASR Error File",0x00010000,"%SystemRoot%\repair\asr.err" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Client Side Cache",0x00010000,"%SystemRoot%\csc\* /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Internet Explorer",0x00010000,"%UserProfile%\index.dat /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Memory Page File",0x00010000,"\Pagefile.sys" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Writer (Bootable State)",0x00010000,"%SystemRoot%\Registration\*.clb","\*.crmlog /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Writer (Service State)", 0x00010000,"%SystemRoot%\system32\NtmsData\*" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Netlogon",0x00010000,"%SystemRoot%\netlogon.chg" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Power Management",0x00010000,"\hiberfil.sys" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","VSS Default Provider",0x00010000,"\System Volume Information\*{3808876B-C176-4e48-B7AE-04046E6CC752} /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Task Scheduler",0x00010000,"%SYSTEMROOT%\schedlgu.txt" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Temporary Files",0x00010000,"%TEMP%\* /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Winlogon debug",0x00010000,"%WINDIR%\debug\*" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\AsrKeysNotToRestore","Plug & Play",0x00010000,"CurrentControlSet\Control\CriticalDeviceDatabase\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Plug & Play",0x00010000,"CurrentControlSet\Enum\","CurrentControlSet\Control\CriticalDeviceDatabase\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","WMI Writer", 0x00010000,"%SystemRoot%\system32\wbem\Repository\* /s" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Mount Manager",0x00010000,"MountedDevices\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Fault Tolerance",0x00010000,"Disk\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Installed Services",0x00010000,"CurrentControlSet\Services\*" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Active Directory Restore",0x00010000,"CurrentControlSet\Services\NTDS\Restore In Progress\","CurrentControlSet\Services\NTDS\Parameters\New Database GUID" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Pending Rename Operations",0x00010000,"CurrentControlSet\Control\Session Manager\PendingFileRenameOperations" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","LDM Boot Information",0x00010000,"CurrentControlSet\Services\dmio\boot info\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Windows Setup",0x00010000,"Setup\SystemPartition" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Session Manager",0x00010000,"CurrentControlSet\Control\Session Manager\AllowProtectedRenames" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","ASR Information",0x00010000,"CurrentControlSet\Control\ASR\" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Removable Storage Manager",0x00010000,"CurrentControlSet\Control\NTMS\ImportDatabase" ; ; Since no device is ever going to be listed in an INF of class "Unknown", it ; doesn't make any sense to stick another INF in the INF directory just so we ; can run its [ClassInstall32] section during GUI-mode setup. Thus, we pre-install ; that class here. ; HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%UNKNOWN%" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Unknown" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-18" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Keyboard" @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"kbdclass" @@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"neckbrep","kbdclass" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96F-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Mouse" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96F-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"mouclass" ; ; We need the DiskDrive class around when booting into GUI-mode setup so we can ; load the correct upper filter. ; ; HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"DiskDrive" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010000,"PartMgr" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","UpperFilters",0x00010000,"VolSnap" ; ; The following are Network Software classes so they will continue to be listed here ; ; HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_CLIENT%" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetClient" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-7" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetService" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-8" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_PROTOCOL%" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetTrans" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-6" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97B-E325-11CE-BFC1-08002BE10318}","LegacyAdapterDetection",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers",,0x00000012 @*:; The following co-installers wipe out any existing co-installers. Either add support for FLG_ADDREG_APPEND @*:; in setupdd.sys, or move this into some early part of syssetup.dll... HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E965-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller","SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E967-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller","SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96A-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96B-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96F-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E97B-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E97D-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E980-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{6D807884-7D21-11CF-801C-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96D-E325-11CE-BFC1-08002BE10318}",0x00010000,"NetCfgx.dll,ModemClassCoInstaller","setup\FxsOcm.dll,FaxModemCoClassInstaller" @@:@@!i:HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96D-E325-11CE-BFC1-08002BE10318}",0x00010000,"NetCfgx.dll,ModemClassCoInstaller" HKLM,"SYSTEM\CurrentControlSet\Control\ComputerName",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\ComputerName\ComputerName","ComputerName",0x00000002,"MACHINENAME" HKLM,"SYSTEM\CurrentControlSet\Control\ContentIndex","DoNotStartCiSvc",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","AutoReboot",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","CrashDumpEnabled",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","DumpFile",0x00020002,"%SystemRoot%\MEMORY.DMP" HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","LogEvent",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","MinidumpDir",0x00020002,"%SystemRoot%\Minidump" HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","Overwrite",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","SendAlert",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gendisk",Service,0x00000000,disk HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gendisk",ClassGUID,0x00000000,{4D36E967-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gencdrom",Service,0x00000000,cdrom HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gencdrom",ClassGUID,0x00000000,{4D36E965-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_KEYBOARD",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_KEYBOARD",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0300",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0300",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0301",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0301",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0302",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0302",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0304",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0304",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0305",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0305",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0306",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0306",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0309",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0309",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030a",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030a",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030b",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030b",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0320",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0320",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0343",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0343",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0344",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0344",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0345",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0345",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*CPQA0D7",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*CPQA0D7",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_MOUSE",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_MOUSE",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f03",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f03",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0b",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0b",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0e",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0e",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f12",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f12",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f13",Service,0x00000000,i8042prt HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f13",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\pci#cc_0604",Service,0x00000000,pci HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\pci#cc_0604",ClassGUID,0x00000000,{4D36E97D-E325-11CE-BFC1-08002BE10318} HKLM,"SYSTEM\CurrentControlSet\Control\DeviceClasses",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","NtfsDisable8dot3NameCreation",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","Win31FileSystem",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","Win95TruncatedExtensions",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers\DCI","Timeout",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers\UseNewKey",,0x00000012 ; ; The following are GroupOrderList definitions ; HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Base",0x00030003,\ 0e,00,00,00,0e,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,\ 00,00,00,06,00,00,00,07,00,00,00,08,00,00,00,09,00,00,00,0a,00,00,00,0b,00,\ 00,00,0c,00,00,00,0d,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Boot Bus Extender",0x00030001,\ 05,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00,\ 04,00,00,00,\ 05,00,00,00 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Extended Base",0x00030001,\ @@:@@!n: 03,00,00,00,01,00,00,00,02,00,00,00,04,00,00,00 @@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Extended Base",0x00030001,\ @@:@n: 04,00,00,00,01,00,00,00,02,00,00,00,04,00,00,00,05,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Keyboard Class",0x00030003,\ 01,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Keyboard Port",0x00030001,\ 03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Ndis",0x00030003,\ 09,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,00,00,00,06,\ 00,00,00,07,00,00,00,08,00,00,00,09,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Network",0x00030003,\ 03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Parallel arbitrator",0x00030003,\ 01,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","PNP_TDI",0x00030003,\ 02,00,00,00,01,00,00,00,02,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Pointer Class",0x00030003,\ 01,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Pointer Port",0x00030003,\ 03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Primary Disk",0x00030001,\ 05,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI CDROM Class",0x00030001,\ 02,00,00,00,01,00,00,00,02,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI Class",0x00030001,\ 03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI Miniport",0x00030001,\ 3f,00,00,00,\ 00,01,00,00,\ 01,01,00,00,\ 19,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00,\ 04,00,00,00,\ 05,00,00,00,\ 06,00,00,00,\ 07,00,00,00,\ 08,00,00,00,\ 09,00,00,00,\ 0a,00,00,00,\ 0b,00,00,00,\ 0c,00,00,00,\ 0d,00,00,00,\ 0e,00,00,00,\ 0f,00,00,00,\ 10,00,00,00,\ 11,00,00,00,\ 12,00,00,00,\ 13,00,00,00,\ 14,00,00,00,\ 15,00,00,00,\ 16,00,00,00,\ 17,00,00,00,\ 1a,00,00,00,\ 18,00,00,00,\ 1b,00,00,00,\ 1c,00,00,00,\ 1d,00,00,00,\ 1e,00,00,00,\ 1f,00,00,00,\ 20,00,00,00,\ 23,00,00,00,\ 24,00,00,00,\ 25,00,00,00,\ 26,00,00,00,\ 27,00,00,00,\ 28,00,00,00,\ 29,00,00,00,\ 2a,00,00,00,\ 2b,00,00,00,\ 2c,00,00,00,\ 2d,00,00,00,\ 2e,00,00,00,\ 2f,00,00,00,\ 30,00,00,00,\ 31,00,00,00,\ 32,00,00,00,\ 33,00,00,00,\ 34,00,00,00,\ 35,00,00,00,\ 36,00,00,00,\ 37,00,00,00,\ 38,00,00,00,\ 39,00,00,00,\ 3a,00,00,00,\ 3b,00,00,00,\ 3c,00,00,00,\ 3d,00,00,00,\ 3e,00,00,00,\ 3f,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SpoolerGroup",0x00030003,\ 02,00,00,00,01,00,00,00,02,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","System Bus Extender",0x00030001,\ 0a,00,00,00,\ 03,00,00,00,\ 04,00,00,00,\ 01,00,00,00,\ 08,00,00,00,\ 09,00,00,00,\ 0a,00,00,00,\ 0b,00,00,00,\ 0c,00,00,00,\ 0d,00,00,00,\ 0e,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video",0x00030003,\ 00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video Init",0x00030003,\ 01,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video Save",0x00030003,\ 01,00,00,00,01,00,00,00 ; ; GroupOrderList definitions for File System Filters ; HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Infrastructure",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter System",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Bottom",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Copy Protection",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Security Enhancer",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Open File",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Physical Quota Management",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Encryption",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Compression",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter HSM",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Cluster File System",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter System Recovery",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Quota Management",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Content Screener",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Continuous Backup",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Replication",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Anti-Virus",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Undelete",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Activity Monitor",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Top",0x00030003,\ 03,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Filter",0x00030003,\ 06,00,00,00,\ 01,00,00,00,\ 02,00,00,00,\ 03,00,00,00,\ 04,00,00,00,\ 05,00,00,00,\ 06,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\IDConfigDB\Hardware Profiles\0000","FriendlyName",0x00000000,"%NEW_HARDWARE_PROFILE%" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000402",0x00000002,"bg" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000404",0x00000002,"ch" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000405",0x00000002,"cz" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000406",0x00000002,"dk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000407",0x00000002,"gr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000408",0x00000002,"gk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000409",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040A",0x00000002,"sp" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040B",0x00000002,"su" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040C",0x00000002,"fr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040E",0x00000002,"hu" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040F",0x00000002,"is" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000410",0x00000002,"it" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000411",0x00000002,"jp" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000412",0x00000002,"ko" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000413",0x00000002,"nl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000414",0x00000002,"no" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000415",0x00000002,"pl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000416",0x00000002,"br" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000418",0x00000002,"ro" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000419",0x00000002,"ru" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041A",0x00000002,"yu" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041B",0x00000002,"sl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041C",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041D",0x00000002,"sv" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041F",0x00000002,"tr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000422",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000423",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000424",0x00000002,"yu" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000425",0x00000000,"et" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000426",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000427",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000804",0x00000002,"ch" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000807",0x00000002,"sg" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000809",0x00000002,"uk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000080A",0x00000002,"la" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000080C",0x00000002,"be" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000813",0x00000002,"be" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000816",0x00000002,"po" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000C0C",0x00000002,"cf" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000C1A",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00001009",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000100C",0x00000002,"sf" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00001809",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010402",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010405",0x00000002,"cz" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010407",0x00000002,"gr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010408",0x00000000,"gk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010409",0x00000002,"dv" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001040A",0x00000002,"sp" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001040E",0x00000000,"hu" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010410",0x00000002,"it" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010415",0x00000000,"pl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010419",0x00000002,"ru" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001041B",0x00000002,"sl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001041F",0x00000002,"tr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010426",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010C0C",0x00000002,"cf" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010C1A",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00020408",0x00000000,"gk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00020409",0x00000002,"us" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00030409",0x00000002,"usl" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00040409",0x00000002,"usr" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00050408",0x00000002,"gk" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00000410",0x00000000,"141" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","0000041F",0x00000000,"179" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010408",0x00000000,"220" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010410",0x00000000,"142" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010415",0x00000000,"214" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","0001041F",0x00000000,"440" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00020408",0x00000000,"319" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout File",0x00000002,"KBDUS.DLL" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout Text",0x00000002,"%US%" HKLM,"System\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout Display Name",,"@%SystemRoot%\system32\input.dll,-5000" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout File",0x00000002,"KBDDV.DLL" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout Id",0x00000002,"0002" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout Text",0x00000002,"%US_DVORAK%" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout File",0x00000002,"KBDUSX.DLL" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout Id",0x00000002,"0001" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout Text",0x00000002,"%US_INTERNATIONAL%" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout File",0x00000002,"KBDUSL.DLL" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout Id",0x00000002,"001A" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout Text",0x00000002,"%US_DVORAK_FOR_LEFT_HAND%" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout File",0x00000002,"KBDUSR.DLL" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout Id",0x00000002,"001B" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout Text",0x00000002,"%US_DVORAK_FOR_RIGHT_HAND%" HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Authentication Packages",0x00010002,"msv1_0" HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Bounds",0x00030003,\ 00,30,00,00,00,20,00,00 @s:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Notification Packages",0x00010002,"FPNWCLNT","RASSFM","KDCSVC" HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Security Packages",0x00010000,"kerberos","msv1_0","schannel","wdigest" HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders","ProviderOrder",0x00010002,"Windows NT Access Provider" HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider","ProviderPath",0x00020002,"%SystemRoot%\system32\ntmarta.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0","Auth1",0x00000002,"FPNWCLNT" @@!p:HKLM,"System\CurrentControlSet\Control\Lsa\MSV1_0","Auth132",0x00000002,"IISSUBA" @s:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0","Auth2",0x00000002,"RASSFM" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect",,0x00000010 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMName",0x00000000,"%SIDEWINDER_OEMNAME%" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMHardwareID",0x00000000,"Gameport\SideWinderGameController" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMData",0x00000001,00,00,08,00,00,00,00,00 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","Flags1",0x00000001,01,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMName",0x00000000,"%NTGRIP_GPP%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMData",0x00000001, 20, 0, 0, 0, 0a, 0, 0, 0 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMHardwareID",0x00000000,"Gameport\VID_0428&PID_4901" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_044F&PID_A012","OEMData",0x00000001,41,00,00,10,08,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_001A","OEMData",0x00000001,00,00,08,10,08,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_001B","OEMData",0x00000001,03,00,08,10,08,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0026","OEMData",0x00000001,20,00,00,10,09,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0034","OEMData",0x00000001,00,00,08,10,08,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0038","OEMData",0x00000001,03,00,08,10,08,00,00,00 @@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMData",0x00000001,40,08,00,00,04,00,00,00 @@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMName",0x00000000,"%TMT1_NOADAPT%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EA" @@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMData",0x00000001,40,00,00,00,04,00,00,00 @@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMName",0x00000000,"%TMT1_ADAPT%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EB" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMName",0x00000000,"%PCPROPAD6%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMData",0x00000001,20,00,00,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EC" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMName",0x00000000,"%THRUSTMASTER_1%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMData",0x00000001,0a,00,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01ED" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMName",0x00000000,"%THRUSTMASTER_TOPGUNPLATINUM%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMData",0x00000001,0b,80,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EE" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMName",0x00000000,"%LOGITECH_WINMANEXTREME%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMData",0x00000001,0a,00,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EF" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMName",0x00000000,"%HIDGAME_DFTDEV0%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMData",0x00000001,40,08,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F0" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMName",0x00000000,"%HIDGAME_DFTDEV1%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMData",0x00000001,06,00,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F1" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMName",0x00000000,"%HIDGAME_DFTDEV2%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMData",0x00000001,07,00,00,00,04,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F2" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMName",0x00000000,"%HIDGAME_DFTDEV3%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMData",0x00000001,06,00,00,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F3" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMName",0x00000000,"%HIDGAME_DFTDEV4%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMData",0x00000001,07,00,00,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F4" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMName",0x00000000,"%HIDGAME_DFTDEV5%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMData",0x00000001,06,00,04,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F5" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMName",0x00000000,"%HIDGAME_DFTDEV6%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMData",0x00000001,07,00,04,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F6" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMName",0x00000000,"%HIDGAME_DFTDEV7%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMData",0x00000001,16,00,04,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F7" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMName",0x00000000,"%HIDGAME_DFTDEV8%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMData",0x00000001,17,00,04,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F8" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMName",0x00000000,"%HIDGAME_DFTDEV9%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMData",0x00000001,20,00,00,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F9" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMName",0x00000000,"%HIDGAME_DFTDEVA%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMData",0x00000001,21,00,00,00,05,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FA" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMName",0x00000000,"%HIDGAME_DFTDEVB%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMData",0x00000001,00,00,00,00,06,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FB" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMName",0x00000000,"%HIDGAME_DFTDEVC%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMData",0x00000001,01,00,00,00,05,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FC" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMName",0x00000000,"%HIDGAME_DFTDEVD%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMData",0x00000001,0A,00,00,00,05,00,00,00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FD" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMName",0x00000000,"%LOGITECH_WGMEXTRMDGTLAUTO%" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMData",0x00000001,00,00,00,00,00,00,00,00 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMHardwareID",0x00000000,"GamePort\WingManDigitalDevice" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMName",0x00000000,"%NTGRIP_BHK%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMData",0x00000001, 03, 00, 08, 00, 05, 00, 00, 00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3900" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMName",0x00000000,"%NTGRIP_XDC%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMData",0x00000001, 03, 00, 88, 01, 09, 00, 00, 00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3901" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMName",0x00000000,"%NTGRIP_ZEBRA%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMData",0x00000001, 03, 00, 08, 00, 0a, 00, 00, 00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3905" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMName",0x00000000,"%NTGRIP_XDGP%" @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMData",0x00000001, 03, 00, 88, 01, 0b, 00, 00, 00 @w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_4903" HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\ANDRETTI.EXE34492A63000BEA00","DSAPPHACKID_MODIFYCSBFAILURE",0x00030003,\ 1e,00,78,88 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\CARN2.EXE37EB70B500014000","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\CMMOVIE.EXE37D906F40000B000","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\DD2.EXE3288834400092BF0","DSAPPHACKID_DISABLEDEVICE",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\DD2H.EXE328882C500092DF8","DSAPPHACKID_DISABLEDEVICE",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFARTWC.EXE345FB52D00183C00","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWC.EXE35320039001AE400","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWIN.EXE325FC5F4000F2200","DSAPPHACKID_PADCURSORS",0x00030003,\ 3C,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWIN.EXE32665883000F2200","DSAPPHACKID_PADCURSORS",0x00030003,\ 3C,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FROGGER2.EXE39AFD5020008F000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FURBY.EXE37CEF14100108000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\GAMEMAIN.EXE35C90A8A00223C00","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\HH2002.EXE3A9A1B9800506577","DSAPPHACKID_DISABLEDEVICE",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\HOCKEY.EXE32348F190017A800","DSAPPHACKID_PADCURSORS",0x00030003,\ 3C,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\LEGACY.EXE347B57D00006D200","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 07,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\LIBRARY.EXE371B6D8C00116800","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MAGESLAY.EXE34146DD300112000","DSAPPHACKID_DISABLEDEVICE",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYK.EXE37489012001F3292","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYK.EXE37489012001F3292","DSAPPHACKID_DEVACCEL",0x00030003,\ 0e,00,00,00,04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYP.EXE37489012001F328A","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYP.EXE37489012001F328A","DSAPPHACKID_DEVACCEL",0x00030003,\ 0e,00,00,00,04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYT.EXE37489012001C293C","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYT.EXE37489012001C293C","DSAPPHACKID_DEVACCEL",0x00030003,\ 0e,00,00,00,04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NBAWIN.EXE3299791300186200","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NBAWIN.EXE343FC9AF001FF400","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS.EXE31C4F35C00105000","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 07,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS.EXE325328050011CC00","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 07,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS2SEA.EXE342709E1000EE200","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS2SEN.EXE34270ABA000DBC00","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NHL98.EXE340F99AF001CF800","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NUKEPC.EXE3431F0600011515C","DSAPPHACKID_PADCURSORS",0x00030003,\ 0a,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PARK.EXE36CB498E0010C000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PIT DROIDS.EXE37B9DC1C000BA02D","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PIT DROIDS.EXE37B9DC1C000BA02D","DSAPPHACKID_DEVACCEL",0x00030003,\ 0e,00,00,00,04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\SAW_GAME.EXE353D11FB0020CA00","DSAPPHACKID_DEVACCEL",0x00030003,\ 0e,00,00,00,04,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TIME32.EXE33EE7C1E000D8400","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\ 07,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TP98_R.EXE3372E28300165C00","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TP99_R.EXE350265F8001AD000","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TPLAYW.EXE31F3EE2D0011D600","DSAPPHACKID_PADCURSORS",0x00030003,\ 28,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\UNREAL.EXE355F016600006000","DSAPPHACKID_SMOOTHWRITEPOS",0x00030003,\ 01,00,00,00,50,00,00,00 @*:;begin_sld_DirectSound HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "VxD", 0x00010003, 0x00000001 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "WDM", 0x00010003, 0x00000001 HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "Emulated", 0x00010003, 0x00000001 @s:HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Mixer Defaults", "Acceleration", 0x00010003, 0x0000000f @w:HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Mixer Defaults", "Acceleration", 0x00010003, 0x00000000 @*:;end_sld_DirectSound HKLM,"SYSTEM\CurrentControlSet\Control\Network",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Network\Connections","ClassManagers",0x00010000,\ "{BA126AD3-2166-11D1-B1D0-00805FC1270E}",\ "{BA126AD5-2166-11D1-B1D0-00805FC1270E}",\ "{BA126ADD-2166-11D1-B1D0-00805FC1270E}",\ "{BA126AE0-2166-11D1-B1D0-00805FC1270E}" HKLM,"SYSTEM\CurrentControlSet\Control\Network","FilterClasses",0x00010000,\ "scheduler",\ "loadbalance",\ "failover" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_ADAPTERS%" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Net" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_CLIENT%" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetClient" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetService" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_PROTOCOL%" HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetTrans" HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\HwOrder",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Nls",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10000",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10002",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10003",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10004",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10005",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10006",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10007",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10008",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10010",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10017",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10021",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10029",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10079",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10081",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10082",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1026",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1047",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1140",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1141",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1142",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1143",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1144",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1145",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1146",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1147",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1148",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1149",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1250",0x00000000,"c_1250.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1251",0x00000000,"c_1251.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1252",0x00000000,"c_1252.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1253",0x00000000,"c_1253.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1254",0x00000000,"c_1254.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1255",0x00000000,"c_1255.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1256",0x00000000,"c_1256.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1257",0x00000000,"c_1257.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1258",0x00000000,"c_1258.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1361",0x00000000,"c_1361.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20000",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20002",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20003",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20004",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20005",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20105",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20106",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20107",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20108",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20127",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20261",0x00000000,"c_20261.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20269",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20273",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20277",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20278",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20280",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20284",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20285",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20290",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20297",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20420",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20423",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20424",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20833",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20838",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20866",0x00000000,"c_20866.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20871",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20880",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20905",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20924",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20932",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20936",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20949",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21025",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21027",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21866",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28591",0x00000000,"c_28591.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28592",0x00000000,"c_28592.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28593",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28594",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28595",0x00000000,"c_28595.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28596",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28597",0x00000000,"c_28597.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28598",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28599",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28605",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","37",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","38598",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","437",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","500",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","51949",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50220",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50221",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50222",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50225",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50227",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50229",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","52936",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57002",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57003",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57004",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57005",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57006",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57007",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57008",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57009",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57010",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57011",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","708",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","720",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","737",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","775",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","850",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","852",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","855",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","857",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","858",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","860",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","861",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","862",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","863",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","864",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","865",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","866",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","869",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","870",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","874",0x00000000,"c_874.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","875",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","932",0x00000000,"c_932.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","936",0x00000000,"c_936.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","949",0x00000000,"c_949.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","950",0x00000000,"c_950.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","932",0x00000002,"F040-F9FC" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","936",0x00000002,"AAA1-AFFE,F8A1-FEFE,A140-A7A0" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","949",0x00000002,"C9A1-C9FE,FEA1-FEFE" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","950",0x00000002,"FA40-FEFE,8E40-A0FE,8140-8DFE,C6A1-C8FE" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","Unicode",0x00000000,"E000-F8FF" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0401",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0402",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0403",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0404",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0405",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0406",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0407",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0408",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0409",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040b",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040d",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040e",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040f",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0410",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0411",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0412",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0413",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0414",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0415",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0416",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0418",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0419",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041b",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041d",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041e",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041f",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0420",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0421",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0422",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0423",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0424",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0425",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0426",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0427",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0429",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042b",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042d",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042f",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0436",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0437",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0438",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0439",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","043e",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","043f",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0440",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0441",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0443",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0444",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0446",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0447",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0449",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044b",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044e",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044f",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0450",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0456",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0457",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","045a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0465",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0801",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0804",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0807",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0809",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","080a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","080c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0810",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0813",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0814",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0816",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","081a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","081d",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","082c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","083e",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0843",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c01",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c04",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c07",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c09",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c0a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c0c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c1a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1001",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1004",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1007",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1009",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","100a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","100c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1401",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1404",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1407",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1409",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","140a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","140c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1801",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1809",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","180a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","180c",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c01",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c09",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c0a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2001",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2009",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","200a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2401",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2409",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","240a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2801",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2809",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","280a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c01",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c09",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c0a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3001",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3009",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","300a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3401",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3409",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","340a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3801",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","380a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3c01",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3c0a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","4001",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","400a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","440a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","480a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","4c0a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","500a",0x00000000,"l_intl.nls" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","InstallLanguage",0x00000002,"%INSTALL_LANGUAGE%" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","1",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","2",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","3",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","4",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","5",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","6",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","7",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","8",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","9",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","b",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","c",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","d",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","e",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","f",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","10",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","11",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","(Default)",0x00000002,"00000409" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000401",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000402",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000403",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000404",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000405",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000406",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000407",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000408",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000409",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040b",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040d",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040e",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040f",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000410",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000411",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000412",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000413",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000414",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000415",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000416",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000418",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000419",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041b",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041c",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041d",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041e",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041f",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000420",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000421",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000422",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000423",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000424",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000425",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000426",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000427",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000429",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042b",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042c",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042d",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042f",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000436",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000437",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000438",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000439",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000043e",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000043f",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000440",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000441",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000443",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000444",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000446",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000447",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000449",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044b",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044e",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044f",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000450",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000456",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000457",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000045a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000465",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000801",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000804",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000807",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000809",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000080a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000080c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000810",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000813",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000814",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000816",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000081a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000081d",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000082c",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000083e",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000843",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c01",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c04",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c07",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c09",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c0a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c0c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c1a",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001004",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001007",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001009",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000100a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000100c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001401",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001404",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001407",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001409",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000140a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000140c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001801",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001809",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000180a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000180c",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c01",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c09",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c0a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002009",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000200a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002401",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002409",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000240a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002801",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002809",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000280a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c01",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c09",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c0a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003009",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000300a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003401",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003409",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000340a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003801",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000380a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003c01",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003c0a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00004001",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000400a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000440a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000480a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00004c0a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000500a",0x00000002,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010407",0x00000000,"1" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","0001040e",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010437",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00020804",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00021004",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00021404",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00030404",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Control\NTMS",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\HP","Description",0x00000002,%HP_DESCRIPTOR% HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\HP","Path",0x00020002,"%SystemRoot%\system32\mll_hp.dll" HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\MTF","Description",0x00000002,%MTF_DESCRIPTOR% HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\MTF","Path",0x00020002,"%SystemRoot%\system32\mll_mtf.dll" HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\QIC","Description",0x00000002,%QIC_DESCRIPTOR% HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\QIC","Path",0x00020002,"%SystemRoot%\system32\mll_qic.dll" HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{441ee000-4342-11d5-a184-00c04f60524d}",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{441ee001-4342-11d5-a184-00c04f60524d}",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{c4ca1000-2ddc-11d5-a17a-00c04f60524d}",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{c8ebdfb0-b510-11d0-80e5-00a0c92542e3}",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{9d7debbc-c85d-11d1-9eb4-006008c3a19a}",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{eeaf37d0-1963-47c4-aa48-72476db7cf49}",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{f74e73eb-9ac5-45eb-be4d-772cc71ddfb3}",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\Print","MajorVersion",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Control\Print","MinorVersion",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Print","PriorityClass",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0","Directory",0x00000002,"WIN40" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0\Drivers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0\Print Processors",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64","Directory",0x00000002,"IA64" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Drivers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Print Processors",,0x00000012 @@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Print Processors\winprint","Driver",0x00000000,"localspl.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP","Directory",0x00000002,"W32ALPHA" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP\Drivers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP\Print Processors",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86","Directory",0x00000002,"W32X86" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Drivers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Print Processors",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Print Processors\winprint","Driver",0x00000000,"localspl.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\BJ Language Monitor","Driver",0x00000002,"cnbjmon.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Local Port","Driver",0x00000000,"localspl.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\PJL Language Monitor","Driver",0x00000002,"pjlmon.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Standard TCP/IP Port","Driver",0x00000000,"tcpmon.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\USB Monitor","Driver",0x00000000,"usbmon.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Printers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers","Order",0x00010002,"LanMan Print Services", "Internet Print Provider" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\LanMan Print Services","DisplayName",0x00000002,"%LANMAN_PRINT_SERVICES%" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\LanMan Print Services","Name",0x00000002,"win32spl.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\Internet Print Provider","DisplayName",0x00000002,"%HTTP_PRINT_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\Internet Print Provider","Name",0x00000002,"inetpp.dll" HKLM,"SYSTEM\CurrentControlSet\Control\PriorityControl","Win32PrioritySeparation",0x00010003,2 @w:@@:HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductType",0x00000002,"WinNt" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductType",0x00000002,"ServerNT" HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductSuite",0x00010002,"" HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskCOMPAQPCST32430N________","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskMICROP__3243-19MZ__Q4D__","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskMICROP__4421-07___0502SJ","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskSEAGATE_ST34502LC_______","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskIBM_____DNES-309170W____","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\CDROMYAMAHACRW4416S__________","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\CDROMCyberDrvSCSI_CD-ROM_120S","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\WormYAMAHA__CDR100__________","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\WormYAMAHA__CDR102__________","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ProcessorESH-SHVSVA_HSBP_M10_____","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ChangerJVC_CD-CHG_MC-1600______","OneLun",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_2400S_____","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_2200______","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_1200S_____","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_1220S_____","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_610S______","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_600S______","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerLinoHellSAPHIR3_________","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\Scanner________Scanner_________","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\Scanner________Scanner_600_____","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerMICROTEKScanMakerIII____","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerMICROTEKScanMakerIIsp___","SetLunInCdb",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg","Description",0x00000002,"%REGISTRY_SERVER%" HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg\AllowedPaths","Machine",0x00010000,\ "System\CurrentControlSet\Control\ProductOptions",\ "System\CurrentControlSet\Control\Print\Printers",\ "System\CurrentControlSet\Control\Server Applications",\ "System\CurrentControlSet\Services\Eventlog",\ "Software\Microsoft\OLAP Server",\ "Software\Microsoft\Windows NT\CurrentVersion" HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders\SaslProfiles",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders\SaslProfiles","GSSAPI",0x00000002,"Kerberos" HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders","SecurityProviders",0x00000002,"schannel.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\Server Applications","{E26D02A1-4C1F-11D1-9AA1-00C04FC3357A}",0x00000002,"Telephony" HKLM,"SYSTEM\CurrentControlSet\Control\ServiceGroupOrder","List",0x00010000,\ "System Reserved",\ "Boot Bus Extender",\ "System Bus Extender",\ "SCSI miniport",\ "Port",\ "Primary Disk",\ "SCSI Class",\ "SCSI CDROM Class",\ "FSFilter Infrastructure",\ "FSFilter System",\ "FSFilter Bottom",\ "FSFilter Copy Protection",\ "FSFilter Security Enhancer",\ "FSFilter Open File",\ "FSFilter Physical Quota Management",\ "FSFilter Encryption",\ "FSFilter Compression",\ "FSFilter HSM",\ "FSFilter Cluster File System",\ "FSFilter System Recovery",\ "FSFilter Quota Management",\ "FSFilter Content Screener",\ "FSFilter Continuous Backup",\ "FSFilter Replication",\ "FSFilter Anti-Virus",\ "FSFilter Undelete",\ "FSFilter Activity Monitor",\ "FSFilter Top",\ "Filter",\ "Boot File System",\ "Base",\ "Pointer Port",\ "Keyboard Port",\ "Pointer Class",\ "Keyboard Class",\ "Video Init",\ "Video",\ "Video Save",\ "File System",\ "Event Log",\ "Streams Drivers",\ "NDIS Wrapper",\ "COM Infrastructure",\ "UIGroup",\ @w:@@: "LocalValidation",\ "PlugPlay",\ "PNP_TDI",\ "NDIS",\ "TDI",\ "NetBIOSGroup",\ "ShellSvcGroup",\ "SchedulerGroup",\ @w:@@: "SpoolerGroup",\ "AudioGroup",\ "NetworkProvider",\ "RemoteValidation",\ @s:@@: "LocalValidation",\ @s:@@: "SpoolerGroup",\ "NetDDEGroup",\ "Parallel arbitrator",\ "Extended Base",\ "PCI Configuration" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","BootExecute",0x00010002,"autocheck autochk *" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","CriticalSectionTimeout",0x00010003,2592000 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableMCA",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableMCE",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ExcludeFromKnownDlls",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","GlobalFlag",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapDeCommitFreeBlockThreshold",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapDeCommitTotalFreeThreshold",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapSegmentCommit",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapSegmentReserve",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ObjectDirectories",0x00010002,"\Windows","\RPC Control" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ProtectionMode",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ResourceTimeoutCount",0x00010003,648000 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500\1","Add1",0x00030003,\ 02,15,40,a0,10,1e,b8,23,00,8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500\1","Change1",0x00030003,\ 01,1d,50,48,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,e7,\ 57,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI01\ff06010242935100040720730500",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI01\ff06010242935100040720730500\1","Change1",0x00030003,\ 01,49,D0,18,22,45,55,8B,EC,1E,B4,43,32,C0,C5,56,06,CD,21,1f,72,0A,C4,5E,0A,\ 26,89,0F,33,C0,EB,04,50,E8,FA,02,5D,4D,CB,55,8B,EC,1E,B8,00,43,C5,56,06,CD,21,\ 1F,72,0D,C4,5E,0A,80,E1,1F,26,89,0F,33,C0,EB,04,50,E8,FA,02,5D,CB HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02\ff06010242468300040790c80400",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02\ff06010242468300040790c80400\1","Change1",0x00030003,\ 01,51,12,46,26,45,55,8B,EC,56,57,1e,b4,43,32,c0,c5,56,06,cd,21,1f,72,0a,c4,\ 5e,0a,26,89,0f,33,c0,eb,04,50,e8,4b,03,5f,5e,5d,4d,cb,45,55,8b,ec,1e,b4,43,32,\ c0,c5,56,06,cd,21,1f,72,0a,c4,5e,0a,80,e1,1f,26,89,0f,33,c0,eb,04,50,e8,4b,03,5d,4d,cb,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN\ff0601024cab7b000407b0ea0400",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN\ff0601024cab7b000407b0ea0400\2","Change1",0x00030003,\ 01,15,f0,3b,08,3d,03,5f,74,03,e9,06,00,3d,03,5f,90,90,e9,06,00 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR\ff060102c47b1f00040750db0100",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR\ff060102c47b1f00040750db0100\e","Change1",0x00030003,\ 01,13,84,1e,07,45,55,8b,ec,68,00,20,45,55,8b,ec,68,02,20 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT\ff060102424f3f000306706600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT\ff060102424f3f000306706600\1","Change1",0x00030003,\ 01,0b,9c,1c,03,3d,00,01,3d,00,06 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600\1","Add1",0x00030003,\ 02,15,40,ab,10,1e,b8,23,00,8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600\1","Change1",0x00030003,\ 01,1d,50,49,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,e7,\ 61,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST\ff06010242410f000306801500",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST\ff06010242410f000306801500\1","Change1",0x00030003,\ 01,0f,09,0a,05,9a,73,05,ff,01,b8,03,0a,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40\ff060102420032000407401b0100",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40\ff060102420032000407401b0100\1","Change1",0x00030003,\ 01,07,b7,21,01,d8,0c HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025642ea00040750550700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025642ea00040750550700\3","Change1",0x00030003,\ 01,1D,b7,41,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256e2e400040750600700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256e2e400040750600700\3","Change1",0x00030003,\ 01,1D,FD,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800\1","Change1",0x00030003,\ 01,1D,65,e5,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256eae500040710640700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256eae500040710640700\3","Change1",0x00030003,\ 01,1D,fd,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256c1ef00040770fb0600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256c1ef00040770fb0600\3","Change1",0x00030003,\ 01,1D,fd,38,0c,8b,46,f0,8b,56,f2,2b,46,f4,1b,56,f6,b8,50,01,ba,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256b1dd00040760ef0b00",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256b1dd00040760ef0b00\3","Change1",0x00030003,\ 01,15,2c,3b,08,66,8b,46,f0,66,2b,46,f4,66,b8,50,01,00,00,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024211e100040750e50700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024211e100040750e50700\1","Change1",0x00030001,\ 01,1D,3f,e0,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700\3","Change1",0x00030003,\ 01,1D,f3,45,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256faef00040710c50600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256faef00040710c50600\3","Change1",0x00030003,\ 01,1D,b7,33,0c,8b,46,f0,8b,56,f2,2b,46,f4,1b,56,f6,b8,50,01,ba,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102565ce5000407d0600700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102565ce5000407d0600700\3","Change1",0x00030003,\ 01,1D,fd,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700\3","Change1",0x00030003,\ 01,1D,f3,45,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102564ee6000407b0670700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102564ee6000407b0670700\3","Change1",0x00030003,\ 01,15,7c,35,08,66,8b,46,fc,66,2b,46,f0,66,b8,50,01,00,00,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800\1","Change1",0x00030003,\ 01,1D,65,e5,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102428203000306401600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102428203000306401600\1","Change1",0x00030003,\ 01,0f,28,03,05,33,ed,55,9a,13,b8,00,4c,cd,21 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025674e6000407704d0700",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025674e6000407704d0700\3","Change1",0x00030003,\ 01,1d,cf,3d,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\ 90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16\ff0601024cd875000407a0db0100",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16\ff0601024cd875000407a0db0100\2","Change1",0x00030001,\ 01,23,17,42,0f,8b,c8,8b,d0,8b,5e,0e,2a,e4,89,07,8a,cd,2a,ed,b9,0a,00,ba,03,0a,\ 8b,5e,0e,2a,e4,90,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600\1","Change1",0x00030003,\ 01,1d,95,44,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,67,\ 56,90,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600\1","Change2",0x00030003,\ 01,25,05,9b,10,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,1e,b8,23,00,\ 8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB\ff060102ec353f00040780c81300",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB\ff060102ec353f00040780c81300\12","Change1",0x00030003,\ 01,11,1b,03,06,81,3e,ba,31,34,03,81,3e,ba,31,09,03 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016\ff0702021401ee3e000407d0460e00",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016\ff0702021401ee3e000407d0460e00\16","Change1",0x00030003,\ 01,11,6d,2a,06,81,3e,6e,36,34,03,81,3e,6e,36,09,03 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001\ff0601024cf4ef000407604e0100",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001\ff0601024cf4ef000407604e0100\2","Change1",0x00030003,\ 01,0f,8e,00,05,9a,4b,00,0f,02,b8,0c,29,90,90 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","AUX",0x00000002,"\DosDevices\COM1" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","MAILSLOT",0x00000002,"\Device\MailSlot" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","NUL",0x00000002,"\Device\Null" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","PIPE",0x00000002,"\Device\NamedPipe" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","PRN",0x00000002,"\DosDevices\LPT1" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","UNC",0x00000002,"\Device\Mup" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","ComSpec",0x00020002,"%SystemRoot%\system32\cmd.exe" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","Path",0x00020002,"%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","windir",0x00020002,"%SystemRoot%" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Executive","AdditionalCriticalWorkerThreads",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Executive","AdditionalDelayedWorkerThreads",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\FileRenameOperations",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","advapi32",0x00000000,"advapi32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","comdlg32",0x00000000,"comdlg32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","DllDirectory",0x00020000,"%SystemRoot%\system32" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","DllDirectory32",0x00020000,"%SystemRoot%\syswow64" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","gdi32",0x00000000,"gdi32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","imagehlp",0x00000000,"imagehlp.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","kernel32",0x00000000,"kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","lz32",0x00000000,"lz32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","ole32",0x00000000,"ole32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","oleaut32",0x00000000,"oleaut32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olecli32",0x00000000,"olecli32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olecnv32",0x00000000,"olecnv32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olesvr32",0x00000000,"olesvr32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olethk32",0x00000000,"olethk32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","rpcrt4",0x00000000,"rpcrt4.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","shell32",0x00000000,"shell32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","url",0x00000000,"url.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","urlmon",0x00000000,"urlmon.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","user32",0x00000000,"user32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","version",0x00000000,"version.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","wininet",0x00000000,"wininet.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","wldap32",0x00000000,"wldap32.dll" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","ClearPageFileAtShutdown",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","DisablePagingExecutive",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","LargeSystemCache",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","NonPagedPoolQuota",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","NonPagedPoolSize",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","PagedPoolQuota",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","PagedPoolSize",0x00010003,0 @@:@6:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","AllocationPreference",0x00010003,0x100000 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","SecondLevelDataCache",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","SystemPages",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Debug",0x00020002,"" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Kmode",0x00020000,"%SystemRoot%\system32\win32k.sys" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Optional",0x00010002,"Posix" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Posix",0x00020002,"%SystemRoot%\system32\psxss.exe" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Required",0x00010002,"Debug","Windows" #ifdef _WIN64 HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Windows",0x00020000,\ "%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,4608,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16" #else HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Windows",0x00020000,\ "%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16" #endif HKLM,"SYSTEM\CurrentControlSet\Control\Setup",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","Eisa",0x00000000,"PCFlat" HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","Isa",0x00000000,"PCFlat" ; HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","MCA",0x00000000,"PCFlat" HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCFlat",0x000a0001,\ a8,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,01,00,00,00,01,00,01,00,24,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,05,00,00,00,00,00,00,ff,ff,00,00,00,00,00,00,08,01,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,40,01,00,00,00,00,00,00,7f,01,00,00,\ 00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,02,00,00,00,\ 00,00,00,ff,02,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,03,00,00,00,00,00,00,6f,03,00,00,00,00,00,00,08,01,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,78,03,00,00,00,00,00,00,7a,03,00,00,00,00,00,00,\ 08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,e8,02,00,00,00,00,00,00,ff,\ 02,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,f0,01,\ 00,00,00,00,00,00,f8,01,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,b0,03,00,00,00,00,00,00,cf,03,00,00,00,00,00,00,08,01,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,e8,03,00,00,00,00,00,00,ff,03,00,00,00,\ 00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,ce,01,00,00,00,00,\ 00,00,cf,01,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,01,00,00,00,00,00,00,ff,03,00,00,00,00,00,00,00,02,00,00,00,00,00,00,\ 0f,00,00,00,0f,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,\ 02,00,00,00,00,00,00,0d,00,00,00,0d,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,08,02,00,00,00,00,00,00,0c,00,00,00,0c,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,09,00,00,00,\ 09,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,\ 00,00,00,08,00,00,00,08,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,08,02,00,00,00,00,00,00,07,00,00,00,07,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0b,00,00,00,0b,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0a,\ 00,00,00,0a,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,\ 00,00,00,00,00,00,02,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,08,02,00,00,00,00,00,00,05,00,00,00,05,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,03,00,00,00,03,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,\ 00,00,04,00,00,00,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,08,02,00,00,00,00,00,00,0e,00,00,00,0e,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,06,00,00,00,06,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0c,00,\ 00,00,0c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,\ 00,00,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,08,02,00,00,00,00,00,00,00,00,00,00,0f,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,03,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,10,00,00,00,00,00,ff,ff,af,ff,00,00,00,00,08,03,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,0f,00,00,00,00,00,ff,ff,0f,00,00,00,00,00,\ 08,03,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,00,00,00,00,00,ff,\ ff,0b,00,00,00,00,00,08,03,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 08,00,00,00,00,00,ff,ff,0f,00,00,00,00,00,08,03,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,08,00,00,00,00,00,ff,ff,f7,ff,00,00,00,00,00,04,00,00,\ 00,00,00,00,06,00,00,00,0f,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,08,04,00,00,00,00,00,00,03,00,00,00,04,00,00,00,00,00,00,00,00,00,\ 00,00,00,00,00,00,00,00,00,00,08,04,00,00,00,00,00,00,00,00,00,00,0f,00,00,\ 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00 @*: ; @*: ; The following is a resource requirements list. Starting three lines into this are real live @*: ; IO Resource descriptors. Spaces seperate the fields and yes, it IS little endian! @*: ; @*: ; The format of an IO resource descriptor is- @*: ; @*: ; v------------------------------------------------------Option @*: ; | v--------------------------------------------------Type @*: ; | v----------------------------------------------ShareDisposition @*: ; | v------------------------------------------Spare1 @*: ; | v-----------------------------------Flags @*: ; | v----------------------------Spare2 @*: ; | v---------------Length @*: ; | v--Alignment @*: ; | Minumum Address-------v @*: ; | Maximum Address--------------------------------v @*: ; HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCI",0x000a0001,\ e8,08,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ 00,00,00,01,00,00,00,01,00,01,00,46,00,00,00,\ 00, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,fc,00,00,00,00,00,00, ff,fc,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f8,00,00,00,00,00,00, ff,f8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f4,00,00,00,00,00,00, ff,f4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f0,00,00,00,00,00,00, ff,f0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,ec,00,00,00,00,00,00, ff,ec,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e8,00,00,00,00,00,00, ff,e8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e4,00,00,00,00,00,00, ff,e4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e0,00,00,00,00,00,00, ff,e0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,dc,00,00,00,00,00,00, ff,dc,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d8,00,00,00,00,00,00, ff,d8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d4,00,00,00,00,00,00, ff,d4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d0,00,00,00,00,00,00, ff,d0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,cc,00,00,00,00,00,00, ff,cc,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c8,00,00,00,00,00,00, ff,c8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c4,00,00,00,00,00,00, ff,c4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c0,00,00,00,00,00,00, ff,c0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,bc,00,00,00,00,00,00, ff,bc,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b8,00,00,00,00,00,00, ff,b8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b4,00,00,00,00,00,00, ff,b4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b0,00,00,00,00,00,00, ff,b0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,ac,00,00,00,00,00,00, ff,ac,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a8,00,00,00,00,00,00, ff,a8,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a4,00,00,00,00,00,00, ff,a4,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a0,00,00,00,00,00,00, ff,a0,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,9c,00,00,00,00,00,00, ff,9c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,98,00,00,00,00,00,00, ff,98,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,94,00,00,00,00,00,00, ff,94,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,90,00,00,00,00,00,00, ff,90,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,8c,00,00,00,00,00,00, ff,8c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,88,00,00,00,00,00,00, ff,88,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,84,00,00,00,00,00,00, ff,84,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,80,00,00,00,00,00,00, ff,80,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,7c,00,00,00,00,00,00, ff,7c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,78,00,00,00,00,00,00, ff,78,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,74,00,00,00,00,00,00, ff,74,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,70,00,00,00,00,00,00, ff,70,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,6c,00,00,00,00,00,00, ff,6c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,68,00,00,00,00,00,00, ff,68,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,64,00,00,00,00,00,00, ff,64,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,60,00,00,00,00,00,00, ff,60,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,5c,00,00,00,00,00,00, ff,5c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,58,00,00,00,00,00,00, ff,58,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,54,00,00,00,00,00,00, ff,54,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,50,00,00,00,00,00,00, ff,50,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,4c,00,00,00,00,00,00, ff,4c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,48,00,00,00,00,00,00, ff,48,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,44,00,00,00,00,00,00, ff,44,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,40,00,00,00,00,00,00, ff,40,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,3c,00,00,00,00,00,00, ff,3c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,38,00,00,00,00,00,00, ff,38,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,34,00,00,00,00,00,00, ff,34,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,30,00,00,00,00,00,00, ff,30,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,2c,00,00,00,00,00,00, ff,2c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,28,00,00,00,00,00,00, ff,28,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,24,00,00,00,00,00,00, ff,24,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,20,00,00,00,00,00,00, ff,20,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,1c,00,00,00,00,00,00, ff,1c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,18,00,00,00,00,00,00, ff,18,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,14,00,00,00,00,00,00, ff,14,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,10,00,00,00,00,00,00, ff,10,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,0c,00,00,00,00,00,00, ff,0c,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,08,00,00,00,00,00,00, ff,08,00,00,00,00,00,00,\ 08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,05,00,00,00,00,00,00, ff,ff,ff,ff,00,00,00,00,\ 00, 02, 00, 00, 00,00, 00,00, 00,00,00,00, ff,ff,ff,ff, 00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,\ 00, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,10,00,00,00,00,00, ff,ff,af,ff,00,00,00,00,\ 08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,0f,00,00,00,00,00, ff,ff,0f,00,00,00,00,00,\ 08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,0b,00,00,00,00,00,\ 08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,0f,00,00,00,00,00,\ 08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,f7,ff,00,00,00,00,\ 00, 04, 00, 00, 00,00, 00,00, 06,00,00,00, ff,00,00,00, 00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCMCIA",0x00000000,"PCFlat" HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","CBus",0x00030003,\ 09,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Eisa",0x00030003,\ 02,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Internal",0x00030003,\ 00,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Isa",0x00030003,\ 01,00,00,00,00,00,00,00 ; HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MCA",0x00030003,\ ; 03,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MPI",0x00030003,\ 0a,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MPSA",0x00030003,\ 0b,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","NuBus",0x00030003,\ 07,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","PCI",0x00030003,\ 05,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","PCMCIA",0x00030003,\ 08,00,00,00,01,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","TurboChannel",0x00030003,\ 04,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","VME",0x00030003,\ 06,00,00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\ReservedResources","Isa",0x00080001,\ 01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00,28,00,00,00,01,01,00,00,00,\ 00,00,00,00,00,00,00,00,01,00,00,01,03,00,00,e8,42,00,00,00,00,00,00,08,00,\ 00,00,01,03,00,00,e8,4a,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,82,00,\ 00,00,00,00,00,08,00,00,00,01,03,00,00,e8,86,00,00,00,00,00,00,08,00,00,00,\ 01,03,00,00,e8,8a,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,8e,00,00,00,\ 00,00,00,08,00,00,00,01,03,00,00,e8,92,00,00,00,00,00,00,08,00,00,00,01,03,\ 00,00,e8,96,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,9a,00,00,00,00,00,\ 00,08,00,00,00,01,03,00,00,e8,9e,00,00,00,00,00,00,08,00,00,00,01,03,00,00,\ e8,a2,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,a6,00,00,00,00,00,00,08,\ 00,00,00,01,03,00,00,e8,aa,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ae,\ 00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,b6,00,00,00,00,00,00,08,00,00,\ 00,01,03,00,00,e8,ba,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,be,00,00,\ 00,00,00,00,08,00,00,00,01,03,00,00,e8,c2,00,00,00,00,00,00,08,00,00,00,01,\ 03,00,00,e8,c6,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ca,00,00,00,00,\ 00,00,08,00,00,00,01,03,00,00,e8,ce,00,00,00,00,00,00,08,00,00,00,01,03,00,\ 00,e8,d2,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,d6,00,00,00,00,00,00,\ 08,00,00,00,01,03,00,00,e8,da,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,\ de,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,e2,00,00,00,00,00,00,08,00,\ 00,00,01,03,00,00,e8,e6,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ea,00,\ 00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ee,00,00,00,00,00,00,08,00,00,00,\ 01,03,00,00,ee,f6,00,00,00,00,00,00,02,00,00,00,01,03,00,00,ee,fa,00,00,00,\ 00,00,00,02,00,00,00,01,03,00,00,ee,fe,00,00,00,00,00,00,02,00,00,00,02,03,\ 00,00,03,00,00,00,03,00,00,00,ff,ff,ff,ff,02,03,00,00,04,00,00,00,04,00,00,\ 00,ff,ff,ff,ff,02,03,00,00,0e,00,00,00,0e,00,00,00,ff,ff,ff,ff,02,03,00,00,\ 06,00,00,00,06,00,00,00,ff,ff,ff,ff,02,03,00,00,0c,00,00,00,0c,00,00,00,ff,\ ff,ff,ff,02,03,00,00,01,00,00,00,01,00,00,00,ff,ff,ff,ff,03,03,00,00,ff,ff,\ bf,ff,00,00,00,00,00,00,40,00 HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\disc","VgaCompatible",0x00000000,"\Device\Video0" HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\disc","\Device\Video0",0x00000000,"\REGISTRY\Machine\System\CurrentControlSet\Services\TSDDD\Device0" HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\InputDevices" HKLM,"SYSTEM\CurrentControlSet\Control\TimeZoneInformation","Bias",0x00010003,%TIMEZONEINFO_BIAS% HKLM,"SYSTEM\CurrentControlSet\Control\Update","UpdateMode",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\VirtualDeviceDrivers","VDD",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog\Display","EaRecovery",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog\Display","DisableBugcheck",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","Directory",0x00020002,"%SystemRoot%" HKLM,"SYSTEM\CurrentControlSet\Control\Windows","ErrorMode",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","NoInteractiveServices",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","SystemDirectory",0x00020002,"%SystemRoot%\system32" ; ; Establish a security descriptor for the Scsi Info Exceptions guid ; that will only allow DELETE, READ_CONTROL, WRITE_DAC, WRITE_OWNER, ; WMIGUID_QUERY, WMIGUID_SET to the administrators group HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","1101D829-167B-4ebf-ACAE-28CAB7C34802",0x00030003,\ 01,00,04,80,34,00,00,00,44,00,00,00,00,00,00,00,14,00,00,00,02,00,20,00,\ 01,00,00,00,00,00,18,00,03,00,0F,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00 ; ; Establish a security descriptor for the Failure Prediction Function guid ; that will only allow DELETE, READ_CONTROL, WRITE_DAC, WRITE_OWNER, ; WMIGUID_QUERY, WMIGUID_EXECUTE to the administrators group HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","78ebc105-4cf9-11d2-ba4a-00a0c9062910",0x00030003,\ 01,00,04,80,34,00,00,00,44,00,00,00,00,00,00,00,14,00,00,00,02,00,20,00,\ 01,00,00,00,00,00,18,00,11,00,0F,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00 ; ; Dont let non-admins open Traffic Control via WMI. ; Set security on the following GUIDS ; GUID_QOS_BESTEFFORT_BANDWIDTH, GUID_QOS_STATISTICS_BUFFER, GUID_QOS_FLOW_MODE, ; GUID_QOS_NON_BESTEFFORT_LIMIT, GUID_QOS_MAX_OUTSTANDING_SENDS ; GUID_QOS_TIMER_RESOLUTION ; ; 1. GUID_QOS_BESTEFFORT_BANDWIDTH HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","ed885290-40ec-11d1-2c91-00aa00574915",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; 2. GUID_QOS_STATISTICS_BUFFER HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","bb2c0980-e900-11d1-b07e-0080c71382bf",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; 3. GUID_QOS_FLOW_MODE HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5c82290a-515a-11d2-8e58-00c04fc9bfcb",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; 4. GUID_QOS_NON_BESTEFFORT_LIMIT HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","185c44e0-40ed-11d1-2c91-00aa00574915",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; 5. GUID_QOS_MAX_OUTSTANDING_SENDS HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","161ffa86-6120-11d1-2c91-00aa00574915",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; 6. GUID_QOS_TIMER_RESOLUTION HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","ba10cc88-f13e-11d2-be1b-00a0c99ee63b",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\ 01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\ 35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\ fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\ 00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\ 9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\ 34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\ a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\ 00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\ 00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\ 58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\ 9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\ 40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\ 78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\ 00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\ c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\ 00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\ 00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\ 00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ 58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\ 7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\ 10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\ b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\ 00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\ 00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\ 54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\ f8,15,00,01 ; LocalSystem, Administrators ALLRIGHTS ; wmisecur guid dacl LocalSystem allow ALLRIGHTS ; wmisecur guid adacl Administrators allow ALLRIGHTS ; ; 7. SystemTraceControlGuid HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","9e814aad-3204-11d2-9a82-006008a86939",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,02,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,e8,63,07,00,00,26,07,00,\ c7,87,db,77,78,25,07,00,00,00,00,00,00,00,f8,77,\ 04,00,00,00,b4,f5,06,00,01,00,00,00,00,00,07,00,\ 7c,01,00,00,10,64,07,00,08,64,07,00,68,01,07,00,\ 00,f3,db,77,03,00,00,00,d2,c1,db,77,00,f9,06,00,\ 00,00,00,00,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,64,07,00,01,00,00,00,00,00,00,00,\ 38,f9,06,00,b0,ff,06,00,00,fa,06,00,db,80,fb,77,\ 88,ae,f8,77,ff,ff,ff,ff,10,fa,06,00,e3,49,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,84,fa,06,00,\ 41,9d,fc,77,00,00,07,00,00,00,07,00,a0,46,07,00,\ 00,00,00,00,e8,f9,06,00,00,00,07,00,a0,46,07,00,\ 00,00,00,00,ac,fa,06,00,41,9d,fc,77,00,00,07,00,\ 13,9e,fc,77,08,06,07,00,8f,9d,fc,77,ec,fa,06,00,\ 44,fb,06,00,00,00,00,00,78,01,07,00,28,64,07,00,\ 78,01,07,00,20,64,07,00,24,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,8b,19,db,77,e0,d0,db,77,28,64,07,00,\ 78,01,07,00,28,64,07,00,78,01,07,00,20,64,07,00,\ c8,46,07,00,01,00,00,00,18,00,00,00,f4,f9,06,00,\ 07,00,00,00,bc,fa,06,00,00,00,07,00,86,00,00,00,\ 01,ff,ff,ff,cc,fa,06,00,a0,46,07,00,01,00,07,00,\ 00,00,00,00,1c,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ db,80,fb,77,88,ae,f8,77,ff,ff,ff,ff,c0,fa,06,00,\ 4d,bf,f8,77,00,00,07,00,00,00,00,00,a8,46,07,00,\ 14,fb,06,00,4a,b5,f8,77,a8,46,07,00,37,b5,f8,77,\ 10,f0,dc,77,ec,fa,06,00,61,29,01,78,30,2c,23,00,\ 55,2c,23,00,18,b2,03,78,61,29,01,78,95,2c,23,00,\ 04,fb,06,00,9d,29,01,78,95,2c,23,00,d8,15,00,01,\ 68,ff,06,00,70,ff,06,00,6e,29,01,78,95,2c,23,00,\ d8,15,00,01 ; LocalSystem, Administrators ALLRIGHTS ; wmisecur guid dacl LocalSystem allow ALLRIGHTS ; wmisecur guid adacl Administrators allow ALLRIGHTS ; ; 8. WmiEventLoggerGuid HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44608a51-1851-4456-98b2-b300e931ee41",0x00030003,\ 01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\ 34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\ 20,02,00,00,02,00,00,02,02,00,00,00,00,00,14,00,\ ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\ 00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,e8,63,07,00,00,26,07,00,\ c7,87,db,77,78,25,07,00,00,00,00,00,00,00,f8,77,\ 04,00,00,00,b4,f5,06,00,01,00,00,00,00,00,07,00,\ 7c,01,00,00,10,64,07,00,08,64,07,00,68,01,07,00,\ 00,f3,db,77,03,00,00,00,d2,c1,db,77,00,f9,06,00,\ 00,00,00,00,00,00,07,00,03,00,00,00,00,00,07,00,\ 05,00,00,00,00,64,07,00,01,00,00,00,00,00,00,00,\ 38,f9,06,00,b0,ff,06,00,00,fa,06,00,db,80,fb,77,\ 88,ae,f8,77,ff,ff,ff,ff,10,fa,06,00,e3,49,e9,77,\ 00,00,07,00,c8,46,07,00,00,00,00,00,84,fa,06,00,\ 41,9d,fc,77,00,00,07,00,00,00,07,00,a0,46,07,00,\ 00,00,00,00,e8,f9,06,00,00,00,07,00,a0,46,07,00,\ 00,00,00,00,ac,fa,06,00,41,9d,fc,77,00,00,07,00,\ 13,9e,fc,77,08,06,07,00,8f,9d,fc,77,ec,fa,06,00,\ 44,fb,06,00,00,00,00,00,78,01,07,00,28,64,07,00,\ 78,01,07,00,20,64,07,00,24,fa,06,00,b0,ff,06,00,\ b0,ff,06,00,8b,19,db,77,e0,d0,db,77,28,64,07,00,\ 78,01,07,00,28,64,07,00,78,01,07,00,20,64,07,00,\ c8,46,07,00,01,00,00,00,18,00,00,00,f4,f9,06,00,\ 07,00,00,00,bc,fa,06,00,00,00,07,00,86,00,00,00,\ 01,ff,ff,ff,cc,fa,06,00,a0,46,07,00,01,00,07,00,\ 00,00,00,00,1c,fa,06,00,b0,ff,06,00,b0,ff,06,00,\ db,80,fb,77,88,ae,f8,77,ff,ff,ff,ff,c0,fa,06,00,\ 4d,bf,f8,77,00,00,07,00,00,00,00,00,a8,46,07,00,\ 14,fb,06,00,4a,b5,f8,77,a8,46,07,00,37,b5,f8,77,\ 10,f0,dc,77,ec,fa,06,00,61,29,01,78,30,2c,23,00,\ 55,2c,23,00,18,b2,03,78,61,29,01,78,95,2c,23,00,\ 04,fb,06,00,9d,29,01,78,95,2c,23,00,d8,15,00,01,\ 68,ff,06,00,70,ff,06,00,6e,29,01,78,95,2c,23,00,\ d8,15,00,01 HKLM,"SYSTEM\CurrentControlSet\Control\WOW","cmdline",0x00020000,"%NTVDM_WOWCMD%" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DefaultSeparateVDM",0x00000002,"no" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","KnownDLLs",0x00000000,\ "comm.drv commdlg.dll ctl3dv2.dll ddeml.dll keyboard.drv lanman.drv mmsystem.dll mouse.drv netapi.dll olecli.dll olesvr.dll pmspl.dll shell.dll sound.drv system.drv toolhelp.dll vga.drv wfwnet.drv win87em.dll winoldap.mod winsock.dll winspool.exe wowdeb.exe timer.drv rasapi16.dll compobj.dll storage.dll ole2.dll ole2disp.dll ole2nls.dll typelib.dll msvideo.dll avifile.dll msacm.dll mciavi.drv mciseq.drv mciwave.drv progman.exe avicap.dll mapi.dll" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","LPT_timeout",0x00000002,"15" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","SharedWowTimeout",0x00010003,3600 HKLM,"SYSTEM\CurrentControlSet\Control\WOW","size",0x00000002,"0" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","wowcmdline",0x00020000,"%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386" HKLM,"SYSTEM\CurrentControlSet\Control\WOW","wowsize",0x00000000,"64" HKLM,"SYSTEM\CurrentControlSet\Enum",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","Class",0x00000002,"System" HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","ClassGUID",0x00000002,"{4D36E97D-E325-11CE-BFC1-08002BE10318}" HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","ConfigFlags",0x00010003,0x00000400 HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","HardwareID",0x00010002,"root\swenum" HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","Service",0x00000002,"swenum" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","Class",0x00000002,"System" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","ClassGUID",0x00000002,"{4D36E97D-E325-11CE-BFC1-08002BE10318}" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","ConfigFlags",0x00010003,0x00000400 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","HardwareID",0x00010002,"root\update" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","Service",0x00000002,"update" HKLM,"SYSTEM\CurrentControlSet\Services",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Group",0x00000002,"Primary disk" HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Tag",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Type",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","ErrorControl",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Group",0x00000002,"SCSI miniport" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Start",0x00010003,4 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Tag",0x00010003,56 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Type",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5\Parameters",,0x00000012 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Group",0x00000000,"Boot Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Tag",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Group",0x00000000,"Boot Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Tag",0x00010001,5 HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Tag",0x00010003,60 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt\Parameters\PnpInterface","5",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Tag",0x00010003,6 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters", "LegacyAdapterDetection", 0x00010003,0 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters\PnpInterface","1",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters\PnpInterface","3",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Tag",0x00010003,52 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Tag",0x00010003,30 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Type",0x00010001,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Tag",0x00010003,36 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Description",0x00000000,"%APPLICATION_MANAGEMENT_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","DisplayName",0x00000000,"%APPLICATION_MANAGEMENT%" HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Start",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\appmgmts.dll" HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt\Security","Security",0x00030003,\ 01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\ 00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\ 12,00,00,00 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Tag",0x00010003,41 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc\Parameters\PnpInterface","5",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","ErrorControl",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Group",0x00000002,"SCSI miniport" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Start",0x00010003,4 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Tag",0x00010003,57 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Type",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p\Parameters",,0x00000012 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p\Parameters\PnpInterface","1",0x00010003,0x11 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Tag",0x00010003,42 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\atapi","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Tag",0x00010003,25 HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Group",0x00000002,"Primary disk" HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Start",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","DependOnService",0x00010000,"PlugPlay","RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Description",0x00000000,"%AUDIOSRV_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","DisplayName",0x00000000,"%AUDIOSRV_DISPLAYNAME%" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Group",0x00000002,"AudioGroup" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Start",0x00010003,0x00000002 HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Type",0x00010001,0x00000020 HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\audiosrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\Beep","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Group",0x00000002,"Base" HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Tag",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Type",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","ErrorControl",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Group",0x00000002,"SCSI miniport" @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Start",0x00010003,4 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Tag",0x00010003,25 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Type",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters",,0x00000012 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters\PnpInterface","1",0x00010003,0x1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters\PnpInterface","5",0x00010003,0x1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","ErrorControl",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Group",0x00000002,"SCSI miniport" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Start",0x00010003,4 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Tag",0x00010003,58 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Type",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt\Parameters",,0x00000012 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt\Parameters\PnpInterface","1",0x00010003,0x11 HKLM,"SYSTEM\CurrentControlSet\Services\Cdaudio","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Cdaudio","Group",0x00000002,"Filter" HKLM,"SYSTEM\CurrentControlSet\Services\Cdaudio","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Cdaudio","Tag",0x00010001,6 HKLM,"SYSTEM\CurrentControlSet\Services\Cdaudio","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","DependOnGroup",0x00010002,"SCSI CDROM Class" HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Group",0x00000002,"File system" HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","DependOnGroup",0x00010000,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","ErrorControl",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Group",0x00000000,"SCSI CDROM Class" HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Tag",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Changer","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Group",0x00000002,"Filter" HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Tag",0x00010001,5 HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","DependOnService",0x00010000,"RPCSS" HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Description",0x00000000,"%INDEXING_SERVICE_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","DisplayName",0x00000000,"%INDEXING_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ImagePath",0x00020000,"%SystemRoot%\system32\cisvc.exe" HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Type",0x00010003,288 HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","DependOnService",0x00010002,"NetDDE" HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Description",0x00000000,"%CLIPBOOK_SERVER_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","DisplayName",0x00000000,"%CLIPBOOK_SERVER%" HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ImagePath",0x00020002,"%SystemRoot%\system32\clipsrv.exe" HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Type",0x00010003,16 HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv\Security","Security",0x00030003,\ 01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\ 05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Type",0x00010001,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Tag",0x00010003,256 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters\PnpInterface","2",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Tag",0x00010003,62 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Tag",0x00010003,62 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Tag",0x00010003,44 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters\PnpInterface","2",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","DependOnService",0x00010002,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Description",0x00000000,%CRYPTSVC_DESCRIPTION% HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","DisplayName",0x00000000,%CRYPTSVC_DISPLAYNAME% HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\cryptsvc.dll" HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters","ServiceMain",0x00000002,"CryptServiceMain" HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Security","Security",0x00030003,\ @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","ErrorControl",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Group",0x00000002,"SCSI miniport" @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Start",0x00010003,4 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Tag",0x00010003,32 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Type",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters",,0x00000012 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters\PnpInterface","2",0x00010003,1 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters\PnpInterface","5",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Tag",0x00010003,32 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters\PnpInterface","2",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Tag",0x00010003,60 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx","Tag",0x00010003,60 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afc9xxx\Parameters\PnpInterface","5",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Tag",0x00010003,45 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Group",0x00000002,"SCSI Class" HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Tag",0x00010003,45 HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Disk","DependOnGroup",0x00010000,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\Disk","ErrorControl",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Group",0x00000000,"SCSI Class" HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Start",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Tag",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","DependOnService",0x00010000,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Description",0x00000000,"%ERSVC_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","DisplayName",0x00000000,"%ERSVC%" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ErrorControl",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\ersvc.dll" HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc\Security","Security",0x00030003,\ 01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\ 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\ 60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\ 00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,\ 00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,18,00,fd,\ 01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,00,00,00,00,\ 00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog","Description",0x00000000,"%EVENTLOG_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog","DisplayName",0x00000000,"%EVENTLOG%" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Group",0x00000002,"Event log" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ImagePath",0x00020002,"%SystemRoot%\system32\services.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","PlugPlayServiceType",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","DisplayNameFile",0x00020000,"%SystemRoot%\system32\els.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","DisplayNameID",0x00010001,256 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","File",0x00020002,"%SystemRoot%\system32\config\AppEvent.Evt" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","MaxSize",0x00010003,524288 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","PrimaryModule",0x00000002,"Application" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","Retention",0x00010003,604800 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Autochk","EventMessageFile",0x00020002,"%SystemRoot%\System32\winlogon.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Autochk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application","CategoryCount",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application","CategoryMessageFile",0x00020002,"%SystemRoot%\system32\eventlog.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Error","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Error","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hang","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hang","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","EventMessageFile",0x00020000,"%SystemRoot%\System32\appmgmts.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Software Installation","EventMessageFile",0x00020000,"%SystemRoot%\System32\appmgr.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Software Installation","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Chkdsk","EventMessageFile",0x00020002,"%SystemRoot%\System32\ulib.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Chkdsk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\DrWatson","EventMessageFile",0x00020002,"%SystemRoot%\System32\drwtsn32.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\DrWatson","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","CategoryCount",0x00010003,6 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\EsEnU.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","EventMessageFile",0x00020002,"%SystemRoot%\System32\EsEnU.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","EventMessageFile",0x00020002,"%SystemRoot%\System32\fdeploy.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","EventMessageFile",0x00020002,"%SystemRoot%\System32\fdeploy.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\LoadPerf","EventMessageFile",0x00020002,"%SystemRoot%\System32\loadperf.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\LoadPerf","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\ntbackup","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntbackup.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\ntbackup","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfctrs","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfctrs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfctrs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfDisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfdisk.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfDisk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perflib","EventMessageFile",0x00020002,"%SystemRoot%\System32\prflbmsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perflib","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfmon","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfmon.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfmon","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfNet","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfnet.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfNet","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfOS","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfOS.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfOS","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfProc","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfproc.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfProc","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceCli","EventMessageFile",0x00020002,"%SystemRoot%\System32\scecli.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceCli","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceSrv","EventMessageFile",0x00020000,"%SystemRoot%\System32\scesrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceSrv","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SclgNtfy","EventMessageFile",0x00020002,"%SystemRoot%\System32\sclgntfy.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SclgNtfy","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SpoolerCtrs","EventMessageFile",0x00020002,"%SystemRoot%\System32\winspool.drv" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SpoolerCtrs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SysmonLog","EventMessageFile",0x00020002,"%SystemRoot%\System32\smlogsvc.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SysmonLog","TypesSupported",0x00010003,7 @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Tlntsvr","EventMessageFile",0x00020002,"%SystemRoot%\System32\tlntsvr.exe" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Tlntsvr","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userenv","EventMessageFile",0x00020000,"%SystemRoot%\System32\userenv.dll;%SystemRoot%\System32\xpsp1res.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userenv","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userinit","EventMessageFile",0x00020002,"%SystemRoot%\System32\userinit.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userinit","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WebClient","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WebClient","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows 3.1 Migration","EventMessageFile",0x00020002,"%SystemRoot%\System32\advapi32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows 3.1 Migration","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows Product Activation","EventMessageFile",0x00020000,"%SystemRoot%\System32\dpcdll.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows Product Activation","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Winlogon","EventMessageFile",0x00020002,"%SystemRoot%\System32\winlogon.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Winlogon","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WinMgmt","EventMessageFile",0x00020002,"%SystemRoot%\system32\WBEM\WinMgmtR.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WinMgmt","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WMIAdapter","EventMessageFile",0x00020002,"%SystemRoot%\system32\WBEM\WMIApRes.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WMIAdapter","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","DisplayNameFile",0x00020000,"%SystemRoot%\System32\els.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","DisplayNameID",0x00010001,257 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","File",0x00020002,"%SystemRoot%\System32\config\SecEvent.Evt" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","MaxSize",0x00010003,524288 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","PrimaryModule",0x00000002,"Security" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","Retention",0x00010003,604800 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\DS","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\DS\ObjectNames","Directory Service Object",0x00010003,0x00001E00 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","PolicyObject",0x00010003,5632 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","SecretObject",0x00010003,5648 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","TrustedDomainObject",0x00010003,5664 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","UserAccountObject",0x00010003,5680 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\NetDDE Object","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\NetDDE Object\ObjectNames","DDE Share",0x00010003,7424 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager\ObjectNames","SC_MANAGER Object",0x00010003,7168 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager\ObjectNames","SERVICE Object",0x00010003,7184 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","CategoryCount",0x00010001,9 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\MsAuditE.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","GuidMessageFile",0x00020002,"%SystemRoot%\System32\NtMarta.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","EventMessageFile",0x00020002,"%SystemRoot%\System32\MsAuditE.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","TypesSupported",0x00010003,28 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Channel",0x00010001,5120 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Desktop",0x00010001,6672 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Device",0x00010003,4352 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Directory",0x00010003,4368 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Event",0x00010003,4384 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","EventPair",0x00010003,4400 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","File",0x00010003,4416 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","IoCompletion",0x00010003,4864 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Job",0x00010003,5136 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Key",0x00010003,4432 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","MailSlot",0x00010003,4416 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Mutant",0x00010003,4448 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","NamedPipe",0x00010003,4416 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Port",0x00010003,4464 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Process",0x00010003,4480 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Profile",0x00010003,4496 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Section",0x00010003,4512 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Semaphore",0x00010003,4528 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","SymbolicLink",0x00010003,4544 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Thread",0x00010003,4560 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Timer",0x00010003,4576 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Token",0x00010003,4592 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Type",0x00010003,4608 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","WaitablePort",0x00010003,4464 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","WindowStation",0x00010001,6656 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_ALIAS",0x00010003,5424 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_DOMAIN",0x00010003,5392 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_GROUP",0x00010003,5408 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_SERVER",0x00010003,5376 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_USER",0x00010003,5440 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Document",0x00010003,6944 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Printer",0x00010003,6928 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Server",0x00010003,6912 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","DisplayNameFile",0x00020000,"%SystemRoot%\system32\els.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","DisplayNameID",0x00010001,258 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","File",0x00020002,"%SystemRoot%\system32\config\SysEvent.Evt" @@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","MaxSize",0x00010002,2097152 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","MaxSize",0x00010003,524288 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","PrimaryModule",0x00000002,"System" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","Retention",0x00010003,604800 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abiosdsk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abiosdsk","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abp480n5","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abp480n5","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\acpi.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpi","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpiec","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\acpiec.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpiec","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu160m","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu160m","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afcnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afcnt","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aha154x","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aha154x","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78xx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78xx","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78u2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78u2","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aliide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\AliIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aliide","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ami0nt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ami0nt","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\amsint","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\amsint","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\apphelp","EventMessageFile",0x00020002,"%SystemRoot%\System32\apphelp.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\apphelp","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Application Popup","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntdll.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Application Popup","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3350p","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3350p","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3550","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3550","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atapi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atapi","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atdisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atdisk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\beep","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\beep","TypesSupported",0x00010003,7 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cbidf2k","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cbidf2k","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cd20xrnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cd20xrnt","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdaudio","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdaudio","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdfs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdrom","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdrom","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\changer","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\changer","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cmdide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\CmdIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cmdide","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarray","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarray","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarry2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarry2","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqcissm","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqcissm","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqfcalm","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqfcalm","TypesSupported",0x00010003,7 @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac2w2k","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac2w2k","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac960nt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac960nt","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsDriver","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsDriver","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsSvc","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsSvc","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\disk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\disk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dpti2o","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dpti2o","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afc9xxx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afc9xxx","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\efs","EventMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\efs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\eventlog","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\eventlog","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fastfat","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fastfat","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fdc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\fdc.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fdc","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Fips","EventMessageFile",0x00020002,"%SystemRoot%\System32\Drivers\fips.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Fips","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\flpydisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\flpydisk.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\flpydisk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fs_rec","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fs_rec","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ftdisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\FtDisk.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ftdisk","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpn","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpn","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ini910u","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ini910u","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omp","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omp","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omgmt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omgmt","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\intelide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\IntelIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\intelide","TypesSupported",0x00010003,7 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ipsraidn","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ipsraidn","TypesSupported",0x00010003,7 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\nfrd960","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\nfrd960","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\isapnp","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\isapnp.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\isapnp","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\kbdclass","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\KbdClass.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\kbdclass","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\KDC","EventMessageFile",0x00020002,"%SystemRoot%\System32\kdcsvc.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\KDC","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Kerberos","EventMessageFile",0x00020002,"%SystemRoot%\System32\kerberos.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Kerberos","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lbrtfdc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\lbrtfdc.sys" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lbrtfdc","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lp6nds35","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lp6nds35","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","EventMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","CategoryCount",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Modem","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Modem.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Modem","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mouclass","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\MouClass.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mouclass","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mraid35x","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mraid35x","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\MRxDAV","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\MRxDAV","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msadlib","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msadlib","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msfs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Mup","EventMessageFile",0x00020000,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Mup","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ndis","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ndis","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\NetDDE","EventMessageFile",0x00020002,"%SystemRoot%\System32\netdde.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\NetDDE","TypesSupported",0x00010003,31 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\npfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\npfs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ntfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ntfs","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\null","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\null","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parport","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\ParPort.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parport","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\partmgr","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\partmgr","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parvdm","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\ParVdm.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parvdm","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pci","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Pci.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pci","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pciide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\PciIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pciide","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pcmcia","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Pcmcia.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pcmcia","TypesSupported",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\perc2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\perc2","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\PlugPlayManager","EventMessageFile",0x00020002,"%SystemRoot%\System32\umpnpmgr.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\PlugPlayManager","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1080","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1080","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql10wnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql10wnt","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql12160","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql12160","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1240","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1240","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1280","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1280","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2100","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2100","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2200","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2200","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SAM","EventMessageFile",0x00020002,"%SystemRoot%\System32\samsrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SAM","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Save Dump","EventMessageFile",0x00020002,"%SystemRoot%\System32\SaveDump.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Save Dump","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SCardSvr","EventMessageFile",0x00020002,"%SystemRoot%\System32\SCardSvr.exe" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ScardSvr","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\scsiport","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\scsiport","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\serial","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Serial.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\serial","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Setup","EventMessageFile",0x00020002,"%SystemRoot%\System32\syssetup.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Setup","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Software Restriction Policy","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntdll.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Software Restriction Policy","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System Error","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System Error","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Windows File Protection","EventMessageFile",0x00020000,"%SystemRoot%\System32\sfc_os.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Windows File Protection","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sfloppy","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sfloppy","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Simbad","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Simbad","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sndblst","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sndblst","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sparrow","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sparrow","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc810","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc810","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc8xx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc8xx","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symmpi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symmpi","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_hi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_hi","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_u3","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_u3","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System","CategoryCount",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System","CategoryMessageFile",0x00020002,"%SystemRoot%\system32\eventlog.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\tdi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\tdi","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\toside","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\TosIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\toside","TypesSupported",0x00010003,7 @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Server","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Server","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Client","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Client","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\udfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\udfs","TypesSupported",0x00010003,7 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ultra","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ultra","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\UPS","EventMessageFile",0x00020002,"%SystemRoot%\System32\netmsg.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\UPS","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\USER32","EventMessageFile",0x00020002,"%SystemRoot%\System32\user32.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\USER32","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VgaSave","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\vga.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VgaSave","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\viaide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\ViaIde.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\viaide","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VolSnap","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\VolSnap.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VolSnap","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\W32Time","EventMessageFile",0x00020000,"%SystemRoot%\System32\w32time.dll" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\W32Time","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Win32k","EventMessageFile",0x00020002,"%SystemRoot%\System32\win32k.sys" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Win32k","TypesSupported",0x00010003,7 @@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WMIxWDM","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll" @@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WMIxWDM","TypesSupported",0x00010003,7 HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Group",0x00000002,"Boot file system" HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Group",0x00000002,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Tag",0x00010003,b HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fips","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fips","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fips","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Group",0x00000002,"Primary disk" HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Tag",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Group",0x00000002,"Boot file system" HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Type",0x00010003,8 HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Group",0x00000002,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Tag",0x00010003,9 HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\hpn","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\hpn\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\hpn\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","DependOnService",0x00010000,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Description",0x00000000,"%HIDSERV_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","DisplayName",0x00000000,"%HIDSERV%" HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ObjectName",0x00000000,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Type",0x00010001,0x00000020 HKLM,"SYSTEM\CurrentControlSet\Services\HidServ\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\hidserv.dll" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DependOnGroup",0x00010000,"" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DependOnService",0x00010000,"RPCSS" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DisplayName",0x00000000,"%IASJET_SERVICE%" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Description",0x00000000,"%IASJET_SERVICE_DESCRIPTION%" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ErrorControl",0x00010003,1 @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ImagePath",0x00020002,"%SystemRoot%\SysWOW64\svchost.exe -k iasjet" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ObjectName",0x00000002,"LocalSystem" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Start",0x00010003,3 @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Type",0x00010003,0x00000120 @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet\Parameters","ServiceDll",0x00020002,"%SystemRoot%\SysWOW64\iasrecst.dll" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet\Security","Security",0x00000003,\ @@:@6: 01,00,14,80,a0,00,00,00,ac,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\ @@:@6: 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\ @@:@6: 70,00,04,00,00,00,00,00,18,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\ @@:@6: 00,00,00,00,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\ @@:@6: 20,02,00,00,00,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,\ @@:@6: 00,00,00,20,02,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,\ @@:@6: 00,00,23,02,00,00,00,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,\ @@:@6: 00,00,00,00,05,12,00,00,00 #if defined PRERELEASE || defined PRERELEASE_IDWLOG HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","DisplayName",0x00000000,"Idwlog Service" HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Description",0x00000000,"" HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","DependOnService",0x00010002,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ImagePath",0x00020002,"%SystemRoot%\System32\idwlog.exe" HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Type",0x00010003,16 HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ObjectName",0x00000002,"LocalSystem" #endif HKLM,"SYSTEM\CurrentControlSet\Services\Imapi","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Imapi","Group",0x00000000,"Pnp Filter" HKLM,"SYSTEM\CurrentControlSet\Services\Imapi","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Imapi","Tag",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\Imapi","Type",0x00010001,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Tag",0x00010003,48 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u\Parameters\PnpInterface","5",0x00010003,1 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Inport\Parameters","HzMode",0x00010003,2 @@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\Inport\Parameters","HzMode",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Type",0x00010001,1 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","ErrorControl",0x00010003,1 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Group",0x00000002,"SCSI miniport" @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Start",0x00010003,4 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Tag",0x00010003,53 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Type",0x00010003,1 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn\Parameters",,0x00000012 @s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn\Parameters\PnpInterface","5",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","ErrorControl",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Group",0x00000002,"SCSI miniport" @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Start",0x00010003,4 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Tag",0x00010003,53 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Type",0x00010003,1 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960\Parameters",,0x00000012 @s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Group",0x00000000,"Boot Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Tag",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","HasBootConfig",0x00010001,00000000 @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","DependOnService",0x00010002,"SamSS" @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Description",0x00000000,"%INTERSITE_MESSAGING_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","DisplayName",0x00000000,"%INTERSITE_MESSAGING_SERVICE%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ImagePath",0x00020002,"%SystemRoot%\System32\ismserv.exe" @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ObjectName",0x00000002,"LocalSystem" @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Type",0x00010003,16 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Group",0x00000002,"Keyboard Class" HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","ConnectMultiplePorts",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","KeyboardDataQueueSize",0x00010003,100 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","KeyboardDeviceBaseName",0x00000002,"KeyboardClass" HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","MaximumPortsServiced",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","SendOutputToAllPorts",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","DependOnService",0x00010002,"RpcSs","Afd" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Description",0x00000000,"%KERBEROS_KEY_DISTRIBUTION_CENTER_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","DisplayName",0x00000000,"%KERBEROS_KEY_DISTRIBUTION_CENTER%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Group",0x00000002,"RemoteValidation" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ImagePath",0x00020002,"%SystemRoot%\System32\lsass.exe" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ObjectName",0x00000002,"LocalSystem" @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Type",0x00010003,32 @s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc\Security","Security",0x00030003,\ @s: 01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ @s: 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ @s: 00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ @s: 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ @s: 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ @s: 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ @s: 00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\ @s: 05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Group",0x00000002,"Base" HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Start",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\lbrtfdc","ErrorControl",0x00010003,0 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\lbrtfdc","Group",0x00000002,"System Bus Extender" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\lbrtfdc","Start",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\lbrtfdc","Tag",0x00010003,0xe @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\lbrtfdc","Type",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Group",0x00000002,"SCSI miniport" @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Tag",0x00010003,39 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Type",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35\Parameters\PnpInterface","5",0x00010003,1 ; HKLM,"SYSTEM\CurrentControlSet\Services\mca","ErrorControl",0x00010001,1 ; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Group",0x00000000,"Boot Bus Extender" ; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Start",0x00010003,4 ; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Tag",0x00010001,4 ; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Group",0x00000000,"Video Save" HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Video","VideoID",0x00000000,"{8B6D7859-A639-4A15-8790-7161976D057A}" HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Video","Service",0x00000000,"mnmdd" HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","InstalledDisplayDrivers",0x00010000,"mnmdd" HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","Device Description",0x00000000,"NetMeeting driver" HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","VgaCompatible",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","MirrorDriver",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\Video","Service",0x00000000,"mnmdd" HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","InstalledDisplayDrivers",0x00010000,"mnmdd" HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","Device Description",0x00000000,"NetMeeting driver" HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","VgaCompatible",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","MirrorDriver",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Modem","ErrorControl",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Group",0x00000000,"Extended base" HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Start",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Modem\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Group",0x00000002,"Pointer Class" HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","ConnectMultiplePorts",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","MaximumPortsServiced",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","MouseDataQueueSize",0x00010003,100 HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","PointerDeviceBaseName",0x00000002,"PointerClass" HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Group",0x00000002,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Tag",0x00010003,8 HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Tag",0x00010003,43 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Group",0x00000002,"File system" HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\MSIServer","Description",0x00000000,"%MSI_SERVICE_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\Mup","DisplayName",0x00000002,"%MUP%" HKLM,"SYSTEM\CurrentControlSet\Services\Mup","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Group",0x00000002,"Network" HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Tag",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Mup\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","DisplayName",0x00000000,"%MICROSOFT_NDIS_SYSTEM_DRIVER%" HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Group",0x00000000,"NDIS Wrapper" HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Start",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\MediaTypes",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\Parameters","ProcessorAffinityMask",0x00010003,4294967295 HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","DisplayName",0x00010002,"%NDIS_PROXY%" HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Group",0x00000002,"PNP_TDI" HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Start",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","DependOnService",0x00010002,"NetDDEDSDM" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Description",0x00000000,"%NETWORK_DDE_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","DisplayName",0x00000000,"%NETWORK_DDE%" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Group",0x00000002,"NetDDEGroup" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ImagePath",0x00020002,"%SystemRoot%\system32\netdde.exe" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE\Security","Security",0x00030003,\ 01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\ 05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","DependOnService",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Description",0x00000000,"%NETWORK_DDE_DSDM_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","DisplayName",0x00000000,"%NETWORK_DDE_DSDM%" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ImagePath",0x00020002,"%SystemRoot%\system32\netdde.exe" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm\Security","Security",0x00030003,\ 01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\ 05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\Netlogon",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Netlogon\Parameters","DisablePasswordChange",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Netman","DependOnService",0x00010000,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Description",0x00000000,"%NETMAN_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\Netman","DisplayName",0x00000000,"%NETMAN_NAME%" HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Start",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Type",0x00010001,0x00000120 HKLM,"SYSTEM\CurrentControlSet\Services\Netman\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\netman.dll" HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Group",0x00000002,"File system" HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Npfs\Aliases","lsass",0x00010002,"protected_storage","netlogon","lsarpc","samr" HKLM,"SYSTEM\CurrentControlSet\Services\Npfs\Aliases","ntsvcs",0x00010000,"eventlog","svcctl" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","DependOnService",0x00010002,"EventLog","RpcSs" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Description",0x00000000,"%NTFR_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","DisplayName",0x00000000,"%NTFR_SERVICE_NAME%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ErrorControl",0x00010003,0 @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ImagePath",0x00020002,"%SystemRoot%\system32\ntfrs.exe" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ObjectName",0x00000002,"LocalSystem" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Start",0x00010003,3 @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Type",0x00010003,16 @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters","Working Directory",0x00020002,"%SystemRoot%\ntfrs" @s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters\SysVol",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Group",0x00000002,"File system" HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Null","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Null","Group",0x00000002,"Base" HKLM,"SYSTEM\CurrentControlSet\Services\Null","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Null","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Null","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Parport","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Group",0x00000002,"Parallel arbitrator" HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Group",0x00000002,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Tag",0x00010003,a HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","DependOnGroup",0x00010002,"Parallel arbitrator" HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","DependOnService",0x00010002,"Parport" HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","Group",0x00000002,"Extended base" HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","Tag",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ParVdm\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\PCI","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Group",0x00000000,"Boot Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Tag",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCIDump","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\PCIDump","Group",0x00000002,"PCI Configuration" HKLM,"SYSTEM\CurrentControlSet\Services\PCIDump","Start",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCIDump","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCIDump","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Tag",0x00010001,3 HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Tag",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\Parameters","SoundsEnabled",0x00010003,0 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2\Parameters\PnpInterface","5",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Group",0x00000002,"Filter" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Close",0x00000002,"CloseDiskObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Collect",0x00000002,"CollectDiskObjectData" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Collect Timeout",0x00010001,2000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Library",0x00000002,"perfdisk.dll" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Object List",0x00000002,"234 236" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Open",0x00000002,"OpenDiskObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Open Timeout",0x00010001,5000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Close",0x00000002,"CloseNetSvcsObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Collect",0x00000002,"CollectNetSvcsObjectData" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Collect Timeout",0x00010001,5000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Library",0x00000002,"perfnet.dll" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Object List",0x00000002,"52 262 330 1300" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Open",0x00000002,"OpenNetSvcsObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Open Timeout",0x00010001,8000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Close",0x00000002,"CloseOSObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Collect",0x00000002,"CollectOSObjectData" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Collect Timeout",0x00010001,2000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Library",0x00000002,"perfos.dll" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Object List",0x00000002,"2 4 86 238 260 700" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Open",0x00000002,"OpenOSObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Open Timeout",0x00010001,5000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Close",0x00000002,"CloseSysProcessObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Collect",0x00000002,"CollectSysProcessObjectData" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Collect Timeout",0x00010001,8000 HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Library",0x00000002,"perfproc.dll" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Object List",0x00000000,"230 232 786 740 816 1408 1500 1548 1760" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Open",0x00000002,"OpenSysProcessObject" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Open Timeout",0x00010001,10000 HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Description",0x00000000,"%PLUG_AND_PLAY_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","DisplayName",0x00000000,"%PLUG_AND_PLAY%" HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Group",0x00000002,"PlugPlay" HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ImagePath",0x00020002,"%SystemRoot%\system32\services.exe" HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","PlugPlayServiceType",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","DependOnService",0x00010002,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Description",0x00000000,%PROTECTEDSTORAGE_DESCRIPTION% HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","DisplayName",0x00000000,%PROTECTEDSTORAGE_DISPLAYNAME% HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ImagePath",0x00020000,"%SystemRoot%\system32\lsass.exe" HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Type",0x00010001,288 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Tag",0x00010003,61 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\ql1080\Parameters\PnpInterface","5",0x00010003,1 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","ErrorControl",0x00010003,1 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Group",0x00000002,"SCSI miniport" @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Start",0x00010003,4 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Tag",0x00010003,35 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Type",0x00010003,1 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt\Parameters",,0x00000012 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Tag",0x00010003,63 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\ql12160\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Tag",0x00010003,49 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\ql1240\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Tag",0x00010003,63 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\ql1280\Parameters\PnpInterface","5",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Group",0x00000002,"SCSI miniport" @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Tag",0x00010003,40 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Type",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100\Parameters\PnpInterface","5",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Group",0x00000002,"SCSI miniport" @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Tag",0x00010003,40 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Type",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200\Parameters\PnpInterface","5",0x00010003,1 @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Description",0x00000000,"%REGSVC_DESCRIPTION%" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DependOnService",0x00010002,"RPCSS" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DisplayName",0x00000000,"%REGSVC_SERVICE%" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ErrorControl",0x00010003,1 @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ImagePath",0x00020000,"%%SystemRoot%\system32\svchost.exe -k LocalService" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ObjectName",0x00000000,"NT AUTHORITY\LocalService" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Group",0x00000002,"" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Start",0x00010001,2 @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Type",0x00010001,32 @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\regsvc.dll" @w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","FailureActions",0x00030003,\ @w!p: 00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,E0,AD,08,00,01,00,00,00,E8,\ @w!p: 03,00,00 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Description",0x00000000,"%REGSVC_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DependOnService",0x00010002,"RPCSS" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DisplayName",0x00000000,"%REGSVC_SERVICE%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ImagePath",0x00020000,"%%SystemRoot%\system32\svchost.exe -k regsvc" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ObjectName",0x00000000,"NT AUTHORITY\LocalService" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Group",0x00000002,"" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Start",0x00010001,2 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Type",0x00010001,32 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\regsvc.dll" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","FailureActions",0x00030003,\ @s: 00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,E0,AD,08,00,01,00,00,00,E8,\ @s: 03,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Description",0x00000000,"%REMOTE_PROCEDURE_CALL_RPC_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","DisplayName",0x00000000,"%REMOTE_PROCEDURE_CALL_RPC_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Group",0x00000000,"COM Infrastructure" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ImagePath",0x00020000,"%SystemRoot%\system32\svchost -k rpcss" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ObjectName",0x00000000,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\rpcss.dll" HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Security","Security",0x00030001,\ 01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\ 00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\ 12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","FailureActions",0x00030003,\ 00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,02,00,00,00,60,EA,00,00 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Description",0x00000000,"%RSOP_SERVICE_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","DisplayName",0x00000000,"%RSOP_SERVICE%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ErrorControl",0x00010001,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ImagePath",0x00020000,"%SystemRoot%\system32\RSoPProv.exe" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ObjectName",0x00000002,"LocalSystem" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","DependOnService",0x00000002,"RPCSS" @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Start",0x00010001,3 @s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Type",0x00010001,32 @s:HKLM,"SYSTEM\CurrentControlSet\Services\sacdrv","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Description",0x00000000,"%SECURITY_ACCOUNTS_MANAGER_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","DisplayName",0x00000000,"%SECURITY_ACCOUNTS_MANAGER_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ImagePath",0x00020002,"%SystemRoot%\system32\lsass.exe" HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Group",0x00000002,"LocalValidation" HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","DependOnService",0x00010000,"RPCSS" HKLM,"SYSTEM\CurrentControlSet\Services\Samss\Security","Security",0x00030003,\ 01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\ 00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\ 12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\SCardDrv","Type",0x00010003,32 HKLM,"SYSTEM\CurrentControlSet\Services\SCardDrv","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\SCardDrv","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\SCardDrv","ImagePath",0x00020002,"%SystemRoot%\System32\SCardSvr.exe" HKLM,"SYSTEM\CurrentControlSet\Services\ScardDrv","Description",0x00000000,"%SMARTCARD_DRV_SUPPORT_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\ScardDrv","DisplayName",0x00000000,"%SMARTCARD_DRV_SUPPORT%" HKLM,"SYSTEM\CurrentControlSet\Services\ScardDrv","DependOnGroup",0x00010002,"Smart Card Reader" HKLM,"SYSTEM\CurrentControlSet\Services\ScardDrv","ObjectName",0x00000000,"NT AUTHORITY\LocalService" HKLM,"SYSTEM\CurrentControlSet\Services\ScardDrv\Security","Security",0x00030001,\ 01,00,14,80,ac,00,00,00,b8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\ 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\ 7c,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\ 00,00,00,14,00,ff,01,0f,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,18,00,\ ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,ff,\ 01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,14,00,9d,01,\ 02,00,01,01,00,00,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,01,01,00,\ 00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ImagePath",0x00020002,"%SystemRoot%\System32\SCardSvr.exe" HKLM,"SYSTEM\CurrentControlSet\Services\ScardSvr","Description",0x00000000,"%SMARTCARD_RESOURCE_MANAGER_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\ScardSvr","DisplayName",0x00000000,"%SMARTCARD_RESOURCE_MANAGER%" HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","DependOnService",0x00010000,"PlugPlay" HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ObjectName",0x00000000,"NT AUTHORITY\LocalService" HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr\Security","Security",0x00030001,\ 01,00,14,80,ac,00,00,00,b8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\ 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\ 7c,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\ 00,00,00,14,00,ff,01,0f,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,18,00,\ ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,ff,\ 01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,14,00,9d,01,\ 02,00,01,01,00,00,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,01,01,00,\ 00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Description",0x00000000,"%SECLOGON_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","DisplayName",0x00000000,"%SECLOGON_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Objectname",0x00000000,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Type",0x00010001,288 HKLM,"SYSTEM\CurrentControlSet\Services\seclogon\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\seclogon.dll" HKLM,"SYSTEM\CurrentControlSet\Services\seclogon\Parameters","ServiceMain",0x00000002,"SvcEntry_Seclogon" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","DependOnService",0x00010002,"EventSystem" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Description",0x00000000,"%SENS_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","DisplayName",0x00000000,"%SENS_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Group",0x00000002,"Network" HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Start",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\SENS\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\sens.dll" HKLM,"SYSTEM\CurrentControlSet\Services\Serial","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Group",0x00000002,"Extended base" HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Start",0x00010003,2 @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Tag",0x00010003,1 @@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Tag",0x00010003,5 HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Serial\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","DependOnGroup",0x00010000,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","ErrorControl",0x00010001,0 HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Group",0x00000000,"Primary disk" HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Group",0x00000002,"Filter" HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Start",0x00010003,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Tag",0x00010003,7 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters\PnpInterface","1",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters", "LegacyAdapterDetection", 0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","DependOnService",0x00010000,"RPCSS" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Description",0x00000000,"%SPOOLER_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","DisplayName",0x00000000,"%SPOOLER_DISPLAYNAME%" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ErrorControl",0x00010003,1 @w:HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","FailureActions",0x00000003, \ @w: 80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c, \ @w: 00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00, \ @w: 00,00,00,00,00,00 @s:HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","FailureActions",0x00000003, \ @s: 60,54,00,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c, \ @s: 00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00, \ @s: 00,00,00,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Group",0x00000002,"SpoolerGroup" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ImagePath",0x00020000,"%SystemRoot%\system32\spoolsv.exe" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Type",0x00010003,272 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Close",0x00000002,"PerfClose" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Collect",0x00000002,"PerfCollect" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Collect Timeout",0x00010003,2000 HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Library",0x00000002,"winspool.drv" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Object List",0x00000002,"1450" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Open",0x00000002,"PerfOpen" HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Open Timeout",0x00010003,4000 HKLM,"SYSTEM\CurrentControlSet\Services\swenum","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\swenum","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\swenum","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\swenum\Devices",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","ErrorControl",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Group",0x00000002,"SCSI miniport" @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Start",0x00010001,4 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Tag",0x00010003,26 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810\Parameters",,0x00000012 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Tag",0x00010003,54 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx\Parameters\PnpInterface","5",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Group",0x00000002,"SCSI miniport" @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Start",0x00010003,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Type",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\symmpi\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Tag",0x00010003,55 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Group",0x00000002,"SCSI miniport" HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Tag",0x00010003,55 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3\Parameters\PnpInterface","5",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Description",0x00000002,"%SYSMONLOG_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","DisplayName",0x00000002,"%SYSMONLOG%" HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ImagePath",0x00020002,"%SystemRoot%\system32\smlogsvc.exe" HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ObjectName",0x00000002,"NT Authority\NetworkService" HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Type",0x00010003,16 HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","DefaultLogFileFolder",0x00020002,"%SystemDrive%\PerfLogs" HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog\Log Queries","Defaults Installed",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","DependOnService",0x00010000,"PlugPlay","RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Description",0x00000000,"%TELEPHONY_SERVICE_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","DisplayName",0x00000000,"%TELEPHONY_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ErrorControl",0x00010003,1 @w:HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k tapisrv" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Type",0x00010001,0x20 HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\tapisrv.dll" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Close",0x00000002,"CloseTapiPerformanceData" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Collect",0x00000002,"CollectTapiPerformanceData" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Library",0x00000002,"tapiperf.dll" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","ObjectList",0x00000002,"1150" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Open",0x00000002,"OpenTapiPerformanceData" HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Security","Security",0x00030001,\ 01,00,14,80,6C,00,00,00,78,00,00,00,14,00,00,00,34,00,00,00,02,\ 00,20,00,01,00,00,00,02,80,18,00,FF,01,0F,00,01,01,00,00,00,00,00,01,00,00,\ 00,00,20,02,00,00,02,00,38,00,02,00,00,00,00,03,18,00,FF,01,0F,00,01,02,00,\ 00,00,00,00,05,20,00,00,00,20,02,00,00,00,03,18,00,9D,00,00,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,\ 01,00,00,00,00,00,05,12,00,00,00 @*: @*: BUGBUG - This is a hack for hydra. @*: It is a quick and dirty way to disable some hydra services on upgrade. @*: Notice that these keys will always exist on NT server clean install and upgrade. @*: @s:HKLM,"SYSTEM\CurrentControlSet\Services\TermDD","Start",0x00010001,4 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TermService","Start",0x00010001,4 @s: HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Type",0x00010001,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Description",0x00000000,"%TRACT_SERVER_DESCRIPTION%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","DisplayName",0x00000000,"%TRACT_SERVER_SERVICE%" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","DependOnService",0x00010002,"RpcSs" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ErrorControl",0x00010003,1 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ObjectName",0x00000002,"LocalSystem" @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Start",0x00010003,3 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Type",0x00010001,32 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr\Parameters",,0x00000012 @s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\trksvr.dll" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Description",0x00000000,"%TRACK_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","DisplayName",0x00000000,"%TRACK_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","DependOnService",0x00010002,"RpcSs" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Start",0x00010001,2 HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\trkwks.dll" HKLM,"SYSTEM\CurrentControlSet\Services\TSDDD\Device0","InstalledDisplayDrivers",0x00010000,"TSDDD" HKLM,"SYSTEM\CurrentControlSet\Services\TSDDD\Device0","VgaCompatible",0x00010001,00000000 HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Group",0x00000002,"File system" HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Type",0x00010003,2 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","ErrorControl",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Group",0x00000002,"SCSI miniport" @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Start",0x00010003,4 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Tag",0x00010003,59 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Type",0x00010003,1 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra\Parameters",,0x00000012 @@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra\Parameters\PnpInterface","5",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","ErrorControl",0x00010003,0 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","Start",0x00010001,3 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","Type",0x00010003,1 @@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update\Devices",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Description",0x00000000,"%UPS_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\UPS","DisplayName",0x00000000,"%UPS_DISPLAYNAME%" HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ImagePath",0x00020002,"%SystemRoot%\System32\ups.exe" HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ObjectName",0x00000002,"NT AUTHORITY\LocalService" HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Type",0x00010003,16 HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","ErrorControl",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Group",0x00000000,"Video Save" HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","ImagePath",0x00020000,"\SystemRoot\System32\drivers\vga.sys" HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Start",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Tag",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Video","VideoID",0x00000000,"{23A77BF7-ED96-40EC-AF06-9B1F4867732A}" HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Video","Service",0x00000000,"VgaSave" @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","InstalledDisplayDrivers",0x00010000,"vga", "framebuf", "vga256", "vga64k" @@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","InstalledDisplayDrivers",0x00010000,"nec_nh" HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","VgaCompatible",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\Video","Service",0x00000000,"VgaSave" @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","InstalledDisplayDrivers",0x00010000,"vga", "framebuf", "vga256", "vga64k" @@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","InstalledDisplayDrivers",0x00010000,"nec_nh" HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","VgaCompatible",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","ErrorControl",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Group",0x00000000,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Start",0x00010003,4 HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Tag",0x00010001,4 HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Type",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Group",0x00000002,"System Bus Extender" HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\VSS","DependOnService",0x00010000,"RPCSS" HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Description",0x00000000,"%VOLUME_SNAPSHOT_SERVICE_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\VSS","DisplayName",0x00000000,"%VOLUME_SNAPSHOT_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ImagePath",0x00020000,"%SystemRoot%\System32\vssvc.exe" HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Start",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Type",0x00010003,0x10 HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Description",0x00000000,"%WINDOWS_TIME_DESCRIPTION%" HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","DisplayName",0x00000000,"%WINDOWS_TIME_SERVICE%" HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Group",0x00000002,"" HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Objectname",0x00000000,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Type",0x00010001,32 HKLM,"SYSTEM\CurrentControlSet\Services\W32Time\Security","Security",0x00030003,\ 01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ 00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ 00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\ 00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\ 12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 1","$DLL",0x00020002,"%SystemRoot%\system32\MsSip1.dll" HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 2","$DLL",0x00020002,"%SystemRoot%\system32\MsSip2.dll" HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 3","$DLL",0x00020002,"%SystemRoot%\system32\MsSip3.dll" HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\TrustProviders",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\TrustProviders\Software Publisher","$DLL",0x00020002,"%SystemRoot%\system32\SoftPub.dll" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Description",0x00000000,"%WMI_DESCRIPTION%" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","DisplayName",0x00000000,"%WMI_SERVICE%" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ErrorControl",0x00010003,1 @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ObjectName",0x00000002,"LocalSystem" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Start",0x00010001,3 @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Type",0x00010001,32 @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Security","Security",0x00030003,\ @@!p: 01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\ @@!p: 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\ @@!p: 00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\ @@!p: 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\ @@!p: 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\ @@!p: 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\ @@!p: 00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\ @@!p: 00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\ @@!p: 12,00,00,00 @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\advapi32.dll" @@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Parameters","ServiceMain",0x00000002,"WdmWmiServiceMain" HKLM,"SYSTEM\Select","Current",0x00010003,0 HKLM,"SYSTEM\Select","Default",0x00010003,1 HKLM,"SYSTEM\Select","Failed",0x00010003,0 HKLM,"SYSTEM\Select","LastKnownGood",0x00010003,1 HKLM,"SYSTEM\Setup","SetupType",0x00010003,1 HKLM,"SYSTEM\Setup","SystemSetupInProgress",0x00010003,1 HKLM,"SYSTEM\Setup\AllowStart\AFD",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\WS2IFSL",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\EventLog",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\PlugPlay",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\ProtectedStorage",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\Rpcss",,0x00000010 HKLM,"SYSTEM\Setup\AllowStart\SamSs",,0x00000010 [AddReg.RemoteBoot] HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","Export",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","Bind",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","UpperBind",0x00010002,"Tcpip" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Ndi\Interfaces","LowerRange",0x00000002,"ethernet" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Ndi\Interfaces","UpperRange",0x00000002,"ndis5" HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\Order",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\Order","ProviderOrder",0x00000002,"LanmanWorkstation" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","DisplayName",0x00000002,"TCP/IP Protocol Driver" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Group",0x00000002,"PNP_TDI" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Tag",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Bind",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Export",0x00010002,"\Device\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Route",0x00010002,"""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}""" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Bind",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Export",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Route",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","IpConfig",0x00010002,"Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","IpAddress",0x00010002,"0.0.0.0" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","SubnetMask",0x00010002,"0.0.0.0" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","NTEContextList",0x00010002,"0x00000002" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Performance","ObjectList",0x00000002,"502 510 546 582 638 658" HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Security","Security",0x00030003,\ 01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\ 01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\ 02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\ 00,00,00,00,72,00,76,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,23,02,00,00,69,00,63,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00,69,00,63,00,00,00,1c,00,ff,01,0f,00,\ 01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,69,00,63,00,00,00,18,00,\ fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\ 00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","DisplayName",0x00000002,"WINS Client(TCP/IP) Protocol Driver" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Group",0x00000002,"PNP_TDI" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Tag",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Bind",0x00010002,"\Device\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Export",0x00010002,"\Device\NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Route",0x00010002,"""Tcpip"" ""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}""" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Bind",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Export",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Route",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters","TransportBindName",0x00000002,"\Device\" HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters","BroadcastAddress",0x00010001,0xffffffff HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}",,0x00000010 HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Security","Security",0x00030003,\ 01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\ 01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\ 02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\ 00,00,00,00,64,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,23,02,00,00,00,00,00,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00,00,00,00,00,00,00,1c,00,ff,01,0f,00,\ 01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,00,00,00,00,18,00,\ fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\ 00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","DisplayName",0x00000002,"Rdbss" HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Group",0x00000002,"Network" HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss\Security","Security",0x00030003,\ 01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\ 01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\ 02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\ 00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\ 01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\ fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\ 00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","DisplayName",0x00000002,"MRXSMB" HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Group",0x00000002,"Network" HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Tag",0x00010003,3 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Type",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb\Security","Security",0x00030003,\ 01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\ 01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\ 02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\ 00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\ 01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\ fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\ 00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Description",0x00000000,%LANMAN_WORKSTATION_DESCRIPTION% HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","DisplayName",0x00000000,%LANMAN_WORKSTATION_DISPLAY% HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Group",0x00000002,"NetworkProvider" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","DependOnService",0x00010000 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ObjectName",0x00000002,"LocalSystem" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Start",0x00010003,2 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Type",0x00010003,0x20 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Bind",0x00010002,"\Device\NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Export",0x00010002,"\Device\LanmanWorkstation_NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Route",0x00010002,"""NetBT"" ""Tcpip"" ""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}""" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Bind",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Export",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Route",0x00010002 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","Devicename",0x00000002,"\Device\LanmanRedirector" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","Name",0x00000002,"Microsoft Windows Network" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","ProviderPath",0x00020002,"%SystemRoot%\System32\ntlanman.dll" HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters",,0x00000012 HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\wkssvc.dll" HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","DisplayName",0x00000002,"IPSEC Driver" HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","ErrorControl",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Group",0x00000002,"PNP_TDI" HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Start",0x00010003,0 HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Tag",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Type",0x00010003,1 HKLM,"SYSTEM\CurrentControlSet\Services\IPSec\Security","Security",0x00030003,\ 01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\ 01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\ 02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\ 00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\ 20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\ 00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\ 01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\ fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\ 00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00 HKLM,"SOFTWARE\Microsoft\Windows\CurrentVersion\CSCSettings","DatabaseLocation",0x00000002,"D:\IntelliMirror Cache\CSC" [AddReg.Upgrade] HKLM,"SYSTEM\CurrentControlSet\Control\Print","Upgrade",0x00010001,1 HKLM,"SYSTEM\CurrentControlSet\Control\Print","RouterCacheSize",0x00010001,0x00000010 HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\ReservedResources","Eisa",0x00000004 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDVersion",0x10001,0x100 HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDReleaseType",0x10001,0 [DelReg] HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\AsrCommands" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Snapshot Writer (Bootable State)" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Snapshot Writer (Service State)" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Removable Storage Manager Database" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Snapshot Default Provider" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","WMI Snapshot Writer" HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","PlugPlay" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{456D63F1-3F38-11D1-93C9-0040333C1C05}" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","LowerFilters" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoUseClass" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoUseClass" HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoUseClass" @e:@@!m:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{6BDD1FC5-810F-11D0-BEC7-08002BE2092F}" @@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{6BDD1FC5-810F-11D0-BEC7-08002BE2092F}" HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase" HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","System FS Filter" HKLM,"SYSTEM\CurrentControlSet\Control\IDConfigDB","PropertyProviders" HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\E00F0804" @w:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0","Auth1" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0F1F" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0003" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0017" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0006" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_000D" HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0015" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0812" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0827" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0445" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0448" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044c" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044d" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0861" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000812" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000827" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000445" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000448" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044c" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044d" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000861" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010404" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010411" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010412" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010804" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010812" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010c04" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00011004" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00011404" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00020c04" HKLM,"SYSTEM\CurrentControlSet\Control\Nls\OEMLocale" HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\NTBackup" HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\Scratch" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\%hpmon_regkey%" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Lexmark DLC Network Port" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Lexmark TCP/IP Network Port" HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers","RetryPopup" HKLM,"SYSTEM\CurrentControlSet\Control\Server Applications", "{8F8F8DC0-5713-11D1-9551-0060B0576642}" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatibility", "AppCompatCache" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\Install" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","Os2LibPath" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters","EnablePrefetcher" HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Os2" HKLM,"SYSTEM\CurrentControlSet\Control\Windows","NoPopupsOnBoot" HKLM,"SYSTEM\CurrentControlSet\Services\ad1816" HKLM,"SYSTEM\CurrentControlSet\Services\adisnd" HKLM,"SYSTEM\CurrentControlSet\Services\alisnd" HKLM,"SYSTEM\CurrentControlSet\Services\als_fm" HKLM,"SYSTEM\CurrentControlSet\Services\alsnd" HKLM,"SYSTEM\CurrentControlSet\Services\am53c974" HKLM,"SYSTEM\CurrentControlSet\Services\au8820" HKLM,"SYSTEM\CurrentControlSet\Services\au8830" HKLM,"SYSTEM\CurrentControlSet\Services\auddrive" HKLM,"SYSTEM\CurrentControlSet\Services\aztaud" HKLM,"SYSTEM\CurrentControlSet\Services\CIMOM" HKLM,"SYSTEM\CurrentControlSet\Services\cl54xx" HKLM,"SYSTEM\CurrentControlSet\Services\Cnss" HKLM,"SYSTEM\CurrentControlSet\Services\cpq32fs2" HKLM,"SYSTEM\CurrentControlSet\Services\cs32ba11" HKLM,"SYSTEM\CurrentControlSet\Services\ctsyn" HKLM,"SYSTEM\CurrentControlSet\Services\cwantr0" HKLM,"SYSTEM\CurrentControlSet\Services\cwbaudio" HKLM,"SYSTEM\CurrentControlSet\Services\cwcecho" HKLM,"SYSTEM\CurrentControlSet\Services\cwcfm" HKLM,"SYSTEM\CurrentControlSet\Services\cwcspud" HKLM,"SYSTEM\CurrentControlSet\Services\cwcspud3" HKLM,"SYSTEM\CurrentControlSet\Services\cwcmmsys" HKLM,"SYSTEM\CurrentControlSet\Services\cwcmsg" HKLM,"SYSTEM\CurrentControlSet\Services\DiskPerf" HKLM,"SYSTEM\CurrentControlSet\Services\eapci40" HKLM,"SYSTEM\CurrentControlSet\Services\emu10k" HKLM,"SYSTEM\CurrentControlSet\Services\emu10k1" HKLM,"SYSTEM\CurrentControlSet\Services\es137140" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Deployment" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\Application\PlugPlayManager" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\hpmon" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\Application\PSE36Prf" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Type 1 Installer" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Directory Service" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DiskPerf" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\floppy" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\intlfxsr" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\ncrc810" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\PSE36" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsicdrm" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsidisk" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsiflop" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\pinball" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\pnpisa" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga8" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga16" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga24" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\sglfb" @s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\trksvr" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\trkwks" HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\VgaStart" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Wmi" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\User32" HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Schedule" HKLM,"SYSTEM\CurrentControlSet\Services\Floppy" HKLM,"SYSTEM\CurrentControlSet\Services\Homenet" HKLM,"SYSTEM\CurrentControlSet\Services\hphparnt" HKLM,"SYSTEM\CurrentControlSet\Services\ibmraidn" HKLM,"SYSTEM\CurrentControlSet\Services\intlfxsr" @e:@@!6:HKLM,"SYSTEM\CurrentControlSet\Services\irda" @e:@@!6:HKLM,"SYSTEM\CurrentControlSet\Services\irmon" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\irda" @@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\irmon" HKLM,"SYSTEM\CurrentControlSet\Services\LDAPSVCX" HKLM,"SYSTEM\CurrentControlSet\Services\ma_delta" HKLM,"SYSTEM\CurrentControlSet\Services\maestro" HKLM,"SYSTEM\CurrentControlSet\Services\Modem","PlugPlayServiceType" HKLM,"SYSTEM\CurrentControlSet\Services\ncrc810" HKLM,"SYSTEM\CurrentControlSet\Services\i8042prt","PlugPlayServiceType" HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NE2000MCA.1" HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NE2000MCA.2" HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NetDetect" HKLM,"SYSTEM\CurrentControlSet\Services\NetDetect" HKLM,"SYSTEM\CurrentControlSet\Services\OAKVGA" HKLM,"SYSTEM\CurrentControlSet\Services\OLE" HKLM,"SYSTEM\CurrentControlSet\Services\opl3sa" HKLM,"SYSTEM\CurrentControlSet\Services\p9000" HKLM,"SYSTEM\CurrentControlSet\Services\p9100" HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\DataBase" HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Disable Performance Counters" HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Disable Performance Counters" HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Disable Performance Counters" HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Disable Performance Counters" HKLM,"SYSTEM\CurrentControlSet\Services\pinball" HKLM,"SYSTEM\CurrentControlSet\Services\pnpisa" HKLM,"SYSTEM\CurrentControlSet\Services\PSE36" HKLM,"SYSTEM\CurrentControlSet\Services\ql10nt35" HKLM,"SYSTEM\CurrentControlSet\Services\quickaccess" HKLM,"SYSTEM\CurrentControlSet\Services\RCA" HKLM,"SYSTEM\CurrentControlSet\Services\s3ingr" HKLM,"SYSTEM\CurrentControlSet\Services\sb16snd" HKLM,"SYSTEM\CurrentControlSet\Services\sbawe32" HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","DependOnGroup" HKLM,"SYSTEM\CurrentControlSet\Services\scesrv" HKLM,"SYSTEM\CurrentControlSet\Services\scsicdrm" HKLM,"SYSTEM\CurrentControlSet\Services\scsidisk" HKLM,"SYSTEM\CurrentControlSet\Services\scsiflop" HKLM,"SYSTEM\CurrentControlSet\Services\sfman" HKLM,"SYSTEM\CurrentControlSet\Services\sglfb" HKLM,"SYSTEM\CurrentControlSet\Services\sisaudio" HKLM,"SYSTEM\CurrentControlSet\Services\sndblst" HKLM,"SYSTEM\CurrentControlSet\Services\sndglxy" HKLM,"SYSTEM\CurrentControlSet\Services\sndsys" HKLM,"SYSTEM\CurrentControlSet\Services\sni543x" HKLM,"SYSTEM\CurrentControlSet\Services\Update\Group" HKLM,"SYSTEM\CurrentControlSet\Services\Update\Tag" HKLM,"SYSTEM\CurrentControlSet\Services\VgaStart" HKLM,"SYSTEM\CurrentControlSet\Services\waveart" HKLM,"SYSTEM\CurrentControlSet\Services\wdbkvga" HKLM,"SYSTEM\CurrentControlSet\Services\wdlavga" HKLM,"SYSTEM\CurrentControlSet\Services\wdmals" HKLM,"SYSTEM\CurrentControlSet\Services\WinMgmt" HKLM,"SYSTEM\CurrentControlSet\Services\YAMAHA\Driver\DSXGWDM" HKLM,"SYSTEM\CurrentControlSet\Services\ydsxg" HKLM,"SYSTEM\Services\CIMOM" HKLM,"SYSTEM\Setup","MiniSetupInProgress" HKLM,"SYSTEM\Setup","OobeInProgress" @@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo","SystemBiosDate" HKLM,"SYSTEM\CurrentControlSet\Control\Storage\DeviceSettings" HKLM,"SYSTEM\CurrentControlSet\Control\Redbook\SpecialTargetList" @@:@m:HKLM,"SYSTEM\CurrentControlSet\Enum\SW\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}" HKLM, "SYSTEM\CurrentControlSet\Enum\SW\{c68127b1-9bea-11d0-8fa5-00c04fc324c1}" @@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic" HKLM, "SYSTEM\CurrentControlSet\Services\swenum\Devices\{c68127b1-9bea-11d0-8fa5-00c04fc324c1}"