Windows-Server-2003/mergedcomponents/setupinfs/hivesys.inx

5965 lines
462 KiB
Plaintext

[Version]
Signature = "$Windows NT$"
[AddReg]
HKLM,"SYSTEM\CurrentControlSet\Control","CurrentUser",0x00000002,"USERNAME"
HKLM,"SYSTEM\CurrentControlSet\Control","WaitToKillServiceTimeout",0x00000002,"20000"
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0520",0x00030003,80,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0521",0x00030003,80,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","102B0525",0x00030003,80,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","10DE0100",0x00030003,00,01,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53339102",0x00030003,00,01,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53338C10",0x00030003,00,01,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\AGP","53338C12",0x00030003,00,01,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\Arbiters",,0x00000012
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo","InfName",0x00000002,"biosinfo.inf"
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo\APM","Attributes", 0x00010001, 00000001
HKLM,"SYSTEM\CurrentControlSet\Control\BootVerificationProgram",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Class",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\PnP",,0x00000012
;
; Service Pack Data
;
;HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDVersion",0x00010001,0x100
;
; safeboot options
;
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot","AlternateShell",0x00000000,"cmd.exe"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal",,0x00000010
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys","",0x00000000,"Driver"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wd.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmboot.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmload.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmio.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmserver","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dmadmin","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc","",0x00000000,"Service"
@l:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBCore","",0x00000000,"Service"
@s:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}","",0x00000000,"Universal Serial Bus controllers"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}","",0x00000000,"CD-ROM Drive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}","",0x00000000,"DiskDrive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Standard floppy disk controller"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Hdc"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Keyboard"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Mouse"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}","",0x00000000,"PCMCIA Adapters"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"SCSIAdapter"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}","",0x00000000,"System"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Floppy disk drive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}","",0x00000000,"Volume shadow copy"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","",0x00000000,"Volume"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}","",0x00000000,"Human Interface Devices"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network",,0x00000010
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Base","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot file system","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\File system","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Filter","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PCI Configuration","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP Filter","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Primary disk","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCSI Class","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\System Bus Extender","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot Bus Extender","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sermouse.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vga.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vgasave.sys","",0x00000000,"Driver"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wd.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmboot.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmload.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmio.sys","",0x00000000,"Driver"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmserver","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dmadmin","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vds","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EventLog","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PlugPlay","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcSs","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Browser","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dhcp","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DnsCache","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanServer","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanWorkstation","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LmHosts","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Messenger","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetMan","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ndisuio","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NtLmSsp","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBT","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Tcpip","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AFD","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOS","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinMgmt","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WZCSVC","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppMgmt","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CryptSvc","",0x00000000,"Service"
@s:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sacsvr","",0x00000000,"Service"
@l:HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBCore","",0x00000000,"Service"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS Wrapper","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Network","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOSGroup","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetDDEGroup","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetworkProvider","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Streams Drivers","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDI","",0x00000000,"Driver Group"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{36FC9E60-C465-11CF-8056-444553540000}","",0x00000000,"Universal Serial Bus controllers"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}","",0x00000000,"CD-ROM Drive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}","",0x00000000,"DiskDrive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Standard floppy disk controller"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Hdc"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Keyboard"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Mouse"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}","",0x00000000,"SCSIAdapter"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}","",0x00000000,"System"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Net"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetClient"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetService"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000000,"NetTrans"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}","",0x00000000,"Floppy disk drive"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}","",0x00000000,"PCMCIA Adapters"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}","",0x00000000,"Volume shadow copy"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","",0x00000000,"Volume"
HKLM,"SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}","",0x00000000,"Human Interface Devices"
;
; The following are Backup & Restore specific key
;
;
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","ASR Log File",0x00010000,"%SystemRoot%\repair\asr.log"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","ASR Error File",0x00010000,"%SystemRoot%\repair\asr.err"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Client Side Cache",0x00010000,"%SystemRoot%\csc\* /s"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Internet Explorer",0x00010000,"%UserProfile%\index.dat /s"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Memory Page File",0x00010000,"\Pagefile.sys"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Writer (Bootable State)",0x00010000,"%SystemRoot%\Registration\*.clb","\*.crmlog /s"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Mount Manager",0x00010000,"\System Volume Information\MountPointManagerRemoteDatabase"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Netlogon",0x00010000,"%SystemRoot%\netlogon.chg"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Power Management",0x00010000,"\hiberfil.sys"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","VSS Default Provider",0x00010000,"\System Volume Information\*{3808876B-C176-4e48-B7AE-04046E6CC752} /s"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","VSS Service DB",0x00010000,"\System Volume Information\*.{7cc467ef-6865-4831-853f-2a4817fd1bca}DB"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","VSS Service Alternate DB",0x00010000,"\System Volume Information\*.{7cc467ef-6865-4831-853f-2a4817fd1bca}ALT"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Task Scheduler",0x00010000,"%SYSTEMROOT%\Tasks\schedlgu.txt"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Temporary Files",0x00010000,"%TEMP%\* /s"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Winlogon debug",0x00010000,"%WINDIR%\debug\*"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\AsrKeysNotToRestore","Plug & Play",0x00010000,"CurrentControlSet\Control\CriticalDeviceDatabase\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Plug & Play",0x00010000,"CurrentControlSet\Control\CriticalDeviceDatabase\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Mount Manager",0x00010000,"MountedDevices\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Fault Tolerance",0x00010000,"Disk\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Installed Services",0x00010000,"CurrentControlSet\Services\*"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Active Directory Restore",0x00010000,"CurrentControlSet\Services\NTDS\Restore In Progress\","CurrentControlSet\Services\NTDS\Parameters\New Database GUID"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Pending Rename Operations",0x00010000,"CurrentControlSet\Control\Session Manager\PendingFileRenameOperations"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","LDM Boot Information",0x00010000,"CurrentControlSet\Services\dmio\boot info\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Windows Setup",0x00010000,"Setup\SystemPartition"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Session Manager",0x00010000,"CurrentControlSet\Control\Session Manager\AllowProtectedRenames"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","ASR Information",0x00010000,"CurrentControlSet\Control\ASR\"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","Removable Storage Manager",0x00010000,"CurrentControlSet\Control\NTMS\ImportDatabase"
;
; Since no device is ever going to be listed in an INF of class "Unknown", it
; doesn't make any sense to stick another INF in the INF directory just so we
; can run its [ClassInstall32] section during GUI-mode setup. Thus, we pre-install
; that class here.
;
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%UNKNOWN%"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Unknown"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97E-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-18"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Keyboard"
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"kbdclass"
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"neckbrep","kbdclass"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96F-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Mouse"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E96F-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010002,"mouclass"
;
; We need the DiskDrive class around when booting into GUI-mode setup so we can
; load the correct upper filter.
;
; HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"DiskDrive"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","UpperFilters",0x00010000,"PartMgr"
;
; The following are Network Software classes so they will continue to be listed here
;
;
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_CLIENT%"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetClient"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-7"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetService"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-8"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_PROTOCOL%"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetTrans"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Icon",0x00000002,"-6"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoInstallClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoDisplayClass",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","Installer32",0x00000000,"NetCfgx.Dll,NetClassInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E97B-E325-11CE-BFC1-08002BE10318}","LegacyAdapterDetection",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers",,0x00000012
@*:; The following co-installers wipe out any existing co-installers. Either add support for FLG_ADDREG_APPEND
@*:; in setupdd.sys, or move this into some early part of syssetup.dll...
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E965-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller","SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E967-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller","SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96A-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96B-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96F-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E97B-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E97D-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E980-E325-11CE-BFC1-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{6D807884-7D21-11CF-801C-08002BE10318}",0x00010000,"SysSetup.Dll,StorageCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{71A27CDD-812A-11D0-BEC7-08002BE2092F}",0x00010000,"SysSetup.Dll,CriticalDeviceCoInstaller"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96D-E325-11CE-BFC1-08002BE10318}",0x00010000,"NetCfgx.dll,ModemClassCoInstaller","setup\FxsOcm.dll,FaxModemCoClassInstaller"
@@:@@!i:HKLM,"SYSTEM\CurrentControlSet\Control\CoDeviceInstallers","{4D36E96D-E325-11CE-BFC1-08002BE10318}",0x00010000,"NetCfgx.dll,ModemClassCoInstaller"
HKLM,"SYSTEM\CurrentControlSet\Control\ComputerName",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\ComputerName\ComputerName","ComputerName",0x00000002,"MACHINENAME"
HKLM,"SYSTEM\CurrentControlSet\Control\ContentIndex","DoNotStartCiSvc",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","AutoReboot",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","CrashDumpEnabled",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","DumpFile",0x00020002,"%SystemRoot%\MEMORY.DMP"
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","LogEvent",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","MinidumpDir",0x00020002,"%SystemRoot%\Minidump"
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","Overwrite",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\CrashControl","SendAlert",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gendisk",Service,0x00000000,disk
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gendisk",ClassGUID,0x00000000,{4D36E967-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gencdrom",Service,0x00000000,cdrom
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\gencdrom",ClassGUID,0x00000000,{4D36E965-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_KEYBOARD",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_KEYBOARD",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0300",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0300",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0301",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0301",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0302",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0302",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0304",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0304",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0305",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0305",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0306",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0306",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0309",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0309",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030a",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030a",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030b",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp030b",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0320",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0320",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0343",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0343",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0344",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0344",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0345",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0345",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*CPQA0D7",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*CPQA0D7",ClassGUID,0x00000000,{4D36E96B-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_MOUSE",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\PS2_MOUSE",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f03",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f03",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0b",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0b",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0e",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f0e",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f12",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f12",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f13",Service,0x00000000,i8042prt
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\*pnp0f13",ClassGUID,0x00000000,{4D36E96F-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\pci#cc_0604",Service,0x00000000,pci
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\pci#cc_0604",ClassGUID,0x00000000,{4D36E97D-E325-11CE-BFC1-08002BE10318}
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\STORAGE#Volume",Service,0x00000000,volsnap
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase\STORAGE#Volume",ClassGUID,0x00000000,{71A27CDD-812A-11D0-BEC7-08002BE2092F}
HKLM,"SYSTEM\CurrentControlSet\Control\DeviceClasses",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","NtfsDisable8dot3NameCreation",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","Win31FileSystem",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\FileSystem","Win95TruncatedExtensions",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers\DCI","Timeout",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Control\GraphicsDrivers\UseNewKey",,0x00000012
;
; The following are GroupOrderList definitions
;
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Base",0x00030003,\
0e,00,00,00,0e,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,\
00,00,00,06,00,00,00,07,00,00,00,08,00,00,00,09,00,00,00,0a,00,00,00,0b,00,\
00,00,0c,00,00,00,0d,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Boot Bus Extender",0x00030001,\
05,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00,\
04,00,00,00,\
05,00,00,00
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Extended Base",0x00030001,\
@@:@@!n: 03,00,00,00,01,00,00,00,02,00,00,00,04,00,00,00
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Extended Base",0x00030001,\
@@:@n: 04,00,00,00,01,00,00,00,02,00,00,00,04,00,00,00,05,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Keyboard Class",0x00030003,\
01,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Keyboard Port",0x00030001,\
03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Ndis",0x00030003,\
09,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,00,00,00,06,\
00,00,00,07,00,00,00,08,00,00,00,09,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Network",0x00030003,\
03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Parallel arbitrator",0x00030003,\
01,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","PNP_TDI",0x00030003,\
02,00,00,00,01,00,00,00,02,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Pointer Class",0x00030003,\
01,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Pointer Port",0x00030003,\
03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Primary Disk",0x00030001,\
05,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00,04,00,00,00,05,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI CDROM Class",0x00030001,\
02,00,00,00,01,00,00,00,02,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI Class",0x00030001,\
03,00,00,00,01,00,00,00,02,00,00,00,03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SCSI Miniport",0x00030001,\
3f,00,00,00,\
00,01,00,00,\
01,01,00,00,\
19,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00,\
04,00,00,00,\
05,00,00,00,\
06,00,00,00,\
07,00,00,00,\
08,00,00,00,\
09,00,00,00,\
0a,00,00,00,\
0b,00,00,00,\
0c,00,00,00,\
0d,00,00,00,\
0e,00,00,00,\
0f,00,00,00,\
10,00,00,00,\
11,00,00,00,\
12,00,00,00,\
13,00,00,00,\
14,00,00,00,\
15,00,00,00,\
16,00,00,00,\
17,00,00,00,\
1a,00,00,00,\
18,00,00,00,\
1b,00,00,00,\
1c,00,00,00,\
1d,00,00,00,\
1e,00,00,00,\
1f,00,00,00,\
20,00,00,00,\
23,00,00,00,\
24,00,00,00,\
25,00,00,00,\
26,00,00,00,\
27,00,00,00,\
28,00,00,00,\
29,00,00,00,\
2a,00,00,00,\
2b,00,00,00,\
2c,00,00,00,\
2d,00,00,00,\
2e,00,00,00,\
2f,00,00,00,\
30,00,00,00,\
31,00,00,00,\
32,00,00,00,\
33,00,00,00,\
34,00,00,00,\
35,00,00,00,\
36,00,00,00,\
37,00,00,00,\
38,00,00,00,\
39,00,00,00,\
3a,00,00,00,\
3b,00,00,00,\
3c,00,00,00,\
3d,00,00,00,\
3e,00,00,00,\
3f,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","SpoolerGroup",0x00030003,\
02,00,00,00,01,00,00,00,02,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","System Bus Extender",0x00030001,\
0a,00,00,00,\
03,00,00,00,\
04,00,00,00,\
01,00,00,00,\
08,00,00,00,\
09,00,00,00,\
0a,00,00,00,\
0b,00,00,00,\
0c,00,00,00,\
0d,00,00,00,\
0e,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video",0x00030003,\
00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video Init",0x00030003,\
01,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Video Save",0x00030003,\
01,00,00,00,01,00,00,00
;
; GroupOrderList definitions for File System Filters
;
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Infrastructure",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter System",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Bottom",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Copy Protection",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Security Enhancer",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Open File",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Physical Quota Management",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Encryption",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Compression",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter HSM",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Cluster File System",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter System Recovery",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Quota Management",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Content Screener",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Continuous Backup",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Replication",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Anti-Virus",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Undelete",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Activity Monitor",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","FSFilter Top",0x00030003,\
03,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","Filter",0x00030003,\
06,00,00,00,\
01,00,00,00,\
02,00,00,00,\
03,00,00,00,\
04,00,00,00,\
05,00,00,00,\
06,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\IDConfigDB\Hardware Profiles\0000","FriendlyName",0x00000000,"%NEW_HARDWARE_PROFILE%"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000402",0x00000002,"bg"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000404",0x00000002,"ch"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000405",0x00000002,"cz"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000406",0x00000002,"dk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000407",0x00000002,"gr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000408",0x00000002,"gk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000409",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040A",0x00000002,"sp"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040B",0x00000002,"su"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040C",0x00000002,"fr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040E",0x00000002,"hu"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000040F",0x00000002,"is"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000410",0x00000002,"it"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000411",0x00000002,"jp"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000412",0x00000002,"ko"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000413",0x00000002,"nl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000414",0x00000002,"no"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000415",0x00000002,"pl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000416",0x00000002,"br"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000418",0x00000002,"ro"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000419",0x00000002,"ru"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041A",0x00000002,"yu"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041B",0x00000002,"sl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041C",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041D",0x00000002,"sv"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000041F",0x00000002,"tr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000422",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000423",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000424",0x00000002,"yu"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000425",0x00000000,"et"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000426",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000427",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000804",0x00000002,"ch"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000807",0x00000002,"sg"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000809",0x00000002,"uk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000080A",0x00000002,"la"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000080C",0x00000002,"be"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000813",0x00000002,"be"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000816",0x00000002,"po"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000C0C",0x00000002,"cf"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00000C1A",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00001009",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0000100C",0x00000002,"sf"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00001809",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010402",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010405",0x00000002,"cz"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010407",0x00000002,"gr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010408",0x00000000,"gk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010409",0x00000002,"dv"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001040A",0x00000002,"sp"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001040E",0x00000000,"hu"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010410",0x00000002,"it"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010415",0x00000000,"pl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010419",0x00000002,"ru"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001041B",0x00000002,"sl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","0001041F",0x00000002,"tr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010426",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010C0C",0x00000002,"cf"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00010C1A",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00020408",0x00000000,"gk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00020409",0x00000002,"us"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00030409",0x00000002,"usl"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00040409",0x00000002,"usr"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybCodes","00050408",0x00000002,"gk"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00000410",0x00000000,"141"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","0000041F",0x00000000,"179"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010408",0x00000000,"220"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010410",0x00000000,"142"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00010415",0x00000000,"214"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","0001041F",0x00000000,"440"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layout\DosKeybIDs","00020408",0x00000000,"319"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout File",0x00000002,"KBDUS.DLL"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout Text",0x00000002,"%US%"
HKLM,"System\CurrentControlSet\Control\Keyboard Layouts\00000409","Layout Display Name",,"@%SystemRoot%\system32\input.dll,-5000"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout File",0x00000002,"KBDDV.DLL"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout Id",0x00000002,"0002"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409","Layout Text",0x00000002,"%US_DVORAK%"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout File",0x00000002,"KBDUSX.DLL"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout Id",0x00000002,"0001"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409","Layout Text",0x00000002,"%US_INTERNATIONAL%"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout File",0x00000002,"KBDUSL.DLL"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout Id",0x00000002,"001A"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409","Layout Text",0x00000002,"%US_DVORAK_FOR_LEFT_HAND%"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout File",0x00000002,"KBDUSR.DLL"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout Id",0x00000002,"001B"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409","Layout Text",0x00000002,"%US_DVORAK_FOR_RIGHT_HAND%"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Authentication Packages",0x00010002,"msv1_0"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Bounds",0x00030003,\
00,30,00,00,00,20,00,00
@s:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Notification Packages",0x00010002,"RASSFM","KDCSVC","WDIGEST"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa","Security Packages",0x00010000,"kerberos","msv1_0","schannel","wdigest"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders","ProviderOrder",0x00010002,"Windows NT Access Provider"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider","ProviderPath",0x00020002,"%SystemRoot%\system32\ntmarta.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\Audit",,0x00000012
@w!p:HKLM,"System\CurrentControlSet\Control\Lsa\MSV1_0","Auth132",0x00000002,"IISSUBA"
@s:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0","Auth2",0x00000002,"RASSFM"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect",,0x00000010
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMName",0x00000000,"%SIDEWINDER_OEMNAME%"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMHardwareID",0x00000000,"Gameport\SideWinderGameController"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","OEMData",0x00000001,00,00,08,00,00,00,00,00
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\SideWinderAutoDetect","Flags1",0x00000001,01,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMName",0x00000000,"%NTGRIP_GPP%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMData",0x00000001, 20, 0, 0, 0, 0a, 0, 0, 0
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_0428&PID_4901","OEMHardwareID",0x00000000,"Gameport\VID_0428&PID_4901"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_044F&PID_A012","OEMData",0x00000001,41,00,00,10,08,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_001A","OEMData",0x00000001,00,00,08,10,08,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_001B","OEMData",0x00000001,03,00,08,10,08,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0026","OEMData",0x00000001,20,00,00,10,09,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0034","OEMData",0x00000001,00,00,08,10,08,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_0038","OEMData",0x00000001,03,00,08,10,08,00,00,00
@@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMData",0x00000001,40,08,00,00,04,00,00,00
@@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMName",0x00000000,"%TMT1_NOADAPT%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EA","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EA"
@@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMData",0x00000001,40,00,00,00,04,00,00,00
@@:@i:HKLM,"System\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMName",0x00000000,"%TMT1_ADAPT%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EB","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EB"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMName",0x00000000,"%PCPROPAD6%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMData",0x00000001,20,00,00,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EC","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EC"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMName",0x00000000,"%THRUSTMASTER_1%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMData",0x00000001,0a,00,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01ED","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01ED"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMName",0x00000000,"%THRUSTMASTER_TOPGUNPLATINUM%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMData",0x00000001,0b,80,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EE","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EE"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMName",0x00000000,"%LOGITECH_WINMANEXTREME%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMData",0x00000001,0a,00,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01EF","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01EF"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMName",0x00000000,"%HIDGAME_DFTDEV0%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMData",0x00000001,40,08,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F0","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F0"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMName",0x00000000,"%HIDGAME_DFTDEV1%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMData",0x00000001,06,00,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F1","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F1"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMName",0x00000000,"%HIDGAME_DFTDEV2%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMData",0x00000001,07,00,00,00,04,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F2","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F2"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMName",0x00000000,"%HIDGAME_DFTDEV3%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMData",0x00000001,06,00,00,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F3","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F3"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMName",0x00000000,"%HIDGAME_DFTDEV4%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMData",0x00000001,07,00,00,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F4","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F4"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMName",0x00000000,"%HIDGAME_DFTDEV5%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMData",0x00000001,06,00,04,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F5","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F5"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMName",0x00000000,"%HIDGAME_DFTDEV6%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMData",0x00000001,07,00,04,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F6","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F6"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMName",0x00000000,"%HIDGAME_DFTDEV7%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMData",0x00000001,16,00,04,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F7","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F7"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMName",0x00000000,"%HIDGAME_DFTDEV8%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMData",0x00000001,17,00,04,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F8","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F8"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMName",0x00000000,"%HIDGAME_DFTDEV9%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMData",0x00000001,20,00,00,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01F9","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01F9"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMName",0x00000000,"%HIDGAME_DFTDEVA%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMData",0x00000001,21,00,00,00,05,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FA","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FA"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMName",0x00000000,"%HIDGAME_DFTDEVB%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMData",0x00000001,00,00,00,00,06,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FB","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FB"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMName",0x00000000,"%HIDGAME_DFTDEVC%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMData",0x00000001,01,00,00,00,05,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FC","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FC"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMName",0x00000000,"%HIDGAME_DFTDEVD%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMData",0x00000001,0A,00,00,00,05,00,00,00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_045E&PID_01FD","OEMHardwareID",0x00000000,"Gameport\VID_045E&PID_01FD"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMName",0x00000000,"%LOGITECH_WGMEXTRMDGTLAUTO%"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMData",0x00000001,00,00,00,00,00,00,00,00
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_046D&PID_C01F","OEMHardwareID",0x00000000,"GamePort\WingManDigitalDevice"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMName",0x00000000,"%NTGRIP_BHK%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMData",0x00000001, 03, 00, 08, 00, 05, 00, 00, 00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3900","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3900"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMName",0x00000000,"%NTGRIP_XDC%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMData",0x00000001, 03, 00, 88, 01, 09, 00, 00, 00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3901","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3901"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMName",0x00000000,"%NTGRIP_ZEBRA%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMData",0x00000001, 03, 00, 08, 00, 0a, 00, 00, 00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_3905","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_3905"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMName",0x00000000,"%NTGRIP_XDGP%"
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMData",0x00000001, 03, 00, 88, 01, 0b, 00, 00, 00
@w:@i:HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM\VID_047D&PID_4903","OEMHardwareID",0x00000000,"Gameport\VID_047D&PID_4903"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\ANDRETTI.EXE34492A63000BEA00","DSAPPHACKID_MODIFYCSBFAILURE",0x00030003,\
1e,00,78,88
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\CARN2.EXE37EB70B500014000","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\CMMOVIE.EXE37D906F40000B000","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\DD2.EXE3288834400092BF0","DSAPPHACKID_DISABLEDEVICE",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\DD2H.EXE328882C500092DF8","DSAPPHACKID_DISABLEDEVICE",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFARTWC.EXE345FB52D00183C00","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWC.EXE35320039001AE400","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWIN.EXE325FC5F4000F2200","DSAPPHACKID_PADCURSORS",0x00030003,\
3C,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FIFAWIN.EXE32665883000F2200","DSAPPHACKID_PADCURSORS",0x00030003,\
3C,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FROGGER2.EXE39AFD5020008F000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\FURBY.EXE37CEF14100108000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\GAMEMAIN.EXE35C90A8A00223C00","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\HH2002.EXE3A9A1B9800506577","DSAPPHACKID_DISABLEDEVICE",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\HOCKEY.EXE32348F190017A800","DSAPPHACKID_PADCURSORS",0x00030003,\
3C,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\LEGACY.EXE347B57D00006D200","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
07,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\LIBRARY.EXE371B6D8C00116800","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MAGESLAY.EXE34146DD300112000","DSAPPHACKID_DISABLEDEVICE",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYK.EXE37489012001F3292","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYK.EXE37489012001F3292","DSAPPHACKID_DEVACCEL",0x00030003,\
0e,00,00,00,04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYP.EXE37489012001F328A","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYP.EXE37489012001F328A","DSAPPHACKID_DEVACCEL",0x00030003,\
0e,00,00,00,04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYT.EXE37489012001C293C","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\MICKEYT.EXE37489012001C293C","DSAPPHACKID_DEVACCEL",0x00030003,\
0e,00,00,00,04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NBAWIN.EXE3299791300186200","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NBAWIN.EXE343FC9AF001FF400","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS.EXE31C4F35C00105000","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
07,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS.EXE325328050011CC00","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
07,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS2SEA.EXE342709E1000EE200","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NFS2SEN.EXE34270ABA000DBC00","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NHL98.EXE340F99AF001CF800","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\NUKEPC.EXE3431F0600011515C","DSAPPHACKID_PADCURSORS",0x00030003,\
0a,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PARK.EXE36CB498E0010C000","DSAPPHACKID_CACHEPOSITIONS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PIT DROIDS.EXE37B9DC1C000BA02D","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\PIT DROIDS.EXE37B9DC1C000BA02D","DSAPPHACKID_DEVACCEL",0x00030003,\
0e,00,00,00,04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\SAW_GAME.EXE353D11FB0020CA00","DSAPPHACKID_DEVACCEL",0x00030003,\
0e,00,00,00,04,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TIME32.EXE33EE7C1E000D8400","DSAPPHACKID_RETURNWRITEPOS",0x00030003,\
07,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TP98_R.EXE3372E28300165C00","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TP99_R.EXE350265F8001AD000","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\TPLAYW.EXE31F3EE2D0011D600","DSAPPHACKID_PADCURSORS",0x00030003,\
28,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Application Compatibility\UNREAL.EXE355F016600006000","DSAPPHACKID_SMOOTHWRITEPOS",0x00030003,\
01,00,00,00,50,00,00,00
@*:;begin_sld_DirectSound
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "VxD", 0x00010003, 0x00000001
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "WDM", 0x00010003, 0x00000001
HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Device Presence", "Emulated", 0x00010003, 0x00000001
@s:HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Mixer Defaults", "Acceleration", 0x00010003, 0x0000000f
@w:HKLM,"SYSTEM\CurrentControlSet\Control\MediaResources\DirectSound\Mixer Defaults", "Acceleration", 0x00010003, 0x00000000
@*:;end_sld_DirectSound
HKLM,"SYSTEM\CurrentControlSet\Control\Network",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Network\Connections","ClassManagers",0x00010000,\
"{BA126AD3-2166-11D1-B1D0-00805FC1270E}",\
"{BA126AD5-2166-11D1-B1D0-00805FC1270E}",\
@*:; beacon client is installed by default on workstation
@s: "{BA126ADD-2166-11D1-B1D0-00805FC1270E}"
@w: "{BA126ADD-2166-11D1-B1D0-00805FC1270E}",\
@w: "{BA126AE0-2166-11D1-B1D0-00805FC1270E}"
HKLM,"SYSTEM\CurrentControlSet\Control\Network","FilterClasses",0x00010000,\
"scheduler",\
"loadbalance",\
"failover"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_ADAPTERS%"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"Net"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_CLIENT%"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetClient"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetService"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","",0x00000002,"%NETWORK_PROTOCOL%"
HKLM,"SYSTEM\CurrentControlSet\Control\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}","Class",0x00000002,"NetTrans"
HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\HwOrder",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\Order",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Nls",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10000",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10002",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10003",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10004",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10005",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10006",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10007",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10008",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10010",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10017",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10021",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10029",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10079",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10081",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","10082",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1026",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1047",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1140",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1141",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1142",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1143",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1144",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1145",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1146",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1147",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1148",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1149",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1250",0x00000000,"c_1250.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1251",0x00000000,"c_1251.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1252",0x00000000,"c_1252.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1253",0x00000000,"c_1253.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1254",0x00000000,"c_1254.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1255",0x00000000,"c_1255.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1256",0x00000000,"c_1256.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1257",0x00000000,"c_1257.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1258",0x00000000,"c_1258.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","1361",0x00000000,"c_1361.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20000",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20002",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20003",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20004",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20005",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20105",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20106",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20107",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20108",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20127",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20261",0x00000000,"c_20261.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20269",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20273",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20277",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20278",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20280",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20284",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20285",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20290",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20297",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20420",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20423",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20424",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20833",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20838",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20866",0x00000000,"c_20866.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20871",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20880",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20905",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20924",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20932",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20936",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","20949",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21025",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21027",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","21866",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28591",0x00000000,"c_28591.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28592",0x00000000,"c_28592.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28593",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28594",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28595",0x00000000,"c_28595.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28596",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28597",0x00000000,"c_28597.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28598",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28599",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","28605",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","37",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","38598",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","437",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","500",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","51949",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50220",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50221",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50222",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50225",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50227",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","50229",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","52936",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57002",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57003",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57004",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57005",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57006",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57007",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57008",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57009",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57010",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","57011",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","708",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","720",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","737",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","775",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","850",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","852",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","855",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","857",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","858",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","860",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","861",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","862",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","863",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","864",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","865",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","866",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","869",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","870",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","874",0x00000000,"c_874.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","875",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","932",0x00000000,"c_932.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","936",0x00000000,"c_936.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","949",0x00000000,"c_949.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage","950",0x00000000,"c_950.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","932",0x00000002,"F040-F9FC"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","936",0x00000002,"AAA1-AFFE,F8A1-FEFE,A140-A7A0"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","949",0x00000002,"C9A1-C9FE,FEA1-FEFE"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","950",0x00000002,"FA40-FEFE,8E40-A0FE,8140-8DFE,C6A1-C8FE"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\CodePage\EUDCCodeRange","Unicode",0x00000000,"E000-F8FF"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0401",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0402",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0403",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0404",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0405",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0406",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0407",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0408",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0409",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040b",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040d",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040e",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","040f",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0410",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0411",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0412",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0413",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0414",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0415",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0416",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0418",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0419",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041b",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041d",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041e",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","041f",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0420",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0421",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0422",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0423",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0424",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0425",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0426",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0427",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0429",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042b",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042d",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","042f",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0436",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0437",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0438",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0439",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","043e",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","043f",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0440",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0441",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0443",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0444",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0446",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0447",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0449",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044b",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044e",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044f",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0450",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0456",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0457",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","045a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0465",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0801",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0804",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0807",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0809",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","080a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","080c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0810",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0813",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0814",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0816",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","081a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","081d",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","082c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","083e",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0843",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c01",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c04",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c07",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c09",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c0a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c0c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0c1a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1001",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1004",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1007",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1009",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","100a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","100c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1401",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1404",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1407",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1409",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","140a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","140c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1801",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1809",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","180a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","180c",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c01",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c09",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","1c0a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2001",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2009",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","200a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2401",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2409",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","240a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2801",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2809",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","280a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c01",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c09",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","2c0a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3001",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3009",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","300a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3401",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3409",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","340a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3801",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","380a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3c01",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","3c0a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","4001",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","400a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","440a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","480a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","4c0a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","500a",0x00000000,"l_intl.nls"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","InstallLanguage",0x00000002,"%INSTALL_LANGUAGE%"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","1",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","2",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","3",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","4",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","5",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","6",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","7",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","8",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","9",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","b",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","c",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","d",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","e",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","f",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","10",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language Groups","11",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","(Default)",0x00000002,"00000409"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000401",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000402",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000403",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000404",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000405",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000406",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000407",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000408",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000409",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040b",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040d",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040e",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000040f",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000410",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000411",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000412",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000413",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000414",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000415",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000416",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000418",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000419",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041b",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041c",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041d",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041e",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000041f",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000420",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000421",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000422",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000423",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000424",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000425",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000426",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000427",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000429",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042b",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042c",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042d",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000042f",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000436",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000437",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000438",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000439",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000043e",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000043f",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000440",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000441",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000443",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000444",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000446",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000447",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000449",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044b",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044e",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044f",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000450",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000456",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000457",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000045a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000465",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000801",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000804",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000807",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000809",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000080a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000080c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000810",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000813",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000814",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000816",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000081a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000081d",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000082c",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000083e",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000843",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c01",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c04",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c07",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c09",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c0a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c0c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000c1a",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001004",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001007",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001009",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000100a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000100c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001401",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001404",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001407",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001409",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000140a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000140c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001801",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001809",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000180a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000180c",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c01",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c09",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00001c0a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002009",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000200a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002401",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002409",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000240a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002801",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002809",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000280a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c01",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c09",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00002c0a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003009",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000300a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003401",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003409",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000340a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003801",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000380a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003c01",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00003c0a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00004001",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000400a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000440a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000480a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00004c0a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000500a",0x00000002,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010407",0x00000000,"1"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","0001040e",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010437",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00020804",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00021004",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00021404",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00030404",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\HP","Description",0x00000002,%HP_DESCRIPTOR%
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\HP","Path",0x00020002,"%SystemRoot%\system32\mll_hp.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\MTF","Description",0x00000002,%MTF_DESCRIPTOR%
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\MTF","Path",0x00020002,"%SystemRoot%\system32\mll_mtf.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\QIC","Description",0x00000002,%QIC_DESCRIPTOR%
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\QIC","Path",0x00020002,"%SystemRoot%\system32\mll_qic.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{441ee000-4342-11d5-a184-00c04f60524d}",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{441ee001-4342-11d5-a184-00c04f60524d}",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{c4ca1000-2ddc-11d5-a17a-00c04f60524d}",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{c8ebdfb0-b510-11d0-80e5-00a0c92542e3}",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{9d7debbc-c85d-11d1-9eb4-006008c3a19a}",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{eeaf37d0-1963-47c4-aa48-72476db7cf49}",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\PnP\BusInformation","{f74e73eb-9ac5-45eb-be4d-772cc71ddfb3}",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\Print","MajorVersion",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Control\Print","MinorVersion",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Print","PriorityClass",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0","Directory",0x00000002,"WIN40"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0\Drivers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows 4.0\Print Processors",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64","Directory",0x00000002,"IA64"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Drivers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Print Processors",,0x00000012
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows IA64\Print Processors\winprint","Driver",0x00000000,"localspl.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP","Directory",0x00000002,"W32ALPHA"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP\Drivers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT Alpha_AXP\Print Processors",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86","Directory",0x00000002,"W32X86"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Drivers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Print Processors",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Control\Print\Environments\Windows NT x86\Print Processors\winprint","Driver",0x00000000,"localspl.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\BJ Language Monitor","Driver",0x00000002,"cnbjmon.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Local Port","Driver",0x00000000,"localspl.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\PJL Language Monitor","Driver",0x00000002,"pjlmon.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Standard TCP/IP Port","Driver",0x00000000,"tcpmon.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\USB Monitor","Driver",0x00000000,"usbmon.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Printers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers","Order",0x00010002,"LanMan Print Services", "Internet Print Provider"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\LanMan Print Services","DisplayName",0x00000002,"%LANMAN_PRINT_SERVICES%"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\LanMan Print Services","Name",0x00000002,"win32spl.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\Internet Print Provider","DisplayName",0x00000002,"%HTTP_PRINT_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers\Internet Print Provider","Name",0x00000002,"inetpp.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\PriorityControl","Win32PrioritySeparation",0x00010003,2
@w:@@:HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductType",0x00000002,"WinNt"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductType",0x00000002,"ServerNT"
HKLM,"SYSTEM\CurrentControlSet\Control\ProductOptions","ProductSuite",0x00010002,""
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskCOMPAQPCST32430N________","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskMICROP__3243-19MZ__Q4D__","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskMICROP__4421-07___0502SJ","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskSEAGATE_ST34502LC_______","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\DiskIBM_____DNES-309170W____","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\CDROMYAMAHACRW4416S__________","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\CDROMCyberDrvSCSI_CD-ROM_120S","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\CdRomhp______CD-Writer+_M820_","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\WormYAMAHA__CDR100__________","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\WormYAMAHA__CDR102__________","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ProcessorESH-SHVSVA_HSBP_M10_____","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ChangerJVC_____CD-CHG_MC-1600__","OneLun",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_2400S_____","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_2200______","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_1200S_____","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_1220S_____","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_610S______","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerUMAX____Astra_600S______","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerLinoHellSAPHIR3_________","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\Scanner________Scanner_________","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\Scanner________Scanner_600_____","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerMICROTEKScanMakerIII____","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\ScsiPort\SpecialTargetList\ScannerMICROTEKScanMakerIIsp___","SetLunInCdb",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg","Description",0x00000002,"%REGISTRY_SERVER%"
HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg\AllowedPaths","Machine",0x00010002,\
"System\CurrentControlSet\Control\Print\Printers",\
"System\CurrentControlSet\Services\Eventlog",\
"Software\Microsoft\OLAP Server",\
"Software\Microsoft\Windows NT\CurrentVersion\Print",\
"Software\Microsoft\Windows NT\CurrentVersion\Windows"
HKLM,"SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg\AllowedExactPaths","Machine",0x00010002,\
"System\CurrentControlSet\Control\ProductOptions",\
"System\CurrentControlSet\Control\Server Applications",\
"Software\Microsoft\Windows NT\CurrentVersion"
HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders\SaslProfiles",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders\SaslProfiles","GSSAPI",0x00000002,"Kerberos"
HKLM,"SYSTEM\CurrentControlSet\Control\SecurityProviders","SecurityProviders",0x00000002,"schannel.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\Server Applications","{E26D02A1-4C1F-11D1-9AA1-00C04FC3357A}",0x00000002,"Telephony"
HKLM,"SYSTEM\CurrentControlSet\Control\ServiceGroupOrder","List",0x00010000,\
"System Reserved",\
"Boot Bus Extender",\
"System Bus Extender",\
"SCSI miniport",\
"Port",\
"Primary Disk",\
"SCSI Class",\
"SCSI CDROM Class",\
"FSFilter Infrastructure",\
"FSFilter System",\
"FSFilter Bottom",\
"FSFilter Copy Protection",\
"FSFilter Security Enhancer",\
"FSFilter Open File",\
"FSFilter Physical Quota Management",\
"FSFilter Encryption",\
"FSFilter Compression",\
"FSFilter HSM",\
"FSFilter Cluster File System",\
"FSFilter System Recovery",\
"FSFilter Quota Management",\
"FSFilter Content Screener",\
"FSFilter Continuous Backup",\
"FSFilter Replication",\
"FSFilter Anti-Virus",\
"FSFilter Undelete",\
"FSFilter Activity Monitor",\
"FSFilter Top",\
"Filter",\
"Boot File System",\
"Base",\
"Pointer Port",\
"Keyboard Port",\
"Pointer Class",\
"Keyboard Class",\
"Video Init",\
"Video",\
"Video Save",\
"File System",\
"Event Log",\
"Streams Drivers",\
"NDIS Wrapper",\
"COM Infrastructure",\
"UIGroup",\
@w:@@: "MS_WindowsLocalValidation",\
"PlugPlay",\
"PNP_TDI",\
"NDIS",\
"TDI",\
"NetBIOSGroup",\
"ShellSvcGroup",\
"SchedulerGroup",\
@w:@@: "SpoolerGroup",\
"AudioGroup",\
"SmartCardGroup",\
"NetworkProvider",\
"MS_WindowsRemoteValidation",\
@s:@@: "MS_WindowsLocalValidation",\
@s:@@: "SpoolerGroup",\
"NetDDEGroup",\
"Parallel arbitrator",\
"Extended Base",\
"PCI Configuration"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","BootExecute",0x00010002,"autocheck autochk *"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","CriticalSectionTimeout",0x00010003,2592000
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableCMC",0x00010003,1
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableCPE",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableMCA",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","EnableMCE",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ExcludeFromKnownDlls",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","GlobalFlag",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapDeCommitFreeBlockThreshold",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapDeCommitTotalFreeThreshold",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapSegmentCommit",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","HeapSegmentReserve",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ObjectDirectories",0x00010002,"\Windows","\RPC Control"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ProtectionMode",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager","ResourceTimeoutCount",0x00010003,648000
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache",,0x00000010
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500\1","Add1",0x00030003,\
02,15,40,a0,10,1e,b8,23,00,8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\CWD\ff060102423da0000407108e0500\1","Change1",0x00030003,\
01,1d,50,48,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,e7,\
57,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI01\ff06010242935100040720730500",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI01\ff06010242935100040720730500\1","Change1",0x00030003,\
01,49,D0,18,22,45,55,8B,EC,1E,B4,43,32,C0,C5,56,06,CD,21,1f,72,0A,C4,5E,0A,\
26,89,0F,33,C0,EB,04,50,E8,FA,02,5D,4D,CB,55,8B,EC,1E,B8,00,43,C5,56,06,CD,21,\
1F,72,0D,C4,5E,0A,80,E1,1F,26,89,0F,33,C0,EB,04,50,E8,FA,02,5D,CB
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02\ff06010242468300040790c80400",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBI02\ff06010242468300040790c80400\1","Change1",0x00030003,\
01,51,12,46,26,45,55,8B,EC,56,57,1e,b4,43,32,c0,c5,56,06,cd,21,1f,72,0a,c4,\
5e,0a,26,89,0f,33,c0,eb,04,50,e8,4b,03,5f,5e,5d,4d,cb,45,55,8b,ec,1e,b4,43,32,\
c0,c5,56,06,cd,21,1f,72,0a,c4,5e,0a,80,e1,1f,26,89,0f,33,c0,eb,04,50,e8,4b,03,5d,4d,cb,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN\ff0601024cab7b000407b0ea0400",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTBIN\ff0601024cab7b000407b0ea0400\2","Change1",0x00030003,\
01,15,f0,3b,08,3d,03,5f,74,03,e9,06,00,3d,03,5f,90,90,e9,06,00
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR\ff060102c47b1f00040750db0100",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\INSTSCR\ff060102c47b1f00040750db0100\e","Change1",0x00030003,\
01,13,84,1e,07,45,55,8b,ec,68,00,20,45,55,8b,ec,68,02,20
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT\ff060102424f3f000306706600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\LTSPRINT\ff060102424f3f000306706600\1","Change1",0x00030003,\
01,0b,9c,1c,03,3d,00,01,3d,00,06
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600\1","Add1",0x00030003,\
02,15,40,ab,10,1e,b8,23,00,8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\MYST\ff060102423bab000407102e0600\1","Change1",0x00030003,\
01,1d,50,49,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,e7,\
61,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST\ff06010242410f000306801500",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\OUTPOST\ff06010242410f000306801500\1","Change1",0x00030003,\
01,0f,09,0a,05,9a,73,05,ff,01,b8,03,0a,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40\ff060102420032000407401b0100",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\PALED40\ff060102420032000407401b0100\1","Change1",0x00030003,\
01,07,b7,21,01,d8,0c
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025642ea00040750550700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025642ea00040750550700\3","Change1",0x00030003,\
01,1D,b7,41,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256e2e400040750600700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256e2e400040750600700\3","Change1",0x00030003,\
01,1D,FD,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800\1","Change1",0x00030003,\
01,1D,65,e5,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256eae500040710640700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256eae500040710640700\3","Change1",0x00030003,\
01,1D,fd,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256c1ef00040770fb0600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256c1ef00040770fb0600\3","Change1",0x00030003,\
01,1D,fd,38,0c,8b,46,f0,8b,56,f2,2b,46,f4,1b,56,f6,b8,50,01,ba,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256b1dd00040760ef0b00",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256b1dd00040760ef0b00\3","Change1",0x00030003,\
01,15,2c,3b,08,66,8b,46,f0,66,2b,46,f4,66,b8,50,01,00,00,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024211e100040750e50700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024211e100040750e50700\1","Change1",0x00030001,\
01,1D,3f,e0,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700\3","Change1",0x00030003,\
01,1D,f3,45,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256faef00040710c50600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff06010256faef00040710c50600\3","Change1",0x00030003,\
01,1D,b7,33,0c,8b,46,f0,8b,56,f2,2b,46,f4,1b,56,f6,b8,50,01,ba,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102565ce5000407d0600700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102565ce5000407d0600700\3","Change1",0x00030003,\
01,1D,fd,34,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025621ef000407f07a0700\3","Change1",0x00030003,\
01,1D,f3,45,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102564ee6000407b0670700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102564ee6000407b0670700\3","Change1",0x00030003,\
01,15,7c,35,08,66,8b,46,fc,66,2b,46,f0,66,b8,50,01,00,00,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601024237e6000407d00e0800\1","Change1",0x00030003,\
01,1D,65,e5,0c,8b,46,e8,8b,56,ea,2b,46,fa,1b,56,fc,b8,50,01,ba,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102428203000306401600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff060102428203000306401600\1","Change1",0x00030003,\
01,0f,28,03,05,33,ed,55,9a,13,b8,00,4c,cd,21
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025674e6000407704d0700",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP\ff0601025674e6000407704d0700\3","Change1",0x00030003,\
01,1d,cf,3d,0c,8b,4e,f0,8b,5e,f2,2b,4e,f4,1b,5e,f6,b9,50,01,bb,00,00,90,90,\
90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16\ff0601024cd875000407a0db0100",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\SETUP16\ff0601024cd875000407a0db0100\2","Change1",0x00030001,\
01,23,17,42,0f,8b,c8,8b,d0,8b,5e,0e,2a,e4,89,07,8a,cd,2a,ed,b9,0a,00,ba,03,0a,\
8b,5e,0e,2a,e4,90,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600\1","Change1",0x00030003,\
01,1d,95,44,0c,55,8b,ec,b8,00,00,9c,59,81,e1,00,02,55,8b,ec,b8,00,00,e8,67,\
56,90,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\USA\ff06010242059b00040710780600\1","Change2",0x00030003,\
01,25,05,9b,10,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,1e,b8,23,00,\
8e,d8,8b,0e,14,07,81,e1,00,02,1f,c3
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB\ff060102ec353f00040780c81300",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB\ff060102ec353f00040780c81300\12","Change1",0x00030003,\
01,11,1b,03,06,81,3e,ba,31,34,03,81,3e,ba,31,09,03
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016\ff0702021401ee3e000407d0460e00",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\VB40016\ff0702021401ee3e000407d0460e00\16","Change1",0x00030003,\
01,11,6d,2a,06,81,3e,6e,36,34,03,81,3e,6e,36,09,03
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001\ff0601024cf4ef000407604e0100",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\WISE0001\ff0601024cf4ef000407604e0100\2","Change1",0x00030003,\
01,0f,8e,00,05,9a,4b,00,0f,02,b8,0c,29,90,90
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","AUX",0x00000002,"\DosDevices\COM1"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","MAILSLOT",0x00000002,"\Device\MailSlot"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","NUL",0x00000002,"\Device\Null"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","PIPE",0x00000002,"\Device\NamedPipe"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","PRN",0x00000002,"\DosDevices\LPT1"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices","UNC",0x00000002,"\Device\Mup"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","ComSpec",0x00020002,"%SystemRoot%\system32\cmd.exe"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","Path",0x00020002,"%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","windir",0x00020002,"%SystemRoot%"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Executive","AdditionalCriticalWorkerThreads",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Executive","AdditionalDelayedWorkerThreads",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\FileRenameOperations",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","advapi32",0x00000000,"advapi32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","comdlg32",0x00000000,"comdlg32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","DllDirectory",0x00020000,"%SystemRoot%\system32"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","DllDirectory32",0x00020000,"%SystemRoot%\syswow64"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","gdi32",0x00000000,"gdi32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","imagehlp",0x00000000,"imagehlp.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","kernel32",0x00000000,"kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","lz32",0x00000000,"lz32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","ole32",0x00000000,"ole32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","oleaut32",0x00000000,"oleaut32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olecli32",0x00000000,"olecli32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olecnv32",0x00000000,"olecnv32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olesvr32",0x00000000,"olesvr32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","olethk32",0x00000000,"olethk32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","rpcrt4",0x00000000,"rpcrt4.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","shell32",0x00000000,"shell32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","url",0x00000000,"url.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","urlmon",0x00000000,"urlmon.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","user32",0x00000000,"user32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","version",0x00000000,"version.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","wininet",0x00000000,"wininet.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs","wldap32",0x00000000,"wldap32.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","ClearPageFileAtShutdown",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","DisablePagingExecutive",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","LargeSystemCache",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","NonPagedPoolQuota",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","NonPagedPoolSize",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","PagedPoolQuota",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","PagedPoolSize",0x00010003,0
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","AllocationPreference",0x00010003,0x100000
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","SecondLevelDataCache",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management","SystemPages",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Debug",0x00020002,""
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Kmode",0x00020000,"%SystemRoot%\system32\win32k.sys"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Optional",0x00010002,"Posix"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Posix",0x00020002,"%SystemRoot%\system32\psxss.exe"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Required",0x00010002,"Debug","Windows"
#ifdef _WIN64
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Windows",0x00020000,\
"%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,4608,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"
#else
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Windows",0x00020000,\
"%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"
#endif
HKLM,"SYSTEM\CurrentControlSet\Control\Setup",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","Eisa",0x00000000,"PCFlat"
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","Isa",0x00000000,"PCFlat"
; HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","MCA",0x00000000,"PCFlat"
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCFlat",0x000a0001,\
a8,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,01,00,00,00,01,00,01,00,24,00,00,00,00,01,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,05,00,00,00,00,00,00,ff,ff,00,00,00,00,00,00,08,01,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,40,01,00,00,00,00,00,00,7f,01,00,00,\
00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,02,00,00,00,\
00,00,00,ff,02,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,03,00,00,00,00,00,00,6f,03,00,00,00,00,00,00,08,01,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,78,03,00,00,00,00,00,00,7a,03,00,00,00,00,00,00,\
08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,e8,02,00,00,00,00,00,00,ff,\
02,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,f0,01,\
00,00,00,00,00,00,f8,01,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,b0,03,00,00,00,00,00,00,cf,03,00,00,00,00,00,00,08,01,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,e8,03,00,00,00,00,00,00,ff,03,00,00,00,\
00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,ce,01,00,00,00,00,\
00,00,cf,01,00,00,00,00,00,00,08,01,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,01,00,00,00,00,00,00,ff,03,00,00,00,00,00,00,00,02,00,00,00,00,00,00,\
0f,00,00,00,0f,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,\
02,00,00,00,00,00,00,0d,00,00,00,0d,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,08,02,00,00,00,00,00,00,0c,00,00,00,0c,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,09,00,00,00,\
09,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,\
00,00,00,08,00,00,00,08,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,08,02,00,00,00,00,00,00,07,00,00,00,07,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0b,00,00,00,0b,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0a,\
00,00,00,0a,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,\
00,00,00,00,00,00,02,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,08,02,00,00,00,00,00,00,05,00,00,00,05,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,03,00,00,00,03,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,\
00,00,04,00,00,00,04,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,08,02,00,00,00,00,00,00,0e,00,00,00,0e,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,06,00,00,00,06,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,00,00,00,00,00,0c,00,\
00,00,0c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,02,00,\
00,00,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,08,02,00,00,00,00,00,00,00,00,00,00,0f,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,03,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,10,00,00,00,00,00,ff,ff,af,ff,00,00,00,00,08,03,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,0f,00,00,00,00,00,ff,ff,0f,00,00,00,00,00,\
08,03,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,08,00,00,00,00,00,ff,\
ff,0b,00,00,00,00,00,08,03,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
08,00,00,00,00,00,ff,ff,0f,00,00,00,00,00,08,03,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,08,00,00,00,00,00,ff,ff,f7,ff,00,00,00,00,00,04,00,00,\
00,00,00,00,06,00,00,00,0f,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,08,04,00,00,00,00,00,00,03,00,00,00,04,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,08,04,00,00,00,00,00,00,00,00,00,00,0f,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
@*: ;
@*: ; The following is a resource requirements list. Starting three lines into this are real live
@*: ; IO Resource descriptors. Spaces seperate the fields and yes, it IS little endian!
@*: ;
@*: ; The format of an IO resource descriptor is-
@*: ;
@*: ; v------------------------------------------------------Option
@*: ; | v--------------------------------------------------Type
@*: ; | v----------------------------------------------ShareDisposition
@*: ; | v------------------------------------------Spare1
@*: ; | v-----------------------------------Flags
@*: ; | v----------------------------Spare2
@*: ; | v---------------Length
@*: ; | v--Alignment
@*: ; | Minumum Address-------v
@*: ; | Maximum Address--------------------------------v
@*: ;
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCI",0x000a0001,\
e8,08,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,01,00,00,00,01,00,01,00,46,00,00,00,\
00, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,fc,00,00,00,00,00,00, ff,fc,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f8,00,00,00,00,00,00, ff,f8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f4,00,00,00,00,00,00, ff,f4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,f0,00,00,00,00,00,00, ff,f0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,ec,00,00,00,00,00,00, ff,ec,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e8,00,00,00,00,00,00, ff,e8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e4,00,00,00,00,00,00, ff,e4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,e0,00,00,00,00,00,00, ff,e0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,dc,00,00,00,00,00,00, ff,dc,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d8,00,00,00,00,00,00, ff,d8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d4,00,00,00,00,00,00, ff,d4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,d0,00,00,00,00,00,00, ff,d0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,cc,00,00,00,00,00,00, ff,cc,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c8,00,00,00,00,00,00, ff,c8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c4,00,00,00,00,00,00, ff,c4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,c0,00,00,00,00,00,00, ff,c0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,bc,00,00,00,00,00,00, ff,bc,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b8,00,00,00,00,00,00, ff,b8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b4,00,00,00,00,00,00, ff,b4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,b0,00,00,00,00,00,00, ff,b0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,ac,00,00,00,00,00,00, ff,ac,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a8,00,00,00,00,00,00, ff,a8,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a4,00,00,00,00,00,00, ff,a4,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,a0,00,00,00,00,00,00, ff,a0,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,9c,00,00,00,00,00,00, ff,9c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,98,00,00,00,00,00,00, ff,98,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,94,00,00,00,00,00,00, ff,94,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,90,00,00,00,00,00,00, ff,90,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,8c,00,00,00,00,00,00, ff,8c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,88,00,00,00,00,00,00, ff,88,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,84,00,00,00,00,00,00, ff,84,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,80,00,00,00,00,00,00, ff,80,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,7c,00,00,00,00,00,00, ff,7c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,78,00,00,00,00,00,00, ff,78,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,74,00,00,00,00,00,00, ff,74,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,70,00,00,00,00,00,00, ff,70,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,6c,00,00,00,00,00,00, ff,6c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,68,00,00,00,00,00,00, ff,68,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,64,00,00,00,00,00,00, ff,64,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,60,00,00,00,00,00,00, ff,60,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,5c,00,00,00,00,00,00, ff,5c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,58,00,00,00,00,00,00, ff,58,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,54,00,00,00,00,00,00, ff,54,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,50,00,00,00,00,00,00, ff,50,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,4c,00,00,00,00,00,00, ff,4c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,48,00,00,00,00,00,00, ff,48,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,44,00,00,00,00,00,00, ff,44,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,40,00,00,00,00,00,00, ff,40,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,3c,00,00,00,00,00,00, ff,3c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,38,00,00,00,00,00,00, ff,38,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,34,00,00,00,00,00,00, ff,34,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,30,00,00,00,00,00,00, ff,30,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,2c,00,00,00,00,00,00, ff,2c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,28,00,00,00,00,00,00, ff,28,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,24,00,00,00,00,00,00, ff,24,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,20,00,00,00,00,00,00, ff,20,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,1c,00,00,00,00,00,00, ff,1c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,18,00,00,00,00,00,00, ff,18,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,14,00,00,00,00,00,00, ff,14,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,10,00,00,00,00,00,00, ff,10,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,0c,00,00,00,00,00,00, ff,0c,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,08,00,00,00,00,00,00, ff,08,00,00,00,00,00,00,\
08, 01, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,05,00,00,00,00,00,00, ff,ff,ff,ff,00,00,00,00,\
00, 02, 00, 00, 00,00, 00,00, 00,00,00,00, ff,ff,ff,ff, 00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,\
00, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,10,00,00,00,00,00, ff,ff,af,ff,00,00,00,00,\
08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,0f,00,00,00,00,00, ff,ff,0f,00,00,00,00,00,\
08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,0b,00,00,00,00,00,\
08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,0f,00,00,00,00,00,\
08, 03, 00, 00, 00,00, 00,00, 00,00,00,00, 00,00,00,00, 00,00,08,00,00,00,00,00, ff,ff,f7,ff,00,00,00,00,\
00, 04, 00, 00, 00,00, 00,00, 06,00,00,00, ff,00,00,00, 00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\AssignmentOrdering","PCMCIA",0x00000000,"PCFlat"
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","CBus",0x00030003,\
09,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Eisa",0x00030003,\
02,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Internal",0x00030003,\
00,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","Isa",0x00030003,\
01,00,00,00,00,00,00,00
; HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MCA",0x00030003,\
; 03,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MPI",0x00030003,\
0a,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","MPSA",0x00030003,\
0b,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","NuBus",0x00030003,\
07,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","PCI",0x00030003,\
05,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","PCMCIA",0x00030003,\
08,00,00,00,01,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","TurboChannel",0x00030003,\
04,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\BusValues","VME",0x00030003,\
06,00,00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\ReservedResources","Isa",0x00080001,\
01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00,28,00,00,00,01,01,00,00,00,\
00,00,00,00,00,00,00,00,01,00,00,01,03,00,00,e8,42,00,00,00,00,00,00,08,00,\
00,00,01,03,00,00,e8,4a,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,82,00,\
00,00,00,00,00,08,00,00,00,01,03,00,00,e8,86,00,00,00,00,00,00,08,00,00,00,\
01,03,00,00,e8,8a,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,8e,00,00,00,\
00,00,00,08,00,00,00,01,03,00,00,e8,92,00,00,00,00,00,00,08,00,00,00,01,03,\
00,00,e8,96,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,9a,00,00,00,00,00,\
00,08,00,00,00,01,03,00,00,e8,9e,00,00,00,00,00,00,08,00,00,00,01,03,00,00,\
e8,a2,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,a6,00,00,00,00,00,00,08,\
00,00,00,01,03,00,00,e8,aa,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ae,\
00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,b6,00,00,00,00,00,00,08,00,00,\
00,01,03,00,00,e8,ba,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,be,00,00,\
00,00,00,00,08,00,00,00,01,03,00,00,e8,c2,00,00,00,00,00,00,08,00,00,00,01,\
03,00,00,e8,c6,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ca,00,00,00,00,\
00,00,08,00,00,00,01,03,00,00,e8,ce,00,00,00,00,00,00,08,00,00,00,01,03,00,\
00,e8,d2,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,d6,00,00,00,00,00,00,\
08,00,00,00,01,03,00,00,e8,da,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,\
de,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,e2,00,00,00,00,00,00,08,00,\
00,00,01,03,00,00,e8,e6,00,00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ea,00,\
00,00,00,00,00,08,00,00,00,01,03,00,00,e8,ee,00,00,00,00,00,00,08,00,00,00,\
01,03,00,00,ee,f6,00,00,00,00,00,00,02,00,00,00,01,03,00,00,ee,fa,00,00,00,\
00,00,00,02,00,00,00,01,03,00,00,ee,fe,00,00,00,00,00,00,02,00,00,00,02,03,\
00,00,03,00,00,00,03,00,00,00,ff,ff,ff,ff,02,03,00,00,04,00,00,00,04,00,00,\
00,ff,ff,ff,ff,02,03,00,00,0e,00,00,00,0e,00,00,00,ff,ff,ff,ff,02,03,00,00,\
06,00,00,00,06,00,00,00,ff,ff,ff,ff,02,03,00,00,0c,00,00,00,0c,00,00,00,ff,\
ff,ff,ff,02,03,00,00,01,00,00,00,01,00,00,00,ff,ff,ff,ff,03,03,00,00,ff,ff,\
bf,ff,00,00,00,00,00,00,40,00
HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\disc","VgaCompatible",0x00000000,"\Device\Video0"
HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\disc","\Device\Video0",0x00000000,"\REGISTRY\Machine\System\CurrentControlSet\Services\TSDDD\Device0"
HKLM,"SYSTEM\CurrentControlSet\Control\Terminal Server\InputDevices"
HKLM,"SYSTEM\CurrentControlSet\Control\TimeZoneInformation","Bias",0x00010003,%TIMEZONEINFO_BIAS%
HKLM,"SYSTEM\CurrentControlSet\Control\Update","UpdateMode",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\VirtualDeviceDrivers","VDD",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog\Display","DisableBugcheck",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\Watchdog\Display","EaRecovery",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","Directory",0x00020002,"%SystemRoot%"
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","ErrorMode",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","NoInteractiveServices",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","SystemDirectory",0x00020002,"%SystemRoot%\system32"
;
; Disk performance class must be made available to Everyone. So this results
; in a DACL that allows Everyone WMIGUID_QUERY and the administrators,
; local system, local service and network service all access
;
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","BDD865D1-D7C1-11d0-A501-00A0C9062910",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,70,00,05,00,00,00,00,00,18,00,\
ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,01,00,00,00,01,01,00,00,\
00,00,00,01,00,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,\
ff,0f,12,00,01,01,00,00,00,00,00,05,14,00,00,00,\
00,00,14,00,ff,0f,12,00,01,01,00,00,00,00,00,05,\
12,00,00,00
;
; USB overcurrent notification guid must be made available so explorer can
; receive the notifications. This DACL allows Everyone, the administrators,
; local system, local service and network service all access
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","4E623B20-CB14-11D1-B331-00A0C959BBD2",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,70,00,05,00,00,00,00,00,18,00,\
ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,17,00,10,00,01,01,00,00,\
00,00,00,01,00,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,\
ff,0f,12,00,01,01,00,00,00,00,00,05,14,00,00,00,\
00,00,14,00,ff,0f,12,00,01,01,00,00,00,00,00,05,\
12,00,00,00
;
; Establish a security descriptor for the Scsi Info Exceptions guid
; that will only allow DELETE, READ_CONTROL, WRITE_DAC, WRITE_OWNER,
; WMIGUID_QUERY, WMIGUID_SET to the administrators group
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","1101D829-167B-4ebf-ACAE-28CAB7C34802",0x00030003,\
01,00,04,80,34,00,00,00,44,00,00,00,00,00,00,00,14,00,00,00,02,00,20,00,\
01,00,00,00,00,00,18,00,03,00,0F,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00
;
; Establish a security descriptor for the Failure Prediction Function guid
; that will only allow DELETE, READ_CONTROL, WRITE_DAC, WRITE_OWNER,
; WMIGUID_QUERY, WMIGUID_EXECUTE to the administrators group
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","78ebc105-4cf9-11d2-ba4a-00a0c9062910",0x00030003,\
01,00,04,80,34,00,00,00,44,00,00,00,00,00,00,00,14,00,00,00,02,00,20,00,\
01,00,00,00,00,00,18,00,11,00,0F,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00
;
; Dont let non-admins open Traffic Control via WMI.
; Set security on the following GUIDS
; GUID_QOS_BESTEFFORT_BANDWIDTH, GUID_QOS_STATISTICS_BUFFER, GUID_QOS_FLOW_MODE,
; GUID_QOS_NON_BESTEFFORT_LIMIT, GUID_QOS_MAX_OUTSTANDING_SENDS
; GUID_QOS_TIMER_RESOLUTION
;
; 1. GUID_QOS_BESTEFFORT_BANDWIDTH
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","ed885290-40ec-11d1-2c91-00aa00574915",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; 2. GUID_QOS_STATISTICS_BUFFER
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","bb2c0980-e900-11d1-b07e-0080c71382bf",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; 3. GUID_QOS_FLOW_MODE
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5c82290a-515a-11d2-8e58-00c04fc9bfcb",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; 4. GUID_QOS_NON_BESTEFFORT_LIMIT
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","185c44e0-40ed-11d1-2c91-00aa00574915",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; 5. GUID_QOS_MAX_OUTSTANDING_SENDS
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","161ffa86-6120-11d1-2c91-00aa00574915",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; 6. GUID_QOS_TIMER_RESOLUTION
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","ba10cc88-f13e-11d2-be1b-00a0c99ee63b",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,03,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,05,00,02,00,\
01,01,00,00,00,00,00,01,00,00,00,00,00,00,00,00,\
35,1d,f9,77,b0,f5,06,00,01,00,00,00,00,00,07,00,\
fc,b5,d5,77,d0,4d,d4,77,ff,ff,ff,ff,00,fa,06,00,\
00,0f,dc,77,03,00,00,00,0a,bd,db,77,90,f9,06,00,\
9f,0e,dc,77,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,27,07,00,01,00,00,00,00,00,00,00,\
34,f9,06,00,b0,ff,06,00,fc,f9,06,00,58,81,fb,77,\
a8,66,f8,77,ff,ff,ff,ff,0c,fa,06,00,0a,f8,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,08,fa,06,00,\
00,00,00,00,7f,0e,f9,77,00,00,07,00,a8,46,07,00,\
00,00,00,00,e4,f9,06,00,88,06,07,00,98,fa,06,00,\
58,81,fb,77,98,0e,f9,77,ff,ff,ff,ff,a8,fa,06,00,\
9f,99,fc,77,48,07,07,00,b0,46,07,00,e8,fa,06,00,\
40,fb,06,00,00,00,00,00,78,01,07,00,c8,63,07,00,\
78,01,07,00,c0,63,07,00,20,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,57,1a,db,77,38,cc,db,77,ff,ff,ff,ff,\
00,00,07,00,81,00,00,00,01,27,07,00,24,0b,f9,77,\
c8,46,07,00,01,00,00,00,18,00,00,00,f0,f9,06,00,\
00,00,00,00,b8,fa,06,00,00,00,07,00,04,00,00,00,\
00,ff,ff,ff,c8,fa,06,00,0a,f8,e9,77,01,00,07,00,\
00,00,00,00,18,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
58,81,fb,77,a8,66,f8,77,ff,ff,ff,ff,bc,fa,06,00,\
7c,21,f9,77,00,00,07,00,00,00,00,00,b0,46,07,00,\
10,fb,06,00,d1,59,f8,77,b0,46,07,00,be,59,f8,77,\
b6,02,dd,77,e8,fa,06,00,61,29,01,78,28,24,23,00,\
00,00,00,00,18,b2,03,78,61,29,01,78,b2,24,23,00,\
00,fb,06,00,9d,29,01,78,b2,24,23,00,f8,15,00,01,\
54,ff,06,00,70,ff,06,00,6e,29,01,78,b2,24,23,00,\
f8,15,00,01
; LocalSystem, Administrators ALLRIGHTS
; wmisecur guid dacl LocalSystem allow ALLRIGHTS
; wmisecur guid adacl Administrators allow ALLRIGHTS
;
; 7. SystemTraceControlGuid
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","9e814aad-3204-11d2-9a82-006008a86939",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,02,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,e8,63,07,00,00,26,07,00,\
c7,87,db,77,78,25,07,00,00,00,00,00,00,00,f8,77,\
04,00,00,00,b4,f5,06,00,01,00,00,00,00,00,07,00,\
7c,01,00,00,10,64,07,00,08,64,07,00,68,01,07,00,\
00,f3,db,77,03,00,00,00,d2,c1,db,77,00,f9,06,00,\
00,00,00,00,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,64,07,00,01,00,00,00,00,00,00,00,\
38,f9,06,00,b0,ff,06,00,00,fa,06,00,db,80,fb,77,\
88,ae,f8,77,ff,ff,ff,ff,10,fa,06,00,e3,49,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,84,fa,06,00,\
41,9d,fc,77,00,00,07,00,00,00,07,00,a0,46,07,00,\
00,00,00,00,e8,f9,06,00,00,00,07,00,a0,46,07,00,\
00,00,00,00,ac,fa,06,00,41,9d,fc,77,00,00,07,00,\
13,9e,fc,77,08,06,07,00,8f,9d,fc,77,ec,fa,06,00,\
44,fb,06,00,00,00,00,00,78,01,07,00,28,64,07,00,\
78,01,07,00,20,64,07,00,24,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,8b,19,db,77,e0,d0,db,77,28,64,07,00,\
78,01,07,00,28,64,07,00,78,01,07,00,20,64,07,00,\
c8,46,07,00,01,00,00,00,18,00,00,00,f4,f9,06,00,\
07,00,00,00,bc,fa,06,00,00,00,07,00,86,00,00,00,\
01,ff,ff,ff,cc,fa,06,00,a0,46,07,00,01,00,07,00,\
00,00,00,00,1c,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
db,80,fb,77,88,ae,f8,77,ff,ff,ff,ff,c0,fa,06,00,\
4d,bf,f8,77,00,00,07,00,00,00,00,00,a8,46,07,00,\
14,fb,06,00,4a,b5,f8,77,a8,46,07,00,37,b5,f8,77,\
10,f0,dc,77,ec,fa,06,00,61,29,01,78,30,2c,23,00,\
55,2c,23,00,18,b2,03,78,61,29,01,78,95,2c,23,00,\
04,fb,06,00,9d,29,01,78,95,2c,23,00,d8,15,00,01,\
68,ff,06,00,70,ff,06,00,6e,29,01,78,95,2c,23,00,\
d8,15,00,01
; LocalSystem, Administrators ALLRIGHTS
; wmisecur guid dacl LocalSystem allow ALLRIGHTS
; wmisecur guid adacl Administrators allow ALLRIGHTS
;
; 8. WmiEventLoggerGuid
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44608a51-1851-4456-98b2-b300e931ee41",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,02,00,00,00,00,00,14,00,\
ff,07,02,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,07,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,e8,63,07,00,00,26,07,00,\
c7,87,db,77,78,25,07,00,00,00,00,00,00,00,f8,77,\
04,00,00,00,b4,f5,06,00,01,00,00,00,00,00,07,00,\
7c,01,00,00,10,64,07,00,08,64,07,00,68,01,07,00,\
00,f3,db,77,03,00,00,00,d2,c1,db,77,00,f9,06,00,\
00,00,00,00,00,00,07,00,03,00,00,00,00,00,07,00,\
05,00,00,00,00,64,07,00,01,00,00,00,00,00,00,00,\
38,f9,06,00,b0,ff,06,00,00,fa,06,00,db,80,fb,77,\
88,ae,f8,77,ff,ff,ff,ff,10,fa,06,00,e3,49,e9,77,\
00,00,07,00,c8,46,07,00,00,00,00,00,84,fa,06,00,\
41,9d,fc,77,00,00,07,00,00,00,07,00,a0,46,07,00,\
00,00,00,00,e8,f9,06,00,00,00,07,00,a0,46,07,00,\
00,00,00,00,ac,fa,06,00,41,9d,fc,77,00,00,07,00,\
13,9e,fc,77,08,06,07,00,8f,9d,fc,77,ec,fa,06,00,\
44,fb,06,00,00,00,00,00,78,01,07,00,28,64,07,00,\
78,01,07,00,20,64,07,00,24,fa,06,00,b0,ff,06,00,\
b0,ff,06,00,8b,19,db,77,e0,d0,db,77,28,64,07,00,\
78,01,07,00,28,64,07,00,78,01,07,00,20,64,07,00,\
c8,46,07,00,01,00,00,00,18,00,00,00,f4,f9,06,00,\
07,00,00,00,bc,fa,06,00,00,00,07,00,86,00,00,00,\
01,ff,ff,ff,cc,fa,06,00,a0,46,07,00,01,00,07,00,\
00,00,00,00,1c,fa,06,00,b0,ff,06,00,b0,ff,06,00,\
db,80,fb,77,88,ae,f8,77,ff,ff,ff,ff,c0,fa,06,00,\
4d,bf,f8,77,00,00,07,00,00,00,00,00,a8,46,07,00,\
14,fb,06,00,4a,b5,f8,77,a8,46,07,00,37,b5,f8,77,\
10,f0,dc,77,ec,fa,06,00,61,29,01,78,30,2c,23,00,\
55,2c,23,00,18,b2,03,78,61,29,01,78,95,2c,23,00,\
04,fb,06,00,9d,29,01,78,95,2c,23,00,d8,15,00,01,\
68,ff,06,00,70,ff,06,00,6e,29,01,78,95,2c,23,00,\
d8,15,00,01
; LocalSystem, Administrators ALLRIGHTS
; wmisecur guid dacl LocalSystem allow ALLRIGHTS
; wmisecur guid adacl Administrators allow ALLRIGHTS
; wmisecur guid adacl LocalService allow ALLRIGHTS
; wmisecur guid adacl NetworkService allow ALLRIGHTS
; wmisecur guid adacl "Performance Log Users" allow TRACELOG_CREATE_ONDISK |
; WMIGUID_QUERY | TRACELOG_CREATE_REALTIME | TRACELOG_GUID_ENABLE |
; TRACELOG_CREATE_INPROC |TRACELOG_ACCESS_REALTIME
;
; 9. DefaultTraceSecurityGuid
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0811c1af-7a07-4a06-82ed-869455cdf713",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,00,02,0a,00,00,00,00,00,14,00,\
ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,\
00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,\
ff,0f,12,00,01,01,00,00,00,00,00,05,14,00,00,00,\
00,00,18,00,40,00,00,00,01,02,00,00,00,00,00,05,\
20,00,00,00,2f,02,00,00,00,00,18,00,80,00,00,00,\
01,02,00,00,00,00,00,05,20,00,00,00,2f,02,00,00,\
00,00,18,00,00,02,00,00,01,02,00,00,00,00,00,05,\
20,00,00,00,2f,02,00,00,00,00,18,00,20,00,00,00,\
01,02,00,00,00,00,00,05,20,00,00,00,2f,02,00,00,\
00,00,18,00,00,04,00,00,01,02,00,00,00,00,00,05,\
20,00,00,00,2f,02,00,00,00,00,18,00,01,00,00,00,\
01,02,00,00,00,00,00,05,20,00,00,00,2f,02,00,00,\
b8,fa,06,00,10,fb,06,00,24,ff,06,00,e6,9c,e6,77,\
78,01,08,00,08,67,08,00,78,a4,08,00,80,a4,08,00,\
78,01,08,00,00,00,00,00,24,ff,06,00,40,a7,20,6a,\
7c,fa,06,00,e7,ec,22,6a,00,67,08,00,00,00,00,00,\
00,00,00,00,00,00,00,00,d8,26,e5,77,ff,ff,ff,ff,\
c7,9d,e6,77,81,00,00,00,08,04,00,00,a8,fa,30,4c,\
38,a4,08,00,20,40,24,6a,24,ff,01,01,00,00,08,00,\
9c,f9,06,00,00,00,00,00,88,fa,06,00,94,a2,25,6a,\
07,00,00,00,38,00,00,00,e2,8f,20,6a,e6,9c,e6,77,\
00,00,08,00,00,00,01,00,00,00,08,00,c8,f9,06,00,\
10,fb,06,00,b0,ff,06,00,94,a2,25,6a,00,21,20,6a,\
ff,ff,ff,ff,e2,8f,20,6a,3f,ce,22,6a,00,00,08,00,\
00,00,00,00,c8,22,08,00,65,ad,20,6a,c8,22,08,00,\
52,ad,20,6a,ef,fb,30,4c,b8,fa,06,00,d0,26,26,00,\
5a,28,c3,77,f5,26,26,00,0e,00,10,00,08,67,08,00,\
c0,b7,c4,77,5a,28,c3,77,3c,27,26,00,dc,fa,06,00,\
87,28,c3,77,3c,27,26,00,b8,18,00,01,34,ff,06,00,\
a4,19,00,01
;
; establish a security descriptor for NDIS WMI guids
;
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d7f-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d80-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d81-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","827c0a6f-feb0-11d0-bd26-00aa00b7b32a",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,94,00,05,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,68,00,33,00,36,\
00,46,00,30,00,42,00,30,00,34,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","a9546a82-feb0-11d0-bd26-00aa00b7b32a",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,94,00,05,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,68,00,33,00,36,\
00,46,00,30,00,42,00,30,00,34,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d82-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d79-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","182f9e0c-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","a14f1c97-8839-4f8a-9996-a28996ebbf1d",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,94,00,05,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,68,00,33,00,36,\
00,46,00,30,00,42,00,30,00,34,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10354-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10355-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10356-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10357-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10358-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10359-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035a-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035b-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035c-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035d-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035e-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec1035f-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10360-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10361-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10362-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10363-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10365-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10366-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5ec10367-a61a-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956f9-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","765dc702-c5e8-4b67-843b-3f5a4ff2648b",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","418ca16d-3937-4208-940a-ec6196278085",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956fa-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956fb-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956fc-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956fd-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956fe-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad192-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad193-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad194-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad195-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad196-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad197-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad198-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19a-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19b-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19c-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19d-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a214805-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a214806-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a214807-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a214808-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a214809-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","447956ff-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795700-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795701-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795702-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795703-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795704-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795705-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795706-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795707-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795708-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","44795709-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","4479570a-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","4479570b-a61b-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","890a36ec-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14032-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14033-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14034-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14035-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14036-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14037-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14038-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14039-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403a-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403b-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403c-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403d-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403e-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf1403f-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14040-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14041-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14042-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14043-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14044-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","acf14045-a61c-11d0-8dd4-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","2504b6c2-1fa5-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","7d2a90ea-2041-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","8531d6e6-2041-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","857e2326-2041-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","85be837c-2041-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","11e6ba76-2053-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","1507db16-2053-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","155689b8-2053-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","69526f9a-2062-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","697d5a7e-2062-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","69aaa7c4-2062-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0134d07e-2064-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","01779336-2064-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","01ac07a2-2064-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","01dbb74a-2064-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","49db8722-2068-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","452ee08e-2536-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","4a4df982-2068-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","42bb73b0-2129-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","4307bff0-2129-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","433c345c-2129-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","43671f40-2129-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0d9e01e1-ba70-11d4-b675-002048570337",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","43920a24-2129-11d4-97eb-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","6733c4e9-4792-11d4-97f1-00c04f79c403",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","b027a21f-3cfa-4125-800b-3f7a18fddcdc",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","748b14e8-32ee-4425-b91b-c9848c58b55a",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19e-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad19f-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a0-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a1-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a2-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a3-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a4-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a5-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a6-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad1a7-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","791ad191-e35c-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a21480a-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a21480b-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","0a21480c-e35f-11d0-9692-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,01,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,74,00,37,00,45,00,30,00,30,00,4c,00,65,00,6e,00,67,00,74,00,\
68,00,31,00,33,00,38,00,43,00,39,00,37,00,45,00,30,00,30,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d76-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d77-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d7d-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d7e-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d84-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","981f2d85-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5413531c-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","6e3ce1ec-b1f3-11d0-8dd7-00c04fc3358c",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","5f81cfd0-f046-4342-af61-895acedaefd9",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","81bc8189-b026-46ab-b964-f182e342934e",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,\
00,00,00,00,34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,01,\
02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,02,00,b4,00,06,00,00,00,00,00,\
18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,\
00,ff,0f,12,00,01,01,00,00,00,00,00,05,12,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,ff,0f,12,00,01,01,00,00,00,\
00,00,05,14,00,00,00,00,00,18,00,ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,\
00,00,2c,02,00,00,00,00,18,00,04,00,10,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,00,00,00,00,00,00,24,00,76,6b,0a,00,24,01,00,00,48,dc,0b,00,\
07,00,00,00,01,00,ff,ff,48,61,72,64,77,61,72,65,49,44,00,00
;
; Allow everyone access to smbios information
;
HKLM,"SYSTEM\CurrentControlSet\Control\WMI\Security","8F680850-A584-11d1-BF38-00A0C9062910",0x00030003,\
01,00,04,80,14,00,00,00,24,00,00,00,00,00,00,00,\
34,00,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,02,00,48,00,03,00,00,00,00,00,18,00,\
ff,0f,12,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,01,00,00,00,01,01,00,00,\
00,00,00,01,00,00,00,00,00,00,14,00,ff,0f,12,00,\
01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Control\WOW",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DefaultSeparateVDM",0x00000002,"no"
@w:@@:HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DisallowedPolicyDefault",0x00010003,"0"
@s!e!b:@@:HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DisallowedPolicyDefault",0x00010003,"0"
@e!d:@@:HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DisallowedPolicyDefault",0x00010003,"0"
@b:@@:HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DisallowedPolicyDefault",0x00010003,"0"
@d:@@:HKLM,"SYSTEM\CurrentControlSet\Control\WOW","DisallowedPolicyDefault",0x00010003,"0"
HKLM,"SYSTEM\CurrentControlSet\Control\WOW","KnownDLLs",0x00000000,\
"comm.drv commdlg.dll ctl3dv2.dll ddeml.dll keyboard.drv lanman.drv mmsystem.dll mouse.drv netapi.dll olecli.dll olesvr.dll pmspl.dll shell.dll sound.drv system.drv toolhelp.dll vga.drv wfwnet.drv win87em.dll winoldap.mod winsock.dll winspool.exe wowdeb.exe timer.drv rasapi16.dll compobj.dll storage.dll ole2.dll ole2disp.dll ole2nls.dll typelib.dll msvideo.dll avifile.dll msacm.dll mciavi.drv mciseq.drv mciwave.drv progman.exe avicap.dll mapi.dll"
HKLM,"SYSTEM\CurrentControlSet\Control\WOW","LPT_timeout",0x00000002,"15"
HKLM,"SYSTEM\CurrentControlSet\Control\WOW","SharedWowTimeout",0x00010003,3600
HKLM,"SYSTEM\CurrentControlSet\Enum",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","Class",0x00000002,"System"
HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","ClassGUID",0x00000002,"{4D36E97D-E325-11CE-BFC1-08002BE10318}"
HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","ConfigFlags",0x00010003,0x00000400
HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","HardwareID",0x00010002,"root\swenum"
HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0000","Service",0x00000002,"swenum"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","Class",0x00000002,"System"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","ClassGUID",0x00000002,"{4D36E97D-E325-11CE-BFC1-08002BE10318}"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","ConfigFlags",0x00010003,0x00000400
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","HardwareID",0x00010002,"root\update"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Enum\Root\SYSTEM\0001","Service",0x00000002,"update"
HKLM,"SYSTEM\CurrentControlSet\Services",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Group",0x00000002,"Primary disk"
HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Tag",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\Abiosdsk","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Tag",0x00010003,56
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\abp480n5\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Group",0x00000000,"Boot Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Tag",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ACPI","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Group",0x00000000,"Boot Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Tag",0x00010001,5
HKLM,"SYSTEM\CurrentControlSet\Services\ACPIEC","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Tag",0x00010003,60
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\adpu160m\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320","Tag",0x00010003,60
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\adpu320\Parameters\PnpInterface","5",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","ErrorControl",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Group",0x00000002,"SCSI miniport"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Start",0x00010003,4
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt","Type",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt\Parameters",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\afcnt\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Tag",0x00010003,6
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters", "LegacyAdapterDetection", 0x00010003,0
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters\PnpInterface","1",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Aha154x\Parameters\PnpInterface","3",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Tag",0x00010003,52
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\aic78u2\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Tag",0x00010003,30
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\aic78xx\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\AliIde","Type",0x00010001,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Tag",0x00010003,36
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\amsint\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Description",0x00000000,"%APPLICATION_MANAGEMENT_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","DisplayName",0x00000000,"%APPLICATION_MANAGEMENT%"
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Start",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\appmgmts.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\AppMgmt\Security","Security",0x00030003,\
01,00,14,80,a8,00,00,00,b4,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\
00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\
78,00,05,00,00,00,00,00,14,00,8d,00,02,00,01,01,00,00,00,00,00,05,0b,00,00,\
00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,\
00,00,18,00,8d,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,00,\
00,14,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,00,00,18,00,8d,00,\
00,00,01,02,00,00,00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Tag",0x00010003,41
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc\Parameters\PnpInterface","5",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Tag",0x00010003,57
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3350p\Parameters\PnpInterface","1",0x00010003,0x11
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Tag",0x00010003,42
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\asc3550\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\atapi","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Tag",0x00010003,25
HKLM,"SYSTEM\CurrentControlSet\Services\atapi","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Group",0x00000002,"Primary disk"
HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Start",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Atdisk","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","DependOnService",0x00010000,"PlugPlay","RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Description",0x00000000,"%AUDIOSRV_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","DisplayName",0x00000000,"%AUDIOSRV_DISPLAYNAME%"
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Group",0x00000002,"AudioGroup"
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","ObjectName",0x00000002,"LocalSystem"
@@!e:@@:HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Start",0x00010003,0x00000002
@e:@@:HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Start",0x00010003,0x00000004
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv","Type",0x00010001,0x00000020
HKLM,"SYSTEM\CurrentControlSet\Services\AudioSrv\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\audiosrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\Beep","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Group",0x00000002,"Base"
HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Tag",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Beep","Type",0x00010003,1
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","ErrorControl",0x00010003,1
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Group",0x00000002,"SCSI miniport"
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Start",0x00010003,4
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Tag",0x00010003,25
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k","Type",0x00010003,1
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters",,0x00000012
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters\PnpInterface","1",0x00010003,0x1
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cbidf2k\Parameters\PnpInterface","5",0x00010003,0x1
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","ErrorControl",0x00010003,1
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Group",0x00000002,"SCSI miniport"
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Start",0x00010003,4
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Tag",0x00010003,58
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt","Type",0x00010003,1
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt\Parameters",,0x00000012
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\cd20xrnt\Parameters\PnpInterface","1",0x00010003,0x11
HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","DependOnGroup",0x00010002,"SCSI CDROM Class"
HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Group",0x00000002,"File system"
HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Cdfs","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","DependOnGroup",0x00010000,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","ErrorControl",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Group",0x00000000,"SCSI CDROM Class"
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Tag",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\Cdrom","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Changer","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Group",0x00000002,"Filter"
HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Tag",0x00010001,5
HKLM,"SYSTEM\CurrentControlSet\Services\Changer","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","DependOnService",0x00010000,"RPCSS"
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Description",0x00000000,"%INDEXING_SERVICE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","DisplayName",0x00000000,"%INDEXING_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ImagePath",0x00020000,"%SystemRoot%\system32\cisvc.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\CiSvc","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","DependOnService",0x00010002,"NetDDE"
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Description",0x00000000,"%CLIPBOOK_SERVER_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","DisplayName",0x00000000,"%CLIPBOOK_SERVER%"
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ImagePath",0x00020002,"%SystemRoot%\system32\clipsrv.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv","Type",0x00010003,16
HKLM,"SYSTEM\CurrentControlSet\Services\ClipSrv\Security","Security",0x00030003,\
01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\CmdIde","Type",0x00010001,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Tag",0x00010003,256
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters\PnpInterface","2",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Cpqarray\Parameters\PnpInterface","5",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","ErrorControl",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Group",0x00000002,"SCSI miniport"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Start",0x00010003,4
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Tag",0x00010003,62
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2","Type",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2\Parameters",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqarry2\Parameters\PnpInterface","5",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","ErrorControl",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Group",0x00000002,"SCSI miniport"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Start",0x00010003,4
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Tag",0x00010003,62
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm","Type",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm\Parameters",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqcissm\Parameters\PnpInterface","5",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","ErrorControl",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Group",0x00000002,"SCSI miniport"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Start",0x00010003,4
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Tag",0x00010003,44
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm","Type",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters\PnpInterface","2",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\cpqfcalm\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","DependOnService",0x00010002,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Description",0x00000000,%CRYPTSVC_DESCRIPTION%
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","DisplayName",0x00000000,%CRYPTSVC_DISPLAYNAME%
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\cryptsvc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters","ServiceMain",0x00000002,"CryptServiceMain"
HKLM,"SYSTEM\CurrentControlSet\Services\CryptSvc\Security","Security",0x00030003,\
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Tag",0x00010003,32
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters\PnpInterface","2",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac2w2k\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Tag",0x00010003,32
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters\PnpInterface","2",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dac960nt\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc","Tag",0x00010003,43
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\dellcerc\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Tag",0x00010003,60
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\dpti2o\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Tag",0x00010003,45
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\i2omp\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp","Tag",0x00010003,45
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\iirsp\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Group",0x00000002,"SCSI Class"
HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Tag",0x00010003,45
HKLM,"SYSTEM\CurrentControlSet\Services\i2omgmt","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","DependOnGroup",0x00010000,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","ErrorControl",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Group",0x00000000,"SCSI Class"
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Start",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Tag",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\Disk","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","DependOnService",0x00010000,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Description",0x00000000,"%ERSVC_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","DisplayName",0x00000000,"%ERSVC%"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ErrorControl",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k WinErr"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\ersvc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\ERSvc\Security","Security",0x00030003,\
01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\
00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\
60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\
00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,\
00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,00,18,00,fd,\
01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,00,00,00,00,\
00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog","Description",0x00000000,"%EVENTLOG_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog","DisplayName",0x00000000,"%EVENTLOG%"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Group",0x00000002,"Event log"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ImagePath",0x00020002,"%SystemRoot%\system32\services.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","PlugPlayServiceType",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","DisplayNameFile",0x00020000,"%SystemRoot%\system32\els.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","DisplayNameID",0x00010001,256
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","File",0x00020002,"%SystemRoot%\system32\config\AppEvent.Evt"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","MaxSize",0x00010003,524288
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","PrimaryModule",0x00000002,"Application"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application","Retention",0x00010003,604800
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Autochk","EventMessageFile",0x00020002,"%SystemRoot%\System32\winlogon.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Autochk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\apphelp","EventMessageFile",0x00020002,"%SystemRoot%\System32\apphelp.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\apphelp","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application","CategoryCount",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application","CategoryMessageFile",0x00020002,"%SystemRoot%\system32\eventlog.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Error","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Error","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hang","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hang","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","EventMessageFile",0x00020000,"%SystemRoot%\System32\appmgmts.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Management","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Software Installation","EventMessageFile",0x00020000,"%SystemRoot%\System32\appmgr.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Software Installation","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Chkdsk","EventMessageFile",0x00020002,"%SystemRoot%\System32\ulib.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Chkdsk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\DrWatson","EventMessageFile",0x00020002,"%SystemRoot%\System32\drwtsn32.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\DrWatson","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventCreate","EventMessageFile",0x00020002,"%SystemRoot%\System32\EventCreate.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventCreate","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventCreate","CustomSource",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","CategoryCount",0x00010003,6
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\EsEnU.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\EventSystem","EventMessageFile",0x00020002,"%SystemRoot%\System32\EsEnU.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","EventMessageFile",0x00020002,"%SystemRoot%\System32\fdeploy.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\File Deployment","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","EventMessageFile",0x00020002,"%SystemRoot%\System32\fdeploy.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Folder Redirection","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\LoadPerf","EventMessageFile",0x00020002,"%SystemRoot%\System32\loadperf.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\LoadPerf","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\ntbackup","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntbackup.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\ntbackup","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfctrs","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfctrs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfctrs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfDisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfdisk.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfDisk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perflib","EventMessageFile",0x00020002,"%SystemRoot%\System32\prflbmsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perflib","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfmon","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfmon.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Perfmon","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfNet","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfnet.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfNet","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfOS","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfOS.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfOS","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfProc","EventMessageFile",0x00020002,"%SystemRoot%\System32\perfproc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\PerfProc","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceCli","EventMessageFile",0x00020002,"%SystemRoot%\System32\scecli.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceCli","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceSrv","EventMessageFile",0x00020000,"%SystemRoot%\System32\scesrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SceSrv","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SclgNtfy","EventMessageFile",0x00020002,"%SystemRoot%\System32\sclgntfy.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SclgNtfy","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SpoolerCtrs","EventMessageFile",0x00020002,"%SystemRoot%\System32\winspool.drv"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SpoolerCtrs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\MSSQLSERVER/MSDE","EventMessageFile",0x00020002,"%SystemRoot%\AppPatch\acres.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\MSSQLSERVER/MSDE","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SysmonLog","EventMessageFile",0x00020002,"%SystemRoot%\System32\smlogsvc.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\SysmonLog","TypesSupported",0x00010003,7
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Tlntsvr","EventMessageFile",0x00020002,"%SystemRoot%\System32\tlntsvr.exe"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Tlntsvr","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userenv","EventMessageFile",0x00020002,"%SystemRoot%\System32\userenv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userenv","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userinit","EventMessageFile",0x00020002,"%SystemRoot%\System32\userinit.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Userinit","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WebClient","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WebClient","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows 3.1 Migration","EventMessageFile",0x00020002,"%SystemRoot%\System32\advapi32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows 3.1 Migration","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows Product Activation","EventMessageFile",0x00020000,"%SystemRoot%\System32\dpcdll.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Windows Product Activation","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Winlogon","EventMessageFile",0x00020002,"%SystemRoot%\System32\winlogon.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Winlogon","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WinMgmt","EventMessageFile",0x00020002,"%SystemRoot%\system32\WBEM\WinMgmtR.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WinMgmt","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WMIAdapter","EventMessageFile",0x00020002,"%SystemRoot%\system32\WBEM\WMIApRes.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WMIAdapter","TypesSupported",0x00010003,7
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Wow64 Emulation Layer","EventMessageFile",0x00020000,"%SystemRoot%\System32\wow64.dll"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Wow64 Emulation Layer","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","DisplayNameFile",0x00020000,"%SystemRoot%\System32\els.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","DisplayNameID",0x00010001,257
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","File",0x00020002,"%SystemRoot%\System32\config\SecEvent.Evt"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","MaxSize",0x00010003,524288
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","PrimaryModule",0x00000002,"Security"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security","Retention",0x00010003,604800
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\DS","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\DS\ObjectNames","Directory Service Object",0x00010003,0x00001E00
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","PolicyObject",0x00010003,5632
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","SecretObject",0x00010003,5648
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","TrustedDomainObject",0x00010003,5664
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\LSA\ObjectNames","UserAccountObject",0x00010003,5680
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\NetDDE Object","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\NetDDE Object\ObjectNames","DDE Share",0x00010003,7424
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager\ObjectNames","SC_MANAGER Object",0x00010003,7168
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\SC Manager\ObjectNames","SERVICE Object",0x00010003,7184
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","CategoryCount",0x00010001,9
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\MsAuditE.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","GuidMessageFile",0x00020002,"%SystemRoot%\System32\NtMarta.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","EventMessageFile",0x00020002,"%SystemRoot%\System32\MsAuditE.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security","TypesSupported",0x00010003,28
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Channel",0x00010001,5120
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Desktop",0x00010001,6672
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Device",0x00010003,4352
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Directory",0x00010003,4368
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Event",0x00010003,4384
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","EventPair",0x00010003,4400
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","File",0x00010003,4416
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","IoCompletion",0x00010003,4864
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Job",0x00010003,5136
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Key",0x00010003,4432
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","MailSlot",0x00010003,4416
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Mutant",0x00010003,4448
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","NamedPipe",0x00010003,4416
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Port",0x00010003,4464
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Process",0x00010003,4480
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Profile",0x00010003,4496
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Section",0x00010003,4512
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Semaphore",0x00010003,4528
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","SymbolicLink",0x00010003,4544
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Thread",0x00010003,4560
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Timer",0x00010003,4576
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Token",0x00010003,4592
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","Type",0x00010003,4608
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","WaitablePort",0x00010003,4464
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security\ObjectNames","WindowStation",0x00010001,6656
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_ALIAS",0x00010003,5424
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_DOMAIN",0x00010003,5392
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_GROUP",0x00010003,5408
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_SERVER",0x00010003,5376
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Security Account Manager\ObjectNames","SAM_USER",0x00010003,5440
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\MsObjs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Document",0x00010003,6944
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Printer",0x00010003,6928
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Spooler\ObjectNames","Server",0x00010003,6912
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","DisplayNameFile",0x00020000,"%SystemRoot%\system32\els.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","DisplayNameID",0x00010001,258
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","File",0x00020002,"%SystemRoot%\system32\config\SysEvent.Evt"
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","MaxSize",0x00010002,2097152
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","MaxSize",0x00010003,524288
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","PrimaryModule",0x00000002,"System"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System","Retention",0x00010003,604800
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abiosdsk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abiosdsk","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abp480n5","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\abp480n5","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\acpi.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpi","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpiec","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\acpiec.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\acpiec","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu160m","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu160m","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu320","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\adpu320","TypesSupported",0x00010003,7
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afcnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\afcnt","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aha154x","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aha154x","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78xx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78xx","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78u2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aic78u2","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aliide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\AliIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\aliide","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ami0nt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ami0nt","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\amsint","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\amsint","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Application Popup","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntdll.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Application Popup","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3350p","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3350p","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3550","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\asc3550","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atapi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atapi","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atdisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\atdisk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\beep","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\beep","TypesSupported",0x00010003,7
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cbidf2k","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cbidf2k","TypesSupported",0x00010003,7
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cd20xrnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cd20xrnt","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdfs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdrom","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cdrom","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\changer","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\changer","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cmdide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\CmdIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cmdide","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarray","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarray","TypesSupported",0x00010003,7
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarry2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqarry2","TypesSupported",0x00010003,7
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqcissm","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqcissm","TypesSupported",0x00010003,7
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqfcalm","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cpqfcalm","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cryptsvc","EventMessageFile",0x00020000,"%SystemRoot%\System32\cryptsvc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\cryptsvc","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac2w2k","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac2w2k","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac960nt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dac960nt","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DCOM","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dellcerc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dellcerc","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsDriver","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsDriver","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsSvc","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DfsSvc","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\disk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\disk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dpti2o","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\dpti2o","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\efs","EventMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\efs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\eventlog","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\eventlog","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fastfat","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fastfat","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fdc","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\fdc.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fdc","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Fips","EventMessageFile",0x00020002,"%SystemRoot%\System32\Drivers\fips.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Fips","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\flpydisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\flpydisk.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\flpydisk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fs_rec","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\fs_rec","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ftdisk","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\FtDisk.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ftdisk","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpn","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpn","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ini910u","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ini910u","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omp","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omp","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\iirsp","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\iirsp","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omgmt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\i2omgmt","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\intelide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\IntelIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\intelide","TypesSupported",0x00010003,7
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ipsraidn","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ipsraidn","TypesSupported",0x00010003,7
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\nfrd960","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\nfrd960","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\isapnp","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\isapnp.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\isapnp","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\kbdclass","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\KbdClass.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\kbdclass","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\KDC","EventMessageFile",0x00020002,"%SystemRoot%\System32\kdcsvc.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\KDC","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Kerberos","EventMessageFile",0x00020002,"%SystemRoot%\System32\kerberos.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Kerberos","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lp6nds35","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\lp6nds35","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","EventMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","CategoryMessageFile",0x00020002,"%SystemRoot%\System32\lsasrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\LsaSrv","CategoryCount",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Modem","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Modem.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Modem","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mouclass","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\MouClass.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mouclass","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mraid35x","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\mraid35x","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\MRxDAV","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\MRxDAV","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msadlib","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msadlib","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\msfs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Mup","EventMessageFile",0x00020000,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Mup","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ndis","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ndis","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\NetDDE","EventMessageFile",0x00020002,"%SystemRoot%\System32\netdde.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\NetDDE","TypesSupported",0x00010003,31
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\npfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\npfs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ntfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ntfs","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\null","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\null","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parport","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\ParPort.sys"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\parport","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\partmgr","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\partmgr","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pci","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Pci.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pci","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pciide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\PciIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pciide","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pcmcia","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Pcmcia.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\pcmcia","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\perc2","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\perc2","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\PlugPlayManager","EventMessageFile",0x00020002,"%SystemRoot%\System32\umpnpmgr.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\PlugPlayManager","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1080","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1080","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql10wnt","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql10wnt","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql12160","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql12160","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1240","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1240","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1280","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql1280","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2100","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2100","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2200","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2200","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2300","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ql2300","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SAM","EventMessageFile",0x00020002,"%SystemRoot%\System32\samsrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SAM","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Save Dump","EventMessageFile",0x00020002,"%SystemRoot%\System32\SaveDump.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Save Dump","TypesSupported",0x00010003,7
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SBCore","EventMessageFile",0x00020002,"%SystemRoot%\System32\sbscrevt.dll"
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SBCore","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SCardSvr","EventMessageFile",0x00020002,"%SystemRoot%\System32\SCardSvr.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ScardSvr","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Schedule","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\scsiport","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\scsiport","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\serial","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\Serial.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\serial","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","ParameterMessageFile",0x00020002,"%SystemRoot%\System32\kernel32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Service Control Manager","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Setup","EventMessageFile",0x00020002,"%SystemRoot%\System32\syssetup.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Setup","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Software Restriction Policy","EventMessageFile",0x00020002,"%SystemRoot%\System32\ntdll.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Software Restriction Policy","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System Error","EventMessageFile",0x00020000,"%SystemRoot%\System32\faultrep.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System Error","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Windows File Protection","EventMessageFile",0x00020000,"%SystemRoot%\System32\sfc_os.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Windows File Protection","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sfloppy","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sfloppy","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Simbad","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Simbad","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SideBySide","EventMessageFile",0x00020002,"%SystemRoot%\System32\sxs.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\SideBySide","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sndblst","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sndblst","TypesSupported",0x00010003,7
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sparrow","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sparrow","TypesSupported",0x00010003,7
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc810","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc810","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc8xx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symc8xx","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symmpi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\symmpi","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_hi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_hi","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_u3","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\sym_u3","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System","CategoryCount",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\System","CategoryMessageFile",0x00020002,"%SystemRoot%\system32\eventlog.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\tdi","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\tdi","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\toside","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\TosIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\toside","TypesSupported",0x00010003,7
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Server","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Server","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Client","EventMessageFile",0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Distributed Link Tracking Client","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\udfs","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\udfs","TypesSupported",0x00010003,7
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ultra","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\ultra","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpt3xx","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\hpt3xx","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\UPS","EventMessageFile",0x00020002,"%SystemRoot%\System32\netmsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\UPS","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\USER32","EventMessageFile",0x00020002,"%SystemRoot%\System32\user32.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\USER32","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VgaSave","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\vga.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VgaSave","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\viaide","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\ViaIde.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\viaide","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VolSnap","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\VolSnap.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\VolSnap","TypesSupported",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Wd","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll;%SystemRoot%\System32\Drivers\wd.sys"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Wd","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\W32Time","EventMessageFile",0x00020000,"%SystemRoot%\System32\w32time.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\W32Time","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Win32k","EventMessageFile",0x00020002,"%SystemRoot%\System32\win32k.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Win32k","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WinHttpAutoProxySvc","EventMessageFile",0x00020000,"winhttp.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WinHttpAutoProxySvc","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WMIxWDM","EventMessageFile",0x00020002,"%SystemRoot%\System32\IoLogMsg.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\WMIxWDM","TypesSupported",0x00010003,7
HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Group",0x00000002,"Boot file system"
HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Fastfat","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Group",0x00000002,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Tag",0x00010003,b
HKLM,"SYSTEM\CurrentControlSet\Services\Fdc","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fips","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fips","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fips","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Group",0x00000002,"Primary disk"
HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Tag",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Flpydisk","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Group",0x00000002,"Boot file system"
HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Fs_Rec","Type",0x00010003,8
HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Group",0x00000002,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Tag",0x00010003,9
HKLM,"SYSTEM\CurrentControlSet\Services\Ftdisk","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\hpn","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\hpn","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\hpn\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\hpn\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","DependOnService",0x00010000,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Description",0x00000000,"%HIDSERV_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","DisplayName",0x00000000,"%HIDSERV%"
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","ObjectName",0x00000000,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ","Type",0x00010001,0x00000020
HKLM,"SYSTEM\CurrentControlSet\Services\HidServ\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\hidserv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","DisplayName", 0x00000000,"%HTTP%"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","Description", 0x00000000,"%HTTP_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","ImagePath", 0x00020000,"System32\Drivers\HTTP.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","Start", 0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP","Type", 0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\HTTP\Security", "Security", 0x00000001,\
01,00,14,80,a4,00,00,00,b0,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,74,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,00,00,\
14,00,10,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Http", "TypesSupported", 0x00010003, 7
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Http", "EventMessageFile", 0x00020002,"%SystemRoot%\System32\netevent.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","DependOnService", 0x00010000,"HTTP"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","Description", 0x00000000,"%HTTPFILTER_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","DisplayName", 0x00000000,"%HTTPFILTER%"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","ImagePath", 0x00020000,"%SystemRoot%\System32\lsass.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","ObjectName", 0x00000000,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","Start", 0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter","Type", 0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter\Parameters", "ServiceDll", 0x00020000, "%SystemRoot%\System32\w3ssl.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter\Parameters", "ServiceMain", 0x00000000, "HTTPFilterServiceMain"
HKLM,"SYSTEM\CurrentControlSet\Services\HTTPFilter\Security", "Security", 0x00000001,\
01,00,14,80,a4,00,00,00,b0,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,74,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,00,00,\
14,00,10,00,00,00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"Software\Microsoft\Windows NT\CurrentVersion\SvcHost", "HTTPFilter", 0x00010000, "HTTPFilter"
HKLM,"Software\Microsoft\Windows NT\CurrentVersion\SvcHost\HTTPFilter", "CoInitializeSecurityParam", 0x00010003, 1
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DependOnGroup",0x00010000,""
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DependOnService",0x00010000,"RPCSS"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","DisplayName",0x00000000,"%IASJET_SERVICE%"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Description",0x00000000,"%IASJET_SERVICE_DESCRIPTION%"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ErrorControl",0x00010003,1
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ImagePath",0x00020002,"%SystemRoot%\SysWOW64\svchost.exe -k iasjet"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","ObjectName",0x00000002,"LocalSystem"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Start",0x00010003,3
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet","Type",0x00010003,0x00000020
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet\Parameters","ServiceDll",0x00020002,"%SystemRoot%\SysWOW64\iasrecst.dll"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\IASJet\Security","Security",0x00000003,\
@@:@6: 01,00,14,80,a0,00,00,00,ac,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\
@@:@6: 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\
@@:@6: 70,00,04,00,00,00,00,00,18,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,\
@@:@6: 00,00,00,00,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
@@:@6: 20,02,00,00,00,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,\
@@:@6: 00,00,00,20,02,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,\
@@:@6: 00,00,23,02,00,00,00,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,\
@@:@6: 00,00,00,00,05,12,00,00,00
#ifdef PRERELEASE
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","DisplayName",0x00000000,"Idwlog Service"
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Description",0x00000000,""
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","DependOnService",0x00010002,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ImagePath",0x00020002,"%SystemRoot%\System32\idwlog.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","Type",0x00010003,16
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Idwlog","ObjectName",0x00000002,"LocalSystem"
#endif
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","ErrorControl",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Group",0x00000002,"SCSI miniport"
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Start",0x00010003,4
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Tag",0x00010003,48
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u","Type",0x00010003,1
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u\Parameters",,0x00000012
@@!s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ini910u\Parameters\PnpInterface","5",0x00010003,1
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Inport\Parameters","HzMode",0x00010003,2
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\Inport\Parameters","HzMode",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\IntelIde","Type",0x00010001,1
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","ErrorControl",0x00010003,1
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Group",0x00000002,"SCSI miniport"
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Start",0x00010003,4
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Tag",0x00010003,53
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn","Type",0x00010003,1
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn\Parameters",,0x00000012
@s:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ipsraidn\Parameters\PnpInterface","5",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","ErrorControl",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Group",0x00000002,"SCSI miniport"
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Start",0x00010003,4
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Tag",0x00010003,53
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960","Type",0x00010003,1
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960\Parameters",,0x00000012
@s:@@:HKLM,"SYSTEM\CurrentControlSet\Services\nfrd960\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Group",0x00000000,"Boot Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Tag",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\isapnp","HasBootConfig",0x00010001,00000000
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","DependOnService",0x00010002,"SamSS"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Description",0x00000000,"%INTERSITE_MESSAGING_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","DisplayName",0x00000000,"%INTERSITE_MESSAGING_SERVICE%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ImagePath",0x00020002,"%SystemRoot%\System32\ismserv.exe"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","ObjectName",0x00000002,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\IsmServ","Type",0x00010003,16
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Group",0x00000002,"Keyboard Class"
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","ConnectMultiplePorts",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","KeyboardDataQueueSize",0x00010003,100
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","KeyboardDeviceBaseName",0x00000002,"KeyboardClass"
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","MaximumPortsServiced",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\Kbdclass\Parameters","SendOutputToAllPorts",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","DependOnService",0x00010002,"RpcSs","Afd"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Description",0x00000000,"%KERBEROS_KEY_DISTRIBUTION_CENTER_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","DisplayName",0x00000000,"%KERBEROS_KEY_DISTRIBUTION_CENTER%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Group",0x00000000,"MS_WindowsRemoteValidation"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ImagePath",0x00020002,"%SystemRoot%\System32\lsass.exe"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","ObjectName",0x00000002,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc","Type",0x00010003,32
@s:HKLM,"SYSTEM\CurrentControlSet\Services\kdc\Security","Security",0x00030003,\
@s: 01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
@s: 00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
@s: 00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
@s: 01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
@s: 20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
@s: 00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
@s: 00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\
@s: 05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Group",0x00000002,"Base"
HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Start",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\KSecDD","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Group",0x00000002,"SCSI miniport"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Tag",0x00010003,39
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\lp6nds35\Parameters\PnpInterface","5",0x00010003,1
@l:HKLM,"SYSTEM\CurrentControlSet\Services\LicenseInfoSuites\SmallBusiness","ConcurrentLimit",0x00010003,150
; HKLM,"SYSTEM\CurrentControlSet\Services\mca","ErrorControl",0x00010001,1
; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Group",0x00000000,"Boot Bus Extender"
; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Start",0x00010003,4
; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Tag",0x00010001,4
; HKLM,"SYSTEM\CurrentControlSet\Services\mca","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Group",0x00000000,"Video Save"
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Video","VideoID",0x00000000,"{8B6D7859-A639-4A15-8790-7161976D057A}"
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Video","Service",0x00000000,"mnmdd"
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","InstalledDisplayDrivers",0x00010000,"mnmdd"
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","Device Description",0x00000000,"NetMeeting driver"
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","VgaCompatible",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\mnmdd\Device0","MirrorDriver",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\Video","Service",0x00000000,"mnmdd"
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","InstalledDisplayDrivers",0x00010000,"mnmdd"
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","Device Description",0x00000000,"NetMeeting driver"
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","VgaCompatible",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{8B6D7859-A639-4A15-8790-7161976D057A}\0000","MirrorDriver",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","ErrorControl",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Group",0x00000000,"Extended base"
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Start",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Modem\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Group",0x00000002,"Pointer Class"
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","ConnectMultiplePorts",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","MaximumPortsServiced",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","MouseDataQueueSize",0x00010003,100
HKLM,"SYSTEM\CurrentControlSet\Services\Mouclass\Parameters","PointerDeviceBaseName",0x00000002,"PointerClass"
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","DisplayName",0x00000000,"%MOUNTMGR_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Group",0x00000002,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Tag",0x00010003,8
HKLM,"SYSTEM\CurrentControlSet\Services\MountMgr","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Tag",0x00010003,43
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\mraid35x\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Group",0x00000002,"File system"
HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Msfs","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\MSIServer","Description",0x00000000,"%MSI_SERVICE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","DisplayName",0x00000002,"%MUP%"
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Group",0x00000002,"Network"
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Tag",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Mup","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Mup\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","DisplayName",0x00000000,"%MICROSOFT_NDIS_SYSTEM_DRIVER%"
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Group",0x00000000,"NDIS Wrapper"
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Start",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\MediaTypes",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\Parameters","ProcessorAffinityMask",0x00010003,4294967295
HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","DisplayName",0x00010002,"%NDIS_PROXY%"
HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Group",0x00000002,"PNP_TDI"
HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Start",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\NDProxy","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","DependOnService",0x00010002,"NetDDEDSDM"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Description",0x00000000,"%NETWORK_DDE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","DisplayName",0x00000000,"%NETWORK_DDE%"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Group",0x00000002,"NetDDEGroup"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ImagePath",0x00020002,"%SystemRoot%\system32\netdde.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDE\Security","Security",0x00030003,\
01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","DependOnService",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Description",0x00000000,"%NETWORK_DDE_DSDM_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","DisplayName",0x00000000,"%NETWORK_DDE_DSDM%"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ImagePath",0x00020002,"%SystemRoot%\system32\netdde.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\NetDDEdsdm\Security","Security",0x00030003,\
01,00,14,80,9c,00,00,00,a8,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,68,00,04,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\Netlogon",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Netlogon\Parameters","DisablePasswordChange",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","DependOnService",0x00010000,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Description",0x00000000,"%NETMAN_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","DisplayName",0x00000000,"%NETMAN_NAME%"
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Start",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\Netman","Type",0x00010001,0x00000020
HKLM,"SYSTEM\CurrentControlSet\Services\Netman\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\netman.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Group",0x00000002,"File system"
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs\Aliases","lsass",0x00010002,"protected_storage","netlogon","lsarpc","samr"
HKLM,"SYSTEM\CurrentControlSet\Services\Npfs\Aliases","ntsvcs",0x00010000,"eventlog","svcctl"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","DependOnService",0x00010000,"EventLog","RpcSs","EventSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Description",0x00000000,"%NTFR_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","DisplayName",0x00000000,"%NTFR_SERVICE_NAME%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ErrorControl",0x00010003,0
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ImagePath",0x00020002,"%SystemRoot%\system32\ntfrs.exe"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","ObjectName",0x00000002,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Start",0x00010003,3
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs","Type",0x00010003,16
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters","Working Directory",0x00020002,"%SystemRoot%\ntfrs"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\NtFrs\Parameters\SysVol",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Group",0x00000002,"File system"
HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Ntfs","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Null","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Null","Group",0x00000002,"Base"
HKLM,"SYSTEM\CurrentControlSet\Services\Null","Start",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Null","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Null","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Parport","ErrorControl",0x00010003,0
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Group",0x00000002,"Parallel arbitrator"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Start",0x00010001,3
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Tag",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Parport","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","DisplayName",0x00000000,"%PARTMGR_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Group",0x00000002,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Tag",0x00010003,a
HKLM,"SYSTEM\CurrentControlSet\Services\PartMgr","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\PCI","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Group",0x00000000,"Boot Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Tag",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\PCI","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Tag",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\PCIIde","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Tag",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\Parameters","SoundsEnabled",0x00010003,0
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Group",0x00000002,"Filter"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\perc2hib","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Close",0x00000002,"CloseDiskObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Collect",0x00000002,"CollectDiskObjectData"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Collect Timeout",0x00010001,2000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Library",0x00000002,"perfdisk.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Object List",0x00000002,"234 236"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Open",0x00000002,"OpenDiskObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Open Timeout",0x00010001,5000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Close",0x00000002,"CloseNetSvcsObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Collect",0x00000002,"CollectNetSvcsObjectData"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Collect Timeout",0x00010001,5000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Library",0x00000002,"perfnet.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Object List",0x00000002,"52 262 330 1300"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Open",0x00000002,"OpenNetSvcsObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Open Timeout",0x00010001,8000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Close",0x00000002,"CloseOSObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Collect",0x00000002,"CollectOSObjectData"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Collect Timeout",0x00010001,8000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Library",0x00000002,"perfos.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Object List",0x00000002,"2 4 86 238 260 700"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Open",0x00000002,"OpenOSObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Open Timeout",0x00010001,5000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Close",0x00000002,"CloseSysProcessObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Collect",0x00000002,"CollectSysProcessObjectData"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Collect Timeout",0x00010001,8000
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Library",0x00000002,"perfproc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Object List",0x00000000,"230 232 786 740 816 1408 1500 1548 1760"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Open",0x00000002,"OpenSysProcessObject"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Open Timeout",0x00010001,10000
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Description",0x00000000,"%PLUG_AND_PLAY_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","DisplayName",0x00000000,"%PLUG_AND_PLAY%"
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Group",0x00000002,"PlugPlay"
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ImagePath",0x00020002,"%SystemRoot%\system32\services.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","PlugPlayServiceType",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\PlugPlay","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","DependOnService",0x00010002,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Description",0x00000000,%PROTECTEDSTORAGE_DESCRIPTION%
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","DisplayName",0x00000000,%PROTECTEDSTORAGE_DISPLAYNAME%
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ImagePath",0x00020000,"%SystemRoot%\system32\lsass.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\ProtectedStorage","Type",0x00010001,288
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Tag",0x00010003,61
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\ql1080\Parameters\PnpInterface","5",0x00010003,1
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","ErrorControl",0x00010003,1
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Group",0x00000002,"SCSI miniport"
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Start",0x00010003,4
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Tag",0x00010003,35
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt","Type",0x00010003,1
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt\Parameters",,0x00000012
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Ql10wnt\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Tag",0x00010003,63
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\ql12160\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Tag",0x00010003,49
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\ql1240\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Tag",0x00010003,63
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\ql1280\Parameters\PnpInterface","5",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Group",0x00000002,"SCSI miniport"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Tag",0x00010003,40
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2100\Parameters\PnpInterface","5",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Group",0x00000002,"SCSI miniport"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Tag",0x00010003,40
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2200\Parameters\PnpInterface","5",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300","Group",0x00000002,"SCSI miniport"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300","Start",0x00010003,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300","Tag",0x00010003,40
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\ql2300\Parameters\PnpInterface","5",0x00010003,1
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Description",0x00000000,"%REGSVC_DESCRIPTION%"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DependOnService",0x00010002,"RPCSS"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DisplayName",0x00000000,"%REGSVC_SERVICE%"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ErrorControl",0x00010003,1
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ImagePath",0x00020000,"%%SystemRoot%\system32\svchost.exe -k LocalService"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ObjectName",0x00000000,"NT AUTHORITY\LocalService"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Group",0x00000002,""
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Start",0x00010001,2
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Type",0x00010001,32
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\regsvc.dll"
@w!p:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","FailureActions",0x00030003,\
@w!p: 00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,E0,AD,08,00,01,00,00,00,E8,\
@w!p: 03,00,00
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Description",0x00000000,"%REGSVC_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DependOnService",0x00010002,"RPCSS"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","DisplayName",0x00000000,"%REGSVC_SERVICE%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ImagePath",0x00020000,"%%SystemRoot%\system32\svchost.exe -k regsvc"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","ObjectName",0x00000000,"NT AUTHORITY\LocalService"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Group",0x00000002,""
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Start",0x00010001,2
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","Type",0x00010001,32
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\regsvc.dll"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RemoteRegistry","FailureActions",0x00030003,\
@s: 00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,E0,AD,08,00,01,00,00,00,E8,\
@s: 03,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","Description",0x00000000,"%WINHTTP_APSVC_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","DependOnService",0x00010002,"Dhcp"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","DisplayName",0x00000000,"%WINHTTP_APSVC%"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k LocalService"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","ObjectName",0x00000000,"NT AUTHORITY\LocalService"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","Start",0x00010001,3
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc\Parameters","ServiceDll",0x00020002,"winhttp.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc\Parameters","ServiceManifest",0x00020002,"%SystemRoot%\System32\whttpsvc.man"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc\Parameters","ServiceMain",0x00000000,"WinHttpAutoProxySvcMain"
HKLM,"SYSTEM\CurrentControlSet\Services\WinHttpAutoProxySvc","FailureActions",0x00030003,\
00,5C,26,05,00,00,00,00, \
00,00,00,00,01,00,00,00, \
57,00,44,00,01,00,00,00, \
00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Description",0x00000000,"%REMOTE_PROCEDURE_CALL_RPC_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","DisplayName",0x00000000,"%REMOTE_PROCEDURE_CALL_RPC_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Group",0x00000000,"COM Infrastructure"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ImagePath",0x00020000,"%SystemRoot%\system32\svchost -k rpcss"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","ObjectName",0x00000000,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\rpcss.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs\Security","Security",0x00030001,\
01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\
12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\RpcSs","FailureActions",0x00030003,\
00,00,00,00,00,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,02,00,00,00,60,EA,00,00
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Description",0x00000000,"%RSOP_SERVICE_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","DisplayName",0x00000000,"%RSOP_SERVICE%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ErrorControl",0x00010001,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ImagePath",0x00020000,"%SystemRoot%\system32\RSoPProv.exe"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","ObjectName",0x00000000,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","DependOnService",0x00010000,"RPCSS"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Start",0x00010001,3
@s:HKLM,"SYSTEM\CurrentControlSet\Services\RSoPProv","Type",0x00010001,32
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacdrv","Type",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","Description",0x00000000,"%SPECIAL_ADMINISTRATOR_CONSOLE_CMD_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","DisplayName",0x00000000,"%SPECIAL_ADMINISTRATOR_CONSOLE_CMD_SERVICE%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","ObjectName",0x00000000,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","Start",0x00010003,2
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr","Type",0x00010003,32
@s:HKLM,"SYSTEM\CurrentControlSet\Services\sacsvr\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\sacsvr.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Description",0x00000000,"%SECURITY_ACCOUNTS_MANAGER_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","DisplayName",0x00000000,"%SECURITY_ACCOUNTS_MANAGER_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ImagePath",0x00020002,"%SystemRoot%\system32\lsass.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Type",0x00010003,32
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","Group",0x00000000,"MS_WindowsLocalValidation"
HKLM,"SYSTEM\CurrentControlSet\Services\SamSs","DependOnService",0x00010000,"RPCSS"
HKLM,"SYSTEM\CurrentControlSet\Services\Samss\Security","Security",0x00030003,\
01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\
12,00,00,00
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","Type",0x00010003,16
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","Start",0x00010003,2
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","ErrorControl",0x00010003,3
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","ImagePath",0x00020002,"%SystemRoot%\System32\sbscrexe.exe"
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","DisplayName",0x00000000,%SBS_CORE_SVC_NAME%
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","ObjectName",0x00000002,"LocalSystem"
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","FailureActions",0x00000003, \
@l:@i: ff,ff,ff,ff,00,00,00,00,00,00,00,00,01,00,00,00,57,03,f8,\
@l:@i: d6,01,00,00,00,88,13,00,00
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore","Description",0x00000000,%SBS_CORE_SVC_NAME%
@l:@i:HKLM,"SYSTEM\CurrentControlSet\Services\SBCore\Security","Security",0x00030001,\
@l:@i: 01,00,14,80,4c,00,00,00,58,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,01,\
@l:@i: 00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,\
@l:@i: 1c,00,01,00,00,00,00,00,14,00,ff,01,0f,00,01,01,00,00,00,00,00,05,12,00,00,\
@l:@i: 00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ImagePath",0x00020002,"%SystemRoot%\System32\SCardSvr.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\ScardSvr","Description",0x00000000,"%SMARTCARD_RESOURCE_MANAGER_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\ScardSvr","DisplayName",0x00000000,"%SMARTCARD_RESOURCE_MANAGER%"
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","DependOnService",0x00010000,"PlugPlay"
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","ObjectName",0x00000000,"NT AUTHORITY\LocalService"
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","Group",0x00000000,"SmartCardGroup"
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr\Security","Security",0x00030001,\
01,00,14,80,a4,00,00,00,b0,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,74,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,13,00,00,00,\
00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,\
00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,\
14,00,9d,01,02,00,01,01,00,00,00,00,00,02,00,00,00,00,01,01,00,00,00,00,00,\
05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\ScsiPort","ImagePath",0x00020002,"%SystemRoot%\system32\drivers\scsiport.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Description",0x00000000,"%SECLOGON_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","DisplayName",0x00000000,"%SECLOGON_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Objectname",0x00000000,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\seclogon.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\seclogon\Parameters","ServiceMain",0x00000002,"SvcEntry_Seclogon"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","DependOnService",0x00010002,"EventSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Description",0x00000000,"%SENS_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","DisplayName",0x00000000,"%SENS_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Group",0x00000002,"Network"
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Start",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\SENS","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\SENS\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\sens.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\Serial","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Group",0x00000002,"Extended base"
HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Start",0x00010003,2
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Tag",0x00010003,1
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Tag",0x00010003,5
HKLM,"SYSTEM\CurrentControlSet\Services\Serial","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Serial\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","DependOnGroup",0x00010000,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","ErrorControl",0x00010001,0
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Group",0x00000000,"Primary disk"
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\Sfloppy","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Group",0x00000002,"Filter"
HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Simbad","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Tag",0x00010003,7
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters\PnpInterface","1",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Sparrow\Parameters", "LegacyAdapterDetection", 0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","DependOnService",0x00010000,"RPCSS"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Description",0x00000000,"%SPOOLER_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","DisplayName",0x00000000,"%SPOOLER_DISPLAYNAME%"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ErrorControl",0x00010003,1
@w:HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","FailureActions",0x00000003, \
@w: 80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c, \
@w: 00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00, \
@w: 00,00,00,00,00,00
@s:HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","FailureActions",0x00000003, \
@s: 60,54,00,00,00,00,00,00,00,00,00,00,03,00,00,00,e8,47,0c, \
@s: 00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00, \
@s: 00,00,00,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Group",0x00000002,"SpoolerGroup"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ImagePath",0x00020000,"%SystemRoot%\system32\spoolsv.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler","Type",0x00010003,272
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Close",0x00000002,"PerfClose"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Collect",0x00000002,"PerfCollect"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Collect Timeout",0x00010003,2000
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Library",0x00000002,"winspool.drv"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Object List",0x00000002,"1450"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Open",0x00000002,"PerfOpen"
HKLM,"SYSTEM\CurrentControlSet\Services\Spooler\Performance","Open Timeout",0x00010003,4000
HKLM,"SYSTEM\CurrentControlSet\Services\swenum","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\swenum","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\swenum","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\swenum\Devices",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Start",0x00010001,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Tag",0x00010003,26
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\symc810\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx","Tag",0x00010003,54
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\symc8xx\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\symmpi\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi","Tag",0x00010003,55
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\sym_hi\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Group",0x00000002,"SCSI miniport"
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3","Tag",0x00010003,55
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\sym_u3\Parameters\PnpInterface","5",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Description",0x00000002,"%SYSMONLOG_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","DisplayName",0x00000002,"%SYSMONLOG%"
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ImagePath",0x00020002,"%SystemRoot%\system32\smlogsvc.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","ObjectName",0x00000002,"NT Authority\NetworkService"
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","Type",0x00010003,16
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog","DefaultLogFileFolder",0x00020002,"%SystemDrive%\PerfLogs"
HKLM,"SYSTEM\CurrentControlSet\Services\SysmonLog\Log Queries","Defaults Installed",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","DependOnService",0x00010000,"PlugPlay","RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Description",0x00000000,"%TELEPHONY_SERVICE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","DisplayName",0x00000000,"%TELEPHONY_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ErrorControl",0x00010003,1
@w:HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k tapisrv"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv","Type",0x00010001,0x20
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\tapisrv.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Close",0x00000002,"CloseTapiPerformanceData"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Collect",0x00000002,"CollectTapiPerformanceData"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Library",0x00000002,"tapiperf.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","ObjectList",0x00000002,"1150"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Performance","Open",0x00000002,"OpenTapiPerformanceData"
HKLM,"SYSTEM\CurrentControlSet\Services\TapiSrv\Security","Security",0x00030001,\
01,00,14,80,6C,00,00,00,78,00,00,00,14,00,00,00,34,00,00,00,02,\
00,20,00,01,00,00,00,02,80,18,00,FF,01,0F,00,01,01,00,00,00,00,00,01,00,00,\
00,00,20,02,00,00,02,00,38,00,02,00,00,00,00,03,18,00,FF,01,0F,00,01,02,00,\
00,00,00,00,05,20,00,00,00,20,02,00,00,00,03,18,00,9D,00,00,00,01,02,00,00,\
00,00,00,05,20,00,00,00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,\
01,00,00,00,00,00,05,12,00,00,00
@*:
@*: BUGBUG - This is a hack for hydra.
@*: It is a quick and dirty way to disable some hydra services on upgrade.
@*: Notice that these keys will always exist on NT server clean install and upgrade.
@*:
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TermDD","Start",0x00010001,4
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TermService","Start",0x00010001,4
@s:
HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\TosIde","Type",0x00010001,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Description",0x00000000,"%TRACT_SERVER_DESCRIPTION%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","DisplayName",0x00000000,"%TRACT_SERVER_SERVICE%"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","DependOnService",0x00010002,"RpcSs"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ErrorControl",0x00010003,1
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","ObjectName",0x00000002,"LocalSystem"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Start",0x00010003,3
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr","Type",0x00010001,32
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr\Parameters",,0x00000012
@s:HKLM,"SYSTEM\CurrentControlSet\Services\TrkSvr\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\trksvr.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Description",0x00000000,"%TRACK_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","DisplayName",0x00000000,"%TRACK_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","DependOnService",0x00010002,"RpcSs"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ImagePath",0x00020000,"%SystemRoot%\system32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Start",0x00010001,2
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\TrkWks\Parameters","ServiceDll",0x00020002,"%SystemRoot%\system32\trkwks.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\TSDDD\Device0","InstalledDisplayDrivers",0x00010000,"TSDDD"
HKLM,"SYSTEM\CurrentControlSet\Services\TSDDD\Device0","VgaCompatible",0x00010001,00000000
HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Group",0x00000002,"File system"
HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\Udfs","Type",0x00010003,2
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","ErrorControl",0x00010003,1
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Group",0x00000002,"SCSI miniport"
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Start",0x00010003,4
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Tag",0x00010003,59
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra","Type",0x00010003,1
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra\Parameters",,0x00000012
@@!d:@i:HKLM,"SYSTEM\CurrentControlSet\Services\ultra\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx","ErrorControl",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx","Group",0x00000002,"SCSI miniport"
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx","Start",0x00010003,4
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx","Tag",0x00010003,59
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx\Parameters",,0x00000012
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\hpt3xx\Parameters\PnpInterface","5",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","ErrorControl",0x00010003,0
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","Start",0x00010001,3
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update","Type",0x00010003,1
@@:@i:HKLM,"SYSTEM\CurrentControlSet\Services\Update\Devices",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Description",0x00000000,"%UPS_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","DisplayName",0x00000000,"%UPS_DISPLAYNAME%"
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ImagePath",0x00020002,"%SystemRoot%\System32\ups.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","ObjectName",0x00000002,"NT AUTHORITY\LocalService"
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\UPS","Type",0x00010003,16
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Description",0x00000000,"%VGASAVE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","DisplayName",0x00000000,"%VGASAVE_DISPLAYNAME%"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","ErrorControl",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Group",0x00000000,"Video Save"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","ImagePath",0x00020000,"\SystemRoot\System32\drivers\vga.sys"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Start",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Tag",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Video","VideoID",0x00000000,"{23A77BF7-ED96-40EC-AF06-9B1F4867732A}"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Video","Service",0x00000000,"VgaSave"
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","InstalledDisplayDrivers",0x00010000,"vga", "framebuf", "vga256", "vga64k"
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","InstalledDisplayDrivers",0x00010000,"nec_nh"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaSave\Device0","VgaCompatible",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\Video","Service",0x00000000,"VgaSave"
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","InstalledDisplayDrivers",0x00010000,"vga", "framebuf", "vga256", "vga64k"
@@:@n:HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","InstalledDisplayDrivers",0x00010000,"nec_nh"
HKLM,"SYSTEM\CurrentControlSet\Control\Video\{23A77BF7-ED96-40EC-AF06-9B1F4867732A}\0000","VgaCompatible",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","ErrorControl",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Group",0x00000000,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Start",0x00010003,4
HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Tag",0x00010001,4
HKLM,"SYSTEM\CurrentControlSet\Services\ViaIde","Type",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Group",0x00000002,"System Bus Extender"
HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\VolSnap","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","DependOnService",0x00010000,"RPCSS"
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Description",0x00000000,"%VOLUME_SNAPSHOT_SERVICE_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","DisplayName",0x00000000,"%VOLUME_SNAPSHOT_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ImagePath",0x00020000,"%SystemRoot%\System32\vssvc.exe"
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Start",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\VSS","Type",0x00010003,0x10
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Description",0x00000000,"%WINDOWS_TIME_DESCRIPTION%"
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","DisplayName",0x00000000,"%WINDOWS_TIME_SERVICE%"
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","FailureActions",0x00000003, \
05,00,00,00,00,00,00,00,00,00,00,00,02,00,00,00,64,00,20,00,01,00,00,00,60,EA,00,00,01,00,00,00,60,EA,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Group",0x00000002,""
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Objectname",0x00000000,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time","Type",0x00010001,32
HKLM,"SYSTEM\CurrentControlSet\Services\W32Time\Security","Security",0x00030003,\
01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,34,00,00,00,02,00,20,00,01,\
00,00,00,02,80,18,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,20,02,\
00,00,02,00,80,00,05,00,00,00,00,03,18,00,8d,00,02,00,01,01,00,00,00,00,00,\
01,00,00,00,00,00,00,00,00,00,03,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,\
20,00,00,00,20,02,00,00,00,03,18,00,8f,00,02,00,01,02,00,00,00,00,00,05,20,\
00,00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,01,00,00,00,00,00,05,04,00,\
00,00,23,02,00,00,00,03,18,00,9d,00,00,00,01,02,00,00,00,00,00,05,20,00,00,\
00,21,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,\
12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 1","$DLL",0x00020002,"%SystemRoot%\system32\MsSip1.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 2","$DLL",0x00020002,"%SystemRoot%\system32\MsSip2.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\SubjectPackages\MS Subjects 3","$DLL",0x00020002,"%SystemRoot%\system32\MsSip3.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\TrustProviders",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\WinTrust\TrustProviders\Software Publisher","$DLL",0x00020002,"%SystemRoot%\system32\SoftPub.dll"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Description",0x00000000,"%WMI_DESCRIPTION%"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","DisplayName",0x00000000,"%WMI_SERVICE%"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ErrorControl",0x00010003,1
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","ObjectName",0x00000002,"LocalSystem"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Start",0x00010001,3
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi","Type",0x00010001,32
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Security","Security",0x00030003,\
@@!p: 01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
@@!p: 00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
@@!p: 00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
@@!p: 05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
@@!p: 20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
@@!p: 00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
@@!p: 00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\advapi32.dll"
@@!p:HKLM,"SYSTEM\CurrentControlSet\Services\Wmi\Parameters","ServiceMain",0x00000002,"WdmWmiServiceMain"
HKLM,"SYSTEM\Select","Current",0x00010003,0
HKLM,"SYSTEM\Select","Default",0x00010003,1
HKLM,"SYSTEM\Select","Failed",0x00010003,0
HKLM,"SYSTEM\Select","LastKnownGood",0x00010003,1
HKLM,"SYSTEM\Setup","SetupType",0x00010003,1
HKLM,"SYSTEM\Setup","SystemSetupInProgress",0x00010003,1
HKLM,"SYSTEM\Setup\AllowStart\AFD",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\WS2IFSL",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\EventLog",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\ERSvc",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\PlugPlay",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\ProtectedStorage",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\Rpcss",,0x00000010
@s:HKLM,"SYSTEM\Setup\AllowStart\Sacsvr",,0x00000010
HKLM,"SYSTEM\Setup\AllowStart\SamSs",,0x00000010
[AddReg.RemoteBoot]
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","Export",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","Bind",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Linkage","UpperBind",0x00010002,"Tcpip"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Ndi\Interfaces","LowerRange",0x00000002,"ethernet"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0000\Ndi\Interfaces","UpperRange",0x00000002,"ndis5"
HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\Order",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Control\NetworkProvider\Order","ProviderOrder",0x00000002,"LanmanWorkstation"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","DisplayName",0x00000002,"TCP/IP Protocol Driver"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Group",0x00000002,"PNP_TDI"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Tag",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Bind",0x00010002,"\Device\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Export",0x00010002,"\Device\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage","Route",0x00010002,"""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"""
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Bind",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Export",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Linkage\Disabled","Route",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","IpConfig",0x00010002,"Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","IpAddress",0x00010002,"0.0.0.0"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","SubnetMask",0x00010002,"0.0.0.0"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{54C7D140-09EF-11D1-B25A-F5FE627ED95E}","NTEContextList",0x00010002,"0x00000002"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Performance","ObjectList",0x00000002,"502 510 546 548 582 638 658 1530 1532 1534"
HKLM,"SYSTEM\CurrentControlSet\Services\Tcpip\Security","Security",0x00030003,\
01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\
01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\
02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\
00,00,00,00,72,00,76,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,23,02,00,00,69,00,63,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00,69,00,63,00,00,00,1c,00,ff,01,0f,00,\
01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,69,00,63,00,00,00,18,00,\
fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","DisplayName",0x00000002,"WINS Client(TCP/IP) Protocol Driver"
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Group",0x00000002,"PNP_TDI"
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Tag",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Bind",0x00010002,"\Device\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Export",0x00010002,"\Device\NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage","Route",0x00010002,"""Tcpip"" ""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"""
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Bind",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Export",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Linkage\Disabled","Route",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters","TransportBindName",0x00000002,"\Device\"
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters","BroadcastAddress",0x00010001,0xffffffff
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}",,0x00000010
HKLM,"SYSTEM\CurrentControlSet\Services\NetBT\Security","Security",0x00030003,\
01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\
01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\
02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\
00,00,00,00,64,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,23,02,00,00,00,00,00,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00,00,00,00,00,00,00,1c,00,ff,01,0f,00,\
01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,00,00,00,00,00,00,18,00,\
fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","DisplayName",0x00000002,"Rdbss"
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Group",0x00000002,"Network"
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\Rdbss\Security","Security",0x00030003,\
01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\
01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\
02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\
00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\
01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\
fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","DisplayName",0x00000002,"MRXSMB"
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Group",0x00000002,"Network"
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Tag",0x00010003,3
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb","Type",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\MRxSmb\Security","Security",0x00030003,\
01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\
01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\
02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\
00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\
01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\
fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Description",0x00000000,%LANMAN_WORKSTATION_DESCRIPTION%
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","DisplayName",0x00000000,%LANMAN_WORKSTATION_DISPLAY%
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Group",0x00000002,"NetworkProvider"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ImagePath",0x00020000,"%SystemRoot%\System32\svchost.exe -k netsvcs"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","DependOnService",0x00010000
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","ObjectName",0x00000002,"LocalSystem"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Start",0x00010003,2
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation","Type",0x00010003,0x20
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Bind",0x00010002,"\Device\NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Export",0x00010002,"\Device\LanmanWorkstation_NetBT_Tcpip_{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage","Route",0x00010002,"""NetBT"" ""Tcpip"" ""{54C7D140-09EF-11D1-B25A-F5FE627ED95E}"""
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Bind",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Export",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage\Disabled","Route",0x00010002
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","Devicename",0x00000002,"\Device\LanmanRedirector"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","Name",0x00000002,"Microsoft Windows Network"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\networkprovider","ProviderPath",0x00020002,"%SystemRoot%\System32\ntlanman.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters",,0x00000012
HKLM,"SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters","ServiceDll",0x00020000,"%SystemRoot%\System32\wkssvc.dll"
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","DisplayName",0x00000002,"IPSEC Driver"
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","ErrorControl",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Group",0x00000002,"PNP_TDI"
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Start",0x00010003,0
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Tag",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec","Type",0x00010003,1
HKLM,"SYSTEM\CurrentControlSet\Services\IPSec\Security","Security",0x00030003,\
01,00,14,80,bc,00,00,00,c8,00,00,00,14,00,00,00,30,00,00,00,02,00,1c,00,\
01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,\
02,00,8c,00,05,00,00,00,00,00,18,00,8d,01,02,00,01,01,00,00,00,00,00,01,\
00,00,00,00,00,00,00,00,00,00,1c,00,fd,01,02,00,01,02,00,00,00,00,00,05,\
20,00,00,00,23,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,01,02,00,00,\
00,00,00,05,20,00,00,00,20,02,00,00,02,00,04,00,00,00,1c,00,ff,01,0f,00,\
01,02,00,00,00,00,00,05,20,00,00,00,25,02,00,00,02,00,04,00,00,00,18,00,\
fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,25,02,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
HKLM,"SOFTWARE\Microsoft\Windows\CurrentVersion\CSCSettings","DatabaseLocation",0x00000002,"D:\IntelliMirror Cache\CSC"
[AddReg.Upgrade]
HKLM,"SYSTEM\CurrentControlSet\Control\Print","Upgrade",0x00010001,1
HKLM,"SYSTEM\CurrentControlSet\Control\Print","RouterCacheSize",0x00010001,0x00000010
HKLM,"SYSTEM\CurrentControlSet\Control\SystemResources\ReservedResources","Eisa",0x00000004
;HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDVersion",0x00010001,0x100
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","CSDVersion",0x00000004
[DelReg]
HKLM,"SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability","ShutdownReasonUI"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\AsrCommands"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Snapshot Writer (Bootable State)"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Snapshot Writer (Service State)"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Microsoft Writer (Service State)"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Removable Storage Manager Database"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","Snapshot Default Provider"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","WMI Snapshot Writer"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\FilesNotToBackup","WMI Writer"
HKLM,"SYSTEM\CurrentControlSet\Control\BackupRestore\KeysNotToRestore","PlugPlay"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{456D63F1-3F38-11D1-93C9-0040333C1C05}"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}","LowerFilters"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E973-E325-11CE-BFC1-08002BE10318}","NoUseClass"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E974-E325-11CE-BFC1-08002BE10318}","NoUseClass"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{4D36E975-E325-11CE-BFC1-08002BE10318}","NoUseClass"
HKLM,"SYSTEM\CurrentControlSet\Control\Class\{71A27CDD-812A-11D0-BEC7-08002BE2092F}","UpperFilters"
@e:@@!m:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{6BDD1FC5-810F-11D0-BEC7-08002BE2092F}"
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Control\Class\{6BDD1FC5-810F-11D0-BEC7-08002BE2092F}"
HKLM,"SYSTEM\CurrentControlSet\Control\CriticalDeviceDatabase"
HKLM,"SYSTEM\CurrentControlSet\Control\GroupOrderList","System FS Filter"
HKLM,"SYSTEM\CurrentControlSet\Control\IDConfigDB","PropertyProviders"
HKLM,"SYSTEM\CurrentControlSet\Control\Keyboard Layouts\E00F0804"
@w:HKLM,"SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0","Auth1"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0F1F"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0003"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0017"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0006"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_000D"
HKLM,"SYSTEM\CurrentControlSet\Control\MediaProperties\PrivateProperties\Joystick\OEM","VID_4d53&PID_0015"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0812"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0827"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0445"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0448"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044c"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","044d"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Language","0861"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000812"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000827"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000445"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000448"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044c"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","0000044d"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale","00000861"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010404"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010411"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010412"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010804"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010812"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00010c04"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00011004"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00011404"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\Locale\Alternate Sorts","00020c04"
HKLM,"SYSTEM\CurrentControlSet\Control\Nls\OEMLocale"
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\NTBackup"
HKLM,"SYSTEM\CurrentControlSet\Control\NTMS\OMID\Tape\Scratch"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\%hpmon_regkey%"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\HP JetDirect Port"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Lexmark DLC Network Port"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Monitors\Lexmark TCP/IP Network Port"
HKLM,"SYSTEM\CurrentControlSet\Control\Print\Providers","RetryPopup"
HKLM,"SYSTEM\CurrentControlSet\Control\Server Applications", "{8F8F8DC0-5713-11D1-9551-0060B0576642}"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\AppPatches\Install"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Environment","Os2LibPath"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters","EnablePrefetcher"
HKLM,"SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems","Os2"
HKLM,"SYSTEM\CurrentControlSet\Control\Windows","NoPopupsOnBoot"
HKLM,"SYSTEM\CurrentControlSet\Services\ad1816"
HKLM,"SYSTEM\CurrentControlSet\Services\adisnd"
HKLM,"SYSTEM\CurrentControlSet\Services\alisnd"
HKLM,"SYSTEM\CurrentControlSet\Services\als_fm"
HKLM,"SYSTEM\CurrentControlSet\Services\alsnd"
HKLM,"SYSTEM\CurrentControlSet\Services\am53c974"
HKLM,"SYSTEM\CurrentControlSet\Services\au8820"
HKLM,"SYSTEM\CurrentControlSet\Services\au8830"
HKLM,"SYSTEM\CurrentControlSet\Services\auddrive"
HKLM,"SYSTEM\CurrentControlSet\Services\aztaud"
HKLM,"SYSTEM\CurrentControlSet\Services\CIMOM"
HKLM,"SYSTEM\CurrentControlSet\Services\cl54xx"
HKLM,"SYSTEM\CurrentControlSet\Services\Cnss"
HKLM,"SYSTEM\CurrentControlSet\Services\cs32ba11"
HKLM,"SYSTEM\CurrentControlSet\Services\ctsyn"
HKLM,"SYSTEM\CurrentControlSet\Services\cwantr0"
HKLM,"SYSTEM\CurrentControlSet\Services\cwbaudio"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcecho"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcfm"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcspud"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcspud3"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcmmsys"
HKLM,"SYSTEM\CurrentControlSet\Services\cwcmsg"
HKLM,"SYSTEM\CurrentControlSet\Services\DiskPerf"
HKLM,"SYSTEM\CurrentControlSet\Services\eapci40"
HKLM,"SYSTEM\CurrentControlSet\Services\emu10k"
HKLM,"SYSTEM\CurrentControlSet\Services\emu10k1"
HKLM,"SYSTEM\CurrentControlSet\Services\es137140"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Deployment"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\Application\PlugPlayManager"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\hpmon"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\Application\PSE36Prf"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\Type 1 Installer"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Application\WinHttpAutoProxySvc"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Directory Service"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\apphelp"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\DiskPerf"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\floppy"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\intlfxsr"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\ncrc810"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\PSE36"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsicdrm"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsidisk"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\scsiflop"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\pinball"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\pnpisa"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga8"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga16"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\mga24"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\sglfb"
@s:HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\trksvr"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\trkwks"
HKLM,"SYSTEM\CurrentControlSet\Services\Eventlog\System\VgaStart"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\System\Wmi"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\User32"
HKLM,"SYSTEM\CurrentControlSet\Services\EventLog\Security\Schedule"
HKLM,"SYSTEM\CurrentControlSet\Services\Floppy"
HKLM,"SYSTEM\CurrentControlSet\Services\Homenet"
HKLM,"SYSTEM\CurrentControlSet\Services\hphparnt"
HKLM,"SYSTEM\CurrentControlSet\Services\ibmraidn"
HKLM,"SYSTEM\CurrentControlSet\Services\intlfxsr"
@e:@@!6:HKLM,"SYSTEM\CurrentControlSet\Services\irda"
@e:@@!6:HKLM,"SYSTEM\CurrentControlSet\Services\irmon"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\irda"
@@:@6:HKLM,"SYSTEM\CurrentControlSet\Services\irmon"
HKLM,"SYSTEM\CurrentControlSet\Services\LDAPSVCX"
HKLM,"SYSTEM\CurrentControlSet\Services\ma_delta"
HKLM,"SYSTEM\CurrentControlSet\Services\maestro"
HKLM,"SYSTEM\CurrentControlSet\Services\Modem","PlugPlayServiceType"
HKLM,"SYSTEM\CurrentControlSet\Services\ncrc810"
HKLM,"SYSTEM\CurrentControlSet\Services\i8042prt","PlugPlayServiceType"
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NE2000MCA.1"
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NE2000MCA.2"
HKLM,"SYSTEM\CurrentControlSet\Services\NDIS\NetDetect"
HKLM,"SYSTEM\CurrentControlSet\Services\NetDetect"
HKLM,"SYSTEM\CurrentControlSet\Services\OAKVGA"
HKLM,"SYSTEM\CurrentControlSet\Services\OLE"
HKLM,"SYSTEM\CurrentControlSet\Services\opl3sa"
HKLM,"SYSTEM\CurrentControlSet\Services\p9000"
HKLM,"SYSTEM\CurrentControlSet\Services\p9100"
HKLM,"SYSTEM\CurrentControlSet\Services\Pcmcia\DataBase"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfDisk\Performance","Disable Performance Counters"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfNet\Performance","Disable Performance Counters"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfOS\Performance","Disable Performance Counters"
HKLM,"SYSTEM\CurrentControlSet\Services\PerfProc\Performance","Disable Performance Counters"
HKLM,"SYSTEM\CurrentControlSet\Services\pinball"
HKLM,"SYSTEM\CurrentControlSet\Services\pnpisa"
HKLM,"SYSTEM\CurrentControlSet\Services\PSE36"
HKLM,"SYSTEM\CurrentControlSet\Services\ql10nt35"
HKLM,"SYSTEM\CurrentControlSet\Services\quickaccess"
HKLM,"SYSTEM\CurrentControlSet\Services\RCA"
HKLM,"SYSTEM\CurrentControlSet\Services\RSVP"
HKLM,"SYSTEM\CurrentControlSet\Services\s3ingr"
HKLM,"SYSTEM\CurrentControlSet\Services\sb16snd"
HKLM,"SYSTEM\CurrentControlSet\Services\sbawe32"
HKLM,"SYSTEM\CurrentControlSet\Services\SCardSvr","DependOnGroup"
HKLM,"SYSTEM\CurrentControlSet\Services\scesrv"
HKLM,"SYSTEM\CurrentControlSet\Services\scsicdrm"
HKLM,"SYSTEM\CurrentControlSet\Services\scsidisk"
HKLM,"SYSTEM\CurrentControlSet\Services\scsiflop"
HKLM,"SYSTEM\CurrentControlSet\Services\sfman"
HKLM,"SYSTEM\CurrentControlSet\Services\sglfb"
HKLM,"SYSTEM\CurrentControlSet\Services\sisaudio"
HKLM,"SYSTEM\CurrentControlSet\Services\sndblst"
HKLM,"SYSTEM\CurrentControlSet\Services\sndglxy"
HKLM,"SYSTEM\CurrentControlSet\Services\sndsys"
HKLM,"SYSTEM\CurrentControlSet\Services\sni543x"
HKLM,"SYSTEM\CurrentControlSet\Services\Update\Group"
HKLM,"SYSTEM\CurrentControlSet\Services\Update\Tag"
HKLM,"SYSTEM\CurrentControlSet\Services\VgaStart"
HKLM,"SYSTEM\CurrentControlSet\Services\W3SSL"
HKLM,"SYSTEM\CurrentControlSet\Services\waveart"
HKLM,"SYSTEM\CurrentControlSet\Services\wdbkvga"
HKLM,"SYSTEM\CurrentControlSet\Services\wdlavga"
HKLM,"SYSTEM\CurrentControlSet\Services\wdmals"
HKLM,"SYSTEM\CurrentControlSet\Services\WinMgmt"
HKLM,"SYSTEM\CurrentControlSet\Services\YAMAHA\Driver\DSXGWDM"
HKLM,"SYSTEM\CurrentControlSet\Services\ydsxg"
HKLM,"SYSTEM\Services\CIMOM"
HKLM,"SYSTEM\Setup","MiniSetupInProgress"
HKLM,"SYSTEM\Setup","OobeInProgress"
@@:@@!n:HKLM,"SYSTEM\CurrentControlSet\Control\Biosinfo","SystemBiosDate"
HKLM,"SYSTEM\CurrentControlSet\Control\Storage\DeviceSettings"
HKLM,"SYSTEM\CurrentControlSet\Control\Redbook\SpecialTargetList"
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Enum\SW\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}"
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Enum\SW\{eec12db6-ad9c-4168-8658-b03daef417fe}"
HKLM, "SYSTEM\CurrentControlSet\Enum\SW\{c68127b1-9bea-11d0-8fa5-00c04fc324c1}"
@@:@m:HKLM,"SYSTEM\CurrentControlSet\Services\swenum\Devices\{8c07dd50-7a8d-11d2-8f8c-00c04fbf8fef}\dmusic"
HKLM, "SYSTEM\CurrentControlSet\Services\swenum\Devices\{c68127b1-9bea-11d0-8fa5-00c04fc324c1}"